# An Elliptic Curve (ECDSA) Key

The certificate of ecc256.badssl.com: an ECDSA P-256 key, shown in subject_key_info.

Source: https://docs.deepinfo.com/reference/lookup/ssl/examples/ecdsa-key/

Last updated: 2026-09-24

---
`GET https://api.deepinfo.com/v1/lookup/ssl?target=ecc256.badssl.com`

The certificate of ecc256.badssl.com: an ECDSA P-256 key, shown in subject_key_info.

Example 4 of 4 in **Valid Certificates** · [SSL Certificate Examples](/reference/lookup/ssl/examples/) · endpoint: [SSL](/reference/lookup/ssl/)

Tags: `param` `target` · `value` `ecc256.badssl.com`

Asks for the certificate of `ecc256.badssl.com`, which serves an elliptic-curve key.

`parsed.subject_key_info.key_algorithm.name` is `ECDSA` and `ecdsa_public_key.length` is `256`. The certificate itself is a valid Let's Encrypt certificate for `*.badssl.com` and `badssl.com`, signed with `sha384`. Compare the RSA 2048-bit keys of the badssl.com problem certificates.

## Request

| Parameter | In | Value |
|---|---|---|
| `target` | query | `ecc256.badssl.com` |

```bash
curl 'https://api.deepinfo.com/v1/lookup/ssl?target=ecc256.badssl.com' \
  -H 'apikey: YOUR_API_KEY' \
  -H 'Accept: application/json'
```

## Response

### 200 · OK

`Content-Type: application/json` · `ratelimit-limit: 100` · `ratelimit-remaining: 96` · `ratelimit-reset: 5` · `x-ratelimit-limit-minute: 100` · `x-ratelimit-remaining-minute: 96` · `deepinfo-request-id: 5f0c6a8e-1b2d-4c3e-9f4a-7b8c9d0e1f2a`

```json
{
  "target": "ecc256.badssl.com",
  "port": 443,
  "check_date": "2026-09-24T07:51:56Z",
  "connection_status": "success",
  "parsed": {
    "version": {
      "name": "v3",
      "value": "2"
    },
    "fingerprint_sha1": "3960e4fe417de0b0565848c8c6364583594ddfd4",
    "fingerprint_sha256": "14e6080b43ceb3acbc42a1a02c53b017fcb1d6fd6a610c53c3f3fe6dfdf89743",
    "fingerprint_md5": "62d8716f30ba3d3156fd338ab870a51b",
    "subject": {
      "dn": "CN=*.badssl.com",
      "common_name": "*.badssl.com",
      "country_name": null,
      "locality": null,
      "organization": null,
      "organizational_unit": null,
      "state": null
    },
    "signature": {
      "value": "MGYCMQDKTk6eZP4YDH8HFsN0k0Q6oFfrSL7EkWRK81TDn6l4UUNPR3/Wbj1bRHkiNPo6csQCMQCcrrhdj2nONakj1nclrXNkRyJGInFn+zPxaRT0qTU2jOvbZKrUU5F71nQu6PXSW3A=",
      "self_signed": false,
      "valid": true,
      "valid_chain": true,
      "invalid_reason": null,
      "signature_algorithm": {
        "oid": "1.2.840.10045.4.3.3",
        "name": "sha384"
      }
    },
    "validity": {
      "start": "2026-07-28T20:02:52Z",
      "length": 7775999,
      "end": "2026-10-26T20:02:51Z"
    },
    "issuer": {
      "dn": "CN=YE1,O=Let's Encrypt,C=US",
      "common_name": "YE1",
      "country_name": "US",
      "locality": null,
      "organization": "Let's Encrypt",
      "organizational_unit": null,
      "state": null
    },
    "extensions": {
      "key_usage": {
        "digital_signature": true,
        "content_commitment": false,
        "key_agreement": false,
        "data_encipherment": false,
        "key_encipherment": false,
        "key_cert_sign": false,
        "crl_sign": false
      },
      "extended_key_usage": {
        "server_auth": true
      },
      "basic_constraints": {
        "is_ca": false
      },
      "subject_key_identifier": {
        "digest": "3kLeMFyadrKLQdFjSYziKSiyKPs="
      },
      "authority_key_identifier": {
        "key_identifier": "uyDKRwv+1+Wc+Y8JKqOMN0WxvNg="
      },
      "authority_info_access": {
        "caissuers_urls": "http://ye1.i.lencr.org/"
      },
      "subject_alt_name": {
        "dns_names": [
          "*.badssl.com",
          "badssl.com"
        ]
      },
      "certificate_policies": [
        "2.23.140.1.2.1"
      ],
      "crl_distribution_points": [
        "http://ye1.c.lencr.org/36.crl"
      ],
      "signed_certificate_timestamp": [
        {
          "log_id": "yKPEf8ezrbk1awE/anoSbeM6TkOlxkb5l605dZkdz5o=",
          "timestamp": 1785272482,
          "version": 0,
          "signature": "MEUCIGXNa1E8XDAs2f477f7eK+rcUfzo5t52nFT2trvYMP/aAiEArx+iZgBYb0XIUqAXVKUn26/zrqi2s7a/xjuYe6Bnleg="
        },
        {
          "log_id": "bP5QGUOoXqkWvFLRM+TcyR7xQRx9JYQg0XOAnhgY6zo=",
          "timestamp": 1785272482,
          "version": 0,
          "signature": "MEUCIE6TNntnQMZXV43dhUJ/Tte+kefV/6vCYCcTRnpaVzbAAiEApOR7ZAztYVnoQPW1rB9lo2d45LKz4JFW4Co8Ag4Xm1Q="
        }
      ],
      "other_extensions": []
    },
    "serial_number": "538860453420351530069832929302921248548771",
    "tbs_fingerprint": "6c24fe6ff71356dc8f7c6b1335da3db850d63ab209b0bcd7fdd85698a957277c",
    "subject_key_info": {
      "fingerprint": {
        "hash_algorithm_name": "sha384",
        "value": "50c02b42e1810e19fe1502d5559bcdd86f87c724db33fad5582bc6d726729ee4246563ae654e154b6d3de9f9f89d774a"
      },
      "key_algorithm": {
        "name": "ECDSA"
      },
      "ecdsa_public_key": {
        "length": "256",
        "x": "73039427551890726804792398547645622380882546439293940039712744765595942078199",
        "y": "78017764111284068192654178408294882466802146314080124716162707910654176212319"
      }
    },
    "has_expired": false,
    "fqdn_list": [
      "badssl.com"
    ]
  },
  "certificate": "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",
  "parse_errors": []
}
```

## Related Examples

- [Mail Server on Port 465](/reference/lookup/ssl/examples/port-465/)
- [Certificate Served on an IP Address](/reference/lookup/ssl/examples/ip-address/)
- [Certificate of a Domain](/reference/lookup/ssl/examples/domain/)
- [An Expired Certificate](/reference/lookup/ssl/examples/expired/)
- [A Self-Signed Certificate](/reference/lookup/ssl/examples/self-signed/)
- [An Untrusted Root](/reference/lookup/ssl/examples/untrusted-root/)
