Skip to content

Instantly share code, notes, and snippets.

@pagameba
Last active October 31, 2017 18:05
Show Gist options
  • Save pagameba/2d62874662033f59de0260e6e4eb3048 to your computer and use it in GitHub Desktop.
Save pagameba/2d62874662033f59de0260e6e4eb3048 to your computer and use it in GitHub Desktop.
openssl output local
/usr/local/opt/openssl/bin/openssl s_client -showcerts -connect vault.inside.canvaspophq.com:443 -verify_hostname vault.inside.canvaspophq.com -servername vault.inside.canvaspophq.com -CApath /usr/local/etc/openssl/certs
CONNECTED(00000003)
depth=2 O = Digital Signature Trust Co., CN = DST Root CA X3
verify return:1
depth=1 C = US, O = Let's Encrypt, CN = Let's Encrypt Authority X3
verify return:1
depth=0 CN = vault.inside.canvaspophq.com
verify return:1
---
Certificate chain
0 s:/CN=vault.inside.canvaspophq.com
i:/C=US/O=Let's Encrypt/CN=Let's Encrypt Authority X3
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
1 s:/C=US/O=Let's Encrypt/CN=Let's Encrypt Authority X3
i:/O=Digital Signature Trust Co./CN=DST Root CA X3
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
---
Server certificate
subject=/CN=vault.inside.canvaspophq.com
issuer=/C=US/O=Let's Encrypt/CN=Let's Encrypt Authority X3
---
No client certificate CA names sent
Client Certificate Types: RSA sign, ECDSA sign
Requested Signature Algorithms: RSA+SHA256:ECDSA+SHA256:RSA+SHA384:ECDSA+SHA384:RSA+SHA1:ECDSA+SHA1
Shared Requested Signature Algorithms: RSA+SHA256:ECDSA+SHA256:RSA+SHA384:ECDSA+SHA384:RSA+SHA1:ECDSA+SHA1
Peer signing digest: SHA384
Server Temp Key: ECDH, P-256, 256 bits
---
SSL handshake has read 3122 bytes and written 483 bytes
---
New, TLSv1/SSLv3, Cipher is ECDHE-RSA-AES256-GCM-SHA384
Server public key is 2048 bit
Secure Renegotiation IS supported
Compression: NONE
Expansion: NONE
No ALPN negotiated
SSL-Session:
Protocol : TLSv1.2
Cipher : ECDHE-RSA-AES256-GCM-SHA384
Session-ID: B34191ABE2136C361A433C81561E270D642E83FC8962025D4E7A97C02069D6EF
Session-ID-ctx:
Master-Key: EDE066B16B36F9B403BBE1A47D99C82024ACA520F67B38680CF6798C0CE81D19F0724FA945F03C72A5664358E523AFCD
Key-Arg : None
PSK identity: None
PSK identity hint: None
SRP username: None
TLS session ticket:
0000 - 0b db cc 88 af e2 88 74-d0 98 e8 eb 12 0b 06 ed .......t........
0010 - ab e4 5b 44 e2 9b 3a 04-6e 89 d7 ec 20 9e ab 23 ..[D..:.n... ..#
0020 - 17 50 ab c8 2e 6a 18 f6-4f 03 d1 27 d8 58 a8 2f .P...j..O..'.X./
0030 - b2 fb ba a6 a4 f0 fc 9e-06 42 30 72 60 02 6c 40 .........B0r`.l@
0040 - 4e fd 5a 35 50 54 4b 6d-b9 37 ca cd f7 13 73 7b N.Z5PTKm.7....s{
0050 - 0c 7a 59 ec 35 a0 11 1f-dd 41 02 c8 33 e9 47 01 .zY.5....A..3.G.
0060 - e9 e9 9a e0 d3 65 38 30-12 8b 85 45 60 6c c9 87 .....e80...E`l..
0070 - 4d 1f 60 2e 25 93 1a 07- M.`.%...
Start Time: 1509473012
Timeout : 300 (sec)
Verify return code: 0 (ok)
---
read:errno=0
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment