Skip to content

Instantly share code, notes, and snippets.

@glasserc
Created January 11, 2015 02:27
Show Gist options
  • Save glasserc/ab2427c1e1c201ebee30 to your computer and use it in GitHub Desktop.
Save glasserc/ab2427c1e1c201ebee30 to your computer and use it in GitHub Desktop.
trying to match TLS ciphers
ethan@thunder:~/Jobs/SumAll/haskell-twitter-worker:upgrade-aes$ openssl s_client -msg -connect kinesis.us-east-1.amazonaws.com:443
CONNECTED(00000003)
>>> TLS 1.2 Handshake [length 012c], ClientHello
01 00 01 28 03 03 e7 19 0d 06 97 c4 cb bb 7e f0
d7 ed c8 ed 59 ea 28 db f9 4a 4e bd 35 7d 0b 62
fc b7 d1 a9 b7 bc 00 00 92 c0 30 c0 2c c0 28 c0
24 c0 14 c0 0a 00 a3 00 9f 00 6b 00 6a 00 39 00
38 00 88 00 87 c0 32 c0 2e c0 2a c0 26 c0 0f c0
05 00 9d 00 3d 00 35 00 84 c0 12 c0 08 00 16 00
13 c0 0d c0 03 00 0a c0 2f c0 2b c0 27 c0 23 c0
13 c0 09 00 a2 00 9e 00 67 00 40 00 33 00 32 00
9a 00 99 00 45 00 44 c0 31 c0 2d c0 29 c0 25 c0
0e c0 04 00 9c 00 3c 00 2f 00 96 00 41 c0 11 c0
07 c0 0c c0 02 00 05 00 04 00 15 00 12 00 09 00
14 00 11 00 08 00 06 00 03 00 ff 01 00 00 6d 00
0b 00 04 03 00 01 02 00 0a 00 34 00 32 00 0e 00
0d 00 19 00 0b 00 0c 00 18 00 09 00 0a 00 16 00
17 00 08 00 06 00 07 00 14 00 15 00 04 00 05 00
12 00 13 00 01 00 02 00 03 00 0f 00 10 00 11 00
23 00 00 00 0d 00 20 00 1e 06 01 06 02 06 03 05
01 05 02 05 03 04 01 04 02 04 03 03 01 03 02 03
03 02 01 02 02 02 03 00 0f 00 01 01
<<< TLS 1.2 Handshake [length 0051], ServerHello
02 00 00 4d 03 03 ed 69 03 a1 fc ed e5 e8 d4 78
23 71 91 83 60 2c 02 d3 c6 c7 ba 5b 6b 9b 03 f0
06 73 0a 51 18 ae 20 97 7a 7a 12 14 13 e4 41 02
19 7d 96 8f ba 82 9b 20 d3 d0 a7 9f 19 95 21 74
94 e4 b1 89 ab 02 56 00 2f 00 00 05 ff 01 00 01
00
<<< TLS 1.2 Handshake [length 0b34], Certificate
0b 00 0b 30 00 0b 2d 00 05 37 30 82 05 33 30 82
04 1b a0 03 02 01 02 02 10 46 d3 4e b2 31 a0 2f
11 1b 72 51 ff 47 e8 19 a7 30 0d 06 09 2a 86 48
86 f7 0d 01 01 05 05 00 30 81 b5 31 0b 30 09 06
03 55 04 06 13 02 55 53 31 17 30 15 06 03 55 04
0a 13 0e 56 65 72 69 53 69 67 6e 2c 20 49 6e 63
2e 31 1f 30 1d 06 03 55 04 0b 13 16 56 65 72 69
53 69 67 6e 20 54 72 75 73 74 20 4e 65 74 77 6f
72 6b 31 3b 30 39 06 03 55 04 0b 13 32 54 65 72
6d 73 20 6f 66 20 75 73 65 20 61 74 20 68 74 74
70 73 3a 2f 2f 77 77 77 2e 76 65 72 69 73 69 67
6e 2e 63 6f 6d 2f 72 70 61 20 28 63 29 31 30 31
2f 30 2d 06 03 55 04 03 13 26 56 65 72 69 53 69
67 6e 20 43 6c 61 73 73 20 33 20 53 65 63 75 72
65 20 53 65 72 76 65 72 20 43 41 20 2d 20 47 33
30 1e 17 0d 31 34 31 30 31 38 30 30 30 30 30 30
5a 17 0d 31 35 31 30 31 37 32 33 35 39 35 39 5a
30 79 31 0b 30 09 06 03 55 04 06 13 02 55 53 31
13 30 11 06 03 55 04 08 13 0a 57 61 73 68 69 6e
67 74 6f 6e 31 10 30 0e 06 03 55 04 07 14 07 53
65 61 74 74 6c 65 31 19 30 17 06 03 55 04 0a 14
10 41 6d 61 7a 6f 6e 2e 63 6f 6d 2c 20 49 6e 63
2e 31 28 30 26 06 03 55 04 03 14 1f 6b 69 6e 65
73 69 73 2e 75 73 2d 65 61 73 74 2d 31 2e 61 6d
61 7a 6f 6e 61 77 73 2e 63 6f 6d 30 82 01 22 30
0d 06 09 2a 86 48 86 f7 0d 01 01 01 05 00 03 82
01 0f 00 30 82 01 0a 02 82 01 01 00 b2 53 d6 b3
fe 16 13 94 5f a1 10 33 5f 1d f9 46 22 13 8e 47
96 0e a0 3e a7 d6 9d 82 2e 95 7b f6 d7 e1 18 8a
ab ff ac e2 85 b2 c7 5b e0 f4 ea 96 76 02 b1 df
42 03 72 34 ce 8e 2f ed 58 5d f6 8a 61 be bd 18
a9 bf 88 63 45 a2 ff 02 ad 3e 34 ec 18 a3 0f 79
41 5a 77 c6 04 1b 85 a6 69 13 1c aa 89 b3 f5 8a
2c 96 de aa ca 79 73 db c1 9a ff 37 5c 31 e4 1c
bc eb 99 26 86 6c 2d e4 49 e6 10 7f d0 98 d3 92
ad 16 a9 be b1 27 fd 5d c2 2c 47 5c 6f d8 93 c3
9e 0b 31 0f 88 a8 1a ef fd 20 f6 5c 29 42 7e 27
ea d8 6b e0 61 6e 75 50 c9 52 9b f7 c4 b9 91 5c
91 d2 18 3d 25 2d 4c 78 19 1d e5 5d 59 ad 3b 60
3b 60 58 6a e3 ff 8a 4b 34 4a cd 53 9b 17 5d 2d
63 04 b9 4e 4d 32 ec f7 4f 53 cc 4c b8 86 18 b0
b4 9a 62 e3 07 d6 93 48 82 00 90 41 de 7d da 0d
35 dd d0 f4 f3 5d c7 46 ae b8 89 13 02 03 01 00
01 a3 82 01 78 30 82 01 74 30 2a 06 03 55 1d 11
04 23 30 21 82 1f 6b 69 6e 65 73 69 73 2e 75 73
2d 65 61 73 74 2d 31 2e 61 6d 61 7a 6f 6e 61 77
73 2e 63 6f 6d 30 09 06 03 55 1d 13 04 02 30 00
30 0e 06 03 55 1d 0f 01 01 ff 04 04 03 02 05 a0
30 1d 06 03 55 1d 25 04 16 30 14 06 08 2b 06 01
05 05 07 03 01 06 08 2b 06 01 05 05 07 03 02 30
65 06 03 55 1d 20 04 5e 30 5c 30 5a 06 0a 60 86
48 01 86 f8 45 01 07 36 30 4c 30 23 06 08 2b 06
01 05 05 07 02 01 16 17 68 74 74 70 73 3a 2f 2f
64 2e 73 79 6d 63 62 2e 63 6f 6d 2f 63 70 73 30
25 06 08 2b 06 01 05 05 07 02 02 30 19 1a 17 68
74 74 70 73 3a 2f 2f 64 2e 73 79 6d 63 62 2e 63
6f 6d 2f 72 70 61 30 1f 06 03 55 1d 23 04 18 30
16 80 14 0d 44 5c 16 53 44 c1 82 7e 1d 20 ab 25
f4 01 63 d8 be 79 a5 30 2b 06 03 55 1d 1f 04 24
30 22 30 20 a0 1e a0 1c 86 1a 68 74 74 70 3a 2f
2f 73 64 2e 73 79 6d 63 62 2e 63 6f 6d 2f 73 64
2e 63 72 6c 30 57 06 08 2b 06 01 05 05 07 01 01
04 4b 30 49 30 1f 06 08 2b 06 01 05 05 07 30 01
86 13 68 74 74 70 3a 2f 2f 73 64 2e 73 79 6d 63
64 2e 63 6f 6d 30 26 06 08 2b 06 01 05 05 07 30
02 86 1a 68 74 74 70 3a 2f 2f 73 64 2e 73 79 6d
63 62 2e 63 6f 6d 2f 73 64 2e 63 72 74 30 0d 06
09 2a 86 48 86 f7 0d 01 01 05 05 00 03 82 01 01
00 68 36 b8 54 01 cc d6 4f 63 26 0a 33 13 5b 5c
27 16 30 7c cb 00 72 e9 29 bd 9b 0f 9f 9e ab ad
d9 b4 68 a4 72 bc 43 9f 21 98 b1 a7 69 d5 f7 85
0e ce 70 9a 94 40 a4 a3 56 96 17 6f c1 21 40 dc
42 81 85 ab b3 a8 6d af d1 a2 83 1a d7 04 eb d1
a1 34 d4 58 3f 4b 7b f9 fe a6 e3 d2 c2 40 22 5f
44 39 13 3c b3 a7 c2 90 cd 75 b4 1a 03 13 1d ab
8e 54 c4 ed 9b 44 42 c4 71 44 fe 18 53 57 bc 01
1a 53 e0 41 0c 4a 16 b1 dd 60 47 c9 17 f5 a3 be
06 bc 28 f9 fe 19 9e 98 cd 47 7e 3a 48 fb 22 d0
31 92 1f d3 4e 4a bd 1a 40 fd 87 37 78 8d c8 41
44 59 1c b5 2a d7 95 98 d1 29 ff 80 80 9b 94 a4
1f 76 69 b7 da f4 48 16 0f 72 d5 a4 af 83 4a 5c
e9 28 27 dd f6 57 11 e2 b7 0c 58 78 f4 c8 52 8b
ad bb d8 f6 50 43 7c 97 e5 b4 b5 9b c8 05 94 02
db d9 8d c7 38 33 85 72 b1 6d 46 3e ab bc 74 41
b7 00 05 f0 30 82 05 ec 30 82 04 d4 a0 03 02 01
02 02 10 6e cc 7a a5 a7 03 20 09 b8 ce bc f4 e9
52 d4 91 30 0d 06 09 2a 86 48 86 f7 0d 01 01 05
05 00 30 81 ca 31 0b 30 09 06 03 55 04 06 13 02
55 53 31 17 30 15 06 03 55 04 0a 13 0e 56 65 72
69 53 69 67 6e 2c 20 49 6e 63 2e 31 1f 30 1d 06
03 55 04 0b 13 16 56 65 72 69 53 69 67 6e 20 54
72 75 73 74 20 4e 65 74 77 6f 72 6b 31 3a 30 38
06 03 55 04 0b 13 31 28 63 29 20 32 30 30 36 20
56 65 72 69 53 69 67 6e 2c 20 49 6e 63 2e 20 2d
20 46 6f 72 20 61 75 74 68 6f 72 69 7a 65 64 20
75 73 65 20 6f 6e 6c 79 31 45 30 43 06 03 55 04
03 13 3c 56 65 72 69 53 69 67 6e 20 43 6c 61 73
73 20 33 20 50 75 62 6c 69 63 20 50 72 69 6d 61
72 79 20 43 65 72 74 69 66 69 63 61 74 69 6f 6e
20 41 75 74 68 6f 72 69 74 79 20 2d 20 47 35 30
1e 17 0d 31 30 30 32 30 38 30 30 30 30 30 30 5a
17 0d 32 30 30 32 30 37 32 33 35 39 35 39 5a 30
81 b5 31 0b 30 09 06 03 55 04 06 13 02 55 53 31
17 30 15 06 03 55 04 0a 13 0e 56 65 72 69 53 69
67 6e 2c 20 49 6e 63 2e 31 1f 30 1d 06 03 55 04
0b 13 16 56 65 72 69 53 69 67 6e 20 54 72 75 73
74 20 4e 65 74 77 6f 72 6b 31 3b 30 39 06 03 55
04 0b 13 32 54 65 72 6d 73 20 6f 66 20 75 73 65
20 61 74 20 68 74 74 70 73 3a 2f 2f 77 77 77 2e
76 65 72 69 73 69 67 6e 2e 63 6f 6d 2f 72 70 61
20 28 63 29 31 30 31 2f 30 2d 06 03 55 04 03 13
26 56 65 72 69 53 69 67 6e 20 43 6c 61 73 73 20
33 20 53 65 63 75 72 65 20 53 65 72 76 65 72 20
43 41 20 2d 20 47 33 30 82 01 22 30 0d 06 09 2a
86 48 86 f7 0d 01 01 01 05 00 03 82 01 0f 00 30
82 01 0a 02 82 01 01 00 b1 87 84 1f c2 0c 45 f5
bc ab 25 97 a7 ad a2 3e 9c ba f6 c1 39 b8 8b ca
c2 ac 56 c6 e5 bb 65 8e 44 4f 4d ce 6f ed 09 4a
d4 af 4e 10 9c 68 8b 2e 95 7b 89 9b 13 ca e2 34
34 c1 f3 5b f3 49 7b 62 83 48 81 74 d1 88 78 6c
02 53 f9 bc 7f 43 26 57 58 33 83 3b 33 0a 17 b0
d0 4e 91 24 ad 86 7d 64 12 dc 74 4a 34 a1 1d 0a
ea 96 1d 0b 15 fc a3 4b 3b ce 63 88 d0 f8 2d 0c
94 86 10 ca b6 9a 3d ca eb 37 9c 00 48 35 86 29
50 78 e8 45 63 cd 19 41 4f f5 95 ec 7b 98 d4 c4
71 b3 50 be 28 b3 8f a0 b9 53 9c f5 ca 2c 23 a9
fd 14 06 e8 18 b4 9a e8 3c 6e 81 fd e4 cd 35 36
b3 51 d3 69 ec 12 ba 56 6e 6f 9b 57 c5 8b 14 e7
0e c7 9c ed 4a 54 6a c9 4d c5 bf 11 b1 ae 1c 67
81 cb 44 55 33 99 7f 24 9b 3f 53 45 7f 86 1a f3
3c fa 6d 7f 81 f5 b8 4a d3 f5 85 37 1c b5 a6 d0
09 e4 18 7b 38 4e fa 0f 02 03 01 00 01 a3 82 01
df 30 82 01 db 30 34 06 08 2b 06 01 05 05 07 01
01 04 28 30 26 30 24 06 08 2b 06 01 05 05 07 30
01 86 18 68 74 74 70 3a 2f 2f 6f 63 73 70 2e 76
65 72 69 73 69 67 6e 2e 63 6f 6d 30 12 06 03 55
1d 13 01 01 ff 04 08 30 06 01 01 ff 02 01 00 30
70 06 03 55 1d 20 04 69 30 67 30 65 06 0b 60 86
48 01 86 f8 45 01 07 17 03 30 56 30 28 06 08 2b
06 01 05 05 07 02 01 16 1c 68 74 74 70 73 3a 2f
2f 77 77 77 2e 76 65 72 69 73 69 67 6e 2e 63 6f
6d 2f 63 70 73 30 2a 06 08 2b 06 01 05 05 07 02
02 30 1e 1a 1c 68 74 74 70 73 3a 2f 2f 77 77 77
2e 76 65 72 69 73 69 67 6e 2e 63 6f 6d 2f 72 70
61 30 34 06 03 55 1d 1f 04 2d 30 2b 30 29 a0 27
a0 25 86 23 68 74 74 70 3a 2f 2f 63 72 6c 2e 76
65 72 69 73 69 67 6e 2e 63 6f 6d 2f 70 63 61 33
2d 67 35 2e 63 72 6c 30 0e 06 03 55 1d 0f 01 01
ff 04 04 03 02 01 06 30 6d 06 08 2b 06 01 05 05
07 01 0c 04 61 30 5f a1 5d a0 5b 30 59 30 57 30
55 16 09 69 6d 61 67 65 2f 67 69 66 30 21 30 1f
30 07 06 05 2b 0e 03 02 1a 04 14 8f e5 d3 1a 86
ac 8d 8e 6b c3 cf 80 6a d4 48 18 2c 7b 19 2e 30
25 16 23 68 74 74 70 3a 2f 2f 6c 6f 67 6f 2e 76
65 72 69 73 69 67 6e 2e 63 6f 6d 2f 76 73 6c 6f
67 6f 2e 67 69 66 30 28 06 03 55 1d 11 04 21 30
1f a4 1d 30 1b 31 19 30 17 06 03 55 04 03 13 10
56 65 72 69 53 69 67 6e 4d 50 4b 49 2d 32 2d 36
30 1d 06 03 55 1d 0e 04 16 04 14 0d 44 5c 16 53
44 c1 82 7e 1d 20 ab 25 f4 01 63 d8 be 79 a5 30
1f 06 03 55 1d 23 04 18 30 16 80 14 7f d3 65 a7
c2 dd ec bb f0 30 09 f3 43 39 fa 02 af 33 31 33
30 0d 06 09 2a 86 48 86 f7 0d 01 01 05 05 00 03
82 01 01 00 0c 83 24 ef dd c3 0c d9 58 9c fe 36
b6 eb 8a 80 4b d1 a3 f7 9d f3 cc 53 ef 82 9e a3
a1 e6 97 c1 58 9d 75 6c e0 1d 1b 4c fa d1 c1 2d
05 c0 ea 6e b2 22 70 55 d9 20 33 40 33 07 c2 65
83 fa 8f 43 37 9b ea 0e 9a 6c 70 ee f6 9c 80 3b
d9 37 f4 7a 6d ec d0 18 7d 49 4a ca 99 c7 19 28
a2 be d8 77 24 f7 85 26 86 6d 87 05 40 41 67 d1
27 3a ed dc 48 1d 22 cd 0b 0b 8b bc f4 b1 7b fd
b4 99 a8 e9 76 2a e1 1a 2d 87 6e 74 d3 88 dd 1e
22 c6 df 16 b6 2b 82 14 0a 94 5c f2 50 ec af ce
ff 62 37 0d ad 65 d3 06 41 53 ed 02 14 c8 b5 58
28 a1 ac e0 5b ec b3 7f 95 4a fb 03 c8 ad 26 db
e6 66 78 12 4a d9 9f 42 fb e1 98 e6 42 83 9b 8f
8f 67 24 e8 61 19 b5 dd cd b5 0b 26 05 8e c3 6e
c4 c8 75 b8 46 cf e2 18 06 5e a9 ae a8 81 9a 47
16 de 0c 28 6c 25 27 b9 de b7 84 58 c6 1f 38 1e
a4 c4 cb 66
depth=1 C = US, O = "VeriSign, Inc.", OU = VeriSign Trust Network, OU = Terms of use at https://www.verisign.com/rpa (c)10, CN = VeriSign Class 3 Secure Server CA - G3
verify error:num=20:unable to get local issuer certificate
verify return:0
<<< TLS 1.2 Handshake [length 0004], ServerHelloDone
0e 00 00 00
>>> TLS 1.2 Handshake [length 0106], ClientKeyExchange
10 00 01 02 01 00 8b 8c af 76 e8 77 57 c1 56 e6
7b 2b 40 f1 5a 71 7b 6c cc a9 66 d5 b8 08 b2 55
1e 67 ec 78 34 8e 83 17 3f 1a 73 31 0f da 88 06
57 7f 87 f6 92 91 64 37 b1 b2 4f 69 43 7e 29 85
9b 4f 1a 9c 96 19 2a b1 c3 3b 3c 7d df 0e e3 37
12 f1 94 c7 48 13 56 87 ca e5 84 58 69 d4 04 db
b2 8b 5a e7 db 38 7e 5d 75 1b ae 90 50 7c b9 2f
87 04 1e b9 be b3 8e 28 4d b5 3c 5f a7 df 68 9b
a5 a1 63 fc a7 9b 05 83 a5 a7 c3 a8 9e 03 2f 1b
c5 7e 0c 0d c2 52 66 9c 02 a2 ee 94 e0 87 7d 40
3f de 10 62 8d 51 df 34 c4 ca 53 42 6e 78 ea 01
34 89 56 3c c7 4d 37 2e 3c d4 f4 86 8b cd dc 76
c6 99 2e 3c 2c 5c af c1 c2 fb 19 b0 76 cf 61 b3
5b 0e ca 4d 44 38 14 0d d7 48 56 9a 43 5d af d9
90 db 15 79 e1 16 96 75 9d 9e a9 a3 e4 3b d8 bc
61 2d 8b 97 e8 45 7e 9e 64 36 6a 19 ba 9e d5 01
c2 12 ec 8c 84 c7
>>> TLS 1.2 ChangeCipherSpec [length 0001]
01
>>> TLS 1.2 Handshake [length 0010], Finished
14 00 00 0c ef c3 45 3d 88 5b 40 90 39 83 e2 65
<<< TLS 1.2 ChangeCipherSpec [length 0001]
01
<<< TLS 1.2 Handshake [length 0010], Finished
14 00 00 0c 15 c9 1c 7e e9 cd 99 e3 08 eb 8a c1
---
Certificate chain
0 s:/C=US/ST=Washington/L=Seattle/O=Amazon.com, Inc./CN=kinesis.us-east-1.amazonaws.com
i:/C=US/O=VeriSign, Inc./OU=VeriSign Trust Network/OU=Terms of use at https://www.verisign.com/rpa (c)10/CN=VeriSign Class 3 Secure Server CA - G3
1 s:/C=US/O=VeriSign, Inc./OU=VeriSign Trust Network/OU=Terms of use at https://www.verisign.com/rpa (c)10/CN=VeriSign Class 3 Secure Server CA - G3
i:/C=US/O=VeriSign, Inc./OU=VeriSign Trust Network/OU=(c) 2006 VeriSign, Inc. - For authorized use only/CN=VeriSign Class 3 Public Primary Certification Authority - G5
---
Server certificate
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
subject=/C=US/ST=Washington/L=Seattle/O=Amazon.com, Inc./CN=kinesis.us-east-1.amazonaws.com
issuer=/C=US/O=VeriSign, Inc./OU=VeriSign Trust Network/OU=Terms of use at https://www.verisign.com/rpa (c)10/CN=VeriSign Class 3 Secure Server CA - G3
---
No client certificate CA names sent
---
SSL handshake has read 3043 bytes and written 647 bytes
---
New, TLSv1/SSLv3, Cipher is AES128-SHA
Server public key is 2048 bit
Secure Renegotiation IS supported
Compression: NONE
Expansion: NONE
SSL-Session:
Protocol : TLSv1.2
Cipher : AES128-SHA
Session-ID: 977A7A121413E44102197D968FBA829B20D3D0A79F1995217494E4B189AB0256
Session-ID-ctx:
Master-Key: 11A9E0D0D1E926CAB19AC4C7D2673E54397327D8ED325878349B1B5C812E0997C0766F0C93523587B324D69FDF1F3DD7
Key-Arg : None
PSK identity: None
PSK identity hint: None
SRP username: None
Start Time: 1420936155
Timeout : 300 (sec)
Verify return code: 20 (unable to get local issuer certificate)
---
ethan@thunder:~/Jobs/SumAll/haskell-twitter-worker:upgrade-aes$ openssl s_client -msg -connect localhost:443
CONNECTED(00000003)
>>> TLS 1.2 Handshake [length 012c], ClientHello
01 00 01 28 03 03 f8 c5 13 8a 2b 31 b3 57 40 4f
0b 73 bb ac 9d cd d0 ac 0b 88 56 93 b5 46 ae 3b
28 17 c6 2f d7 cf 00 00 92 c0 30 c0 2c c0 28 c0
24 c0 14 c0 0a 00 a3 00 9f 00 6b 00 6a 00 39 00
38 00 88 00 87 c0 32 c0 2e c0 2a c0 26 c0 0f c0
05 00 9d 00 3d 00 35 00 84 c0 12 c0 08 00 16 00
13 c0 0d c0 03 00 0a c0 2f c0 2b c0 27 c0 23 c0
13 c0 09 00 a2 00 9e 00 67 00 40 00 33 00 32 00
9a 00 99 00 45 00 44 c0 31 c0 2d c0 29 c0 25 c0
0e c0 04 00 9c 00 3c 00 2f 00 96 00 41 c0 11 c0
07 c0 0c c0 02 00 05 00 04 00 15 00 12 00 09 00
14 00 11 00 08 00 06 00 03 00 ff 01 00 00 6d 00
0b 00 04 03 00 01 02 00 0a 00 34 00 32 00 0e 00
0d 00 19 00 0b 00 0c 00 18 00 09 00 0a 00 16 00
17 00 08 00 06 00 07 00 14 00 15 00 04 00 05 00
12 00 13 00 01 00 02 00 03 00 0f 00 10 00 11 00
23 00 00 00 0d 00 20 00 1e 06 01 06 02 06 03 05
01 05 02 05 03 04 01 04 02 04 03 03 01 03 02 03
03 02 01 02 02 02 03 00 0f 00 01 01
<<< TLS 1.2 Handshake [length 003a], ServerHello
02 00 00 36 03 03 1d eb 11 5c 5a 28 ff f5 67 6c
7a 04 e8 64 39 7e 3b 94 fd 60 44 70 bb 99 2b c6
42 c2 6f 3f 14 cb 00 00 2f 00 00 0e ff 01 00 01
00 00 23 00 00 00 0f 00 01 01
<<< TLS 1.2 Handshake [length 0245], Certificate
0b 00 02 41 00 02 3e 00 02 3b 30 82 02 37 30 82
01 a0 02 09 00 b0 97 93 17 fb d0 b8 b8 30 0d 06
09 2a 86 48 86 f7 0d 01 01 0b 05 00 30 60 31 0b
30 09 06 03 55 04 06 13 02 55 53 31 0b 30 09 06
03 55 04 08 0c 02 4e 59 31 0c 30 0a 06 03 55 04
07 0c 03 4e 59 43 31 0f 30 0d 06 03 55 04 0a 0c
06 53 75 6d 41 6c 6c 31 25 30 23 06 09 2a 86 48
86 f7 0d 01 09 01 16 16 65 74 68 61 6e 40 62 65
74 61 63 61 6e 74 72 69 70 73 2e 63 6f 6d 30 1e
17 0d 31 35 30 31 31 30 31 38 32 34 34 38 5a 17
0d 31 36 30 31 31 30 31 38 32 34 34 38 5a 30 60
31 0b 30 09 06 03 55 04 06 13 02 55 53 31 0b 30
09 06 03 55 04 08 0c 02 4e 59 31 0c 30 0a 06 03
55 04 07 0c 03 4e 59 43 31 0f 30 0d 06 03 55 04
0a 0c 06 53 75 6d 41 6c 6c 31 25 30 23 06 09 2a
86 48 86 f7 0d 01 09 01 16 16 65 74 68 61 6e 40
62 65 74 61 63 61 6e 74 72 69 70 73 2e 63 6f 6d
30 81 9f 30 0d 06 09 2a 86 48 86 f7 0d 01 01 01
05 00 03 81 8d 00 30 81 89 02 81 81 00 b6 92 41
60 c4 88 f4 6a 14 5a 49 81 df 15 b9 c4 e0 74 6d
97 3c 8e 5c af d9 90 48 5a 77 30 14 78 b1 c9 9f
c5 32 aa c4 01 b5 bc a0 66 87 95 82 fa da c7 97
45 55 31 38 57 83 94 05 c9 28 64 e5 b9 f1 b0 f0
81 06 29 dd d9 91 4f 3a 6d 63 0c ab 88 b2 ed 1e
c4 5f f7 14 e9 8b 87 27 04 1e eb 7d fb 21 ee b7
aa 8b bc 64 2c 16 9f 43 ed 6f 23 8e 79 7d 99 ff
cb bf e3 02 eb 25 16 53 da df 3d c2 8f 02 03 01
00 01 30 0d 06 09 2a 86 48 86 f7 0d 01 01 0b 05
00 03 81 81 00 70 7e 78 ac d5 30 f6 90 fe 96 b7
86 14 9b ef da d7 30 f9 d2 f6 bd 78 1e b3 92 bb
a0 f3 1e 5a 94 c8 fc 4c c4 af e4 25 16 e4 84 47
6e 01 d2 a4 fb 87 26 8a 4e 81 dc e1 10 da ae b8
c4 d7 09 f8 8e 1e 7d b2 c0 8b 7c c3 8c b3 e1 4f
9c be fc e3 90 ad e9 49 ff f3 1a 04 6b 2a 2f ca
f7 6f fe 3e e0 88 1b 14 8d cc 42 55 74 22 55 3c
2e dd 64 96 95 f1 45 79 f6 98 82 1c 19 6d 36 2d
26 b4 0c bb 62
depth=0 C = US, ST = NY, L = NYC, O = SumAll, emailAddress = [my email address]
verify error:num=18:self signed certificate
verify return:1
depth=0 C = US, ST = NY, L = NYC, O = SumAll, emailAddress = [my email address]
verify return:1
<<< TLS 1.2 Handshake [length 0004], ServerHelloDone
0e 00 00 00
>>> TLS 1.2 Handshake [length 0086], ClientKeyExchange
10 00 00 82 00 80 ad 10 ee 59 bb cd 6c 47 fe b6
cb b6 64 e1 76 e2 6d 4f b3 8f fa d0 50 03 1f 9b
29 b0 b8 03 0d 22 e8 de ce 70 42 fd b1 60 0d 67
5f a8 68 df 88 ec 9d 01 77 e0 5e 84 e1 2f 31 6f
70 af 22 2f 21 74 c0 f3 23 da 89 74 b4 eb 58 ff
a8 0a de c3 84 97 d4 74 50 58 34 68 07 da 19 fe
53 0a 7e 82 c7 01 33 0c 3f 58 a8 bd 94 25 4b 87
4e d7 49 79 cb de e5 2a 5d 3a 68 ba e6 05 b7 9a
03 28 58 ee f3 eb
>>> TLS 1.2 ChangeCipherSpec [length 0001]
01
>>> TLS 1.2 Handshake [length 0010], Finished
14 00 00 0c e3 3d e6 a7 b8 64 3c 76 79 1f 2c 86
<<< TLS 1.2 Handshake [length 00ba]???
04 00 00 b6 00 00 01 2c 00 b0 f3 5b 67 83 33 3e
75 54 5a 9d 90 4e db 0a d5 e7 05 8b 04 0d 19 20
22 c0 63 7b 3b a2 04 13 5f e8 de 70 42 cd 32 9d
6c 0d 6f bc 81 3b e2 8f 73 d1 0c e2 d5 e1 c9 20
dd 25 5f 53 3e 16 0e e6 a0 ea b3 e2 56 95 da 79
0f ae e5 c0 ff c3 8e 2b 90 44 65 f1 f3 e7 be da
d0 92 27 ef 48 0a f2 c6 91 56 a3 5f ba b2 1c bb
82 e2 9f 46 e2 c5 84 02 9f e5 a2 0a aa 7b 0f e7
f8 87 14 8e 18 10 01 a7 d0 fd 88 1b 2a fb d7 06
3b 57 99 a1 54 e2 bf df 48 18 43 67 24 6b 67 94
6b 5f aa 1a df e7 9d f7 29 9d 72 3b 9a fc c6 66
72 bc 4a fd b2 99 8b 3d c7 5d
<<< TLS 1.2 ChangeCipherSpec [length 0001]
01
<<< TLS 1.2 Handshake [length 0010], Finished
14 00 00 0c 7f 01 c5 01 f1 fc a3 84 83 45 c9 85
---
Certificate chain
0 s:/C=US/ST=NY/L=NYC/O=SumAll/emailAddress=[my email address]
i:/C=US/ST=NY/L=NYC/O=SumAll/emailAddress=[my email address]
---
Server certificate
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
subject=/C=US/ST=NY/L=NYC/O=SumAll/emailAddress=[my email address]
issuer=/C=US/ST=NY/L=NYC/O=SumAll/emailAddress=[my email address]
---
No client certificate CA names sent
---
SSL handshake has read 924 bytes and written 519 bytes
---
New, TLSv1/SSLv3, Cipher is AES128-SHA
Server public key is 1024 bit
Secure Renegotiation IS supported
Compression: NONE
Expansion: NONE
SSL-Session:
Protocol : TLSv1.2
Cipher : AES128-SHA
Session-ID: AC95D6D98B8C4349DE6DD73FF65F3A7A06B1690971753A4AC20211AB20EB98B8
Session-ID-ctx:
Master-Key: E8E12B4505031DACFB6D57047E71812EA6B782AFE768134F52895DA6528A8D154464A45FDDFBAE439944FC9E0066E41A
Key-Arg : None
PSK identity: None
PSK identity hint: None
SRP username: None
TLS session ticket lifetime hint: 300 (seconds)
TLS session ticket:
0000 - f3 5b 67 83 33 3e 75 54-5a 9d 90 4e db 0a d5 e7 .[g.3>uTZ..N....
0010 - 05 8b 04 0d 19 20 22 c0-63 7b 3b a2 04 13 5f e8 ..... ".c{;..._.
0020 - de 70 42 cd 32 9d 6c 0d-6f bc 81 3b e2 8f 73 d1 .pB.2.l.o..;..s.
0030 - 0c e2 d5 e1 c9 20 dd 25-5f 53 3e 16 0e e6 a0 ea ..... .%_S>.....
0040 - b3 e2 56 95 da 79 0f ae-e5 c0 ff c3 8e 2b 90 44 ..V..y.......+.D
0050 - 65 f1 f3 e7 be da d0 92-27 ef 48 0a f2 c6 91 56 e.......'.H....V
0060 - a3 5f ba b2 1c bb 82 e2-9f 46 e2 c5 84 02 9f e5 ._.......F......
0070 - a2 0a aa 7b 0f e7 f8 87-14 8e 18 10 01 a7 d0 fd ...{............
0080 - 88 1b 2a fb d7 06 3b 57-99 a1 54 e2 bf df 48 18 ..*...;W..T...H.
0090 - 43 67 24 6b 67 94 6b 5f-aa 1a df e7 9d f7 29 9d Cg$kg.k_......).
00a0 - 72 3b 9a fc c6 66 72 bc-4a fd b2 99 8b 3d c7 5d r;...fr.J....=.]
Start Time: 1420936173
Timeout : 300 (sec)
Verify return code: 18 (self signed certificate)
---
^C
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment