# SSL Certificate Examples

Worked SSL lookup examples: valid certificates, certificates with problems (expired, self-signed, untrusted root, wrong host) and failed connections.

Source: https://docs.deepinfo.com/reference/lookup/ssl/examples/

Last updated: 2026-09-24

---
`GET https://api.deepinfo.com/v1/lookup/ssl` · endpoint: [SSL](/reference/lookup/ssl/)

Worked examples for the SSL lookup: the certificate a host serves right now. First valid certificates (on a domain, on an IP address, on another port, with an elliptic-curve key), then certificates with problems, then connections that fail.

The problem certificates come from a public test site that serves broken certificates on purpose. Every example is a real response from September 24, 2026.

To judge a certificate, read `parsed.signature.valid` and `parsed.signature.invalid_reason` (why it is not valid), `parsed.has_expired` and `parsed.signature.self_signed`. A connection problem is not an HTTP error: the API returns 200 with the reason in `connection_status` and `parsed` set to `null`.

## Parameters Without an Example

As of September 24, 2026, these parameters have no worked example.

| Parameter | Why |
|---|---|
| `proxy` | Needs a proxy server of your own, with its credentials; the lookup then connects through it. |

Each example links to its own page with the request and the response.

## Valid Certificates

| Example | Param | Value |
|---|---|---|
| [Certificate of a Domain](/reference/lookup/ssl/examples/domain/) | `target` | `deepinfo.com` |
| [Certificate Served on an IP Address](/reference/lookup/ssl/examples/ip-address/) | `target` | `1.1.1.1` |
| [Mail Server on Port 465](/reference/lookup/ssl/examples/port-465/) | `target`<br>`port` | `smtp.gmail.com`<br>`465` |
| [An Elliptic Curve (ECDSA) Key](/reference/lookup/ssl/examples/ecdsa-key/) | `target` | `ecc256.badssl.com` |

## Certificate Problems

| Example | Param | Value |
|---|---|---|
| [An Expired Certificate](/reference/lookup/ssl/examples/expired/) | `target` | `expired.badssl.com` |
| [A Self-Signed Certificate](/reference/lookup/ssl/examples/self-signed/) | `target` | `self-signed.badssl.com` |
| [An Untrusted Root](/reference/lookup/ssl/examples/untrusted-root/) | `target` | `untrusted-root.badssl.com` |
| [A Certificate for Another Host Name](/reference/lookup/ssl/examples/wrong-host/) | `target` | `wrong.host.badssl.com` |

## Connection Problems

| Example | Param | Value |
|---|---|---|
| [A Host Name That Does Not Resolve](/reference/lookup/ssl/examples/not-resolved/) | `target` | `no-such-host.example.com` |
| [A Port Without TLS](/reference/lookup/ssl/examples/no-tls-on-port/) | `target`<br>`port` | `1.1.1.1`<br>`80` |
