Skip to content

Instantly share code, notes, and snippets.

@resistorsoftware
Created October 21, 2012 15:54
Show Gist options
  • Star 0 You must be signed in to star a gist
  • Fork 0 You must be signed in to fork a gist
  • Save resistorsoftware/3927334 to your computer and use it in GitHub Desktop.
Save resistorsoftware/3927334 to your computer and use it in GitHub Desktop.
OpenSSL problems with Shopify
openssl s_client -CApath /etc/ssl/certs -showcerts -connect luxutest.myshopify.com:443
CONNECTED(00000003)
depth=0 /serialNumber=inVwoUGzj3duFEUBdzDQrbS2kO1qx0Vr/C=CA/ST=Ontario/L=Ottawa/O=Jaded Pixel Technologies Inc./CN=*.myshopify.com
verify error:num=20:unable to get local issuer certificate
verify return:1
depth=0 /serialNumber=inVwoUGzj3duFEUBdzDQrbS2kO1qx0Vr/C=CA/ST=Ontario/L=Ottawa/O=Jaded Pixel Technologies Inc./CN=*.myshopify.com
verify error:num=27:certificate not trusted
verify return:1
depth=0 /serialNumber=inVwoUGzj3duFEUBdzDQrbS2kO1qx0Vr/C=CA/ST=Ontario/L=Ottawa/O=Jaded Pixel Technologies Inc./CN=*.myshopify.com
verify error:num=21:unable to verify the first certificate
verify return:1
---
Certificate chain
0 s:/serialNumber=inVwoUGzj3duFEUBdzDQrbS2kO1qx0Vr/C=CA/ST=Ontario/L=Ottawa/O=Jaded Pixel Technologies Inc./CN=*.myshopify.com
i:/C=US/O=Equifax/OU=Equifax Secure Certificate Authority
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
---
Server certificate
subject=/serialNumber=inVwoUGzj3duFEUBdzDQrbS2kO1qx0Vr/C=CA/ST=Ontario/L=Ottawa/O=Jaded Pixel Technologies Inc./CN=*.myshopify.com
issuer=/C=US/O=Equifax/OU=Equifax Secure Certificate Authority
---
No client certificate CA names sent
---
SSL handshake has read 1116 bytes and written 444 bytes
---
New, TLSv1/SSLv3, Cipher is RC4-SHA
Server public key is 2048 bit
Secure Renegotiation IS NOT supported
Compression: NONE
Expansion: NONE
SSL-Session:
Protocol : TLSv1
Cipher : RC4-SHA
Session-ID: 71B89AC094F2AA12B574110EF4E419E73C003E134E79C7E5B6756B40F5604C89
Session-ID-ctx:
Master-Key: 0BEFE72A1659382FFA13423AF2678DFA5244933241A481D8AEFAB599B8A63C989970FB574AC057E6E36C44B80606336A
Key-Arg : None
Start Time: 1350834637
Timeout : 300 (sec)
Verify return code: 21 (unable to verify the first certificate)
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment