CRL & OCSP report for 0-heinonline.org.topekalibraries.info - *.topekalibraries.info

*.topekalibraries.info

This certificate was cached at
Certificate details for *.topekalibraries.info (At position 0 in certificate chain)
Serial number:
hex: fcc163700626bd71
int: 18212947700853685617
Issued by: Go Daddy Secure Certificate Authority - G2
Public Key Algorithm: RSA
Not valid before:
Not valid after:
Organization unit: Domain Control Validated
  • This certificate does not contain any links to an LDAP server
  • This certificate does not contain any internal server links
  • This certificate does not contain any links with an unknown format

View complete certificate details for 0-heinonline.org.topekalibraries.info.

Certificate Revocation List (CRL)

This CRL was cached at
http://crl.godaddy.com/gdig2s1-401.crl

CRL information

Source: CRL Distribution Points in Certificate
Location: http://crl.godaddy.com/gdig2s1-401.crl
Size: 30312 bytes (DER data)
Response time: 154.447469ms
This update:
Next update:
Revoked: No
Revoked certificates in CRL: 712

Relevant server response headers

Date:
Last Modified:
Expires:

Server and network information

Server Software: Apache

Raw CRL response headers

Accept-Ranges: [bytes]
Cache-Control: [max-age=259200]
Content-Length: [30312]
Content-Type: [application/pkix-crl]
Date: [Thu, 16 Feb 2017 16:26:05 GMT]
Etag: ["7668-548a75b890d00"]
Expires: [Sun, 19 Feb 2017 16:26:05 GMT]
Last-Modified: [Thu, 16 Feb 2017 15:21:56 GMT]
P3p: [CP="IDC DSP COR LAW CUR ADM DEV TAI PSA PSD IVA IVD HIS OUR SAM PUB LEG UNI COM NAV STA"]
Server: [Apache]
  • Content-Type in response is set to 'application/pkix-crl (RFC 5280, section 4.2.1.13)'
  • This CRL file is DER encoded
  • Response is already valid
  • Response is not expired
  • ThisUpdate is less than seven days old, CRLs must be updated and reissued at least every seven days (Mozilla Maintenance Policy section 3)
  • The NextUpdate field is not more than ten days beyond the value of the ThisUpdate field (Mozilla & Baseline Requirements)
  • Last-Modified header is the same as ThisUpdate (RFC 5019, section 6.2)
  • NextUpdate is after the date in the Expires cache header
  • The Cache-Control max-age header does not outlive NextUpdate
  • ThisUpdate has a date before NextUpdate
  • Expires cache header is not the same as the NextUpdate field (RFC 5019 section 6.2)

Online Certificate Status Protocol (OCSP)

This OCSP response was cached at
http://ocsp.godaddy.com/ (GET)Good

OCSP response information

Source: Authority Information Access in Certificate
Location: http://ocsp.godaddy.com/ (GET)
Size: 1777 bytes (DER data)
Response time: 44.926187ms
Signature algorithm: SHA1WithRSA
Signature type: CA Deligated
Signed by: Go Daddy Validation Authority - G2
Issued by: Go Daddy Secure Certificate Authority - G2
Signing certificate validity: 2016-12-13 - 2017-12-13
Signing certificate algorithm: SHA256-RSA
Reported statuses: 1
This update:
Next update:
Produced at:
Status: Good

Relevant server response headers

Date:
Last Modified:
Expires:
Cache Control Max-age: 31h17m43s

Server and network information

Server Software: Apache

URL used for GET request

http:/MEowSDBGMEQwQjAJBgUrDgMCGgUABBS2CA1fbGt26xPkOKX4ZguoUjM0TgQUQMK9J47MNIMwojPX%2B2yz8LQsgM4CCQD8wWNwBia9cQ%3D%3D

Raw OCSP request (PEM encoded)

-----BEGIN OCSP REQUEST-----
MEowSDBGMEQwQjAJBgUrDgMCGgUABBS2CA1fbGt26xPkOKX4ZguoUjM0TgQUQMK9
J47MNIMwojPX+2yz8LQsgM4CCQD8wWNwBia9cQ==
-----END OCSP REQUEST-----

Raw OCSP response (PEM encoded)

-----BEGIN OCSP RESPONSE-----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-----END OCSP RESPONSE-----

Raw OCSP Signing Certificate (PEM encoded)

