https://boiteaoutilsinformatique.fr/en/tools/ssl-tls-certificate-checker/
BAOI tool · Security & network

SSL / TLS Certificate Checker

Check expiry, subject, issuer, SANs, SHA-256 fingerprint and certificate chain information for a public TLS endpoint.

The test runs only on request from the BAOI server to TCP port 443 of the public hostname you provide. Private and reserved addresses are blocked.

Use the tool

Interactive network check: BAOI connects only to TCP/443 of the resolved public address. Private/reserved destinations are blocked.

Practical guidance

Use the result with confidence

Recommended workflow

  1. Enter only the technical identifier required for checking an SSL/TLS certificate.
  2. Run the lookup and distinguish observed facts from interpretation.
  3. Cross-check warnings with configuration, logs or a second source before acting.

What to verify

  • Verify the hostnames in Subject Alternative Names, not only the historical Common Name.
  • Check validity dates, issuer and the complete certificate chain before trusting the result.
  • Certificate validity does not assess TLS protocol versions, cipher suites or application security.
FAQ

Questions about this tool

Which certificate names must I verify?

Check the Common Name only as a legacy hint; modern validation relies on Subject Alternative Names matching every hostname that clients actually use.

What dates and chain elements matter?

Verify notBefore/notAfter, issuer, intermediate certificates, key algorithm and the complete trusted chain.

Does a valid certificate guarantee that the service is secure?

No. It confirms identity and cryptographic validity only; protocol versions, cipher suites, application security and private-key protection still matter.

♡ 0