Skip to content

Instantly share code, notes, and snippets.

@mattymo
Created February 27, 2017 15:07
Show Gist options
  • Save mattymo/89b5460b5dcb61abb4493ba8464ee9dc to your computer and use it in GitHub Desktop.
Save mattymo/89b5460b5dcb61abb4493ba8464ee9dc to your computer and use it in GitHub Desktop.
root@node1:~# openssl x509 -in /etc/kubernetes/ssl/node-node1.pem -text -noout
Certificate:
Data:
Version: 1 (0x0)
Serial Number: 13384200210840581203 (0xb9be3b2de1dc7453)
Signature Algorithm: sha256WithRSAEncryption
Issuer: CN=kube-ca
Validity
Not Before: Feb 27 09:50:45 2017 GMT
Not After : Feb 25 09:50:45 2027 GMT
Subject: CN=kube-node-node1
Subject Public Key Info:
Public Key Algorithm: rsaEncryption
Public-Key: (2048 bit)
Modulus:
00:c1:33:ba:15:48:8d:54:cf:04:1f:8f:f8:14:b0:
8c:eb:72:c2:1c:60:4e:c4:92:28:ca:19:58:37:bf:
e1:1d:ab:40:7c:6e:26:a4:af:ca:4e:e9:d9:c6:9f:
e0:65:bb:4d:ea:c0:4b:9c:9e:e7:52:c8:2a:cd:5e:
80:57:e1:01:54:91:9e:d0:d6:e9:f0:f4:6e:be:9c:
71:44:b0:aa:d2:f7:d9:62:c1:34:23:61:97:43:74:
59:03:dc:39:78:86:d6:ad:42:df:a7:ed:8c:7c:6c:
e0:66:26:cc:c4:19:52:4f:43:6e:42:05:31:70:84:
8e:30:0a:b5:a1:f8:29:4d:fb:19:9f:e0:a0:1d:4c:
8c:b5:be:88:47:8c:0d:59:e0:25:f6:de:0e:2f:6a:
0e:a6:83:c8:19:13:67:9a:d8:86:ca:b5:d4:24:80:
66:0d:59:13:43:3a:26:ba:bd:10:a9:ce:39:10:b1:
0f:0c:f5:da:61:a1:44:bc:03:41:b1:bb:c1:d3:3b:
15:51:85:8b:b9:92:22:84:c0:db:98:b7:a2:29:0a:
94:5d:0b:c5:9a:b1:de:46:4d:bc:19:ff:1f:4c:2b:
89:e8:9f:d5:36:07:60:db:cb:5c:64:15:d7:5f:b7:
2a:7c:ce:45:2e:f2:d5:59:1d:7f:dc:49:54:31:d4:
1e:4d
Exponent: 65537 (0x10001)
Signature Algorithm: sha256WithRSAEncryption
95:49:ca:50:56:de:42:b1:38:77:bc:e5:55:fd:97:6f:aa:3d:
6a:31:e8:c1:11:7b:0c:41:75:47:68:62:d7:a5:ad:ca:ff:80:
57:aa:d8:75:eb:83:f2:ba:a4:1f:58:99:5c:f6:a8:77:5b:a1:
00:b6:07:f6:65:60:7b:8b:54:0e:e2:10:14:f9:17:c6:0b:4e:
7b:57:f7:94:cd:de:8d:59:73:ac:16:5d:d1:46:b2:e2:59:cb:
d2:42:c2:d0:40:51:60:61:f5:cc:2f:f3:cc:4b:f0:3c:f2:e5:
86:37:19:f7:7e:25:bf:3d:1f:e2:fb:44:81:57:59:d0:cc:f0:
03:0f:c5:f2:b4:24:27:72:43:72:ab:db:39:d5:e6:63:66:b4:
bd:fe:b1:47:d1:2d:65:27:06:6c:4b:db:63:c8:5b:09:6b:7f:
dd:64:27:82:db:0d:ba:2e:74:2f:a3:a2:f4:31:33:cf:9a:65:
92:c4:1c:c7:45:b5:2e:9c:3d:dd:e4:8c:30:f9:3d:93:1d:b8:
06:1d:d4:79:d6:b7:72:ac:14:ee:a6:47:77:c8:43:89:91:84:
c3:da:34:8a:05:af:54:80:d4:a1:4f:7a:c5:fb:73:3d:e6:31:
17:d0:b2:d8:be:66:0b:91:5b:db:32:46:a1:bb:c0:79:43:f4:
38:d7:17:9e
root@node1:~# openssl s_client -connect 10.90.0.2:10250
CONNECTED(00000003)
depth=0 CN = node1@1488189140
verify error:num=18:self signed certificate
verify return:1
depth=0 CN = node1@1488189140
verify return:1
---
Certificate chain
0 s:/CN=node1@1488189140
i:/CN=node1@1488189140
---
Server certificate
-----BEGIN CERTIFICATE-----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=
-----END CERTIFICATE-----
subject=/CN=node1@1488189140
issuer=/CN=node1@1488189140
---
No client certificate CA names sent
Peer signing digest: SHA384
Server Temp Key: ECDH, P-256, 256 bits
---
SSL handshake has read 1373 bytes and written 431 bytes
---
New, TLSv1/SSLv3, Cipher is ECDHE-RSA-AES128-GCM-SHA256
Server public key is 2048 bit
Secure Renegotiation IS supported
Compression: NONE
Expansion: NONE
No ALPN negotiated
SSL-Session:
Protocol : TLSv1.2
Cipher : ECDHE-RSA-AES128-GCM-SHA256
Session-ID: 5B0BC33E9BE8FABD0CD90BD94E08A3FDCEEED44843C27C0DC9C65FFEDD1614C0
Session-ID-ctx:
Master-Key: E321AFF99017CAADE2892F2B3FA5A2DF1252030721BADF64FCA158427F27812C63D747960D510A53BA607523EBCA8881
Key-Arg : None
PSK identity: None
PSK identity hint: None
SRP username: None
TLS session ticket:
0000 - 6d cb d6 b5 d6 39 ad 95-4f 05 d1 9e 10 7b a7 d5 m....9..O....{..
0010 - 10 ef 06 c0 2c 69 29 4b-b4 8e 95 a4 5b 42 c7 5d ....,i)K....[B.]
0020 - ca b6 53 07 0f 31 ed b6-cc 93 cf 46 ea a2 82 8b ..S..1.....F....
0030 - 46 a6 ef 7e 7d 0a 35 92-87 20 fa b4 8d 48 95 60 F..~}.5.. ...H.`
0040 - bd 24 f2 ab 6e e6 82 36-bf fb 76 d7 a1 04 52 b1 .$..n..6..v...R.
0050 - f5 9e 7c 0b df 84 8c 8a-fe f3 3f 7f e3 6f 23 7d ..|.......?..o#}
0060 - 41 cf dd 05 3b 90 67 ee-96 d8 66 f4 dc 8f e2 7a A...;.g...f....z
0070 - c5 a2 83 9d b4 c8 b9 6d- .......m
Start Time: 1488208001
Timeout : 300 (sec)
Verify return code: 18 (self signed certificate)
---
DONE
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment