Skip to content

Instantly share code, notes, and snippets.

@pagameba
Created October 31, 2017 17:38
Show Gist options
  • Save pagameba/6db2d7f41adc1888163b0256efa606e0 to your computer and use it in GitHub Desktop.
Save pagameba/6db2d7f41adc1888163b0256efa606e0 to your computer and use it in GitHub Desktop.
openssl output
openssl s_client -showcerts -connect <host>:443
CONNECTED(00000003)
depth=1 C = US, O = Let's Encrypt, CN = Let's Encrypt Authority X3
verify error:num=20:unable to get local issuer certificate
verify return:0
---
Certificate chain
0 s:/CN=<host>
i:/C=US/O=Let's Encrypt/CN=Let's Encrypt Authority X3
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
1 s:/C=US/O=Let's Encrypt/CN=Let's Encrypt Authority X3
i:/O=Digital Signature Trust Co./CN=DST Root CA X3
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
---
Server certificate
subject=/CN=<host>
issuer=/C=US/O=Let's Encrypt/CN=Let's Encrypt Authority X3
---
No client certificate CA names sent
---
SSL handshake has read 3122 bytes and written 443 bytes
---
New, TLSv1/SSLv3, Cipher is ECDHE-RSA-AES256-GCM-SHA384
Server public key is 2048 bit
Secure Renegotiation IS supported
Compression: NONE
Expansion: NONE
SSL-Session:
Protocol : TLSv1.2
Cipher : ECDHE-RSA-AES256-GCM-SHA384
Session-ID: 58F6A11DA50E8B881399761F91C504B2E49FAAE69A9EAB92F91E513FBEB3001E
Session-ID-ctx:
Master-Key: 075B254531B05F3C55F354D639007062D3AFDAC2736C6DB71B49E22BC895898F3F9ACB4D09EE25455B9495FF6ADA4A2F
Key-Arg : None
PSK identity: None
PSK identity hint: None
SRP username: None
TLS session ticket:
0000 - 0b db cc 88 af e2 88 74-d0 98 e8 eb 12 0b 06 ed .......t........
0010 - a8 6d 8c c0 97 8b 1b e0-9b 0a 30 50 b0 ba f7 7f .m........0P....
0020 - 92 ea eb 9d b0 ed 1a dc-54 70 96 66 2c c0 70 f3 ........Tp.f,.p.
0030 - 2e 78 f2 bb 1a 02 93 4b-c9 eb 91 94 7f 4f b8 a5 .x.....K.....O..
0040 - 4b 30 02 4b 96 1e 72 24-94 41 e0 72 16 f6 59 71 K0.K..r$.A.r..Yq
0050 - 1a 5a 3a b3 03 23 7a 20-34 93 f4 3d 41 86 ef 12 .Z:..#z 4..=A...
0060 - 8a c7 5c 5f 01 ba f9 a2-da 65 6b c0 1e 18 a4 a4 ..\_.....ek.....
0070 - c2 53 bd 56 c9 2a d4 f0- .S.V.*..
Start Time: 1509470622
Timeout : 300 (sec)
Verify return code: 20 (unable to get local issuer certificate)
---
read:errno=0
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment