hc-httpclient-users mailing list archives

Site index · List index
Message view « Date » · « Thread »
Top « Date » · « Thread »
From jz <jehanzeb.qay...@gmail.com>
Subject Re: Mutual HTTPS failing...
Date Thu, 15 Mar 2012 12:37:12 GMT
Thanks, It is fixed.


On Thu, Mar 15, 2012 at 10:29, jz <jehanzeb.qayyum@gmail.com> wrote:

> Hi,
>
> I am trying to connect to a server using mutual HTTPS. And getting
> following error:
>
> javax.net.ssl.SSLPeerUnverifiedException: peer not authenticated
>
> Here is my code:
>
> try (InputStream keystoreInput = new FileInputStream("/keystore.jks");
>  InputStream truststoreInput = new FileInputStream("/truststore.jks")) {
>
>  final KeyStore keystore = KeyStore.getInstance("jks");
> keystore.load(keystoreInput, "***".toCharArray());
>  final KeyStore truststore = KeyStore.getInstance("jks");
>  truststore.load(truststoreInput, "***".toCharArray());
>
>
> SSLSocketFactory sf = new SSLSocketFactory(keystore, "***", truststore);
>  sf.setHostnameVerifier(SSLSocketFactory.ALLOW_ALL_HOSTNAME_VERIFIER);
>  HttpClient client = new DefaultHttpClient();
> ClientConnectionManager ccm = client.getConnectionManager();
>  SchemeRegistry sr = ccm.getSchemeRegistry();
> sr.register(new Scheme("https",443, sf));
>
> HttpPost request = new HttpPost("https://server_url");
> ....
>
> Here is the SSL debug log:
>
> ----------------------------------------------------------------------------------------------
>
>
> SLF4J: The requested version 1.5.8 by your slf4j binding is not compatible
> with [1.5.5, 1.5.6]
> SLF4J: See http://www.slf4j.org/codes.html#version_mismatch for further
> details.
> log4j:WARN No appenders could be found for logger
> (org.springframework.test.context.junit4.SpringJUnit4ClassRunner).
> log4j:WARN Please initialize the log4j system properly.
> Sending file... size: 5899
> ***
> found key for : a66fea61aa7551c05401a82a022c2dab1a138e38
> chain [0] = [
> [
>   Version: V1
>   Subject: EMAILADDRESS=b.aumars@marcura-fze.ae, CN=xxx.xxx.xxx.xxx,
> OU=PPL Team, O=Marcura FZE, L=Dubai, ST=Dubai Airport Free Zone, C=AE
>   Signature Algorithm: SHA1withRSA, OID = 1.2.840.113549.1.1.5
>
>   Key:  Sun RSA public key, 1024 bits
>   modulus:
> 132048493420345875694805212444965870407900741571703193207079123789068607525943621438687223464789647326864773881808870760455468496887541863566270830057682242419744077795008087614959275186717575723082981330197869768014091954613779872400860066664471751637895107887569919633098549328989177757752730853800027144639
>   public exponent: 65537
>   Validity: [From: Sun Feb 26 10:03:54 GST 2012,
>                To: Wed Feb 23 10:03:54 GST 2022]
>   Issuer: EMAILADDRESS=b.aumars@marcura-fze.ae, CN=xxx.xxx.xxx.xxx,
> OU=PPL Team, O=Marcura FZE, L=Dubai, ST=Dubai Airport Free Zone, C=AE
>   SerialNumber: [    9bf1fc8e 42f0f040]
>
> ]
>   Algorithm: [SHA1withRSA]
>   Signature:
> 0000: 4E F2 91 41 D7 26 53 1A   6E 5A C6 F6 F2 9F B9 7F  N..A.&S.nZ......
> 0010: 74 09 22 A3 DE 7D 22 1E   3C E4 19 B9 71 FA BE 5F  t."...".<...q.._
> 0020: 27 98 1B AF 43 52 B9 27   02 D3 AC 71 A0 69 A7 87  '...CR.'...q.i..
> 0030: D9 A2 4E CE 0F 77 86 8E   23 66 CF A2 F0 CE E7 85  ..N..w..#f......
> 0040: 6B 3A 2F A8 58 CC ED DF   D6 02 06 AF 5C CC 46 D8  k:/.X.......\.F.
> 0050: 6B 18 05 03 6F 44 89 3F   EA C3 3B 53 35 82 28 57  k...oD.?..;S5.(W
> 0060: 54 41 ED 2B 41 C0 EE FC   64 9E C3 44 F1 70 74 B0  TA.+A...d..D.pt.
> 0070: B2 0B 8D C5 67 DA 40 22   3D 1A 23 1A E5 3B E2 2D  ....g.@"=.#..;.-
>
> ]
> ***
> adding as trusted cert:
>   Subject: CN=xxx.xxx.xxx.xxx, OU=CITISUPPORT, O=GXS, L=Brook Park,
> ST=Ohio, C=US
>   Issuer:  CN=VeriSign Class 3 Secure Server CA - G3, OU=Terms of use at
> https://www.verisign.com/rpa (c)10, OU=VeriSign Trust Network,
> O="VeriSign, Inc.", C=US
>   Algorithm: RSA; Serial number: 0x2b3c75e4a3c7bc9553e159b7bd770ad5
>   Valid from Thu Jun 30 04:00:00 GST 2011 until Sun Jun 30 03:59:59 GST
> 2013
>
> adding as trusted cert:
>   Subject: CN=xxx.xxx.xxx.xxx, OU=Terms of use at www.verisign.com/rpa(c)00, O=GXS, L=Gaithersburg, ST=Maryland, C=US
>   Issuer:  CN=VeriSign Class 3 Secure Server CA - G2, OU=Terms of use at
> https://www.verisign.com/rpa (c)09, OU=VeriSign Trust Network,
> O="VeriSign, Inc.", C=US
>   Algorithm: RSA; Serial number: 0x2a7d25d471c332e4726c8795d83071ae
>   Valid from Fri Jun 11 04:00:00 GST 2010 until Mon Jun 11 03:59:59 GST
> 2012
>
> trigger seeding of SecureRandom
> done seeding SecureRandom
> trustStore is: /opt2/jdk1.7.0_02/jre/lib/security/cacerts
> trustStore type is : jks
> trustStore provider is :
> init truststore
> adding as trusted cert:
>   Subject: CN=SwissSign Platinum CA - G2, O=SwissSign AG, C=CH
>   Issuer:  CN=SwissSign Platinum CA - G2, O=SwissSign AG, C=CH
>   Algorithm: RSA; Serial number: 0x4eb200670c035d4f
>   Valid from Wed Oct 25 12:36:00 GST 2006 until Sat Oct 25 12:36:00 GST
> 2036
>
> ........
>
> trigger seeding of SecureRandom
> done seeding SecureRandom
> Ent-sender=DADESK
> Ent-receiver=CITISECUTBL
> Ent-APRF=CITIGISOCIP20
> Ent-filename=DA-DESK_FXBAL_20120306065922_1
> Ignoring unsupported cipher suite: TLS_DHE_DSS_WITH_AES_128_CBC_SHA256
> Ignoring unsupported cipher suite: TLS_DHE_DSS_WITH_AES_256_CBC_SHA256
> Ignoring unsupported cipher suite: TLS_DHE_RSA_WITH_AES_128_CBC_SHA256
> Ignoring unsupported cipher suite: TLS_ECDH_RSA_WITH_AES_128_CBC_SHA256
> Ignoring unsupported cipher suite: TLS_DHE_RSA_WITH_AES_256_CBC_SHA256
> Ignoring unsupported cipher suite: TLS_ECDHE_RSA_WITH_AES_256_CBC_SHA384
> Ignoring unsupported cipher suite: TLS_ECDH_ECDSA_WITH_AES_256_CBC_SHA384
> Ignoring unsupported cipher suite: TLS_RSA_WITH_AES_256_CBC_SHA256
> Ignoring unsupported cipher suite: TLS_ECDHE_RSA_WITH_AES_128_CBC_SHA256
> Ignoring unsupported cipher suite: TLS_ECDHE_ECDSA_WITH_AES_256_CBC_SHA384
> Ignoring unsupported cipher suite: TLS_ECDH_RSA_WITH_AES_256_CBC_SHA384
> Ignoring unsupported cipher suite: TLS_ECDHE_ECDSA_WITH_AES_128_CBC_SHA256
> Ignoring unsupported cipher suite: TLS_ECDH_ECDSA_WITH_AES_128_CBC_SHA256
> Ignoring unsupported cipher suite: TLS_RSA_WITH_AES_128_CBC_SHA256
> main, setSoTimeout(0) called
> Allow unsafe renegotiation: false
> Allow legacy hello messages: true
> Is initial handshake: true
> Is secure renegotiation: false
> %% No cached client session
> *** ClientHello, TLSv1
> RandomCookie:  GMT: 1331725392 bytes = { 14, 152, 218, 91, 75, 11, 136,
> 70, 51, 51, 93, 253, 138, 241, 99, 39, 87, 134, 64, 127, 238, 8, 105, 75,
> 29, 214, 47, 90 }
> Session ID:  {}
> Cipher Suites: [TLS_ECDHE_RSA_WITH_AES_256_CBC_SHA,
> TLS_DHE_RSA_WITH_AES_128_CBC_SHA, TLS_ECDH_ECDSA_WITH_AES_128_CBC_SHA,
> TLS_DHE_RSA_WITH_AES_256_CBC_SHA, SSL_DHE_RSA_WITH_3DES_EDE_CBC_SHA,
> TLS_ECDH_RSA_WITH_AES_256_CBC_SHA, SSL_RSA_WITH_RC4_128_SHA,
> TLS_ECDH_ECDSA_WITH_3DES_EDE_CBC_SHA, TLS_ECDHE_RSA_WITH_RC4_128_SHA,
> TLS_ECDH_ECDSA_WITH_RC4_128_SHA, TLS_ECDHE_ECDSA_WITH_RC4_128_SHA,
> TLS_ECDHE_RSA_WITH_AES_128_CBC_SHA, TLS_ECDHE_ECDSA_WITH_3DES_EDE_CBC_SHA,
> TLS_ECDH_RSA_WITH_RC4_128_SHA, TLS_EMPTY_RENEGOTIATION_INFO_SCSV,
> TLS_ECDH_RSA_WITH_3DES_EDE_CBC_SHA, TLS_ECDH_RSA_WITH_AES_128_CBC_SHA,
> TLS_ECDHE_ECDSA_WITH_AES_256_CBC_SHA, TLS_ECDHE_ECDSA_WITH_AES_128_CBC_SHA,
> TLS_DHE_DSS_WITH_AES_256_CBC_SHA, TLS_RSA_WITH_AES_128_CBC_SHA,
> TLS_ECDH_ECDSA_WITH_AES_256_CBC_SHA, TLS_RSA_WITH_AES_256_CBC_SHA,
> TLS_ECDHE_RSA_WITH_3DES_EDE_CBC_SHA, SSL_RSA_WITH_RC4_128_MD5,
> TLS_DHE_DSS_WITH_AES_128_CBC_SHA, SSL_DHE_DSS_WITH_3DES_EDE_CBC_SHA,
> SSL_RSA_WITH_3DES_EDE_CBC_SHA]
> Compression Methods:  { 0 }
> Extension elliptic_curves, curve names: {secp256r1, sect163k1, sect163r2,
> secp192r1, secp224r1, sect233k1, sect233r1, sect283k1, sect283r1,
> secp384r1, sect409k1, sect409r1, secp521r1, sect571k1, sect571r1,
> secp160k1, secp160r1, secp160r2, sect163r1, secp192k1, sect193r1,
> sect193r2, secp224k1, sect239k1, secp256k1}
> Extension ec_point_formats, formats: [uncompressed]
> ***
> [write] MD5 and SHA1 hashes:  len = 163
> 0000: 01 00 00 9F 03 01 4F 61   84 50 0E 98 DA 5B 4B 0B  ......Oa.P...[K.
> 0010: 88 46 33 33 5D FD 8A F1   63 27 57 86 40 7F EE 08  .F33]...c'W.@...
> 0020: 69 4B 1D D6 2F 5A 00 00   38 C0 14 00 33 C0 04 00  iK../Z..8...3...
> 0030: 39 00 16 C0 0F 00 05 C0   03 C0 11 C0 02 C0 07 C0  9...............
> 0040: 13 C0 08 C0 0C 00 FF C0   0D C0 0E C0 0A C0 09 00  ................
> 0050: 38 00 2F C0 05 00 35 C0   12 00 04 00 32 00 13 00  8./...5.....2...
> 0060: 0A 01 00 00 3E 00 0A 00   34 00 32 00 17 00 01 00  ....>...4.2.....
> 0070: 03 00 13 00 15 00 06 00   07 00 09 00 0A 00 18 00  ................
> 0080: 0B 00 0C 00 19 00 0D 00   0E 00 0F 00 10 00 11 00  ................
> 0090: 02 00 12 00 04 00 05 00   14 00 08 00 16 00 0B 00  ................
> 00A0: 02 01 00                                           ...
> main, WRITE: TLSv1 Handshake, length = 163
> [Raw write]: length = 168
> 0000: 16 03 01 00 A3 01 00 00   9F 03 01 4F 61 84 50 0E  ...........Oa.P.
> 0010: 98 DA 5B 4B 0B 88 46 33   33 5D FD 8A F1 63 27 57  ..[K..F33]...c'W
> 0020: 86 40 7F EE 08 69 4B 1D   D6 2F 5A 00 00 38 C0 14  .@...iK../Z..8..
> 0030: 00 33 C0 04 00 39 00 16   C0 0F 00 05 C0 03 C0 11  .3...9..........
> 0040: C0 02 C0 07 C0 13 C0 08   C0 0C 00 FF C0 0D C0 0E  ................
> 0050: C0 0A C0 09 00 38 00 2F   C0 05 00 35 C0 12 00 04  .....8./...5....
> 0060: 00 32 00 13 00 0A 01 00   00 3E 00 0A 00 34 00 32  .2.......>...4.2
> 0070: 00 17 00 01 00 03 00 13   00 15 00 06 00 07 00 09  ................
> 0080: 00 0A 00 18 00 0B 00 0C   00 19 00 0D 00 0E 00 0F  ................
> 0090: 00 10 00 11 00 02 00 12   00 04 00 05 00 14 00 08  ................
> 00A0: 00 16 00 0B 00 02 01 00                            ........
> [Raw read]: length = 5
> 0000: 16 03 01 00 4A                                     ....J
> [Raw read]: length = 74
> 0000: 02 00 00 46 03 01 A9 0D   42 39 56 8E B3 D2 01 93  ...F....B9V.....
> 0010: 58 63 D9 BC 60 B0 78 7D   1A 63 C8 55 5B 0E 97 C9  Xc..`.x..c.U[...
> 0020: 87 22 4B 75 8C B7 20 B5   FE 45 65 2F 61 35 45 1C  ."Ku.. ..Ee/a5E.
> 0030: BB C1 A8 C8 B2 6F B7 4A   A6 2F A4 9F 93 96 2F 7A  .....o.J./..../z
> 0040: 76 92 39 3C 8B D1 39 00   04 00                    v.9<..9...
> main, READ: TLSv1 Handshake, length = 74
> *** ServerHello, TLSv1
> RandomCookie:  GMT: -1458748871 bytes = { 86, 142, 179, 210, 1, 147, 88,
> 99, 217, 188, 96, 176, 120, 125, 26, 99, 200, 85, 91, 14, 151, 201, 135,
> 34, 75, 117, 140, 183 }
> Session ID:  {181, 254, 69, 101, 47, 97, 53, 69, 28, 187, 193, 168, 200,
> 178, 111, 183, 74, 166, 47, 164, 159, 147, 150, 47, 122, 118, 146, 57, 60,
> 139, 209, 57}
> Cipher Suite: SSL_RSA_WITH_RC4_128_MD5
> Compression Method: 0
> ***
> Warning: No renegotiation indication extension in ServerHello
> %% Initialized:  [Session-1, SSL_RSA_WITH_RC4_128_MD5]
> ** SSL_RSA_WITH_RC4_128_MD5
> [read] MD5 and SHA1 hashes:  len = 74
> 0000: 02 00 00 46 03 01 A9 0D   42 39 56 8E B3 D2 01 93  ...F....B9V.....
> 0010: 58 63 D9 BC 60 B0 78 7D   1A 63 C8 55 5B 0E 97 C9  Xc..`.x..c.U[...
> 0020: 87 22 4B 75 8C B7 20 B5   FE 45 65 2F 61 35 45 1C  ."Ku.. ..Ee/a5E.
> 0030: BB C1 A8 C8 B2 6F B7 4A   A6 2F A4 9F 93 96 2F 7A  .....o.J./..../z
> 0040: 76 92 39 3C 8B D1 39 00   04 00                    v.9<..9...
> [Raw read]: length = 5
> 0000: 16 03 01 0B 69                                     ....i
> [Raw read]: length = 2921
> 0000: 0B 00 0B 65 00 0B 62 00   05 2C 30 82 05 28 30 82  ...e..b..,0..(0.
> 0010: 04 10 A0 03 02 01 02 02   10 2A 7D 25 D4 71 C3 32  .........*.%.q.2
> 0020: E4 72 6C 87 95 D8 30 71   AE 30 0D 06 09 2A 86 48  .rl...0q.0...*.H
> 0030: 86 F7 0D 01 01 05 05 00   30 81 B5 31 0B 30 09 06  ........0..1.0..
> 0040: 03 55 04 06 13 02 55 53   31 17 30 15 06 03 55 04  .U....US1.0...U.
> 0050: 0A 13 0E 56 65 72 69 53   69 67 6E 2C 20 49 6E 63  ...VeriSign, Inc
> 0060: 2E 31 1F 30 1D 06 03 55   04 0B 13 16 56 65 72 69  .1.0...U....Veri
> 0070: 53 69 67 6E 20 54 72 75   73 74 20 4E 65 74 77 6F  Sign Trust Netwo
> 0080: 72 6B 31 3B 30 39 06 03   55 04 0B 13 32 54 65 72  rk1;09..U...2Ter
> 0090: 6D 73 20 6F 66 20 75 73   65 20 61 74 20 68 74 74  ms of use at htt
> 00A0: 70 73 3A 2F 2F 77 77 77   2E 76 65 72 69 73 69 67  ps://www.verisig
> 00B0: 6E 2E 63 6F 6D 2F 72 70   61 20 28 63 29 30 39 31  n.com/rpa (c)091
> 00C0: 2F 30 2D 06 03 55 04 03   13 26 56 65 72 69 53 69  /0-..U...&VeriSi
> 00D0: 67 6E 20 43 6C 61 73 73   20 33 20 53 65 63 75 72  gn Class 3 Secur
> 00E0: 65 20 53 65 72 76 65 72   20 43 41 20 2D 20 47 32  e Server CA - G2
> 00F0: 30 1E 17 0D 31 30 30 36   31 31 30 30 30 30 30 30  0...100611000000
> 0100: 5A 17 0D 31 32 30 36 31   30 32 33 35 39 35 39 5A  Z..120610235959Z
> 0110: 30 81 98 31 0B 30 09 06   03 55 04 06 13 02 55 53  0..1.0...U....US
> 0120: 31 11 30 0F 06 03 55 04   08 13 08 4D 61 72 79 6C  1.0...U....Maryl
> 0130: 61 6E 64 31 15 30 13 06   03 55 04 07 14 0C 47 61  and1.0...U....Ga
> 0140: 69 74 68 65 72 73 62 75   72 67 31 0C 30 0A 06 03  ithersburg1.0...
> 0150: 55 04 0A 14 03 47 58 53   31 33 30 31 06 03 55 04  U....GXS1301..U.
> 0160: 0B 14 2A 54 65 72 6D 73   20 6F 66 20 75 73 65 20  ..*Terms of use
> 0170: 61 74 20 77 77 77 2E 76   65 72 69 73 69 67 6E 2E  at www.verisign.
> 0180: 63 6F 6D 2F 72 70 61 20   28 63 29 30 30 31 1C 30  com/rpa (c)001.0
> 0190: 1A 06 03 55 04 03 14 13   62 32 62 2E 65 63 73 63  ...U....b2b.ecsc
> 01A0: 2E 75 73 2E 67 78 73 2E   63 6F 6D 30 81 9F 30 0D  .us.gxs.com0..0.
> 01B0: 06 09 2A 86 48 86 F7 0D   01 01 01 05 00 03 81 8D  ..*.H...........
> 01C0: 00 30 81 89 02 81 81 00   C1 53 14 C3 0D D5 C5 E3  .0.......S......
> 01D0: A7 06 31 4C 99 E3 56 1D   A2 47 AD 05 27 C6 A6 2F  ..1L..V..G..'../
> 01E0: BE EC 34 DB DB 11 DB 20   B9 F2 B0 5A 79 E8 5B D5  ..4.... ...Zy.[.
> 01F0: 35 A8 CC AE 32 FD 2F 06   5A 50 47 C7 F5 B5 D1 06  5...2./.ZPG.....
> 0200: 40 3E 71 34 80 38 F3 1D   B1 2D 63 00 21 DF 1F B8  @>q4.8...-c.!...
> 0210: 55 F2 EA 25 58 5D 9F 2F   4D 02 C7 73 57 97 36 FA  U..%X]./M..sW.6.
> 0220: E0 84 F4 1A 72 4A E7 29   EA 09 69 72 78 79 2D 8E  ....rJ.)..irxy-.
> 0230: C5 6C 75 81 AD 78 FB B4   0E B0 9A 7E 68 9C 30 E3  .lu..x......h.0.
> 0240: F7 57 9B 8E F1 34 37 25   02 03 01 00 01 A3 82 01  .W...47%........
> 0250: D1 30 82 01 CD 30 09 06   03 55 1D 13 04 02 30 00  .0...0...U....0.
> 0260: 30 0B 06 03 55 1D 0F 04   04 03 02 05 A0 30 45 06  0...U........0E.
> 0270: 03 55 1D 1F 04 3E 30 3C   30 3A A0 38 A0 36 86 34  .U...>0<0:.8.6.4
> 0280: 68 74 74 70 3A 2F 2F 53   56 52 53 65 63 75 72 65  http://SVRSecure
> 0290: 2D 47 32 2D 63 72 6C 2E   76 65 72 69 73 69 67 6E  -G2-crl.verisign
> 02A0: 2E 63 6F 6D 2F 53 56 52   53 65 63 75 72 65 47 32  .com/SVRSecureG2
> 02B0: 2E 63 72 6C 30 44 06 03   55 1D 20 04 3D 30 3B 30  .crl0D..U. .=0;0
> 02C0: 39 06 0B 60 86 48 01 86   F8 45 01 07 17 03 30 2A  9..`.H...E....0*
> 02D0: 30 28 06 08 2B 06 01 05   05 07 02 01 16 1C 68 74  0(..+.........ht
> 02E0: 74 70 73 3A 2F 2F 77 77   77 2E 76 65 72 69 73 69  tps://www.verisi
> 02F0: 67 6E 2E 63 6F 6D 2F 72   70 61 30 1D 06 03 55 1D  gn.com/rpa0...U.
> 0300: 25 04 16 30 14 06 08 2B   06 01 05 05 07 03 01 06  %..0...+........
> 0310: 08 2B 06 01 05 05 07 03   02 30 1F 06 03 55 1D 23  .+.......0...U.#
> 0320: 04 18 30 16 80 14 A5 EF   0B 11 CE C0 41 03 A3 4A  ..0.........A..J
> 0330: 65 90 48 B2 1C E0 57 2D   7D 47 30 76 06 08 2B 06  e.H...W-.G0v..+.
> 0340: 01 05 05 07 01 01 04 6A   30 68 30 24 06 08 2B 06  .......j0h0$..+.
> 0350: 01 05 05 07 30 01 86 18   68 74 74 70 3A 2F 2F 6F  ....0...http://o
> 0360: 63 73 70 2E 76 65 72 69   73 69 67 6E 2E 63 6F 6D  csp.verisign.com
> 0370: 30 40 06 08 2B 06 01 05   05 07 30 02 86 34 68 74  0@..+.....0..4ht
> 0380: 74 70 3A 2F 2F 53 56 52   53 65 63 75 72 65 2D 47  tp://SVRSecure-G
> 0390: 32 2D 61 69 61 2E 76 65   72 69 73 69 67 6E 2E 63  2-aia.verisign.c
> 03A0: 6F 6D 2F 53 56 52 53 65   63 75 72 65 47 32 2E 63  om/SVRSecureG2.c
> 03B0: 65 72 30 6E 06 08 2B 06   01 05 05 07 01 0C 04 62  er0n..+........b
> 03C0: 30 60 A1 5E A0 5C 30 5A   30 58 30 56 16 09 69 6D  0`.^.\0Z0X0V..im
> 03D0: 61 67 65 2F 67 69 66 30   21 30 1F 30 07 06 05 2B  age/gif0!0.0...+
> 03E0: 0E 03 02 1A 04 14 4B 6B   B9 28 96 06 0C BB D0 52  ......Kk.(.....R
> 03F0: 38 9B 29 AC 4B 07 8B 21   05 18 30 26 16 24 68 74  8.).K..!..0&.$ht
> 0400: 74 70 3A 2F 2F 6C 6F 67   6F 2E 76 65 72 69 73 69  tp://logo.verisi
> 0410: 67 6E 2E 63 6F 6D 2F 76   73 6C 6F 67 6F 31 2E 67  gn.com/vslogo1.g
> 0420: 69 66 30 0D 06 09 2A 86   48 86 F7 0D 01 01 05 05  if0...*.H.......
> 0430: 00 03 82 01 01 00 C4 EE   63 80 48 20 0F B8 AF A1  ........c.H ....
> 0440: 75 2D BF 73 2D 89 6B 16   22 3D B8 7D 47 7B 45 B5  u-.s-.k."=..G.E.
> 0450: B6 BA BE A9 6A A7 90 52   C4 6A 86 C8 D1 7E 1B 6F  ....j..R.j.....o
> 0460: 6D 68 64 9A 9A 58 28 BA   81 30 29 DF 4B 63 ED E3  mhd..X(..0).Kc..
> 0470: DD A8 8E 45 4D 66 01 70   C7 B1 72 71 11 26 A3 A1  ...EMf.p..rq.&..
> 0480: 62 12 26 41 50 8A B3 2F   D6 31 B5 40 96 4F 1F 04  b.&AP../.1.@.O..
> 0490: 17 19 85 E0 56 E0 D7 77   71 C4 50 F6 88 AB CD 62  ....V..wq.P....b
> 04A0: 33 CB E8 B7 E2 1F A8 C2   3C DB 11 5B 67 E4 A0 56  3.......<..[g..V
> 04B0: 3B 71 65 53 B6 BF B4 FE   FC D9 D9 91 D4 41 C6 9F  ;qeS.........A..
> 04C0: 53 07 69 A9 C8 24 3E AA   6A 48 DF 93 DA FA 53 0D  S.i..$>.jH....S.
> 04D0: 1B 9A 3D 34 11 5C 89 E3   06 45 D1 14 7F D0 77 9A  ..=4.\...E....w.
> 04E0: 25 E7 36 D0 46 E3 56 75   B3 F9 A1 A2 4C 8C 7D D7  %.6.F.Vu....L...
> 04F0: 41 FF D1 65 EA 5B 41 A1   D4 B9 13 CE B5 0F CF 96  A..e.[A.........
> 0500: 52 CC F7 EA 58 DF 30 4E   38 91 9A 82 D7 7D 93 64  R...X.0N8......d
> 0510: 4E D0 99 B8 94 35 FF 91   F1 30 4C E2 B3 5B B1 6E  N....5...0L..[.n
> 0520: F5 EE 5F C9 A5 B2 C4 EB   FD EC C1 8E 80 FD DB B5  .._.............
> 0530: AF 00 26 92 74 25 00 06   30 30 82 06 2C 30 82 05  ..&.t%..00..,0..
> 0540: 95 A0 03 02 01 02 02 10   6E 4F FA B3 C5 E6 69 C4  ........nO....i.
> 0550: D1 67 C9 92 AB E8 58 C4   30 0D 06 09 2A 86 48 86  .g....X.0...*.H.
> 0560: F7 0D 01 01 05 05 00 30   81 C1 31 0B 30 09 06 03  .......0..1.0...
> 0570: 55 04 06 13 02 55 53 31   17 30 15 06 03 55 04 0A  U....US1.0...U..
> 0580: 13 0E 56 65 72 69 53 69   67 6E 2C 20 49 6E 63 2E  ..VeriSign, Inc.
> 0590: 31 3C 30 3A 06 03 55 04   0B 13 33 43 6C 61 73 73  1<0:..U...3Class
> 05A0: 20 33 20 50 75 62 6C 69   63 20 50 72 69 6D 61 72   3 Public Primar
> 05B0: 79 20 43 65 72 74 69 66   69 63 61 74 69 6F 6E 20  y Certification
> 05C0: 41 75 74 68 6F 72 69 74   79 20 2D 20 47 32 31 3A  Authority - G21:
> 05D0: 30 38 06 03 55 04 0B 13   31 28 63 29 20 31 39 39  08..U...1(c) 199
> 05E0: 38 20 56 65 72 69 53 69   67 6E 2C 20 49 6E 63 2E  8 VeriSign, Inc.
> 05F0: 20 2D 20 46 6F 72 20 61   75 74 68 6F 72 69 7A 65   - For authorize
> 0600: 64 20 75 73 65 20 6F 6E   6C 79 31 1F 30 1D 06 03  d use only1.0...
> 0610: 55 04 0B 13 16 56 65 72   69 53 69 67 6E 20 54 72  U....VeriSign Tr
> 0620: 75 73 74 20 4E 65 74 77   6F 72 6B 30 1E 17 0D 30  ust Network0...0
> 0630: 39 30 33 32 35 30 30 30   30 30 30 5A 17 0D 31 39  90325000000Z..19
> 0640: 30 33 32 34 32 33 35 39   35 39 5A 30 81 B5 31 0B  0324235959Z0..1.
> 0650: 30 09 06 03 55 04 06 13   02 55 53 31 17 30 15 06  0...U....US1.0..
> 0660: 03 55 04 0A 13 0E 56 65   72 69 53 69 67 6E 2C 20  .U....VeriSign,
> 0670: 49 6E 63 2E 31 1F 30 1D   06 03 55 04 0B 13 16 56  Inc.1.0...U....V
> 0680: 65 72 69 53 69 67 6E 20   54 72 75 73 74 20 4E 65  eriSign Trust Ne
> 0690: 74 77 6F 72 6B 31 3B 30   39 06 03 55 04 0B 13 32  twork1;09..U...2
> 06A0: 54 65 72 6D 73 20 6F 66   20 75 73 65 20 61 74 20  Terms of use at
> 06B0: 68 74 74 70 73 3A 2F 2F   77 77 77 2E 76 65 72 69  https://www.veri
> 06C0: 73 69 67 6E 2E 63 6F 6D   2F 72 70 61 20 28 63 29  sign.com/rpa (c)
> 06D0: 30 39 31 2F 30 2D 06 03   55 04 03 13 26 56 65 72  091/0-..U...&Ver
> 06E0: 69 53 69 67 6E 20 43 6C   61 73 73 20 33 20 53 65  iSign Class 3 Se
> 06F0: 63 75 72 65 20 53 65 72   76 65 72 20 43 41 20 2D  cure Server CA -
> 0700: 20 47 32 30 82 01 22 30   0D 06 09 2A 86 48 86 F7   G20.."0...*.H..
> 0710: 0D 01 01 01 05 00 03 82   01 0F 00 30 82 01 0A 02  ...........0....
> 0720: 82 01 01 00 D4 56 8F 57   3B 37 28 A6 40 63 D2 95  .....V.W;7(.@c..
> 0730: D5 05 74 DA B5 19 6A 96   D6 71 57 2F E2 C0 34 8C  ..t...j..qW/..4.
> 0740: A0 95 B3 8C E1 37 24 F3   2E ED 43 45 05 8E 89 D7  .....7$...CE....
> 0750: FA DA 4A B5 F8 3E 8D 4E   C7 F9 49 50 45 37 40 9F  ..J..>.N..IPE7@.
> 0760: 74 AA A0 51 55 61 F1 60   84 89 A5 9E 80 8D 2F B0  t..QUa.`....../.
> 0770: 21 AA 45 82 C4 CF B4 14   7F 47 15 20 28 82 B0 68  !.E......G. (..h
> 0780: 12 C0 AE 5C 07 D7 F6 59   CC CB 62 56 5C 4D 49 FF  ...\...Y..bV\MI.
> 0790: 26 88 AB 54 51 3A 2F 4A   DA 0E 98 E2 89 72 B9 FC  &..TQ:/J.....r..
> 07A0: F7 68 3C C4 1F 39 7A CB   17 81 F3 0C AD 0F DC 61  .h<..9z........a
> 07B0: 62 1B 10 0B 04 1E 29 18   71 5E 62 CB 43 DE BE 31  b.....).q^b.C..1
> 07C0: BA 71 02 19 4E 26 A9 51   DA 8C 64 69 03 DE 9C FD  .q..N&.Q..di....
> 07D0: 7D FD 7B 61 BC FC 84 7C   88 5C B4 C3 7B ED 5F 2B  ...a.....\...._+
> 07E0: 46 12 F1 FD 00 01 9A 8B   5B E9 A3 05 2E 8F 2E 5B  F.......[......[
> 07F0: DE F3 1B 78 F8 66 91 08   C0 5E CE D5 B0 36 CA D4  ...x.f...^...6..
> 0800: A8 7B A0 7D F9 30 7A BF   F8 DD 19 51 2B 20 BA FE  .....0z....Q+ ..
> 0810: A7 CF A1 4E B0 67 F5 80   AA 2B 83 2E D2 8E 54 89  ...N.g...+....T.
> 0820: 8E 1E 29 0B 02 03 01 00   01 A3 82 02 A9 30 82 02  ..)..........0..
> 0830: A5 30 34 06 08 2B 06 01   05 05 07 01 01 04 28 30  .04..+........(0
> 0840: 26 30 24 06 08 2B 06 01   05 05 07 30 01 86 18 68  &0$..+.....0...h
> 0850: 74 74 70 3A 2F 2F 6F 63   73 70 2E 76 65 72 69 73  ttp://ocsp.veris
> 0860: 69 67 6E 2E 63 6F 6D 30   12 06 03 55 1D 13 01 01  ign.com0...U....
> 0870: FF 04 08 30 06 01 01 FF   02 01 00 30 70 06 03 55  ...0.......0p..U
> 0880: 1D 20 04 69 30 67 30 65   06 0B 60 86 48 01 86 F8  . .i0g0e..`.H...
> 0890: 45 01 07 17 03 30 56 30   28 06 08 2B 06 01 05 05  E....0V0(..+....
> 08A0: 07 02 01 16 1C 68 74 74   70 73 3A 2F 2F 77 77 77  .....https://www
> 08B0: 2E 76 65 72 69 73 69 67   6E 2E 63 6F 6D 2F 63 70  .verisign.com/cp
> 08C0: 73 30 2A 06 08 2B 06 01   05 05 07 02 02 30 1E 1A  s0*..+.......0..
> 08D0: 1C 68 74 74 70 73 3A 2F   2F 77 77 77 2E 76 65 72  .https://www.ver
> 08E0: 69 73 69 67 6E 2E 63 6F   6D 2F 72 70 61 30 34 06  isign.com/rpa04.
> 08F0: 03 55 1D 1F 04 2D 30 2B   30 29 A0 27 A0 25 86 23  .U...-0+0).'.%.#
> 0900: 68 74 74 70 3A 2F 2F 63   72 6C 2E 76 65 72 69 73  http://crl.veris
> 0910: 69 67 6E 2E 63 6F 6D 2F   70 63 61 33 2D 67 32 2E  ign.com/pca3-g2.
> 0920: 63 72 6C 30 0E 06 03 55   1D 0F 01 01 FF 04 04 03  crl0...U........
> 0930: 02 01 06 30 6D 06 08 2B   06 01 05 05 07 01 0C 04  ...0m..+........
> 0940: 61 30 5F A1 5D A0 5B 30   59 30 57 30 55 16 09 69  a0_.].[0Y0W0U..i
> 0950: 6D 61 67 65 2F 67 69 66   30 21 30 1F 30 07 06 05  mage/gif0!0.0...
> 0960: 2B 0E 03 02 1A 04 14 8F   E5 D3 1A 86 AC 8D 8E 6B  +..............k
> 0970: C3 CF 80 6A D4 48 18 2C   7B 19 2E 30 25 16 23 68  ...j.H.,...0%.#h
> 0980: 74 74 70 3A 2F 2F 6C 6F   67 6F 2E 76 65 72 69 73  ttp://logo.veris
> 0990: 69 67 6E 2E 63 6F 6D 2F   76 73 6C 6F 67 6F 2E 67  ign.com/vslogo.g
> 09A0: 69 66 30 29 06 03 55 1D   11 04 22 30 20 A4 1E 30  if0)..U..."0 ..0
> 09B0: 1C 31 1A 30 18 06 03 55   04 03 13 11 43 6C 61 73  .1.0...U....Clas
> 09C0: 73 33 43 41 32 30 34 38   2D 31 2D 35 32 30 1D 06  s3CA2048-1-520..
> 09D0: 03 55 1D 0E 04 16 04 14   A5 EF 0B 11 CE C0 41 03  .U............A.
> 09E0: A3 4A 65 90 48 B2 1C E0   57 2D 7D 47 30 81 E7 06  .Je.H...W-.G0...
> 09F0: 03 55 1D 23 04 81 DF 30   81 DC A1 81 C7 A4 81 C4  .U.#...0........
> 0A00: 30 81 C1 31 0B 30 09 06   03 55 04 06 13 02 55 53  0..1.0...U....US
> 0A10: 31 17 30 15 06 03 55 04   0A 13 0E 56 65 72 69 53  1.0...U....VeriS
> 0A20: 69 67 6E 2C 20 49 6E 63   2E 31 3C 30 3A 06 03 55  ign, Inc.1<0:..U
> 0A30: 04 0B 13 33 43 6C 61 73   73 20 33 20 50 75 62 6C  ...3Class 3 Publ
> 0A40: 69 63 20 50 72 69 6D 61   72 79 20 43 65 72 74 69  ic Primary Certi
> 0A50: 66 69 63 61 74 69 6F 6E   20 41 75 74 68 6F 72 69  fication Authori
> 0A60: 74 79 20 2D 20 47 32 31   3A 30 38 06 03 55 04 0B  ty - G21:08..U..
