ssl証明書のインストール確認(コマンド編)




通常は、ブラウザで見れば分かると思うのですが、やっぱコマンドで確認するのがかっこいいですよね(自己満足)

[root@localhost ~]# openssl s_client -connect narakanko.com:443 -showcerts
CONNECTED(00000003)
depth=2 O = Digital Signature Trust Co., CN = DST Root CA X3
verify return:1
depth=1 C = US, O = Let's Encrypt, CN = Let's Encrypt Authority X3
verify return:1
depth=0 CN = dotsafe.net
verify return:1
---
Certificate chain
 0 s:/CN=dotsafe.net
   i:/C=US/O=Let's Encrypt/CN=Let's Encrypt Authority X3
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
 1 s:/C=US/O=Let's Encrypt/CN=Let's Encrypt Authority X3
   i:/O=Digital Signature Trust Co./CN=DST Root CA X3
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
---
Server certificate
subject=/CN=dotsafe.net
issuer=/C=US/O=Let's Encrypt/CN=Let's Encrypt Authority X3
---
No client certificate CA names sent
Server Temp Key: ECDH, prime256v1, 256 bits
---
SSL handshake has read 3145 bytes and written 373 bytes
---
New, TLSv1/SSLv3, Cipher is ECDHE-RSA-AES128-GCM-SHA256
Server public key is 2048 bit
Secure Renegotiation IS supported
Compression: NONE
Expansion: NONE
SSL-Session:
    Protocol  : TLSv1.2
    Cipher    : ECDHE-RSA-AES128-GCM-SHA256
    Session-ID: 1330AEA252897096B72E6C88DE1877CE57A7789957B2D0BD0E298E8BDC094B98
    Session-ID-ctx: 
    Master-Key: 1E6BD6F2446293C47B390D63C114BF7446B37344979816187D3F0F1D160362B8AE968B7517CAE5D4BD3CCEA7394DD0B6
    Key-Arg   : None
    Krb5 Principal: None
    PSK identity: None
    PSK identity hint: None
    TLS session ticket lifetime hint: 300 (seconds)
    TLS session ticket:
    0000 - 11 e1 96 9c 92 a1 30 a2-d3 ba 15 54 be 7f 0b 06   ......0....T....
    0010 - cc 77 d7 15 df 3f 3f f7-7b d5 80 47 7f e5 b4 3b   .w...??.{..G...;
    0020 - c4 68 a2 b0 84 41 f4 6a-f3 f2 81 96 02 ef 05 14   .h...A.j........
    0030 - 60 6f 71 18 71 76 7f 81-5e 18 ca 94 b8 a0 5c fb   `oq.qv..^.....\.
    0040 - 8e cd f1 83 a1 a9 8f 51-0a 92 5c 51 5d 5a d0 3a   .......Q..\Q]Z.:
    0050 - f1 ad 05 40 fc a4 06 bd-73 ca 3e a0 1c ca 3c 5b   ...@....s.>...<[
    0060 - 29 49 b7 8a d2 83 b7 08-41 fd 03 8e f6 13 58 5d   )I......A.....X]
    0070 - b8 3c 88 5b 34 71 76 86-81 18 af cd 53 e9 f0 9a   .<.[4qv.....S...
    0080 - fe e2 c5 af ff 4d 47 67-3d 47 07 b0 27 6f d2 83   .....MGg=G..'o..
    0090 - 58 00 d5 4e 9f 3c e5 2f-6b 43 d4 f7 57 b1 96 4e   X..N.<./kC..W..N
    00a0 - 87 07 4b 32 42 f3 6c e3-5b 70 5d 62 c5 1a 99 e0   ..K2B.l.[p]b....
    00b0 - 5f 13 c6 45 e4 7a c3 3d-0d 9d 8f 82 59 81 86 54   _..E.z.=....Y..T

    Start Time: 1499220309
    Timeout   : 300 (sec)
    Verify return code: 0 (ok)
---




スポンサーリンク
広告




広告




シェアする

  • このエントリーをはてなブックマークに追加

フォローする

スポンサーリンク
広告