TLS/SSL check of 'revoked.badssl.com'

End-Entity certificate verification error

Certificat 'revoked.badssl.com' FAILED the verification

Intermediate certificate verification error

Certificat 'RapidSSL TLS DV RSA Mixed SHA256 2020 CA-1' FAILED the verification

Summary


Host:
revoked.badssl.com, 104.154.89.105, port 443


Protocols:
All good
 3 supported protocols: TLS 1.2, TLS 1.1, TLS 1.0


Certificate:
Failed
 Multiple certificate errors!

Protocol support



Protocol support:
TLS 1.3
No support
TLS 1.2
Supported
TLS 1.1
Supported
TLS 1.0
Supported
SSL 3.0
No support
SSL 2.0
No support

Verification:
TLS 1.2 is supported
 
It is noticable, that TLS 1.3 is not supported. Please consider disableing TLS 1.1, 1.0, SSL3 and SSL2 - as of March 2021, TLS 1.1 and 1.0 was oficially depricated, and as of June 2015 SSL3 and SSL2 was depricated. Use of either protocol is not recomended

Chain of certificates

3 of 3 - End-Entity
revoked.badssl.com


Certificat:
revoked.badssl.com

Issued by:
RapidSSL TLS DV RSA Mixed SHA256 2020 CA-1, DigiCert Inc, US

Valid:
From 26-10-2021 to 27-10-2022

Verification:
The certificate is expired (NotTimeValid)
 

SAN's:
revoked.badssl.com

Key:
RSA, 2048 bit
Signature algorithm:
sha256RSA

Serial:
0D2E67A298853B9A5452E3A285A4572F

PEM format:

2 of 3 - Intermediate
RapidSSL TLS DV RSA Mixed SHA256 2020 CA-1


Certificat:
RapidSSL TLS DV RSA Mixed SHA256 2020 CA-1, DigiCert Inc, US

Issued by:
DigiCert Global Root CA, DigiCert Inc, US

Valid:
From 16-07-2020 to 31-05-2023

Verification:
The certificate is expired (NotTimeValid)
 

Key:
RSA, 2048 bit
Signature algorithm:
sha256RSA

Serial:
07983603ADE39908219CA00C27BC8A6C

PEM format:

1 of 3 - Root certificate
DigiCert Global Root CA


Certificat:
DigiCert Global Root CA, DigiCert Inc, US

Issued by:
DigiCert Global Root CA, DigiCert Inc, US

Valid:
From 09-11-2006 to 09-11-2031

Verification:
Certificate is verified okay

Key:
RSA, 2048 bit
Signature algorithm:
sha1RSA

Serial:
083BE056904246B1A1756AC95991C74A

PEM format:

Root Store trust


Root Certificat:
DigiCert Global Root CA
Issued by:
DigiCert

Root Store trust:
The root certificte is trustet by ALL major trusted root certificate stores

Microsoft:
Root Certificate is fully trusted by Microsoft (Windows)

Apple:
Root Certificate is fully is trusted by Apple (iOS, iPadOS, macOS)

Android:
Root Certificate is fully is trusted by Android

API

You may perform this lookup using the API and get the results as easy-to-parse JSON data.

Read more on the API at https://iamroot.tech/about/api (regarding authentication and rate limits, among other things), or give it a go right away using the 'try it' button.

 
GET
https://iamroot.tech/ssl-certificate-check/api/?host=https%3a%2f%2frevoked.badssl.com%2f copy try it
 

Log

091+091
  • Host 'revoked.badssl.com' resolved in 90ms
091+000
  • Check protocols
092+000
  • Start SSL 2.0 protocol check, revoked.badssl.com, port 443
092+000
  • Start TLS 1.2 protocol check, revoked.badssl.com, port 443
092+000
  • Start TLS 1.3 protocol check, revoked.badssl.com, port 443
092+000
  • Start TLS 1.1 protocol check, revoked.badssl.com, port 443
092+000
  • Start SSL 3.0 protocol check, revoked.badssl.com, port 443
092+000
  • Start TLS 1.0 protocol check, revoked.badssl.com, port 443
122+031
  • Protocol check of SSL 2.0 done in 30ms - failed
    Unable to authenticate connection using SSL 2.0
122+030
  • Protocol check of SSL 3.0 done in 30ms - failed
    Unable to authenticate connection using SSL 3.0
152+061
  • Protocol check of TLS 1.3 done in 60ms - failed
    Unable to authenticate connection using TLS 1.3
186+094
  • Protocol check of TLS 1.1 done in 93ms - all good
186+094
  • Protocol check of TLS 1.0 done in 93ms - all good
186+094
  • Protocol check of TLS 1.2 done in 94ms - all good
186+064
  • TLS 1.2 is supported
    It is noticable, that TLS 1.3 is not supported. Please consider disableing TLS 1.1, 1.0, SSL3 and SSL2 - as of March 2021, TLS 1.1 and 1.0 was oficially depricated, and as of June 2015 SSL3 and SSL2 was depricated. Use of either protocol is not recomended
186+000
  • Done
186+000
  • Check certificate
186+000
  • Load and verify chain of certificates
791+605
  • Full chain of certificates has been loaded and verified in 605ms.
791+000
  • ERREnd-Entity certificate verification error
    Certificat 'revoked.badssl.com' FAILED the verification
791+000
  • Host 'revoked.badssl.com' is matching Subject/SAN 'revoked.badssl.com' of certificate. All good!
791+000
  • ERRIntermediate certificate verification error
    Certificat 'RapidSSL TLS DV RSA Mixed SHA256 2020 CA-1' FAILED the verification
791+000
  • Root certificate verification success
    Certificat 'DigiCert Global Root CA' SUCCEDED the verification.
791+000
  • Check root store status of root certificate
793+001
  • Trustet by all major trusted root certificate stores
    The root certificte is trustet by ALL major trusted root certificate stores
793+000
  • Done
793+000
  • Done
793+000
  • Done