Skip to content

Instantly share code, notes, and snippets.

@jonyesno
Created October 7, 2011 14:54
Show Gist options
  • Save jonyesno/1270440 to your computer and use it in GitHub Desktop.
Save jonyesno/1270440 to your computer and use it in GitHub Desktop.
Apple mail.me.com mixed certificates
$ dig a mail.me.com
; <<>> DiG 9.7.3 <<>> a mail.me.com
;; global options: +cmd
;; Got answer:
;; ->>HEADER<<- opcode: QUERY, status: NOERROR, id: 26639
;; flags: qr rd ra; QUERY: 1, ANSWER: 10, AUTHORITY: 0, ADDITIONAL: 0
;; QUESTION SECTION:
;mail.me.com. IN A
;; ANSWER SECTION:
mail.me.com. 3150 IN CNAME mail.me.com.akadns.net.
mail.me.com.akadns.net. 30 IN CNAME st11-mail.me.com.akadns.net.
st11-mail.me.com.akadns.net. 30 IN A 17.172.36.79
st11-mail.me.com.akadns.net. 30 IN A 17.172.36.73
st11-mail.me.com.akadns.net. 30 IN A 17.172.36.56
st11-mail.me.com.akadns.net. 30 IN A 17.172.36.69
st11-mail.me.com.akadns.net. 30 IN A 17.172.36.59
st11-mail.me.com.akadns.net. 30 IN A 17.172.36.58
st11-mail.me.com.akadns.net. 30 IN A 17.172.36.57
st11-mail.me.com.akadns.net. 30 IN A 17.172.36.71
;; Query time: 230 msec
;; SERVER: 84.45.99.189#53(84.45.99.189)
;; WHEN: Fri Oct 7 15:54:23 2011
;; MSG SIZE rcvd: 217
$ dig mail.me.com | egrep 'IN\W*A\W*\w' | awk '{print $NF;}' | while read IP ; do echo ${IP} ; (echo "" | openssl s_client -connect ${IP}:993 | openssl x509 -noout -issuer -subject ) 2>/dev/null| grep ^[si] ; done
17.172.36.72
issuer= /C=US/O=VeriSign, Inc./OU=VeriSign Trust Network/OU=Terms of use at https://www.verisign.com/rpa (c)06/CN=VeriSign Class 3 Extended Validation SSL SGC CA
subject= /1.3.6.1.4.1.311.60.2.1.3=US/1.3.6.1.4.1.311.60.2.1.2=California/businessCategory=V1.0, Clause 5.(b)/serialNumber=C0806592/C=US/postalCode=95014/ST=California/L=Cupertino/street=1 Infinite Loop/O=Apple Inc./OU=Internet Services/CN=mail.me.com
17.172.36.69
issuer= /C=US/O=VeriSign, Inc./OU=VeriSign Trust Network/OU=Terms of use at https://www.verisign.com/rpa (c)06/CN=VeriSign Class 3 Extended Validation SSL SGC CA
subject= /1.3.6.1.4.1.311.60.2.1.3=US/1.3.6.1.4.1.311.60.2.1.2=California/businessCategory=V1.0, Clause 5.(b)/serialNumber=C0806592/C=US/postalCode=95014/ST=California/L=Cupertino/street=1 Infinite Loop/O=Apple Inc./OU=Internet Services/CN=mail.me.com
17.172.36.58
issuer= /C=US/O=VeriSign, Inc./OU=VeriSign Trust Network/OU=Terms of use at https://www.verisign.com/rpa (c)06/CN=VeriSign Class 3 Extended Validation SSL SGC CA
subject= /1.3.6.1.4.1.311.60.2.1.3=US/1.3.6.1.4.1.311.60.2.1.2=California/businessCategory=V1.0, Clause 5.(b)/serialNumber=C0806592/C=US/postalCode=95014/ST=California/L=Cupertino/street=1 Infinite Loop/O=Apple Inc./OU=Internet Services/CN=mail.me.com
17.172.36.60
issuer= /C=US/O=VeriSign, Inc./OU=VeriSign Trust Network/OU=Terms of use at https://www.verisign.com/rpa (c)06/CN=VeriSign Class 3 Extended Validation SSL SGC CA
subject= /1.3.6.1.4.1.311.60.2.1.3=US/1.3.6.1.4.1.311.60.2.1.2=California/businessCategory=V1.0, Clause 5.(b)/serialNumber=C0806592/C=US/postalCode=95014/ST=California/L=Cupertino/street=1 Infinite Loop/O=Apple Inc./OU=Internet Services/CN=mail.me.com
17.172.36.57
issuer= /C=US/O=VeriSign, Inc./OU=VeriSign Trust Network/OU=Terms of use at https://www.verisign.com/rpa (c)06/CN=VeriSign Class 3 Extended Validation SSL SGC CA
subject= /1.3.6.1.4.1.311.60.2.1.3=US/1.3.6.1.4.1.311.60.2.1.2=California/businessCategory=V1.0, Clause 5.(b)/serialNumber=C0806592/C=US/postalCode=95014/ST=California/L=Cupertino/street=1 Infinite Loop/O=Apple Inc./OU=Internet Services/CN=mail.me.com
17.172.36.71
issuer= /C=US/O=VeriSign, Inc./OU=VeriSign Trust Network/OU=Terms of use at https://www.verisign.com/rpa (c)06/CN=VeriSign Class 3 Extended Validation SSL SGC CA
subject= /1.3.6.1.4.1.311.60.2.1.3=US/1.3.6.1.4.1.311.60.2.1.2=California/businessCategory=V1.0, Clause 5.(b)/serialNumber=C0806592/C=US/postalCode=95014/ST=California/L=Cupertino/street=1 Infinite Loop/O=Apple Inc./OU=Internet Services/CN=mail.me.com
17.172.36.59
issuer= /C=US/O=VeriSign, Inc./OU=VeriSign Trust Network/OU=Terms of use at https://www.verisign.com/rpa (c)06/CN=VeriSign Class 3 Extended Validation SSL SGC CA
subject= /1.3.6.1.4.1.311.60.2.1.3=US/1.3.6.1.4.1.311.60.2.1.2=California/businessCategory=V1.0, Clause 5.(b)/serialNumber=C0806592/C=US/postalCode=95014/ST=California/L=Cupertino/street=1 Infinite Loop/O=Apple Inc./OU=Internet Services/CN=mail.me.com
17.172.36.79
issuer= /C=US/O=Entrust, Inc./OU=www.entrust.net/rpa is incorporated by reference/OU=(c) 2009 Entrust, Inc./CN=Entrust Certification Authority - L1C
subject= /C=US/ST=California/L=Cupertino/O=Apple Inc./OU=Internet Services/CN=*.mail.me.com
@Bobble99
Copy link

Looking for email

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment