CRL & OCSP report for 0-jump.valueline.com.library.hillsdale.edu - *.library.hillsdale.edu

*.library.hillsdale.edu

Certificate details for *.library.hillsdale.edu (At position 0 in certificate chain)
Serial number:
hex: 759fb56c3676a52f
int: 8475692500109403439
Issued by: Go Daddy Secure Certificate Authority - G2
Public Key Algorithm: RSA
Not valid before:
Not valid after:
Organization unit: Domain Control Validated
  • This certificate does not contain any links to an LDAP server
  • This certificate does not contain any internal server links
  • This certificate does not contain any links with an unknown format

Check certificate compliance for 0-jump.valueline.com.library.hillsdale.edu.

Certificate Revocation List (CRL)

This CRL was cached at
http://crl.godaddy.com/gdig2s1-283.crl

CRL information

Source: CRL Distribution Points in Certificate
Location: http://crl.godaddy.com/gdig2s1-283.crl
Size: 50607 bytes (DER data)
Response time: 89.794797ms
This update:
Next update:
Revoked: No
Revoked certificates in CRL: 1200

Relevant server response headers

Date:
Last Modified:
Expires:

Server and network information

Server Software: Apache

Raw CRL response headers

Accept-Ranges: [bytes]
Cache-Control: [max-age=259200]
Content-Length: [50607]
Content-Type: [application/pkix-crl]
Date: [Wed, 24 May 2017 15:27:44 GMT]
Etag: ["c5af-550396afee180"]
Expires: [Sat, 27 May 2017 15:27:44 GMT]
Last-Modified: [Tue, 23 May 2017 23:33:42 GMT]
P3p: [CP="IDC DSP COR LAW CUR ADM DEV TAI PSA PSD IVA IVD HIS OUR SAM PUB LEG UNI COM NAV STA"]
Server: [Apache]
  • Content-Type in response is set to 'application/pkix-crl (RFC 5280, section 4.2.1.13)'
  • This CRL file is DER encoded
  • Issuer field is byte-for-byte equivalent with issuers subject
  • Response is already valid
  • Response is not expired
  • ThisUpdate is less than seven days old, CRLs must be updated and reissued at least every seven days (Mozilla Maintenance Policy section 3)
  • The NextUpdate field is not more than ten days beyond the value of the ThisUpdate field (Mozilla & Baseline Requirements)
  • Last-Modified header is not the same as ThisUpdate (RFC 5019, section 6.2)
  • NextUpdate is after the date in the Expires cache header
  • The Cache-Control max-age header does not outlive NextUpdate
  • ThisUpdate has a date before NextUpdate
  • Expires cache header is not the same as the NextUpdate field (RFC 5019 section 6.2)

Online Certificate Status Protocol (OCSP)

This OCSP response was cached at
http://ocsp.godaddy.com/ (GET)Good

OCSP response information

Source: Authority Information Access in Certificate
Location: http://ocsp.godaddy.com/ (GET)
Size: 1776 bytes (DER data)
Response time: 106.216314ms
Signature algorithm: SHA1WithRSA
Signature type: CA Deligated
Signed by: Go Daddy Validation Authority - G2
Issued by: Go Daddy Secure Certificate Authority - G2
Signing certificate validity: 2016-12-13 - 2017-12-13
Signing certificate algorithm: SHA256-RSA
Reported statuses: 1
This update:
Next update:
Produced at:
Status: Good

Relevant server response headers

Date:
Last Modified:
Expires:
Cache Control Max-age: 31h37m23s

Server and network information

Server Software: Apache

URL used for GET request

http://ocsp.godaddy.com/MEkwRzBFMEMwQTAJBgUrDgMCGgUABBS2CA1fbGt26xPkOKX4ZguoUjM0TgQUQMK9J47MNIMwojPX%2B2yz8LQsgM4CCHWftWw2dqUv

Raw OCSP request (PEM encoded)

-----BEGIN OCSP REQUEST-----
MEkwRzBFMEMwQTAJBgUrDgMCGgUABBS2CA1fbGt26xPkOKX4ZguoUjM0TgQUQMK9
J47MNIMwojPX+2yz8LQsgM4CCHWftWw2dqUv
-----END OCSP REQUEST-----

Raw OCSP response (PEM encoded)

-----BEGIN OCSP RESPONSE-----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-----END OCSP RESPONSE-----

Raw OCSP Signing Certificate (PEM encoded)

-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----

Raw OCSP response headers

Cache-Control: [max-age=113843, public, no-transform, must-revalidate]
Content-Length: [1776]
Content-Transfer-Encoding: [Binary]
Content-Type: [application/ocsp-response]
Date: [Wed, 24 May 2017 04:47:25 GMT]
Etag: ["9128bbc6d5c0fbc392d9728b026f46934de12073"]
Expires: [Thu, 25 May 2017 14:04:40 GMT]
Last-Modified: [Wed, 24 May 2017 02:04:40 GMT]
P3p: [CP="IDC DSP COR LAW CUR ADM DEV TAI PSA PSD IVA IVD HIS OUR SAM PUB LEG UNI COM NAV STA"]
Server: [Apache]
  • OCSP requests is smaller than 255 bytes
  • OCSP signing certificate is already valid
  • OCSP signing certificate is not expired
  • OCSP signing certificate does not expire before NextUpdate
  • OCSP signing certificate does contain the Extended Key Usage for OCSP Signing
  • OCSP signing certificate does contain the OCSP No Check extension
  • OCSP response is valid for at least 8 hours (Microsoft)
  • OCSP response is available at least 8 hours before the current period expires or at ½ the validity if valid for more than 16 hours (Microsoft)
  • Content-Type in response is set to 'application/ocsp-response'
  • Response is already valid
  • Response is not expired
  • ThisUpdate is less than four days old, OCSP information must be updated at least every four days (Mozilla & Baseline Requirements)
  • The NextUpdate field is not more than ten days beyond the value of the ThisUpdate field (Mozilla & Baseline Requirements)
  • Last-Modified header is the same as ThisUpdate (RFC 5019, section 6.2)
  • NextUpdate is after the date in the Expires cache header
  • The Cache-Control max-age header does not outlive NextUpdate
  • ThisUpdate has a date before NextUpdate
  • Expires cache header is the same as the NextUpdate field (RFC 5019 section 6.2)
This OCSP response was cached at
http://ocsp.godaddy.com/ (POST)Good

OCSP response information

Source: Authority Information Access in Certificate
Location: http://ocsp.godaddy.com/ (POST)
Size: 1776 bytes (DER data)
Response time: 109.000733ms
Signature algorithm: SHA1WithRSA
Signature type: CA Deligated
Signed by: Go Daddy Validation Authority - G2
Issued by: Go Daddy Secure Certificate Authority - G2
Signing certificate validity: 2016-12-13 - 2017-12-13
Signing certificate algorithm: SHA256-RSA
Reported statuses: 1
This update:
Next update:
Produced at:
Status: Good

Relevant server response headers

Date:
Last Modified:
Expires:
Cache Control Max-age: 31h35m23s

Server and network information

Server Software: Apache

Raw OCSP request (PEM encoded)

-----BEGIN OCSP REQUEST-----
MEkwRzBFMEMwQTAJBgUrDgMCGgUABBS2CA1fbGt26xPkOKX4ZguoUjM0TgQUQMK9
J47MNIMwojPX+2yz8LQsgM4CCHWftWw2dqUv
-----END OCSP REQUEST-----

Raw OCSP response (PEM encoded)

-----BEGIN OCSP RESPONSE-----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-----END OCSP RESPONSE-----

Raw OCSP Signing Certificate (PEM encoded)

-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----

Raw OCSP response headers

Cache-Control: [max-age=113723, public, no-transform, must-revalidate]
Content-Length: [1776]
Content-Transfer-Encoding: [Binary]
Content-Type: [application/ocsp-response]
Date: [Wed, 24 May 2017 04:49:31 GMT]
Etag: ["9128bbc6d5c0fbc392d9728b026f46934de12073"]
Expires: [Thu, 25 May 2017 14:04:40 GMT]
Last-Modified: [Wed, 24 May 2017 02:04:40 GMT]
P3p: [CP="IDC DSP COR LAW CUR ADM DEV TAI PSA PSD IVA IVD HIS OUR SAM PUB LEG UNI COM NAV STA"]
Server: [Apache]
  • OCSP signing certificate is already valid
  • OCSP signing certificate is not expired
  • OCSP signing certificate does not expire before NextUpdate
  • OCSP signing certificate does contain the Extended Key Usage for OCSP Signing
  • OCSP signing certificate does contain the OCSP No Check extension
  • OCSP response is valid for at least 8 hours (Microsoft)
  • OCSP response is available at least 8 hours before the current period expires or at ½ the validity if valid for more than 16 hours (Microsoft)
  • Content-Type in response is set to 'application/ocsp-response'
  • Response is already valid
  • Response is not expired
  • ThisUpdate is less than four days old, OCSP information must be updated at least every four days (Mozilla & Baseline Requirements)
  • The NextUpdate field is not more than ten days beyond the value of the ThisUpdate field (Mozilla & Baseline Requirements)
  • Last-Modified header is the same as ThisUpdate (RFC 5019, section 6.2)
  • NextUpdate is after the date in the Expires cache header
  • The Cache-Control max-age header does not outlive NextUpdate
  • ThisUpdate has a date before NextUpdate
  • Expires cache header is the same as the NextUpdate field (RFC 5019 section 6.2)

Go Daddy Secure Certificate Authority - G2 (CA Certificate)

Certificate details for Go Daddy Secure Certificate Authority - G2 (At position 1 in certificate chain)
Serial number:
hex: 7
int: 7
Issued by: Go Daddy Root Certificate Authority - G2
Public Key Algorithm: RSA
Not valid before:
Not valid after:
Organization: GoDaddy.com, Inc.
Organization unit: http://certs.godaddy.com/repository/
State / Province: Arizona
Locality: Scottsdale
Country: US
  • This certificate does not contain any links to an LDAP server
  • This certificate does not contain any internal server links
  • This certificate does not contain any links with an unknown format

This certificate contains no information about authoritative CRL(s) or OCSP servers

Check the revocation status for another website

Created by Paul van Brouwershaven
Revoked certificates can't and should not be trusted, these certificate will cause errors like "NET::ERR_CERT_REVOKED" in browsers.