-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----

Raw OCSP response headers

Cache-Control: [max-age=112663, public, no-transform, must-revalidate]
Content-Length: [1777]
Content-Transfer-Encoding: [Binary]
Content-Type: [application/ocsp-response]
Date: [Wed, 22 Feb 2017 19:46:18 GMT]
Etag: ["84b810fcc2d1aa207d41a96ef00b1a020ce89dcb"]
Expires: [Fri, 24 Feb 2017 04:42:51 GMT]
Last-Modified: [Wed, 22 Feb 2017 16:42:51 GMT]
P3p: [CP="IDC DSP COR LAW CUR ADM DEV TAI PSA PSD IVA IVD HIS OUR SAM PUB LEG UNI COM NAV STA"]
Server: [Apache]
  • OCSP signing certificate is already valid
  • OCSP signing certificate is not expired
  • OCSP signing certificate does not expire before NextUpdate
  • OCSP signing certificate does contain the Extended Key Usage for OCSP Signing
  • OCSP signing certificate does contain the OCSP No Check extension
  • Content-Type in response is set to 'application/ocsp-response'
  • Response is already valid
  • Response is not expired
  • ThisUpdate is less than four days old, OCSP information must be updated at least every four days (Mozilla & Baseline Requirements)
  • The NextUpdate field is not more than ten days beyond the value of the ThisUpdate field (Mozilla & Baseline Requirements)
  • Last-Modified header is the same as ThisUpdate (RFC 5019, section 6.2)
  • NextUpdate is after the date in the Expires cache header
  • The Cache-Control max-age header does not outlive NextUpdate
  • ThisUpdate has a date before NextUpdate
  • Expires cache header is the same as the NextUpdate field (RFC 5019 section 6.2)
This OCSP response was cached at
http://ocsp.godaddy.com/ (POST)Good

OCSP response information

Source: Authority Information Access in Certificate
Location: http://ocsp.godaddy.com/ (POST)
Size: 1777 bytes (DER data)
Response time: 46.145724ms
Signature algorithm: SHA1WithRSA
Signature type: CA Deligated
Signed by: Go Daddy Validation Authority - G2
Issued by: Go Daddy Secure Certificate Authority - G2
Signing certificate validity: 2016-12-13 - 2017-12-13
Signing certificate algorithm: SHA256-RSA
Reported statuses: 1
This update:
Next update:
Produced at:
Status: Good

Relevant server response headers

Date:
Last Modified:
Expires:
Cache Control Max-age: 31h17m48s

Server and network information

Server Software: Apache

Raw OCSP request (PEM encoded)

-----BEGIN OCSP REQUEST-----
MEowSDBGMEQwQjAJBgUrDgMCGgUABBS2CA1fbGt26xPkOKX4ZguoUjM0TgQUQMK9
J47MNIMwojPX+2yz8LQsgM4CCQD8wWNwBia9cQ==
-----END OCSP REQUEST-----

Raw OCSP response (PEM encoded)

-----BEGIN OCSP RESPONSE-----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-----END OCSP RESPONSE-----

Raw OCSP Signing Certificate (PEM encoded)

-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----

Raw OCSP response headers

Cache-Control: [max-age=112668, public, no-transform, must-revalidate]
Content-Length: [1777]
Content-Transfer-Encoding: [Binary]
Content-Type: [application/ocsp-response]
Date: [Wed, 22 Feb 2017 19:46:13 GMT]
Etag: ["84b810fcc2d1aa207d41a96ef00b1a020ce89dcb"]
Expires: [Fri, 24 Feb 2017 04:42:51 GMT]
Last-Modified: [Wed, 22 Feb 2017 16:42:51 GMT]
P3p: [CP="IDC DSP COR LAW CUR ADM DEV TAI PSA PSD IVA IVD HIS OUR SAM PUB LEG UNI COM NAV STA"]
Server: [Apache]
  • OCSP signing certificate is already valid
  • OCSP signing certificate is not expired
  • OCSP signing certificate does not expire before NextUpdate
  • OCSP signing certificate does contain the Extended Key Usage for OCSP Signing
  • OCSP signing certificate does contain the OCSP No Check extension
  • Content-Type in response is set to 'application/ocsp-response'
  • Response is already valid
  • Response is not expired
  • ThisUpdate is less than four days old, OCSP information must be updated at least every four days (Mozilla & Baseline Requirements)
  • The NextUpdate field is not more than ten days beyond the value of the ThisUpdate field (Mozilla & Baseline Requirements)
  • Last-Modified header is the same as ThisUpdate (RFC 5019, section 6.2)
  • NextUpdate is after the date in the Expires cache header
  • The Cache-Control max-age header does not outlive NextUpdate
  • ThisUpdate has a date before NextUpdate
  • Expires cache header is the same as the NextUpdate field (RFC 5019 section 6.2)

Go Daddy Secure Certificate Authority - G2 (CA Certificate)

This certificate was cached at
Certificate details for Go Daddy Secure Certificate Authority - G2 (At position 1 in certificate chain)
Serial number:
hex: 7
int: 7
Issued by: Go Daddy Root Certificate Authority - G2
Public Key Algorithm: RSA
Not valid before:
Not valid after:
Organization: GoDaddy.com, Inc.
Organization unit: http://certs.godaddy.com/repository/
State / Province: Arizona
Locality: Scottsdale
Country: US
  • This certificate does not contain any links to an LDAP server
  • This certificate does not contain any internal server links
  • This certificate does not contain any links with an unknown format

This certificate contains no information about authoritative CRL(s) or OCSP servers

Check the revocation status for another website

Created by Paul van Brouwershaven
Revoked certificates can't and should not be trusted, these certificate will cause errors like "NET::ERR_CERT_REVOKED" in browsers.