Check Detail
heise.de · SSL
Passed
Grade A
100.0%
Result Detail
SSL| Check name | Status | Value |
|---|---|---|
| certificate chain is complete | ✅ Passed | 3 |
| root CA is trusted | ✅ Passed | Trusted |
| cert valid for | ✅ Passed | 33 |
| chain certs are valid until | ✅ Passed | 04.12.2025 |
| CN matches Domainname | ✅ Passed | heise.de |
| certificate subject | ✅ Passed | CN=heise.de |
| certificate issuer | ✅ Passed | C=US, O=Let's Encrypt, CN=R12 |
| signature algorithm | ✅ Passed | RSA-SHA256 |
| TLS protocol | ✅ Passed | TLSv1.2 ECDHE-RSA-AES128-GCM-SHA256 |
| Subject Alternative Names | ✅ Passed | heise.de |
| Public Key | ✅ Passed | RSA 2048 |
Certificate chain
| # | Common name | Issuer | Valid until | CA |
|---|---|---|---|---|
| 0 | heise.de | C=US, O=Let's Encrypt, CN=R12 | 04.12.2025 13:33:01 | No |
| 1 | heise.de | C=US, O=Let's Encrypt, CN=R12 | 04.12.2025 13:33:01 | No |
| 2 | R12 | C=US, O=Internet Security Research Group, CN=ISRG Root X1 | 13.03.2027 00:59:59 | Yes |
TLS details
| Negotiated protocol | TLSv1.2 |
|---|---|
| Cipher suite | ECDHE-RSA-AES128-GCM-SHA256 (128 bit) |
| Cipher version | TLSv1.2 |
| Perfect Forward Secrecy | OK |
| Earliest chain expiry | 04.12.2025 13:33 |
Fingerprints
| SHA-256 | 4D:A7:86:EB:3C:E4:F0:B9:F8:25:58:1E:42:B0:6B:8E:4C:FD:87:14:67:09:32:B4:04:28:65:A4:72:35:11:86 |
|---|---|
| SHA-1 | 3F:E7:FD:E1:45:63:A9:B6:F1:37:B6:17:45:1E:05:68:F1:C3:0E:25 |
Revocation
OCSP URLs
—
CRL URLs
Full Name:
URI:http://r12.c.lencr.org/1.crl
Issuer URLs (AIA)
http://r12.i.lencr.org/
OCSP Must-Staple
No
Trust evaluation
Attempted: Yes
Trusted: Yes
OpenSSL diagnostic command
openssl s_client -connect heise.de:443 -servername heise.de