SSL Certificate Validator — Chain & Expiry Checker
Paste a PEM certificate to instantly validate expiry, signature algorithm, key strength, SAN presence, and trust chain. Get a clear pass/warn/fail report for each check.
How to Use SSL Certificate Validator — Chain & Expiry Checker
How to Use the SSL Certificate Validator
Step 1: Paste Your PEM Certificate
Copy your certificate in PEM format — the block that starts with -----BEGIN CERTIFICATE----- and ends with -----END CERTIFICATE----- — and paste it into the input field.
To extract a certificate from a running server:
openssl s_client -connect example.com:443 -showcerts </dev/null 2>/dev/null | openssl x509
To view a certificate file:
openssl x509 -in cert.pem -text -noout
Step 2: Review Validation Checks
The tool runs six checks automatically:
- Certificate Expiry — Pass (>30 days), Warning (<30 days), Fail (<14 days or expired)
- Validity Period — Checks the notBefore date is not in the future
- Signature Algorithm — Flags deprecated SHA-1 and MD5; passes SHA-256 and higher
- Key Strength — RSA keys under 2048 bits are flagged as weak
- Subject Alternative Names — Warns if no SANs are present (required by modern browsers)
- Trust Chain — Warns for self-signed certificates
Step 3: Review Certificate Details
Below the checks, see full certificate metadata: subject, issuer, validity dates, key type, signature algorithm, SHA-256 and SHA-1 fingerprints, and all Subject Alternative Names.
Tips
- For leaf (end-entity) certificates, SANs should list all hostnames the cert covers including www and non-www variants
- Self-signed certs are flagged as warnings but are valid for internal use and development environments
- SHA-1 certificates have been deprecated since 2017 and are rejected by Chrome and Firefox
- RSA 2048-bit is the minimum accepted key size; migrate to 4096-bit or ECDSA P-256 for new issuances
Frequently Asked Questions
Most Viewed Tools
Screen Size Converter — Diagonal Dimension Tool
Calculate screen width and height from diagonal size and aspect ratio. Convert between inches and centimeters for displays, TVs, and monitors with instant dimension calculations.
Use Tool →DPI Calculator — Print Resolution Tool
Calculate DPI (dots per inch), image dimensions, and print sizes. Convert between pixels and physical dimensions for printing and displays.
Use Tool →TOTP Code Generator — 2FA Testing Tool
Generate time-based one-time passwords from a TOTP secret key. Enter your base32 secret, choose a period and digit length, and get the current and next codes with a live countdown timer. Useful for testing and debugging 2FA integrations.
Use Tool →JSONL Formatter — Line-by-Line Validator
Format, validate, and inspect JSON Lines (JSONL) and NDJSON files. Validates each line individually, reports parse errors by line number, outputs compact JSONL or a pretty-print preview, and lets you download the cleaned file.
Use Tool →JSON to Zod — Schema Generator
Generate Zod validation schema code from a JSON sample object. Infers z.string(), z.number(), z.boolean(), z.array(), z.object(), and z.null() types automatically. Handles nested objects, arrays of objects with optional field detection, and outputs copy-ready TypeScript with import and z.infer type alias.
Use Tool →Password Entropy Calculator — Crack Time Estimator
Calculate the information-theoretic bit entropy of any password or API key. Detects character set pools automatically, shows the total number of possible combinations, and estimates crack time across five attack scenarios from rate-limited web logins to GPU cracking clusters.
Use Tool →TLS Cipher Suite Checker — Strength Analyzer
Check TLS protocol version compatibility and cipher suite strength ratings against current best practices. Supports IANA and OpenSSL cipher names — rates each suite as Strong, Weak, or Deprecated and explains why.
Use Tool →Secret Scanner — API Key & Credential Detector
Scan pasted text, code, or config files for accidentally exposed API keys, tokens, passwords, and private keys. Detects 50+ secret types across AWS, GitHub, Stripe, OpenAI, and more — all client-side, nothing leaves your browser.
Use Tool →Related DevOps & Infrastructure Tools
GitHub Actions Validator — Workflow Syntax & CI/CD Security Audit
Validate GitHub Actions workflow YAML for syntax errors, missing required fields, deprecated commands, mutable action refs, outdated action versions, and broken job dependencies. Get per-job results with fix hints in real time.
Use Tool →HTTP Header Analyzer — Security & CORS Audit
Parse and analyze HTTP request or response headers. Identifies categories, explains each header, flags missing security headers, and detects duplicates or suspicious values — entirely in your browser.
Use Tool →SSL Certificate Decoder — Expiry & SAN Inspector
Decode X.509 SSL/TLS certificates and RSA private keys in your browser. View subject, issuer, SANs, validity dates, key type, serial number, and SHA-256/SHA-1 fingerprints. Optionally check if a certificate and private key match.
Use Tool →Systemd Service Generator — Scaffold, Harden, and Validate Unit Files
Fill in service parameters and generate a ready-to-install systemd unit file for Linux daemons
Use Tool →Dockerfile Linter — Optimize & Secure Your Container Builds
Lint Dockerfile instructions for best practices, security issues, and layer optimization. Flags unpinned base images, root user, ADD vs COPY, apt-get mistakes, shell-form CMD, and more — with fix guidance for each issue.
Use Tool →Kubernetes YAML Validator — K8s Manifest Schema & Security Audit
Validate Kubernetes YAML manifests for syntax errors and required field completeness. Checks Deployments, Services, Ingress, ConfigMaps, Secrets, PVCs, HPAs, CronJobs, and more — with per-document results and fix hints.
Use Tool →OpenTelemetry Span Builder — Construct, Validate, and Export OTel Spans
Configure span name and attributes and events and generate OpenTelemetry span setup code for popular SDKs
Use Tool →AWS ARN Parser & Validator — Deconstruct ARNs and Generate IAM Snippets
Paste an AWS ARN to extract and display account/region/service/resource components in a structured view
Use Tool →Share Your Feedback
Help us improve this tool by sharing your experience