Advertisement
Not a member of Pastebin yet?
Sign Up,
it unlocks many cool features!
- root@vs-lachlanstilz:~/mosquitto-1.4.8/client# openssl s_client -connect localhost:8883 -CAfile ../test/ssl/all-ca.crt
- CONNECTED(00000003)
- depth=2 C = GB, ST = Derbyshire, L = Derby, O = Mosquitto Project, OU = Testing, CN = Root CA
- verify return:1
- depth=1 C = GB, ST = Derbyshire, O = Mosquitto Project, OU = Testing, CN = Signing CA
- verify return:1
- depth=0 C = GB, ST = Nottinghamshire, L = Nottingham, O = Server, OU = Production, CN = localhost
- verify return:1
- ---
- Certificate chain
- 0 s:/C=GB/ST=Nottinghamshire/L=Nottingham/O=Server/OU=Production/CN=localhost
- i:/C=GB/ST=Derbyshire/O=Mosquitto Project/OU=Testing/CN=Signing CA
- 1 s:/C=GB/ST=Derbyshire/O=Mosquitto Project/OU=Testing/CN=Signing CA
- i:/C=GB/ST=Derbyshire/L=Derby/O=Mosquitto Project/OU=Testing/CN=Root CA
- 2 s:/C=GB/ST=Derbyshire/L=Derby/O=Mosquitto Project/OU=Testing/CN=Root CA
- i:/C=GB/ST=Derbyshire/L=Derby/O=Mosquitto Project/OU=Testing/CN=Root CA
- ---
- Server certificate
- -----BEGIN CERTIFICATE-----
- MIICzDCCAjWgAwIBAgIBATANBgkqhkiG9w0BAQUFADBlMQswCQYDVQQGEwJHQjET
- MBEGA1UECAwKRGVyYnlzaGlyZTEaMBgGA1UECgwRTW9zcXVpdHRvIFByb2plY3Qx
- EDAOBgNVBAsMB1Rlc3RpbmcxEzARBgNVBAMMClNpZ25pbmcgQ0EwHhcNMTMwODMw
- MjIwMzI5WhcNMTgwODI5MjIwMzI5WjB2MQswCQYDVQQGEwJHQjEYMBYGA1UECAwP
- Tm90dGluZ2hhbXNoaXJlMRMwEQYDVQQHDApOb3R0aW5naGFtMQ8wDQYDVQQKDAZT
- ZXJ2ZXIxEzARBgNVBAsMClByb2R1Y3Rpb24xEjAQBgNVBAMMCWxvY2FsaG9zdDCB
- nzANBgkqhkiG9w0BAQEFAAOBjQAwgYkCgYEAq42Yl1+X+oL6VgFt8W6r70emJGwf
- 8ZrlgA1YcS++CCWHgRILoqrqGe51jGaIWzWseab/5OAblxnajShQV3HB/0S7vk/n
- 6OdUvxTPEpGxDSSbJByENqiZnh6HGBnxg8iu/aKvXim6rKxbVhwcDWTDgNFMxSGo
- briy8wN6GzXjnw8CAwEAAaN7MHkwCQYDVR0TBAIwADAsBglghkgBhvhCAQ0EHxYd
- T3BlblNTTCBHZW5lcmF0ZWQgQ2VydGlmaWNhdGUwHQYDVR0OBBYEFAfFr5UoN0X0
- LPW6amB53A+iRplyMB8GA1UdIwQYMBaAFEBDUBTRY34LfJcUIGPlipWWn9SrMA0G
- CSqGSIb3DQEBBQUAA4GBAJDdhcufSol4KybEgrk06jlai9k7Vlx432mrSvfGEIqj
- mhpdxb5VoTbfNtbqOuy+mTifNBlQxDBqGCpCn0Wg0le/N0e3LLAe9C6VGpqQLUGV
- AOgjPMGZ6jlWseqPLdvpLOrIW+eQjpgu/xOqc8La+q/uqoa2HdyRTiTfGU2qPxvX
- -----END CERTIFICATE-----
- subject=/C=GB/ST=Nottinghamshire/L=Nottingham/O=Server/OU=Production/CN=localhost
- issuer=/C=GB/ST=Derbyshire/O=Mosquitto Project/OU=Testing/CN=Signing CA
- ---
- No client certificate CA names sent
- ---
- SSL handshake has read 2640 bytes and written 416 bytes
- ---
- New, TLSv1/SSLv3, Cipher is ECDHE-RSA-AES256-GCM-SHA384
- Server public key is 1024 bit
- Secure Renegotiation IS supported
- Compression: NONE
- Expansion: NONE
- SSL-Session:
- Protocol : TLSv1.2
- Cipher : ECDHE-RSA-AES256-GCM-SHA384
- Session-ID: E290BA8AFFDA1A244246AAF052C9BD041A88275916AC30DBEB4D80AEE72C712F
- Session-ID-ctx:
- Master-Key: B47C93196014C3411C9A0B57068E9A86C8C76876076FD896C4A86FF293AAA320241BA3F15FC8D2DFB1B8716E7D2BE10F
- Key-Arg : None
- PSK identity: None
- PSK identity hint: None
- SRP username: None
- TLS session ticket lifetime hint: 300 (seconds)
- TLS session ticket:
- 0000 - b1 68 a3 81 df 85 9b bb-ba 3f d1 3b 81 7c c5 b1 .h.......?.;.|..
- 0010 - a6 5f cd 40 ed 7a ba a7-28 79 b6 b3 3c 4d 1f c8 ._.@.z..(y..<M..
- 0020 - d8 5a f8 4a 4c 12 1c 82-7d d9 40 f8 da f4 8b 9b .Z.JL...}.@.....
- 0030 - 7a c9 2d ed f2 12 2c 3e-e2 3b da a5 b5 fd 36 ca z.-...,>.;....6.
- 0040 - 49 fa ff b7 6f a5 4c f8-9a fe 33 87 4d 23 62 3e I...o.L...3.M#b>
- 0050 - 6e df a8 35 e9 08 d6 63-54 90 7f 86 d3 d4 da 68 n..5...cT......h
- 0060 - 96 02 ca 69 57 9b a2 ea-bb cd 8f 9c 24 12 77 20 ...iW.......$.w
- 0070 - c1 fb 93 8a 17 96 c8 66-70 b4 e6 a2 eb 3f 40 84 .......fp....?@.
- 0080 - 8b de 6d 6a 27 f2 cb 77-5f a1 7f 39 d6 59 d9 b9 ..mj'..w_..9.Y..
- 0090 - 23 67 b4 c5 04 64 38 3a-5e 46 1a 79 49 16 58 f0 #g...d8:^F.yI.X.
- 00a0 - 01 8f 9e 4f 44 20 26 e8-ed 43 5a 7d 6d f7 ac e2 ...OD &..CZ}m...
- Start Time: 1464103702
- Timeout : 300 (sec)
- Verify return code: 0 (ok)
- ---
- closed
- root@vs-lachlanstilz:~/mosquitto-1.4.8/client# openssl s_client -connect localhost:8883 -CAfile /etc/letsencrypt/live/www.smarterlift.co.uk/cert.pem
- CONNECTED(00000003)
- depth=2 O = Digital Signature Trust Co., CN = DST Root CA X3
- verify return:1
- depth=1 C = US, O = Let's Encrypt, CN = Let's Encrypt Authority X3
- verify return:1
- depth=0 CN = www.smarterlift.co.uk
- verify return:1
- ---
- Certificate chain
- 0 s:/CN=www.smarterlift.co.uk
- i:/C=US/O=Let's Encrypt/CN=Let's Encrypt Authority X3
- 1 s:/C=US/O=Let's Encrypt/CN=Let's Encrypt Authority X3
- i:/O=Digital Signature Trust Co./CN=DST Root CA X3
- ---
- Server certificate
- -----BEGIN CERTIFICATE-----
- MIIFITCCBAmgAwIBAgISA/c34Q8zdWOQlKedThR5b5/6MA0GCSqGSIb3DQEBCwUA
- MEoxCzAJBgNVBAYTAlVTMRYwFAYDVQQKEw1MZXQncyBFbmNyeXB0MSMwIQYDVQQD
- ExpMZXQncyBFbmNyeXB0IEF1dGhvcml0eSBYMzAeFw0xNjA0MjUwODE2MDBaFw0x
- NjA3MjQwODE2MDBaMCAxHjAcBgNVBAMTFXd3dy5zbWFydGVybGlmdC5jby51azCC
- ASIwDQYJKoZIhvcNAQEBBQADggEPADCCAQoCggEBALZrMLCsK+dwioAEOJ9UF4ap
- SJQWh/jhzPOUTS8kxVymnkw8MAUGPv2mH5Z7ehh8QpoWf9w+QlucX/K3qPQVN16o
- tPdWIoyDAux4wCUYcxbXwHxXarR8+Hvwbi300ZRQYccUGTKkrBuSvCZlamHcP/tP
- 1oMu/5OGEwB/8iHBmaWohIx852N1zJ9mfVyK+bp8cGDH37pRB4+7SiImKLZ627L2
- gQ14wEaOUGIWUf7vIKzQ6qCxhyN2o+f0nkNXhWAoR791L+wH920BQD/I9RHw6toU
- KdQ0mFozCziW60lo3GgcuCXep7UJOod9ALTcd6FCiTX132Vc6BBveMDQOsT/HJkC
- AwEAAaOCAikwggIlMA4GA1UdDwEB/wQEAwIFoDAdBgNVHSUEFjAUBggrBgEFBQcD
- AQYIKwYBBQUHAwIwDAYDVR0TAQH/BAIwADAdBgNVHQ4EFgQUb2ON8iizpf2w+qT1
- FZ+Sixl/AngwHwYDVR0jBBgwFoAUqEpqYwR93brm0Tm3pkVl7/Oo7KEwcAYIKwYB
- BQUHAQEEZDBiMC8GCCsGAQUFBzABhiNodHRwOi8vb2NzcC5pbnQteDMubGV0c2Vu
- Y3J5cHQub3JnLzAvBggrBgEFBQcwAoYjaHR0cDovL2NlcnQuaW50LXgzLmxldHNl
- bmNyeXB0Lm9yZy8wMwYDVR0RBCwwKoIRc21hcnRlcmxpZnQuY28udWuCFXd3dy5z
- bWFydGVybGlmdC5jby51azCB/gYDVR0gBIH2MIHzMAgGBmeBDAECATCB5gYLKwYB
- BAGC3xMBAQEwgdYwJgYIKwYBBQUHAgEWGmh0dHA6Ly9jcHMubGV0c2VuY3J5cHQu
- b3JnMIGrBggrBgEFBQcCAjCBngyBm1RoaXMgQ2VydGlmaWNhdGUgbWF5IG9ubHkg
- YmUgcmVsaWVkIHVwb24gYnkgUmVseWluZyBQYXJ0aWVzIGFuZCBvbmx5IGluIGFj
- Y29yZGFuY2Ugd2l0aCB0aGUgQ2VydGlmaWNhdGUgUG9saWN5IGZvdW5kIGF0IGh0
- dHBzOi8vbGV0c2VuY3J5cHQub3JnL3JlcG9zaXRvcnkvMA0GCSqGSIb3DQEBCwUA
- A4IBAQBKUFOjY6ZnML4GGoaUt6hyq9eazctd+8W6hqN97+I5qFEu3kj2+iIWI0bb
- Rlpcja5v6/DM1fFbuux9HFxutEPksacIfTL3hwnMfew2R4EPM2pQxGHWIIAqxVpX
- 8nPFpWs2ynEgmTAVxFECq84S9roewVWSUXq8jzAymHP0Itg5h4YqwLr/8CN4J5Y1
- jwv7Y21/nmHwVLAWIkOoZHvHyosR7f6wuhpdgSLi4U0bPmen8N4ZsD5P9ZmR4Dr/
- FAQcmIT3y07BSxOeoV9TCZFg4TAqL8zHa4W0Fglulqy3aJcg3lCkxH5SBuMVhyqN
- 6i93LflVM71yAQmX4bvPldU+igQ9
- -----END CERTIFICATE-----
- subject=/CN=www.smarterlift.co.uk
- issuer=/C=US/O=Let's Encrypt/CN=Let's Encrypt Authority X3
- ---
- No client certificate CA names sent
- ---
- SSL handshake has read 3169 bytes and written 416 bytes
- ---
- New, TLSv1/SSLv3, Cipher is ECDHE-RSA-AES256-GCM-SHA384
- Server public key is 2048 bit
- Secure Renegotiation IS supported
- Compression: NONE
- Expansion: NONE
- SSL-Session:
- Protocol : TLSv1.2
- Cipher : ECDHE-RSA-AES256-GCM-SHA384
- Session-ID: 354F43DDF18AE3A51669D53FA20982C77E2388ADCF1FBC054FBAA84E0A0B6913
- Session-ID-ctx:
- Master-Key: 7AA107CC60F7E9103BA14D2377E64F6B2EB3DA8790726F6B0878D1C5FAF000EA14B7DAB2C4018C5A6BAB1B58BF6CFB15
- Key-Arg : None
- PSK identity: None
- PSK identity hint: None
- SRP username: None
- TLS session ticket lifetime hint: 300 (seconds)
- TLS session ticket:
- 0000 - ed ca 01 c3 6d ca 17 dd-34 b1 40 29 73 69 a2 39 ....m...4.@)si.9
- 0010 - dd db c1 0c f2 a5 ef 82-c4 cb 09 b6 3e 2a a5 03 ............>*..
- 0020 - e3 35 2d 55 db e7 29 a6-cc 8f 82 20 c2 72 e4 0c .5-U..).... .r..
- 0030 - fb c6 e9 53 3b fe b0 4d-8e 91 1b e3 1c ad 07 7b ...S;..M.......{
- 0040 - 0b c3 81 ef 37 b6 24 d5-25 30 8c dd 96 23 8b 61 ....7.$.%0...#.a
- 0050 - ee 27 38 aa 39 25 68 c3-47 f2 a5 37 ad 6c 8f 1d .'8.9%h.G..7.l..
- 0060 - 70 09 7f 15 19 25 c9 9e-38 2e cb 02 89 c7 fa f6 p....%..8.......
- 0070 - 9c 26 e3 1b 5e db dd cd-60 aa 36 8a 65 b9 c3 f9 .&..^...`.6.e...
- 0080 - 3e a4 41 ce 42 11 3a ae-5b 38 e5 eb 1f 82 db 99 >.A.B.:.[8......
- 0090 - 5b 69 1a 7c a0 de d4 43-f4 9d d7 55 7d ac 88 33 [i.|...C...U}..3
- 00a0 - 9d 8c 06 0f eb 07 93 8e-8d 19 87 7a 74 4a d5 3c ...........ztJ.<
- Start Time: 1464103833
- Timeout : 300 (sec)
- Verify return code: 0 (ok)
- ---
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement