# gnutls-cli pgp.mit.edu Processed 175 CA certificate(s). Resolving 'pgp.mit.edu'... Connecting to '18.9.60.141:443'... - Certificate type: X.509 - Got a certificate list of 5 certificates. - Certificate[0] info: - subject `C=US,postalCode=02139,ST=Ma,L=Cambridge,street=77 Massachusetts Ave,O=Massachusetts Institute of Technology,OU=Information Services & Technology,OU=PlatinumSSL,CN=pgp.mit.edu', issuer `C=US,ST=MI,L=Ann Arbor,O=Internet2,OU=InCommon,CN=InCommon RSA Server CA', RSA key 2048 bits, signed using RSA-SHA256, activated `2014-10-09 00:00:00 UTC', expires `2017-10-08 23:59:59 UTC', SHA-1 fingerprint `3889f022c880b89f71539303461b836c4a830ebc' Public Key ID: fb90f2c7463783c4c89af40a41ead40de358bcc3 Public key's random art: +--[ RSA 2048]----+ | . | | * | | O = . o | | + E o o o | | o + +S. . | | . . o .oo + | | ...+o . o | | .o o+ | | .o. | +-----------------+ - Certificate[1] info: - subject `C=US,ST=MI,L=Ann Arbor,O=Internet2,OU=InCommon,CN=InCommon RSA Server CA', issuer `C=US,ST=New Jersey,L=Jersey City,O=The USERTRUST Network,CN=USERTrust RSA Certification Authority', RSA key 2048 bits, signed using RSA-SHA512, activated `2014-09-19 00:00:00 UTC', expires `2024-09-18 23:59:59 UTC', SHA-1 fingerprint `f4f26a16d4b913cf3208e664e3dd384e56ce77af' - Certificate[2] info: - subject `C=US,O=Internet2,OU=InCommon,CN=InCommon Server CA', issuer `C=SE,O=AddTrust AB,OU=AddTrust External TTP Network,CN=AddTrust External CA Root', RSA key 2048 bits, signed using RSA-SHA1, activated `2010-12-07 00:00:00 UTC', expires `2020-05-30 10:48:38 UTC', SHA-1 fingerprint `06c9cfeda69976d1b9c2b523490da476d9dc3a5a' - Certificate[3] info: - subject `C=US,ST=New Jersey,L=Jersey City,O=The USERTRUST Network,CN=USERTrust RSA Certification Authority', issuer `C=SE,O=AddTrust AB,OU=AddTrust External TTP Network,CN=AddTrust External CA Root', RSA key 4096 bits, signed using RSA-SHA384, activated `2000-05-30 10:48:38 UTC', expires `2020-05-30 10:48:38 UTC', SHA-1 fingerprint `eab040689a0d805b5d6fd654fc168cff00b78be3' - Certificate[4] info: - subject `C=SE,O=AddTrust AB,OU=AddTrust External TTP Network,CN=AddTrust External CA Root', issuer `C=SE,O=AddTrust AB,OU=AddTrust External TTP Network,CN=AddTrust External CA Root', RSA key 2048 bits, signed using RSA-SHA1, activated `2000-05-30 10:48:38 UTC', expires `2020-05-30 10:48:38 UTC', SHA-1 fingerprint `02faf3e291435468607857694df5e45b68851868' - Status: The certificate is trusted. - Description: (TLS1.2)-(RSA)-(AES-128-GCM) - Session ID: CF:C2:50:ED:81:A8:18:59:75:11:2D:A2:D3:91:06:F0:01:6D:C8:B9:3D:39:F3:C1:90:2B:51:A0:88:AD:F3:03 - Version: TLS1.2 - Key Exchange: RSA - Cipher: AES-128-GCM - MAC: AEAD - Compression: NULL - Options: safe renegotiation, - Handshake was completed - Simple Client Mode: ^C # openssl s_client -connect pgp.mit.edu:443 CONNECTED(00000003) depth=3 C = SE, O = AddTrust AB, OU = AddTrust External TTP Network, CN = AddTrust External CA Root verify return:1 depth=2 C = US, ST = New Jersey, L = Jersey City, O = The USERTRUST Network, CN = USERTrust RSA Certification Authority verify return:1 depth=1 C = US, ST = MI, L = Ann Arbor, O = Internet2, OU = InCommon, CN = InCommon RSA Server CA verify return:1 depth=0 C = US, postalCode = 02139, ST = Ma, L = Cambridge, street = 77 Massachusetts Ave, O = Massachusetts Institute of Technology, OU = Information Services & Technology, OU = PlatinumSSL, CN = pgp.mit.edu verify return:1 --- Certificate chain 0 s:/C=US/postalCode=02139/ST=Ma/L=Cambridge/street=77 Massachusetts Ave/O=Massachusetts Institute of Technology/OU=Information Services & Technology/OU=PlatinumSSL/CN=pgp.mit.edu i:/C=US/ST=MI/L=Ann Arbor/O=Internet2/OU=InCommon/CN=InCommon RSA Server CA 1 s:/C=US/ST=MI/L=Ann Arbor/O=Internet2/OU=InCommon/CN=InCommon RSA Server CA i:/C=US/ST=New Jersey/L=Jersey City/O=The USERTRUST Network/CN=USERTrust RSA Certification Authority 2 s:/C=US/O=Internet2/OU=InCommon/CN=InCommon Server CA i:/C=SE/O=AddTrust AB/OU=AddTrust External TTP Network/CN=AddTrust External CA Root 3 s:/C=US/ST=New Jersey/L=Jersey City/O=The USERTRUST Network/CN=USERTrust RSA Certification Authority i:/C=SE/O=AddTrust AB/OU=AddTrust External TTP Network/CN=AddTrust External CA Root 4 s:/C=SE/O=AddTrust AB/OU=AddTrust External TTP Network/CN=AddTrust External CA Root i:/C=SE/O=AddTrust AB/OU=AddTrust External TTP Network/CN=AddTrust External CA Root --- Server certificate -----BEGIN CERTIFICATE----- MIIFpzCCBI+gAwIBAgIQSCQjuTbnogvWCWWHeCDMbzANBgkqhkiG9w0BAQsFADB2 MQswCQYDVQQGEwJVUzELMAkGA1UECBMCTUkxEjAQBgNVBAcTCUFubiBBcmJvcjES MBAGA1UEChMJSW50ZXJuZXQyMREwDwYDVQQLEwhJbkNvbW1vbjEfMB0GA1UEAxMW SW5Db21tb24gUlNBIFNlcnZlciBDQTAeFw0xNDEwMDkwMDAwMDBaFw0xNzEwMDgy MzU5NTlaMIHlMQswCQYDVQQGEwJVUzEOMAwGA1UEERMFMDIxMzkxCzAJBgNVBAgT Ak1hMRIwEAYDVQQHEwlDYW1icmlkZ2UxHTAbBgNVBAkTFDc3IE1hc3NhY2h1c2V0 dHMgQXZlMS4wLAYDVQQKEyVNYXNzYWNodXNldHRzIEluc3RpdHV0ZSBvZiBUZWNo bm9sb2d5MSowKAYDVQQLFCFJbmZvcm1hdGlvbiBTZXJ2aWNlcyAmIFRlY2hub2xv Z3kxFDASBgNVBAsTC1BsYXRpbnVtU1NMMRQwEgYDVQQDEwtwZ3AubWl0LmVkdTCC ASIwDQYJKoZIhvcNAQEBBQADggEPADCCAQoCggEBAOXCQWXwK1O/saHfUEJjeE6w VvTMe8xgl5qmkU+9U2TS6HdyVItD9fHZ3sAwVHo7mYtLGXp0S8F2hiiyLgQeQo84 F/owinPaPU8c+2Ogw464HbROmjU7Vc/iHQklA0kR+lZsFwZuWd+nYjmPrNfm87Ik k9Wenco7wwFUquoJ8XZW1RVTr9WRWWlyNKwPnil5aBUGtbG6CP1+IFN75xfJYjz5 g+JcLHYsKyb6JhPYxT42ZdgTPKVRJNuIpyOMXMIPB/qFgUyU+2T/g7vxoa3THllq vkp/ds5lpDe+uu6H9mbtMYvX5w9TBqt7YPegWcTUhGERnytXxeNpncYkzGMMUN0C AwEAAaOCAb8wggG7MB8GA1UdIwQYMBaAFB4Fo3ePbJbiW4dLprSGrHEADOc4MB0G A1UdDgQWBBRISoMA6cVQE5089wT6LFO4aiNnzTAOBgNVHQ8BAf8EBAMCBaAwDAYD VR0TAQH/BAIwADAdBgNVHSUEFjAUBggrBgEFBQcDAQYIKwYBBQUHAwIwZwYDVR0g BGAwXjBSBgwrBgEEAa4jAQQDAQEwQjBABggrBgEFBQcCARY0aHR0cHM6Ly93d3cu aW5jb21tb24ub3JnL2NlcnQvcmVwb3NpdG9yeS9jcHNfc3NsLnBkZjAIBgZngQwB AgIwRAYDVR0fBD0wOzA5oDegNYYzaHR0cDovL2NybC5pbmNvbW1vbi1yc2Eub3Jn L0luQ29tbW9uUlNBU2VydmVyQ0EuY3JsMHUGCCsGAQUFBwEBBGkwZzA+BggrBgEF BQcwAoYyaHR0cDovL2NydC51c2VydHJ1c3QuY29tL0luQ29tbW9uUlNBU2VydmVy Q0FfMi5jcnQwJQYIKwYBBQUHMAGGGWh0dHA6Ly9vY3NwLnVzZXJ0cnVzdC5jb20w FgYDVR0RBA8wDYILcGdwLm1pdC5lZHUwDQYJKoZIhvcNAQELBQADggEBAHbQqv2o LrRD8rMzaHvPHVa92gfi6bpEsiRsVw3kpH4D4k+PL9LWkgtgTWpM+MvskiUvS9ay FbWdXiy/peOj421fwnL/re9gmWs1g7FtUrDgIpz2T2jonPqbnIJPMHxI+ICWZMYH V/dO844geRKAiGs/UZbG4Uf1Jo0PxtPtD5puaUk4l9Va8WHU2OLq0kzS9K+iu/sx z0XG+fAMneyiXm5jtfjYE2W8/h61RhZulSUmYBkiMLzKr5eqe2VIkMqyTfyZ5zms 1LZ1GWaouMsTBN1+2TXssQ71L1tIZg/lXJVlfVRkwOIV5Mp3ohxLSBZT8qNSef1v mFNa+DGU1sdl6m4= -----END CERTIFICATE----- subject=/C=US/postalCode=02139/ST=Ma/L=Cambridge/street=77 Massachusetts Ave/O=Massachusetts Institute of Technology/OU=Information Services & Technology/OU=PlatinumSSL/CN=pgp.mit.edu issuer=/C=US/ST=MI/L=Ann Arbor/O=Internet2/OU=InCommon/CN=InCommon RSA Server CA --- No client certificate CA names sent Peer signing digest: SHA512 Server Temp Key: DH, 1024 bits --- SSL handshake has read 7581 bytes and written 498 bytes --- New, TLSv1/SSLv3, Cipher is DHE-RSA-AES256-GCM-SHA384 Server public key is 2048 bit Secure Renegotiation IS supported Compression: NONE Expansion: NONE No ALPN negotiated SSL-Session: Protocol : TLSv1.2 Cipher : DHE-RSA-AES256-GCM-SHA384 Session-ID: 3C55722E6B941834B3274AA677788260B78714501A8B8510A8E7F3058335C7F8 Session-ID-ctx: Master-Key: 731F0E38DE40CD3E9E5EC1A234C95DC78D9AE91B5B0DC465C57C2BC9DBB09AA00D79B3A7A2421E93444AEEBB99A0353F Key-Arg : None PSK identity: None PSK identity hint: None SRP username: None TLS session ticket lifetime hint: 300 (seconds) TLS session ticket: 0000 - 97 ee 87 65 ad ff c5 fc-ea 2e a9 cd 85 ae 80 f3 ...e............ 0010 - a9 06 71 25 58 f3 b0 96-69 a3 c2 b3 45 3e ff e2 ..q%X...i...E>.. 0020 - a2 73 73 1e 1c f3 0e 37-e4 b2 f6 f1 c3 e0 96 ec .ss....7........ 0030 - c5 c6 4d 9e d8 09 94 da-8a 8b 70 c7 41 de d9 41 ..M.......p.A..A 0040 - 9e dd 7b 8f 8c 2e 52 3a-51 84 06 bd 3d 02 32 75 ..{...R:Q...=.2u 0050 - 4d b0 77 5b 8e 38 b5 04-b7 cb 5a ff f1 e5 b4 d1 M.w[.8....Z..... 0060 - 68 89 20 55 53 a0 18 c4-d6 26 b2 61 0a 6e 1c 97 h. US....&.a.n.. 0070 - 03 7e 04 ec e8 d6 74 3b-bf 96 1e 76 28 7b 73 ac .~....t;...v({s. 0080 - 4e f0 3b 2a 82 c4 9b b3-cc 9c 5b b7 f8 72 be 38 N.;*......[..r.8 0090 - 11 9f 1d 4e 64 14 29 e0-ac 4e 03 71 b8 f1 12 54 ...Nd.)..N.q...T 00a0 - 04 de 26 7e 31 48 ae aa-15 73 aa 88 7f 22 87 0e ..&~1H...s...".. 00b0 - 99 11 0b 5b b3 1b aa 83-09 0d 8c 48 a8 aa 5b 15 ...[.......H..[. Start Time: 1477284855 Timeout : 300 (sec) Verify return code: 0 (ok) --- ^C