depth=1 O = Root CA, OU = http://www.cacert.org, CN = CA Cert Signing Authority, emailAddress = support@cacert.org verify error:num=19:self signed certificate in certificate chain CONNECTED(00000003) --- Certificate chain 0 s:/CN=*.hoi-polloi.org i:/O=Root CA/OU=http://www.cacert.org/CN=CA Cert Signing Authority/emailAddress=support@cacert.org -----BEGIN CERTIFICATE----- MIIGDjCCA/agAwIBAgIDEyrhMA0GCSqGSIb3DQEBDQUAMHkxEDAOBgNVBAoTB1Jv b3QgQ0ExHjAcBgNVBAsTFWh0dHA6Ly93d3cuY2FjZXJ0Lm9yZzEiMCAGA1UEAxMZ Q0EgQ2VydCBTaWduaW5nIEF1dGhvcml0eTEhMB8GCSqGSIb3DQEJARYSc3VwcG9y dEBjYWNlcnQub3JnMB4XDTE3MDkxNTIxMzYwOFoXDTE4MDMxNDIxMzYwOFowGzEZ MBcGA1UEAxQQKi5ob2ktcG9sbG9pLm9yZzCCAiIwDQYJKoZIhvcNAQEBBQADggIP ADCCAgoCggIBANM6PUeum+1773RmzbcRtZ2Dct7DGjs+x0F+9GMpQne+1v87lLk6 D7hFYaKntQqar2c5HTRo26VYCoKqkwuE1doH7tFYyZ7z/CvQZ3ggvhMMTMFGM70F OBLLbOBGbmxKYiz/ApIw6exu1+3TN8tVKfensVTjBSuNyk66bwjFOe3rezWaxCfv kM9pjbJhWR6ZSVQ1UdGuO8pkrxlEJR5ZDHq6IjFwUGnTv5d67MMijrzlO47b9Ubz vx1xjej78LOfXtGjdbko7eVNKD+8UMkvJys/8ZGpql4I795Qk09Rcm2xX82tYWwH A9dRH6E1BHgjqx+7Re5FeYCh5UIMFM47Yzxj4HwJxMqcud0hobpUSbTI0KpjQzqc 6b+kRYVyh7xWaGUUqLY6a61ld/kpWGliCJU3RPGQjlVpF3V3pr3JSpxWYzEa6cO7 POBYKIbFsRSpSLLd5ro69sBAtRu+HzCd4S0aGZrf0FLdakKTqpr9gUtuCvNS54uy I44sdTBuc7zXwyFvr3Qo0QothuNjrgsxLSlh77c5FX+qZ8fBsGXF8wCmhWGi+Ejy VDNgX+Z+csvv0rdpaMK2c9F0R8yRylCBK8c5Oq54QCZZFfcyXcgzCepKP4UbNusP b+Z7M5LKgMKORPQcWjp3S1Sev7Z+5JrBQskOQQxA5uifr9Bb7y6WlfG7AgMBAAGj gfwwgfkwDAYDVR0TAQH/BAIwADAOBgNVHQ8BAf8EBAMCA6gwNAYDVR0lBC0wKwYI KwYBBQUHAwIGCCsGAQUFBwMBBglghkgBhvhCBAEGCisGAQQBgjcKAwMwMwYIKwYB BQUHAQEEJzAlMCMGCCsGAQUFBzABhhdodHRwOi8vb2NzcC5jYWNlcnQub3JnLzAx BgNVHR8EKjAoMCagJKAihiBodHRwOi8vY3JsLmNhY2VydC5vcmcvcmV2b2tlLmNy bDA7BgNVHREENDAyghAqLmhvaS1wb2xsb2kub3JnoB4GCCsGAQUFBwgFoBIMECou aG9pLXBvbGxvaS5vcmcwDQYJKoZIhvcNAQENBQADggIBAFTIBB4uQAP041hx1Cem AnV576QmwHIXLhO1Ac3z3n7yq7BaDN2yAEDkyoPft4QL424VeuWLOHLlR5+g5EkL +FEw3SDzbCtC81sKHLfjPYcmVoEz5o5s8wurRYqrJyM8i7d7RLxJAkdyRTobGIf2 fwiRyE/Yx+hdWcDxB69FXuouWoZsKZUaWCpDwfDrrcPA8YHbp/4U78HKermrDwpv L6dWxiehCMuyh9VyBcol0T0971+T/ngcJac2cneKbCtQX2jLDNODycz6g0J0f5fX T7LTwtlqOXRAlykGOq+H4uqot0aqT3IwFIKpcgVBlhtwZLL+TBhCmOmLwqvi2Ru1 6p+QaR6KZTAgMGyLWTo7XgEMRFYJUVMI0AtLdAp5uGeiVF9mZFiYEjqhEjldbZ5i GtHnvy2o+ZBt8yO3DbNU2N6PHf4Mb8J0Ggupc+t/Up8mqhO4eoFaxW8t/nez2cX0 V4MLfTzXSGIzUf/5bAt7wKX+L3iLYZlCsHgH2rffpWHjOgSl5qtnUN6l125y4RrH kNF+3WmrXTbpWEdAkI4ioj4cKeoGv1FyXc8ahTIM2QCd91uqigAjCJsYtftuFaTs 9rhRmtYcSG+abt4I5I/iv7Teo58dovWUkGdY6ZL6ifFUYkl+BLO9kiQeQg6lH1e1 2nhvHH+sGUTgz9BDRC2jg5ex -----END CERTIFICATE----- 1 s:/O=Root CA/OU=http://www.cacert.org/CN=CA Cert Signing Authority/emailAddress=support@cacert.org i:/O=Root CA/OU=http://www.cacert.org/CN=CA Cert Signing Authority/emailAddress=support@cacert.org -----BEGIN CERTIFICATE----- MIIHPTCCBSWgAwIBAgIBADANBgkqhkiG9w0BAQQFADB5MRAwDgYDVQQKEwdSb290 IENBMR4wHAYDVQQLExVodHRwOi8vd3d3LmNhY2VydC5vcmcxIjAgBgNVBAMTGUNB IENlcnQgU2lnbmluZyBBdXRob3JpdHkxITAfBgkqhkiG9w0BCQEWEnN1cHBvcnRA Y2FjZXJ0Lm9yZzAeFw0wMzAzMzAxMjI5NDlaFw0zMzAzMjkxMjI5NDlaMHkxEDAO BgNVBAoTB1Jvb3QgQ0ExHjAcBgNVBAsTFWh0dHA6Ly93d3cuY2FjZXJ0Lm9yZzEi MCAGA1UEAxMZQ0EgQ2VydCBTaWduaW5nIEF1dGhvcml0eTEhMB8GCSqGSIb3DQEJ ARYSc3VwcG9ydEBjYWNlcnQub3JnMIICIjANBgkqhkiG9w0BAQEFAAOCAg8AMIIC CgKCAgEAziLA4kZ97DYoB1CW8qAzQIxL8TtmPzHlawI229Z89vGIj053NgVBlfkJ 8BLPRoZzYLdufujAWGSuzbCtRRcMY/pnCujW0r8+55jE8Ez64AO7NV1sId6eINm6 zWYyN3L69wj1x81YyY7nDl7qPv4coRQKFWyGhFtkZip6qUtTefWIonvuLwphK42y fk1WpRPs6tqSnqxEQR5YYGUFZvjARL3LlPdCfgv3ZWiYUQXw8wWRBB0bF4LsyFe7 w2t6iPGwcswlWyCR7BYCEo8y6RcYSNDHBS4CMEK4JZwFaz+qOqfrU0j36NK2B5jc G8Y0f3/JHIJ6BVgrCFvzOKKrF11myZjXnhCLotLddJr3cQxyYN/Nb5gznZY0dj4k epKwDpUeb+agRThHqtdB7Uq3EvbXG4OKDy7YCbZZ16oE/9KTfWgu3YtLq1i6L43q laegw1SJpfvbi1EinbLDvhG+LJGGi5Z4rSDTii8aP8bQUWWHIbEZAWV/RRyH9XzQ QUxPKZgh/TMfdQwEUfoZd9vUFBzugcMd9Zi3aQaRIt0AUMyBMawSB3s42mhb5ivU fslfrejrckzzAeVLIL+aplfKkQABi6F1ITe1Yw1nPkZPcCBnzsXWWdsC4PDSy826 YreQQejdIOQpvGQpQsgi3Hia/0PsmBsJUUtaWsJx8cTLc6nloQsCAwEAAaOCAc4w ggHKMB0GA1UdDgQWBBQWtTIb1Mfz4OaO873SsDrusjkY0TCBowYDVR0jBIGbMIGY gBQWtTIb1Mfz4OaO873SsDrusjkY0aF9pHsweTEQMA4GA1UEChMHUm9vdCBDQTEe MBwGA1UECxMVaHR0cDovL3d3dy5jYWNlcnQub3JnMSIwIAYDVQQDExlDQSBDZXJ0 IFNpZ25pbmcgQXV0aG9yaXR5MSEwHwYJKoZIhvcNAQkBFhJzdXBwb3J0QGNhY2Vy dC5vcmeCAQAwDwYDVR0TAQH/BAUwAwEB/zAyBgNVHR8EKzApMCegJaAjhiFodHRw czovL3d3dy5jYWNlcnQub3JnL3Jldm9rZS5jcmwwMAYJYIZIAYb4QgEEBCMWIWh0 dHBzOi8vd3d3LmNhY2VydC5vcmcvcmV2b2tlLmNybDA0BglghkgBhvhCAQgEJxYl aHR0cDovL3d3dy5jYWNlcnQub3JnL2luZGV4LnBocD9pZD0xMDBWBglghkgBhvhC AQ0ESRZHVG8gZ2V0IHlvdXIgb3duIGNlcnRpZmljYXRlIGZvciBGUkVFIGhlYWQg b3ZlciB0byBodHRwOi8vd3d3LmNhY2VydC5vcmcwDQYJKoZIhvcNAQEEBQADggIB ACjH7pyCArpcgBLKNQodgW+JapnM8mgPf6fhjViVPr3yBsOQWqy1YPaZQwGjiHCc nWKdpIevZ1gNMDY75q1I08t0AoZxPuIrA2jxNGJARjtT6ij0rPtmlVOKTV39O9lg 18p5aTuxZZKmxoGCXJzN600BiqXfEVWqFcofN8CCmHBh22p8lqOOLlQ+TyGpkO/c gr/c6EWtTZBzCDyUZbAEmXZ/4rzCahWqlwQ3JNgelE5tDlG+1sSPypZt90Pf6DBl Jzt7u0NDY8RD97LsaMzhGY4i+5jhe1o+ATc7iwiwovOVThrLm82asduycPAtStvY sONvRUgzEv/+PDIqVPfE94rwiCPCR/5kenHA0R6mY7AHfqQv0wGP3J8rtsYIqQ+T SCX8Ev2fQtzzxD72V7DX3WnRBnc0CkvSyqD/HMaMyRa+xMwyN2hzXwj7UfdJUzYF CpUCTPJ5GhD22Dp1nPMd8aINcGeGG7MW9S/lpOt5hvk9C8JzC6WZrG/8Z7jlLwum GCSNe9FINSkYQKyTYOGWhlC0elnYjyELn8+CkcY7v2vcB5G5l1YjqrZslMZIBjzk zk6q5PYvCdxTby78dOs6Y5nCpqyJvKeyRKANihDjbPIky/qbn3BHLt4Ui9SyIAmW omTxJBzcoTWcFbLUvFUufQb1nA5V9FrWk9p2rSVzTMVD -----END CERTIFICATE----- --- Server certificate subject=/CN=*.hoi-polloi.org issuer=/O=Root CA/OU=http://www.cacert.org/CN=CA Cert Signing Authority/emailAddress=support@cacert.org --- No client certificate CA names sent Peer signing digest: SHA512 Server Temp Key: DH, 2048 bits --- SSL handshake has read 5021 bytes and written 494 bytes Verification error: self signed certificate in certificate chain --- New, TLSv1.2, Cipher is DHE-RSA-AES256-GCM-SHA384 Server public key is 4096 bit Secure Renegotiation IS supported Compression: NONE Expansion: NONE No ALPN negotiated SSL-Session: Protocol : TLSv1.2 Cipher : DHE-RSA-AES256-GCM-SHA384 Session-ID: 33874EEBC37221FA90E4D70F180A992AD029D6A5F197388F5D72185D1BA2B381 Session-ID-ctx: Master-Key: EEBF8CE879F6055A9E4D928A012257C32F95E35ED39A7D76A200E454E0E30253C275B0895028E7BEC58EE54769B8DB4A PSK identity: None PSK identity hint: None SRP username: None TLS session ticket lifetime hint: 1 (seconds) TLS session ticket: 0000 - cb b4 ed 35 8e 4d 34 a4-3c 82 ff ad 77 3c 3d 32 ...5.M4.<...w<=2 0010 - 98 67 cf 31 28 56 ab b2-93 45 05 17 5a 69 c1 b8 .g.1(V...E..Zi.. 0020 - 72 fa 03 75 fd 93 8a c4-9b bf 95 22 53 86 15 f0 r..u......."S... 0030 - 80 74 ed 43 7e d9 11 de-d3 74 5d 18 55 4d 01 4c .t.C~....t].UM.L 0040 - 09 dd 80 42 3e 5d cd aa-dc b2 96 4f a6 9f 40 6f ...B>].....O..@o 0050 - ac 5e 85 75 3c fa 45 9d-43 9e 40 18 65 3a 5d 6d .^.u<.E.C.@.e:]m 0060 - 62 0c d6 3a e7 43 fc 10-b3 22 b7 8c 04 c7 12 14 b..:.C..."...... 0070 - ab f8 67 6d c1 3b 27 0e-45 53 a0 22 b5 09 e0 b5 ..gm.;'.ES.".... 0080 - 41 85 5e b5 f1 2e 43 c0-e0 23 4a 80 f5 97 29 76 A.^...C..#J...)v 0090 - 89 d5 0b 99 bb 9d c5 f7-36 ea de 9e a7 16 05 a5 ........6....... Start Time: 1508702964 Timeout : 7200 (sec) Verify return code: 19 (self signed certificate in certificate chain) Extended master secret: no --- DONE