Guest session
Check Detail

gmail.com · SSL

Passed Grade A
100.0%
Hostname gmail.com
Check name SSL
last run 28/09/2026 23:47
Result
Incomplete Grade B 75.6%

Result Detail

SSL
Check name Status Value
certificate chain is complete ✅ Passed 4
root CA is trusted ✅ Passed Trusted
cert valid for ✅ Passed 66
chain certs are valid until ✅ Passed 03.12.2026
CN matches Domainname ✅ Passed gmail.com
certificate subject ✅ Passed CN=gmail.com
certificate issuer ✅ Passed C=US, O=Google Trust Services, CN=WE2
signature algorithm ✅ Passed ecdsa-with-SHA256
TLS protocol ✅ Passed TLSv1.3 TLS_AES_256_GCM_SHA384
Subject Alternative Names ✅ Passed gmail.com, *.gmail.com
Public Key ✅ Passed EC 256
Certificate chain
# Common name Issuer Valid until CA
0 gmail.com C=US, O=Google Trust Services, CN=WE2 03.12.2026 20:23:24 No
1 gmail.com C=US, O=Google Trust Services, CN=WE2 03.12.2026 20:23:24 No
2 WE2 C=US, O=Google Trust Services LLC, CN=GTS Root R4 20.02.2029 15:00:00 Yes
3 GTS Root R4 C=BE, O=GlobalSign nv-sa, OU=Root CA, CN=GlobalSign Root CA 28.01.2028 01:00:42 Yes
TLS details
Negotiated protocol TLSv1.3
Cipher suite TLS_AES_256_GCM_SHA384 (256 bit)
Cipher version TLSv1.3
Perfect Forward Secrecy Attention
Earliest chain expiry 03.12.2026 20:23
Fingerprints
SHA-256 A3:56:D5:93:6A:FA:E1:ED:7B:D6:9D:51:D7:BC:79:C4:A8:A0:87:2B:4F:C7:81:77:9E:75:6E:9E:02:77:C5:D9
SHA-1 B5:09:98:D4:4D:35:FA:78:E2:B2:F1:0C:F7:0F:9F:58:98:69:F5:AA
Revocation
OCSP URLs
—
CRL URLs
Full Name: URI:http://c.pki.goog/we2/yK5nPhtHKQs.crl
Issuer URLs (AIA)
http://i.pki.goog/we2.crt
OCSP Must-Staple No
Trust evaluation

Attempted: Yes

Trusted: Yes

OpenSSL diagnostic command
openssl s_client -connect gmail.com:443 -servername gmail.com