Check Detail
heise.de · SSL
Passed
Grade A
100.0%
Result Detail
SSL| Check name | Status | Value |
|---|---|---|
| certificate chain is complete | ✅ Passed | 3 |
| root CA is trusted | ✅ Passed | Trusted |
| cert valid for | ✅ Passed | 85 |
| chain certs are valid until | ✅ Passed | 03.02.2026 |
| CN matches Domainname | ✅ Passed | heise.de |
| certificate subject | ✅ Passed | CN=heise.de |
| certificate issuer | ✅ Passed | C=US, O=Let's Encrypt, CN=R12 |
| signature algorithm | ✅ Passed | RSA-SHA256 |
| TLS protocol | ✅ Passed | TLSv1.2 ECDHE-RSA-AES128-GCM-SHA256 |
| Subject Alternative Names | ✅ Passed | heise.de |
| Public Key | ✅ Passed | RSA 2048 |
Certificate chain
| # | Common name | Issuer | Valid until | CA |
|---|---|---|---|---|
| 0 | heise.de | C=US, O=Let's Encrypt, CN=R12 | 03.02.2026 06:09:46 | No |
| 1 | heise.de | C=US, O=Let's Encrypt, CN=R12 | 03.02.2026 06:09:46 | No |
| 2 | R12 | C=US, O=Internet Security Research Group, CN=ISRG Root X1 | 13.03.2027 00:59:59 | Yes |
TLS details
| Negotiated protocol | TLSv1.2 |
|---|---|
| Cipher suite | ECDHE-RSA-AES128-GCM-SHA256 (128 bit) |
| Cipher version | TLSv1.2 |
| Perfect Forward Secrecy | OK |
| Earliest chain expiry | 03.02.2026 06:09 |
Fingerprints
| SHA-256 | 62:9F:37:70:72:1B:17:2E:9B:37:6F:2B:2A:CF:22:56:5A:65:4C:60:6D:C4:A3:ED:EC:12:71:96:31:AE:72:49 |
|---|---|
| SHA-1 | A3:27:E4:38:01:BE:11:FD:EC:46:7C:0A:F5:D7:82:08:4C:E8:79:3A |
Revocation
OCSP URLs
—
CRL URLs
Full Name:
URI:http://r12.c.lencr.org/85.crl
Issuer URLs (AIA)
http://r12.i.lencr.org/
OCSP Must-Staple
No
Trust evaluation
Attempted: Yes
Trusted: Yes
OpenSSL diagnostic command
openssl s_client -connect heise.de:443 -servername heise.de