Monday, June 20, 2011

SSL from terminal

$ openssl s_client -connect sb-ssl.google.com:443

CONNECTED(00000003)

depth=1 C = US, O = Google Inc, CN = Google Internet Authority
verify error:num=20:unable to get local issuer certificate
verify return:0
---
Certificate chain
0 s:/C=US/ST=California/L=Mountain View/O=Google Inc/CN=*.google.com
i:/C=US/O=Google Inc/CN=Google Internet Authority
1 s:/C=US/O=Google Inc/CN=Google Internet Authority
i:/C=US/O=Equifax/OU=Equifax Secure Certificate Authority
---
Server certificate
-----BEGIN CERTIFICATE-----
MIIFCDCCBHGgAwIBAgIKQdyLCwADAAAqyTANBgkqhkiG9w0BAQUFADBGMQswCQYD
VQQGEwJVUzETMBEGA1UEChMKR29vZ2xlIEluYzEiMCAGA1UEAxMZR29vZ2xlIElu
dGVybmV0IEF1dGhvcml0eTAeFw0xMTA1MjcwMTE5MTdaFw0xMjA1MjcwMTI5MTda
MGYxCzAJBgNVBAYTAlVTMRMwEQYDVQQIEwpDYWxpZm9ybmlhMRYwFAYDVQQHEw1N
b3VudGFpbiBWaWV3MRMwEQYDVQQKEwpHb29nbGUgSW5jMRUwEwYDVQQDFAwqLmdv
b2dsZS5jb20wgZ8wDQYJKoZIhvcNAQEBBQADgY0AMIGJAoGBAJcU3tp8DIf+qv8x
WLvWU7NaR8s7kTchk1mM7bLzJgIHsqJlrZeGtbKI+s6SE0nvktjI1qj1rg8J/Gan
Y+F3t2K1hHzGlxeJh9eaMw9N8kCQYWlK6ygl9yScWz+DsI+At6WHRd2VujFB7OF3
e0qUkTiTQnx4Z9hiQeZ4RqBNxjjjAgMBAAGjggLbMIIC1zAdBgNVHQ4EFgQU+R+o
BeihYCVGHnhWUXRm64XwlJowHwYDVR0jBBgwFoAUv8Aw6/VDET5nup6R+/xq2uNr
EiQwWwYDVR0fBFQwUjBQoE6gTIZKaHR0cDovL3d3dy5nc3RhdGljLmNvbS9Hb29n
bGVJbnRlcm5ldEF1dGhvcml0eS9Hb29nbGVJbnRlcm5ldEF1dGhvcml0eS5jcmww
ZgYIKwYBBQUHAQEEWjBYMFYGCCsGAQUFBzAChkpodHRwOi8vd3d3LmdzdGF0aWMu
Y29tL0dvb2dsZUludGVybmV0QXV0aG9yaXR5L0dvb2dsZUludGVybmV0QXV0aG9y
aXR5LmNydDAhBgkrBgEEAYI3FAIEFB4SAFcAZQBiAFMAZQByAHYAZQByMIIBqwYD
VR0RBIIBojCCAZ6CDCouZ29vZ2xlLmNvbYIKZ29vZ2xlLmNvbYILKi5hdGdnbC5j
b22CDSoueW91dHViZS5jb22CC3lvdXR1YmUuY29tggsqLnl0aW1nLmNvbYIPKi5n
b29nbGUuY29tLmJygg4qLmdvb2dsZS5jby5pboILKi5nb29nbGUuZXOCDiouZ29v
Z2xlLmNvLnVrggsqLmdvb2dsZS5jYYILKi5nb29nbGUuZnKCCyouZ29vZ2xlLnB0
ggsqLmdvb2dsZS5pdIILKi5nb29nbGUuZGWCCyouZ29vZ2xlLmNsggsqLmdvb2ds
ZS5wbIILKi5nb29nbGUubmyCDyouZ29vZ2xlLmNvbS5hdYIOKi5nb29nbGUuY28u
anCCCyouZ29vZ2xlLmh1gg8qLmdvb2dsZS5jb20ubXiCDyouZ29vZ2xlLmNvbS5h
coIPKi5nb29nbGUuY29tLmNvgg8qLmdvb2dsZS5jb20udm6CDyouZ29vZ2xlLmNv
bS50coINKi5hbmRyb2lkLmNvbYIUKi5nb29nbGVjb21tZXJjZS5jb20wDQYJKoZI
hvcNAQEFBQADgYEAYTkdKJ+MwKAgzYDiuRsjKJYzmE1W8fx43GQToys/6SC2+jIQ
vPLwQvxj/lN64VEKAkbS/TzVokBgeQtDuGBQUwrjx5MR9X2s0jHakM6ITeH6Zhme
Vhm4ONsoYIWuYHC/JXBVHSa12h96X9a8uwArfAsG1a+RNb4hCczfnIdVbqM=
-----END CERTIFICATE-----
subject=/C=US/ST=California/L=Mountain View/O=Google Inc/CN=*.google.com
issuer=/C=US/O=Google Inc/CN=Google Internet Authority
---
No client certificate CA names sent
---
SSL handshake has read 2279 bytes and written 396 bytes
---
New, TLSv1/SSLv3, Cipher is RC4-SHA
Server public key is 1024 bit
Secure Renegotiation IS supported
Compression: NONE
Expansion: NONE
SSL-Session:
Protocol  : TLSv1
Cipher    : RC4-SHA
Session-ID: 74A3AFC171FDDF82733AAFC7D54B9CF50160DD49FDF95591907339EC96EBE876
Session-ID-ctx:
Master-Key: BA97561FCF6170FEB6B61451ED8DDB6F2E83665399363BA80C64DF4E58A02578EB5C6EF43682EDD77162C985A87DB27D
Key-Arg   : None
PSK identity: None
PSK identity hint: None
TLS session ticket lifetime hint: 100800 (seconds)
TLS session ticket:
0000 - 43 26 be 2d 73 19 df a9-17 64 35 fa 8f 04 73 0b   C&.-s....d5...s.
0010 - d9 41 aa 6d 6a d3 6b 7e-d3 b5 f7 ec 92 c1 fb dd   .A.mj.k~........
0020 - 94 c2 73 d3 ab 6e c0 da-5d 20 0d 07 dc 08 87 4e   ..s..n..] .....N
0030 - 7c b5 f1 26 1f 08 73 2b-19 9e 83 ba 15 a4 80 f1   |..&..s+........
0040 - 60 c7 95 aa 74 f7 f2 f0-47 db ea d8 0a 34 33 2a   `...t...G....43*
0050 - d9 68 68 cb 53 6e a2 33-5a 54 46 c1 3c 86 2c e9   .hh.Sn.3ZTF.<.,.
0060 - 6c 54 5f 1d ce 8b c9 6d-79 74 5d af fd d2 06 7d   lT_....myt]....}
0070 - a8 80 d1 00 53 44 dd a2-5b ef 75 5a bd 32 60 69   ....SD..[.uZ.2`i
0080 - b0 2e 50 12 bd ed c8 dc-c8 28 70 e2 44 9d c0 6e   ..P......(p.D..n
0090 - 66 fd 5b 25                                       f.[%

Start Time: 1308355198
Timeout   : 300 (sec)
Verify return code: 20 (unable to get local issuer certificate)
---


read:errno=0

No comments:

Post a Comment