CRL & OCSP report for 0-gfs.eiu.com.linus.lmu.edu - linus.lmu.edu

linus.lmu.edu

This certificate was cached at
Certificate details for linus.lmu.edu (At position 0 in certificate chain)
Serial number:
hex: 47f3c2b3f6fbb
int: 1265796307185595
Issued by: Go Daddy Secure Certificate Authority - G2
Public Key Algorithm: RSA
Not valid before:
Not valid after:
Organization unit: Domain Control Validated
  • This certificate does not contain any links to an LDAP server
  • This certificate does not contain any internal server links
  • This certificate does not contain any links with an unknown format

View complete certificate details for 0-gfs.eiu.com.linus.lmu.edu.

Certificate Revocation List (CRL)

This CRL was cached at
http://crl.godaddy.com/gdig2s1-87.crl

CRL information

Source: CRL Distribution Points in Certificate
Location: http://crl.godaddy.com/gdig2s1-87.crl
Size: 2915917 bytes (DER data)
Response time: 316.067253ms
This update:
Next update:
Revoked: No
Revoked certificates in CRL: 71255

Relevant server response headers

Date:
Last Modified:
Expires:

Server and network information

Server Software: Apache

Raw CRL response headers

Accept-Ranges: [bytes]
Cache-Control: [max-age=259200]
Content-Length: [2915917]
Content-Type: [application/pkix-crl]
Date: [Sun, 26 Feb 2017 07:52:29 GMT]
Etag: ["2c7e4d-54935eacdbf40"]
Expires: [Wed, 01 Mar 2017 07:52:29 GMT]
Last-Modified: [Thu, 23 Feb 2017 17:26:45 GMT]
P3p: [CP="IDC DSP COR LAW CUR ADM DEV TAI PSA PSD IVA IVD HIS OUR SAM PUB LEG UNI COM NAV STA"]
Server: [Apache]
  • Content-Type in response is set to 'application/pkix-crl (RFC 5280, section 4.2.1.13)'
  • This CRL file is DER encoded
  • Response is already valid
  • Response is not expired
  • ThisUpdate is less than seven days old, CRLs must be updated and reissued at least every seven days (Mozilla Maintenance Policy section 3)
  • The NextUpdate field is not more than ten days beyond the value of the ThisUpdate field (Mozilla & Baseline Requirements)
  • Last-Modified header is not the same as ThisUpdate (RFC 5019, section 6.2)
  • NextUpdate is after the date in the Expires cache header
  • The Cache-Control max-age header does not outlive NextUpdate
  • ThisUpdate has a date before NextUpdate
  • Expires cache header is not the same as the NextUpdate field (RFC 5019 section 6.2)

Online Certificate Status Protocol (OCSP)

This OCSP response was cached at
http://ocsp.godaddy.com/ (GET)Good

OCSP response information

Source: Authority Information Access in Certificate
Location: http://ocsp.godaddy.com/ (GET)
Size: 1775 bytes (DER data)
Response time: 44.421882ms
Signature algorithm: SHA1WithRSA
Signature type: CA Deligated
Signed by: Go Daddy Validation Authority - G2
Issued by: Go Daddy Secure Certificate Authority - G2
Signing certificate validity: 2016-12-13 - 2017-12-13
Signing certificate algorithm: SHA256-RSA
Reported statuses: 1
This update:
Next update:
Produced at:
Status: Good

Relevant server response headers

Date:
Last Modified:
Expires:
Cache Control Max-age: 33h9m6s

Server and network information

Server Software: Apache

URL used for GET request

http:/MEgwRjBEMEIwQDAJBgUrDgMCGgUABBS2CA1fbGt26xPkOKX4ZguoUjM0TgQUQMK9J47MNIMwojPX%2B2yz8LQsgM4CBwR%2FPCs%2Fb7s%3D

Raw OCSP request (PEM encoded)

-----BEGIN OCSP REQUEST-----
MEgwRjBEMEIwQDAJBgUrDgMCGgUABBS2CA1fbGt26xPkOKX4ZguoUjM0TgQUQMK9
J47MNIMwojPX+2yz8LQsgM4CBwR/PCs/b7s=
-----END OCSP REQUEST-----

Raw OCSP response (PEM encoded)

-----BEGIN OCSP RESPONSE-----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=
-----END OCSP RESPONSE-----

Raw OCSP Signing Certificate (PEM encoded)

-----BEGIN CERTIFICATE-----
MIIEsTCCA5mgAwIBAgIIM6ay+LB4WGMwDQYJKoZIhvcNAQELBQAwgbQxCzAJBgNV
BAYTAlVTMRAwDgYDVQQIEwdBcml6b25hMRMwEQYDVQQHEwpTY290dHNkYWxlMRow
GAYDVQQKExFHb0RhZGR5LmNvbSwgSW5jLjEtMCsGA1UECxMkaHR0cDovL2NlcnRz
LmdvZGFkZHkuY29tL3JlcG9zaXRvcnkvMTMwMQYDVQQDEypHbyBEYWRkeSBTZWN1
cmUgQ2VydGlmaWNhdGUgQXV0aG9yaXR5IC0gRzIwHhcNMTYxMjEzMDcwMDAwWhcN
MTcxMjEzMDcwMDAwWjB4MQswCQYDVQQGEwJVUzEQMA4GA1UECBMHQXJpem9uYTET
MBEGA1UEBxMKU2NvdHRzZGFsZTEVMBMGA1UEChMMR29EYWRkeSBJbmMuMSswKQYD
VQQDEyJHbyBEYWRkeSBWYWxpZGF0aW9uIEF1dGhvcml0eSAtIEcyMIIBIjANBgkq
hkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAwxK37MN9B3/4QMRIgfjEg4vMmQKA4WrJ
YpgyxWO9gfu8J2VTQQAa7YCXNiIiMptoZgttAW05/6iFqIuXp7BfTgUiZ1bpz3vl
SiJ75ecwZg5XJKdYche/+rp8VftGDCHnS84wIO4ocIKnHcythTmDSQ/cn4+y/2MT
Y1zSOQ54dBp2ulVOjwcYJajPtcIsUh8J2ONaSgMu7gHT/3J6E1oL5nCs7L1ydQQ2
GcT/7RYwihR04uQP8SrbgBNUFVcF7tDejj/uHNhY+gAGKCsekHqrW7UgukH5l7Yr
et1bPi33eT7KoLJudlUUq4lnLndVLg8OzN+JEd8gRmjZNkYGAhV9fwIDAQABo4IB
ADCB/TAMBgNVHRMBAf8EAjAAMA4GA1UdDwEB/wQEAwIGwDATBgNVHSUEDDAKBggr
BgEFBQcDCTAdBgNVHQ4EFgQUxYZKIX7Z8rV9oQGsrF5d/hWC978wDwYJKwYBBQUH
MAEFBAIFADBMBgNVHR8ERTBDMEGgP6A9hjtodHRwOi8vY3JsLmdvZGFkZHkuY29t
L3JlcG9zaXRvcnkvbWFzdGVyZ29kYWRkeTJpc3N1aW5nLmNybDBKBgNVHSAEQzBB
MD8GC2CGSAGG/W0BBxcBMDAwLgYIKwYBBQUHAgEWImh0dHA6Ly9jcmwuZ29kYWRk
eS5jb20vcmVwb3NpdG9yeS8wDQYJKoZIhvcNAQELBQADggEBACb/o/NytfJvWRn3
HBL23ae0+Y2r711BwSWYtbi5dyc0L5LRDhbXIiyyKglZP+s2xOGswOel3AIOkhMk
XKKno61qCDE3hH3Xvz73ZiusB1S+9G3+2yDo1zVp4q1wmOMO29dEIbCJD0DPZBpp
+bnYKHt03AZgBQ2TaZlETWzp9nQCUNzqQIQEDu58dljvVBs7vDYVOkC7VCdm9VlX
JoNVQHeuggtMdpp+7Ur1QbhPODIrTJB4GtljDX2DnXcO60I+d8AZQRLMJ/iBRsOk
N/Bveu6phtmXaGnRhA79iqt0NDp4SUAs6XAbLCta9hlvL22CC0VQWJk7ZwCm6qqo
yMnygo8=
-----END CERTIFICATE-----

Raw OCSP response headers

Cache-Control: [max-age=119346, public, no-transform, must-revalidate]
Content-Length: [1775]
Content-Transfer-Encoding: [Binary]
Content-Type: [application/ocsp-response]
Date: [Sat, 25 Feb 2017 16:16:26 GMT]
Etag: ["734689b16b04f1899392c06d3ac3b56083c343c2"]
Expires: [Mon, 27 Feb 2017 03:10:14 GMT]
Last-Modified: [Sat, 25 Feb 2017 15:10:14 GMT]
P3p: [CP="IDC DSP COR LAW CUR ADM DEV TAI PSA PSD IVA IVD HIS OUR SAM PUB LEG UNI COM NAV STA"]
Server: [Apache]
  • OCSP signing certificate is already valid
  • OCSP signing certificate is not expired
  • OCSP signing certificate does not expire before NextUpdate
  • OCSP signing certificate does contain the Extended Key Usage for OCSP Signing
  • OCSP signing certificate does contain the OCSP No Check extension
  • Content-Type in response is set to 'application/ocsp-response'
  • Response is already valid
  • Response is not expired
  • ThisUpdate is less than four days old, OCSP information must be updated at least every four days (Mozilla & Baseline Requirements)
  • The NextUpdate field is not more than ten days beyond the value of the ThisUpdate field (Mozilla & Baseline Requirements)
  • Last-Modified header is the same as ThisUpdate (RFC 5019, section 6.2)
  • NextUpdate is after the date in the Expires cache header
  • The Cache-Control max-age header does not outlive NextUpdate
  • ThisUpdate has a date before NextUpdate
  • Expires cache header is the same as the NextUpdate field (RFC 5019 section 6.2)
This OCSP response was cached at
http://ocsp.godaddy.com/ (POST)Good

OCSP response information

Source: Authority Information Access in Certificate
Location: http://ocsp.godaddy.com/ (POST)
Size: 1775 bytes (DER data)
Response time: 45.8823ms
Signature algorithm: SHA1WithRSA
Signature type: CA Deligated
Signed by: Go Daddy Validation Authority - G2
Issued by: Go Daddy Secure Certificate Authority - G2
Signing certificate validity: 2016-12-13 - 2017-12-13
Signing certificate algorithm: SHA256-RSA
Reported statuses: 1
This update:
Next update:
Produced at:
Status: Good

Relevant server response headers

Date:
Last Modified:
Expires:
Cache Control Max-age: 33h8m44s

Server and network information

Server Software: Apache

Raw OCSP request (PEM encoded)

-----BEGIN OCSP REQUEST-----
MEgwRjBEMEIwQDAJBgUrDgMCGgUABBS2CA1fbGt26xPkOKX4ZguoUjM0TgQUQMK9
J47MNIMwojPX+2yz8LQsgM4CBwR/PCs/b7s=
-----END OCSP REQUEST-----

Raw OCSP response (PEM encoded)

-----BEGIN OCSP RESPONSE-----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=
-----END OCSP RESPONSE-----

Raw OCSP Signing Certificate (PEM encoded)

-----BEGIN CERTIFICATE-----
MIIEsTCCA5mgAwIBAgIIM6ay+LB4WGMwDQYJKoZIhvcNAQELBQAwgbQxCzAJBgNV
BAYTAlVTMRAwDgYDVQQIEwdBcml6b25hMRMwEQYDVQQHEwpTY290dHNkYWxlMRow
GAYDVQQKExFHb0RhZGR5LmNvbSwgSW5jLjEtMCsGA1UECxMkaHR0cDovL2NlcnRz
LmdvZGFkZHkuY29tL3JlcG9zaXRvcnkvMTMwMQYDVQQDEypHbyBEYWRkeSBTZWN1
cmUgQ2VydGlmaWNhdGUgQXV0aG9yaXR5IC0gRzIwHhcNMTYxMjEzMDcwMDAwWhcN
MTcxMjEzMDcwMDAwWjB4MQswCQYDVQQGEwJVUzEQMA4GA1UECBMHQXJpem9uYTET
MBEGA1UEBxMKU2NvdHRzZGFsZTEVMBMGA1UEChMMR29EYWRkeSBJbmMuMSswKQYD
VQQDEyJHbyBEYWRkeSBWYWxpZGF0aW9uIEF1dGhvcml0eSAtIEcyMIIBIjANBgkq
hkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAwxK37MN9B3/4QMRIgfjEg4vMmQKA4WrJ
YpgyxWO9gfu8J2VTQQAa7YCXNiIiMptoZgttAW05/6iFqIuXp7BfTgUiZ1bpz3vl
SiJ75ecwZg5XJKdYche/+rp8VftGDCHnS84wIO4ocIKnHcythTmDSQ/cn4+y/2MT
Y1zSOQ54dBp2ulVOjwcYJajPtcIsUh8J2ONaSgMu7gHT/3J6E1oL5nCs7L1ydQQ2
GcT/7RYwihR04uQP8SrbgBNUFVcF7tDejj/uHNhY+gAGKCsekHqrW7UgukH5l7Yr
et1bPi33eT7KoLJudlUUq4lnLndVLg8OzN+JEd8gRmjZNkYGAhV9fwIDAQABo4IB
ADCB/TAMBgNVHRMBAf8EAjAAMA4GA1UdDwEB/wQEAwIGwDATBgNVHSUEDDAKBggr
BgEFBQcDCTAdBgNVHQ4EFgQUxYZKIX7Z8rV9oQGsrF5d/hWC978wDwYJKwYBBQUH
MAEFBAIFADBMBgNVHR8ERTBDMEGgP6A9hjtodHRwOi8vY3JsLmdvZGFkZHkuY29t
L3JlcG9zaXRvcnkvbWFzdGVyZ29kYWRkeTJpc3N1aW5nLmNybDBKBgNVHSAEQzBB
MD8GC2CGSAGG/W0BBxcBMDAwLgYIKwYBBQUHAgEWImh0dHA6Ly9jcmwuZ29kYWRk
eS5jb20vcmVwb3NpdG9yeS8wDQYJKoZIhvcNAQELBQADggEBACb/o/NytfJvWRn3
HBL23ae0+Y2r711BwSWYtbi5dyc0L5LRDhbXIiyyKglZP+s2xOGswOel3AIOkhMk
XKKno61qCDE3hH3Xvz73ZiusB1S+9G3+2yDo1zVp4q1wmOMO29dEIbCJD0DPZBpp
+bnYKHt03AZgBQ2TaZlETWzp9nQCUNzqQIQEDu58dljvVBs7vDYVOkC7VCdm9VlX
JoNVQHeuggtMdpp+7Ur1QbhPODIrTJB4GtljDX2DnXcO60I+d8AZQRLMJ/iBRsOk
N/Bveu6phtmXaGnRhA79iqt0NDp4SUAs6XAbLCta9hlvL22CC0VQWJk7ZwCm6qqo
yMnygo8=
-----END CERTIFICATE-----

Raw OCSP response headers

Cache-Control: [max-age=119324, public, no-transform, must-revalidate]
Content-Length: [1775]
Content-Transfer-Encoding: [Binary]
Content-Type: [application/ocsp-response]
Date: [Sat, 25 Feb 2017 16:16:49 GMT]
Etag: ["734689b16b04f1899392c06d3ac3b56083c343c2"]
Expires: [Mon, 27 Feb 2017 03:10:14 GMT]
Last-Modified: [Sat, 25 Feb 2017 15:10:14 GMT]
P3p: [CP="IDC DSP COR LAW CUR ADM DEV TAI PSA PSD IVA IVD HIS OUR SAM PUB LEG UNI COM NAV STA"]
Server: [Apache]
  • OCSP signing certificate is already valid
  • OCSP signing certificate is not expired
  • OCSP signing certificate does not expire before NextUpdate
  • OCSP signing certificate does contain the Extended Key Usage for OCSP Signing
  • OCSP signing certificate does contain the OCSP No Check extension
  • Content-Type in response is set to 'application/ocsp-response'
  • Response is already valid
  • Response is not expired
  • ThisUpdate is less than four days old, OCSP information must be updated at least every four days (Mozilla & Baseline Requirements)
  • The NextUpdate field is not more than ten days beyond the value of the ThisUpdate field (Mozilla & Baseline Requirements)
  • Last-Modified header is the same as ThisUpdate (RFC 5019, section 6.2)
  • NextUpdate is after the date in the Expires cache header
  • The Cache-Control max-age header does not outlive NextUpdate
  • ThisUpdate has a date before NextUpdate
  • Expires cache header is the same as the NextUpdate field (RFC 5019 section 6.2)

Go Daddy Secure Certificate Authority - G2 (CA Certificate)

This certificate was cached at
Certificate details for Go Daddy Secure Certificate Authority - G2 (At position 1 in certificate chain)
Serial number:
hex: 7
int: 7
Issued by: Go Daddy Root Certificate Authority - G2
Public Key Algorithm: RSA
Not valid before:
Not valid after:
Organization: GoDaddy.com, Inc.
Organization unit: http://certs.godaddy.com/repository/
State / Province: Arizona
Locality: Scottsdale
Country: US
  • This certificate does not contain any links to an LDAP server
  • This certificate does not contain any internal server links
  • This certificate does not contain any links with an unknown format

Certificate Revocation List (CRL)

This CRL was cached at
http://crl.godaddy.com/gdroot-g2.crl

CRL information

Source: CRL Distribution Points in Certificate
Location: http://crl.godaddy.com/gdroot-g2.crl
Size: 462 bytes (DER data)
Response time: 129.827798ms
This update:
Next update:
Revoked: No
Revoked certificates in CRL: 0

Relevant server response headers

Date:
Last Modified:
Expires:

Server and network information

Server Software: Apache

Raw CRL response headers

Accept-Ranges: [bytes]
Cache-Control: [max-age=259200]
Content-Length: [462]
Content-Type: [application/pkix-crl]
Date: [Sun, 26 Feb 2017 07:52:29 GMT]
Etag: ["1ce-543a28e7ef080"]
Expires: [Wed, 01 Mar 2017 07:52:29 GMT]
Last-Modified: [Wed, 14 Dec 2016 18:32:18 GMT]
P3p: [CP="IDC DSP COR LAW CUR ADM DEV TAI PSA PSD IVA IVD HIS OUR SAM PUB LEG UNI COM NAV STA"]
Server: [Apache]
  • Content-Type in response is set to 'application/pkix-crl (RFC 5280, section 4.2.1.13)'
  • This CRL file is DER encoded
  • Response is already valid
  • Response is not expired
  • Revocation information is updated at least once every twelve months
  • The value of the NextUpdate field is not more than twelve months beyond the value of the ThisUpdate field
  • Last-Modified header is not the same as ThisUpdate (RFC 5019, section 6.2)
  • NextUpdate is after the date in the Expires cache header
  • The Cache-Control max-age header does not outlive NextUpdate
  • ThisUpdate has a date before NextUpdate
  • Expires cache header is not the same as the NextUpdate field (RFC 5019 section 6.2)

Online Certificate Status Protocol (OCSP)

This OCSP response was cached at
http://ocsp.godaddy.com/ (POST)Good

OCSP response information

Source: Authority Information Access in Certificate
Location: http://ocsp.godaddy.com/ (POST)
Size: 1730 bytes (DER data)
Response time: 44.622549ms
Signature algorithm: SHA1WithRSA
Signature type: CA Deligated
Signed by: Go Daddy Root Validation Authority - G2
Issued by: Go Daddy Root Certificate Authority - G2
Signing certificate validity: 2016-12-13 - 2017-12-13
Signing certificate algorithm: SHA256-RSA
Reported statuses: 1
This update:
Next update:
Produced at:
Status: Good

Relevant server response headers

Date:
Last Modified:
Expires:
Cache Control Max-age: 31h44m31s

Server and network information

Server Software: Apache

Raw OCSP request (PEM encoded)

-----BEGIN OCSP REQUEST-----
MEIwQDA+MDwwOjAJBgUrDgMCGgUABBQdI2+OBkuXH93foRUj4a7lAr4rGwQUOpqF
BxBnKLbv9r0FQW4gwZTaD94CAQc=
-----END OCSP REQUEST-----

Raw OCSP response (PEM encoded)

-----BEGIN OCSP RESPONSE-----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-----END OCSP RESPONSE-----

Raw OCSP Signing Certificate (PEM encoded)

-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----

Raw OCSP response headers

Cache-Control: [max-age=114271, public, no-transform, must-revalidate]
Content-Length: [1730]
Content-Transfer-Encoding: [Binary]
Content-Type: [application/ocsp-response]
Date: [Sat, 25 Feb 2017 22:56:07 GMT]
Etag: ["52a1513ee048eb4b830773f0d1b0bcca92ec3d4c"]
Expires: [Mon, 27 Feb 2017 08:20:53 GMT]
Last-Modified: [Sat, 25 Feb 2017 20:20:53 GMT]
P3p: [CP="IDC DSP COR LAW CUR ADM DEV TAI PSA PSD IVA IVD HIS OUR SAM PUB LEG UNI COM NAV STA"]
Server: [Apache]
  • OCSP signing certificate is already valid
  • OCSP signing certificate is not expired
  • OCSP signing certificate does not expire before NextUpdate
  • OCSP signing certificate does contain the Extended Key Usage for OCSP Signing
  • OCSP signing certificate does contain the OCSP No Check extension
  • Content-Type in response is set to 'application/ocsp-response'
  • Response is already valid
  • Response is not expired
  • Revocation information is updated at least once every twelve months
  • The value of the NextUpdate field is not more than twelve months beyond the value of the ThisUpdate field
  • Last-Modified header is the same as ThisUpdate (RFC 5019, section 6.2)
  • NextUpdate is after the date in the Expires cache header
  • The Cache-Control max-age header does not outlive NextUpdate
  • ThisUpdate has a date before NextUpdate
  • Expires cache header is the same as the NextUpdate field (RFC 5019 section 6.2)
This OCSP response was cached at
http://ocsp.godaddy.com/ (GET)Good

OCSP response information

Source: Authority Information Access in Certificate
Location: http://ocsp.godaddy.com/ (GET)
Size: 1730 bytes (DER data)
Response time: 45.990569ms
Signature algorithm: SHA1WithRSA
Signature type: CA Deligated
Signed by: Go Daddy Root Validation Authority - G2
Issued by: Go Daddy Root Certificate Authority - G2
Signing certificate validity: 2016-12-13 - 2017-12-13
Signing certificate algorithm: SHA256-RSA
Reported statuses: 1
This update:
Next update:
Produced at:
Status: Good

Relevant server response headers

Date:
Last Modified:
Expires:
Cache Control Max-age: 31h43m37s

Server and network information

Server Software: Apache

URL used for GET request

http:/MEIwQDA%2BMDwwOjAJBgUrDgMCGgUABBQdI2%2BOBkuXH93foRUj4a7lAr4rGwQUOpqFBxBnKLbv9r0FQW4gwZTaD94CAQc%3D

Raw OCSP request (PEM encoded)

-----BEGIN OCSP REQUEST-----
MEIwQDA+MDwwOjAJBgUrDgMCGgUABBQdI2+OBkuXH93foRUj4a7lAr4rGwQUOpqF
BxBnKLbv9r0FQW4gwZTaD94CAQc=
-----END OCSP REQUEST-----

Raw OCSP response (PEM encoded)

-----BEGIN OCSP RESPONSE-----
MIIGvgoBAKCCBrcwggazBgkrBgEFBQcwAQEEggakMIIGoDCB/6GBhTCBgjELMAkG
A1UEBhMCVVMxEDAOBgNVBAgTB0FyaXpvbmExEzARBgNVBAcTClNjb3R0c2RhbGUx
GjAYBgNVBAoTEUdvRGFkZHkuY29tLCBJbmMuMTAwLgYDVQQDEydHbyBEYWRkeSBS
b290IFZhbGlkYXRpb24gQXV0aG9yaXR5IC0gRzIYDzIwMTcwMjI1MjAyMDUzWjBk
MGIwOjAJBgUrDgMCGgUABBQdI2+OBkuXH93foRUj4a7lAr4rGwQUOpqFBxBnKLbv
9r0FQW4gwZTaD94CAQeAABgPMjAxNzAyMjUyMDIwNTNaoBEYDzIwMTcwMjI3MDgy
MDUzWjANBgkqhkiG9w0BAQUFAAOCAQEAjpTT3J5R2fTkPKkQB5UZ9YG4dunggF8M
yPQS1tyyF2Ie7GngtqIh1/mz+vcTe4MqyAiTFRnBIkT3zr05+N8vptEt6gvUZsiv
OjQZARe9zt65Fir5ll37YiCjTllm/jG6i5FNGA8yMYyBBBfFPVcRujA9EpvfSHoZ
XywhiY/JMIhqacIhaTiqZ2n+s4HQ1j/8ps7LBkCUhvVYfJklKDiu2+rHjx7guxE6
Zgw0UvaV3k31Q/eaXeM/ENuVdePjrsdKh0OIKkx5+oZXnA4gj65Rpg4M+4zl4RTp
7gzQqI0rBzTzN+a6nQ5NYHyll02N0UAp4Q6de6qHqGD+oEGzAcvFu6CCBIYwggSC
MIIEfjCCA2agAwIBAgIIAlR8ANLxDDcwDQYJKoZIhvcNAQELBQAwgYMxCzAJBgNV
BAYTAlVTMRAwDgYDVQQIEwdBcml6b25hMRMwEQYDVQQHEwpTY290dHNkYWxlMRow
GAYDVQQKExFHb0RhZGR5LmNvbSwgSW5jLjExMC8GA1UEAxMoR28gRGFkZHkgUm9v
dCBDZXJ0aWZpY2F0ZSBBdXRob3JpdHkgLSBHMjAeFw0xNjEyMTMwNzAwMDBaFw0x
NzEyMTMwNzAwMDBaMIGCMQswCQYDVQQGEwJVUzEQMA4GA1UECBMHQXJpem9uYTET
MBEGA1UEBxMKU2NvdHRzZGFsZTEaMBgGA1UEChMRR29EYWRkeS5jb20sIEluYy4x
MDAuBgNVBAMTJ0dvIERhZGR5IFJvb3QgVmFsaWRhdGlvbiBBdXRob3JpdHkgLSBH
MjCCASIwDQYJKoZIhvcNAQEBBQADggEPADCCAQoCggEBAMMSt+zDfQd/+EDESIH4
xIOLzJkCgOFqyWKYMsVjvYH7vCdlU0EAGu2AlzYiIjKbaGYLbQFtOf+ohaiLl6ew
X04FImdW6c975Uoie+XnMGYOVySnWHIXv/q6fFX7Rgwh50vOMCDuKHCCpx3MrYU5
g0kP3J+Psv9jE2Nc0jkOeHQadrpVTo8HGCWoz7XCLFIfCdjjWkoDLu4B0/9yehNa
C+ZwrOy9cnUENhnE/+0WMIoUdOLkD/Eq24ATVBVXBe7Q3o4/7hzYWPoABigrHpB6
q1u1ILpB+Ze2K3rdWz4t93k+yqCybnZVFKuJZy53VS4PDszfiRHfIEZo2TZGBgIV
fX8CAwEAAaOB9DCB8TAMBgNVHRMBAf8EAjAAMA4GA1UdDwEB/wQEAwIGwDATBgNV
HSUEDDAKBggrBgEFBQcDCTAdBgNVHQ4EFgQUxYZKIX7Z8rV9oQGsrF5d/hWC978w
DwYJKwYBBQUHMAEFBAIFADBABgNVHR8EOTA3MDWgM6Axhi9odHRwOi8vY3JsLmdv
ZGFkZHkuY29tL3JlcG9zaXRvcnkvZ2Ryb290LWcyLmNybDBKBgNVHSAEQzBBMD8G
C2CGSAGG/W0BBxcBMDAwLgYIKwYBBQUHAgEWImh0dHA6Ly9jcmwuZ29kYWRkeS5j
b20vcmVwb3NpdG9yeS8wDQYJKoZIhvcNAQELBQADggEBAD3O7aHU0cx8Ued53GtJ
JB/vo1RAf2ZmxW3Q3wUxG/ON/dGDXOMRFDEwla5UluC3zWWytZ1Go9WVaN1k8w5Q
7dN1puQIVbbOwy2OYtZlbqQT9RnPwMwwYSyfb9QNdDdPurf0eClCr/Q54fk5BKBy
rmw3msFD53d39C/GVbP3ulhLKIo64A68ENIJpFrBG2iQSFEBv1ohbRedCn11bD2b
d82aOnwWKlPVx87RLOo3UiU/MNRsCdlhzEPF14FNPpvmdPO5NweVBCfj7iOqMeNw
D8pauPYhnpApYDVfkDffUAbUr7YrdSxjJvZHt3D2rgU+kkYJc+hC3ze30906Xg0P
wkI=
-----END OCSP RESPONSE-----

Raw OCSP Signing Certificate (PEM encoded)

-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----

Raw OCSP response headers

Cache-Control: [max-age=114217, public, no-transform, must-revalidate]
Content-Length: [1730]
Content-Transfer-Encoding: [Binary]
Content-Type: [application/ocsp-response]
Date: [Sat, 25 Feb 2017 22:57:04 GMT]
Etag: ["52a1513ee048eb4b830773f0d1b0bcca92ec3d4c"]
Expires: [Mon, 27 Feb 2017 08:20:53 GMT]
Last-Modified: [Sat, 25 Feb 2017 20:20:53 GMT]
P3p: [CP="IDC DSP COR LAW CUR ADM DEV TAI PSA PSD IVA IVD HIS OUR SAM PUB LEG UNI COM NAV STA"]
Server: [Apache]
  • OCSP signing certificate is already valid
  • OCSP signing certificate is not expired
  • OCSP signing certificate does not expire before NextUpdate
  • OCSP signing certificate does contain the Extended Key Usage for OCSP Signing
  • OCSP signing certificate does contain the OCSP No Check extension
  • Content-Type in response is set to 'application/ocsp-response'
  • Response is already valid
  • Response is not expired
  • Revocation information is updated at least once every twelve months
  • The value of the NextUpdate field is not more than twelve months beyond the value of the ThisUpdate field
  • Last-Modified header is the same as ThisUpdate (RFC 5019, section 6.2)
  • NextUpdate is after the date in the Expires cache header
  • The Cache-Control max-age header does not outlive NextUpdate
  • ThisUpdate has a date before NextUpdate
  • Expires cache header is the same as the NextUpdate field (RFC 5019 section 6.2)

Go Daddy Root Certificate Authority - G2 (CA Certificate)

This certificate was cached at
Certificate details for Go Daddy Root Certificate Authority - G2 (At position 2 in certificate chain)
Serial number:
hex: 0
int: 0
Issued by: Go Daddy Root Certificate Authority - G2
Public Key Algorithm: RSA
Not valid before:
Not valid after:
Organization: GoDaddy.com, Inc.
State / Province: Arizona
Locality: Scottsdale
Country: US
  • This certificate does not contain any links to an LDAP server
  • This certificate does not contain any internal server links
  • This certificate does not contain any links with an unknown format

This is a self signed certificate

Check the revocation status for another website

Created by Paul van Brouwershaven
Revoked certificates can't and should not be trusted, these certificate will cause errors like "NET::ERR_CERT_REVOKED" in browsers.