depth=1 O = Root CA, OU = http://www.cacert.org, CN = CA Cert Signing Authority, emailAddress = support@cacert.org verify error:num=19:self signed certificate in certificate chain CONNECTED(00000003) --- Certificate chain 0 s:/CN=*.hoi-polloi.org i:/O=Root CA/OU=http://www.cacert.org/CN=CA Cert Signing Authority/emailAddress=support@cacert.org -----BEGIN CERTIFICATE----- MIIGDjCCA/agAwIBAgIDEyrhMA0GCSqGSIb3DQEBDQUAMHkxEDAOBgNVBAoTB1Jv b3QgQ0ExHjAcBgNVBAsTFWh0dHA6Ly93d3cuY2FjZXJ0Lm9yZzEiMCAGA1UEAxMZ Q0EgQ2VydCBTaWduaW5nIEF1dGhvcml0eTEhMB8GCSqGSIb3DQEJARYSc3VwcG9y dEBjYWNlcnQub3JnMB4XDTE3MDkxNTIxMzYwOFoXDTE4MDMxNDIxMzYwOFowGzEZ MBcGA1UEAxQQKi5ob2ktcG9sbG9pLm9yZzCCAiIwDQYJKoZIhvcNAQEBBQADggIP ADCCAgoCggIBANM6PUeum+1773RmzbcRtZ2Dct7DGjs+x0F+9GMpQne+1v87lLk6 D7hFYaKntQqar2c5HTRo26VYCoKqkwuE1doH7tFYyZ7z/CvQZ3ggvhMMTMFGM70F OBLLbOBGbmxKYiz/ApIw6exu1+3TN8tVKfensVTjBSuNyk66bwjFOe3rezWaxCfv kM9pjbJhWR6ZSVQ1UdGuO8pkrxlEJR5ZDHq6IjFwUGnTv5d67MMijrzlO47b9Ubz vx1xjej78LOfXtGjdbko7eVNKD+8UMkvJys/8ZGpql4I795Qk09Rcm2xX82tYWwH A9dRH6E1BHgjqx+7Re5FeYCh5UIMFM47Yzxj4HwJxMqcud0hobpUSbTI0KpjQzqc 6b+kRYVyh7xWaGUUqLY6a61ld/kpWGliCJU3RPGQjlVpF3V3pr3JSpxWYzEa6cO7 POBYKIbFsRSpSLLd5ro69sBAtRu+HzCd4S0aGZrf0FLdakKTqpr9gUtuCvNS54uy I44sdTBuc7zXwyFvr3Qo0QothuNjrgsxLSlh77c5FX+qZ8fBsGXF8wCmhWGi+Ejy VDNgX+Z+csvv0rdpaMK2c9F0R8yRylCBK8c5Oq54QCZZFfcyXcgzCepKP4UbNusP b+Z7M5LKgMKORPQcWjp3S1Sev7Z+5JrBQskOQQxA5uifr9Bb7y6WlfG7AgMBAAGj gfwwgfkwDAYDVR0TAQH/BAIwADAOBgNVHQ8BAf8EBAMCA6gwNAYDVR0lBC0wKwYI KwYBBQUHAwIGCCsGAQUFBwMBBglghkgBhvhCBAEGCisGAQQBgjcKAwMwMwYIKwYB BQUHAQEEJzAlMCMGCCsGAQUFBzABhhdodHRwOi8vb2NzcC5jYWNlcnQub3JnLzAx BgNVHR8EKjAoMCagJKAihiBodHRwOi8vY3JsLmNhY2VydC5vcmcvcmV2b2tlLmNy bDA7BgNVHREENDAyghAqLmhvaS1wb2xsb2kub3JnoB4GCCsGAQUFBwgFoBIMECou aG9pLXBvbGxvaS5vcmcwDQYJKoZIhvcNAQENBQADggIBAFTIBB4uQAP041hx1Cem AnV576QmwHIXLhO1Ac3z3n7yq7BaDN2yAEDkyoPft4QL424VeuWLOHLlR5+g5EkL +FEw3SDzbCtC81sKHLfjPYcmVoEz5o5s8wurRYqrJyM8i7d7RLxJAkdyRTobGIf2 fwiRyE/Yx+hdWcDxB69FXuouWoZsKZUaWCpDwfDrrcPA8YHbp/4U78HKermrDwpv L6dWxiehCMuyh9VyBcol0T0971+T/ngcJac2cneKbCtQX2jLDNODycz6g0J0f5fX T7LTwtlqOXRAlykGOq+H4uqot0aqT3IwFIKpcgVBlhtwZLL+TBhCmOmLwqvi2Ru1 6p+QaR6KZTAgMGyLWTo7XgEMRFYJUVMI0AtLdAp5uGeiVF9mZFiYEjqhEjldbZ5i GtHnvy2o+ZBt8yO3DbNU2N6PHf4Mb8J0Ggupc+t/Up8mqhO4eoFaxW8t/nez2cX0 V4MLfTzXSGIzUf/5bAt7wKX+L3iLYZlCsHgH2rffpWHjOgSl5qtnUN6l125y4RrH kNF+3WmrXTbpWEdAkI4ioj4cKeoGv1FyXc8ahTIM2QCd91uqigAjCJsYtftuFaTs 9rhRmtYcSG+abt4I5I/iv7Teo58dovWUkGdY6ZL6ifFUYkl+BLO9kiQeQg6lH1e1 2nhvHH+sGUTgz9BDRC2jg5ex -----END CERTIFICATE----- 1 s:/O=Root CA/OU=http://www.cacert.org/CN=CA Cert Signing Authority/emailAddress=support@cacert.org i:/O=Root CA/OU=http://www.cacert.org/CN=CA Cert Signing Authority/emailAddress=support@cacert.org -----BEGIN CERTIFICATE----- MIIHPTCCBSWgAwIBAgIBADANBgkqhkiG9w0BAQQFADB5MRAwDgYDVQQKEwdSb290 IENBMR4wHAYDVQQLExVodHRwOi8vd3d3LmNhY2VydC5vcmcxIjAgBgNVBAMTGUNB IENlcnQgU2lnbmluZyBBdXRob3JpdHkxITAfBgkqhkiG9w0BCQEWEnN1cHBvcnRA Y2FjZXJ0Lm9yZzAeFw0wMzAzMzAxMjI5NDlaFw0zMzAzMjkxMjI5NDlaMHkxEDAO BgNVBAoTB1Jvb3QgQ0ExHjAcBgNVBAsTFWh0dHA6Ly93d3cuY2FjZXJ0Lm9yZzEi MCAGA1UEAxMZQ0EgQ2VydCBTaWduaW5nIEF1dGhvcml0eTEhMB8GCSqGSIb3DQEJ ARYSc3VwcG9ydEBjYWNlcnQub3JnMIICIjANBgkqhkiG9w0BAQEFAAOCAg8AMIIC CgKCAgEAziLA4kZ97DYoB1CW8qAzQIxL8TtmPzHlawI229Z89vGIj053NgVBlfkJ 8BLPRoZzYLdufujAWGSuzbCtRRcMY/pnCujW0r8+55jE8Ez64AO7NV1sId6eINm6 zWYyN3L69wj1x81YyY7nDl7qPv4coRQKFWyGhFtkZip6qUtTefWIonvuLwphK42y fk1WpRPs6tqSnqxEQR5YYGUFZvjARL3LlPdCfgv3ZWiYUQXw8wWRBB0bF4LsyFe7 w2t6iPGwcswlWyCR7BYCEo8y6RcYSNDHBS4CMEK4JZwFaz+qOqfrU0j36NK2B5jc G8Y0f3/JHIJ6BVgrCFvzOKKrF11myZjXnhCLotLddJr3cQxyYN/Nb5gznZY0dj4k epKwDpUeb+agRThHqtdB7Uq3EvbXG4OKDy7YCbZZ16oE/9KTfWgu3YtLq1i6L43q laegw1SJpfvbi1EinbLDvhG+LJGGi5Z4rSDTii8aP8bQUWWHIbEZAWV/RRyH9XzQ QUxPKZgh/TMfdQwEUfoZd9vUFBzugcMd9Zi3aQaRIt0AUMyBMawSB3s42mhb5ivU fslfrejrckzzAeVLIL+aplfKkQABi6F1ITe1Yw1nPkZPcCBnzsXWWdsC4PDSy826 YreQQejdIOQpvGQpQsgi3Hia/0PsmBsJUUtaWsJx8cTLc6nloQsCAwEAAaOCAc4w ggHKMB0GA1UdDgQWBBQWtTIb1Mfz4OaO873SsDrusjkY0TCBowYDVR0jBIGbMIGY gBQWtTIb1Mfz4OaO873SsDrusjkY0aF9pHsweTEQMA4GA1UEChMHUm9vdCBDQTEe MBwGA1UECxMVaHR0cDovL3d3dy5jYWNlcnQub3JnMSIwIAYDVQQDExlDQSBDZXJ0 IFNpZ25pbmcgQXV0aG9yaXR5MSEwHwYJKoZIhvcNAQkBFhJzdXBwb3J0QGNhY2Vy dC5vcmeCAQAwDwYDVR0TAQH/BAUwAwEB/zAyBgNVHR8EKzApMCegJaAjhiFodHRw czovL3d3dy5jYWNlcnQub3JnL3Jldm9rZS5jcmwwMAYJYIZIAYb4QgEEBCMWIWh0 dHBzOi8vd3d3LmNhY2VydC5vcmcvcmV2b2tlLmNybDA0BglghkgBhvhCAQgEJxYl aHR0cDovL3d3dy5jYWNlcnQub3JnL2luZGV4LnBocD9pZD0xMDBWBglghkgBhvhC AQ0ESRZHVG8gZ2V0IHlvdXIgb3duIGNlcnRpZmljYXRlIGZvciBGUkVFIGhlYWQg b3ZlciB0byBodHRwOi8vd3d3LmNhY2VydC5vcmcwDQYJKoZIhvcNAQEEBQADggIB ACjH7pyCArpcgBLKNQodgW+JapnM8mgPf6fhjViVPr3yBsOQWqy1YPaZQwGjiHCc nWKdpIevZ1gNMDY75q1I08t0AoZxPuIrA2jxNGJARjtT6ij0rPtmlVOKTV39O9lg 18p5aTuxZZKmxoGCXJzN600BiqXfEVWqFcofN8CCmHBh22p8lqOOLlQ+TyGpkO/c gr/c6EWtTZBzCDyUZbAEmXZ/4rzCahWqlwQ3JNgelE5tDlG+1sSPypZt90Pf6DBl Jzt7u0NDY8RD97LsaMzhGY4i+5jhe1o+ATc7iwiwovOVThrLm82asduycPAtStvY sONvRUgzEv/+PDIqVPfE94rwiCPCR/5kenHA0R6mY7AHfqQv0wGP3J8rtsYIqQ+T SCX8Ev2fQtzzxD72V7DX3WnRBnc0CkvSyqD/HMaMyRa+xMwyN2hzXwj7UfdJUzYF CpUCTPJ5GhD22Dp1nPMd8aINcGeGG7MW9S/lpOt5hvk9C8JzC6WZrG/8Z7jlLwum GCSNe9FINSkYQKyTYOGWhlC0elnYjyELn8+CkcY7v2vcB5G5l1YjqrZslMZIBjzk zk6q5PYvCdxTby78dOs6Y5nCpqyJvKeyRKANihDjbPIky/qbn3BHLt4Ui9SyIAmW omTxJBzcoTWcFbLUvFUufQb1nA5V9FrWk9p2rSVzTMVD -----END CERTIFICATE----- --- Server certificate subject=/CN=*.hoi-polloi.org issuer=/O=Root CA/OU=http://www.cacert.org/CN=CA Cert Signing Authority/emailAddress=support@cacert.org --- No client certificate CA names sent Peer signing digest: SHA512 Server Temp Key: DH, 2048 bits --- SSL handshake has read 5021 bytes and written 494 bytes Verification error: self signed certificate in certificate chain --- New, TLSv1.2, Cipher is DHE-RSA-AES256-GCM-SHA384 Server public key is 4096 bit Secure Renegotiation IS supported Compression: NONE Expansion: NONE No ALPN negotiated SSL-Session: Protocol : TLSv1.2 Cipher : DHE-RSA-AES256-GCM-SHA384 Session-ID: 504A732D85B11C6F58D6BF3F56658945C12BF650A60569D6BAF83C0EE28B9C05 Session-ID-ctx: Master-Key: 0603F6E762034B54044CF0057FB0F1E309399385BB278D82CD66C2B9E05E79FC318B7DDA0D576E8EC2842A573ADD1DD1 PSK identity: None PSK identity hint: None SRP username: None TLS session ticket lifetime hint: 1 (seconds) TLS session ticket: 0000 - cb b4 ed 35 8e 4d 34 a4-3c 82 ff ad 77 3c 3d 32 ...5.M4.<...w<=2 0010 - 0b f3 35 7e 96 d0 3c 55-7f d2 a9 15 b6 eb db fe ..5~.......1 0040 - 58 27 0c c3 e3 45 61 75-9a 7e 0c 13 35 63 10 50 X'...Eau.~..5c.P 0050 - 37 4d fe 61 2e 78 3d 73-aa c0 e1 ac a4 a6 08 c3 7M.a.x=s........ 0060 - d5 fd 9d 7f 7b 89 d1 c4-e8 99 8f 2d 90 06 40 02 ....{......-..@. 0070 - 55 d2 8b ee ec 0f 2d ff-5b bb 31 4d ff 95 36 22 U.....-.[.1M..6" 0080 - de 76 da cf 65 9f 26 56-c7 d6 51 13 65 4a cf 24 .v..e.&V..Q.eJ.$ 0090 - 5e 5c 27 7c a5 4a ec 0f-d4 e3 3a b0 ff 9e ca 7c ^\'|.J....:....| Start Time: 1508702971 Timeout : 7200 (sec) Verify return code: 19 (self signed certificate in certificate chain) Extended master secret: no ---