> 0A70: 13 31 28 63 29 20 31 39   39 38 20 56 65 72 69 53  .1(c) 1998 VeriS
> 0A80: 69 67 6E 2C 20 49 6E 63   2E 20 2D 20 46 6F 72 20  ign, Inc. - For
> 0A90: 61 75 74 68 6F 72 69 7A   65 64 20 75 73 65 20 6F  authorized use o
> 0AA0: 6E 6C 79 31 1F 30 1D 06   03 55 04 0B 13 16 56 65  nly1.0...U....Ve
> 0AB0: 72 69 53 69 67 6E 20 54   72 75 73 74 20 4E 65 74  riSign Trust Net
> 0AC0: 77 6F 72 6B 82 10 7D D9   FE 07 CF A8 1E B7 10 79  work...........y
> 0AD0: 67 FB A7 89 34 C6 30 0D   06 09 2A 86 48 86 F7 0D  g...4.0...*.H...
> 0AE0: 01 01 05 05 00 03 81 81   00 63 74 2F 3D 53 AA 2F  .........ct/=S./
> 0AF0: 97 EC 26 11 66 1A FE F1   DE 41 27 19 D2 7F D8 C1  ..&.f....A'.....
> 0B00: 1C F9 E2 38 56 3A 1F 90   AE 39 C5 20 75 AB F8 6C  ...8V:...9. u..l
> 0B10: 2D 67 1F 29 C2 21 D7 14   88 63 4B B0 9B 27 63 91  -g.).!...cK..'c.
> 0B20: F8 F0 A3 01 24 B6 FB 8F   E3 3D 02 0B 6F 54 FE D4  ....$....=..oT..
> 0B30: CC DB D6 85 BF 7C 95 1E   5E 62 11 C1 D9 09 9C 42  ........^b.....B
> 0B40: B9 B2 D4 AA 2D 98 3A 23   60 CC A2 9A F1 6E E8 CF  ....-.:#`....n..
> 0B50: 8E D1 1A 3C 5E 19 C5 D7   9B 35 B0 02 23 24 E5 05  ...<^....5..#$..
> 0B60: B8 D5 88 E3 E0 FA B9 F4   5F                       ........_
> main, READ: TLSv1 Handshake, length = 2921
> *** Certificate chain
> chain [0] = [
> [
>   Version: V3
>   Subject: CN=xxx.xxx.xxx.xxx, OU=Terms of use at www.verisign.com/rpa(c)00, O=GXS, L=Gaithersburg, ST=Maryland, C=US
>   Signature Algorithm: SHA1withRSA, OID = 1.2.840.113549.1.1.5
>
>   Key:  Sun RSA public key, 1024 bits
>   modulus:
> 135757105610199649632380269734642672042427792068399474122539854101119374535286418245414814307881091421019689852764706750670141728882195455096048045113122805851737242286943287296034269939871215517150595234817892513843300528632206280882813704472498596956065273278065918782915210349654872108493591043958652548901
>   public exponent: 65537
>   Validity: [From: Fri Jun 11 04:00:00 GST 2010,
>                To: Mon Jun 11 03:59:59 GST 2012]
>   Issuer: CN=VeriSign Class 3 Secure Server CA - G2, OU=Terms of use at
> https://www.verisign.com/rpa (c)09, OU=VeriSign Trust Network,
> O="VeriSign, Inc.", C=US
>   SerialNumber: [    2a7d25d4 71c332e4 726c8795 d83071ae]
>
> Certificate Extensions: 8
> [1]: ObjectId: 1.3.6.1.5.5.7.1.12 Criticality=false
> Extension unknown: DER encoded OCTET string =
> 0000: 04 62 30 60 A1 5E A0 5C   30 5A 30 58 30 56 16 09  .b0`.^.\0Z0X0V..
> 0010: 69 6D 61 67 65 2F 67 69   66 30 21 30 1F 30 07 06  image/gif0!0.0..
> 0020: 05 2B 0E 03 02 1A 04 14   4B 6B B9 28 96 06 0C BB  .+......Kk.(....
> 0030: D0 52 38 9B 29 AC 4B 07   8B 21 05 18 30 26 16 24  .R8.).K..!..0&.$
> 0040: 68 74 74 70 3A 2F 2F 6C   6F 67 6F 2E 76 65 72 69  http://logo.veri
> 0050: 73 69 67 6E 2E 63 6F 6D   2F 76 73 6C 6F 67 6F 31  sign.com/vslogo1
> 0060: 2E 67 69 66                                        .gif
>
>
> [2]: ObjectId: 2.5.29.35 Criticality=false
> AuthorityKeyIdentifier [
> KeyIdentifier [
> 0000: A5 EF 0B 11 CE C0 41 03   A3 4A 65 90 48 B2 1C E0  ......A..Je.H...
> 0010: 57 2D 7D 47                                        W-.G
> ]
> ]
>
> [3]: ObjectId: 2.5.29.31 Criticality=false
> CRLDistributionPoints [
>   [DistributionPoint:
>      [URIName: http://SVRSecure-G2-crl.verisign.com/SVRSecureG2.crl]
> ]]
>
> [4]: ObjectId: 2.5.29.37 Criticality=false
> ExtendedKeyUsages [
>   serverAuth
>   clientAuth
> ]
>
> [5]: ObjectId: 2.5.29.32 Criticality=false
> CertificatePolicies [
>   [CertificatePolicyId: [2.16.840.1.113733.1.7.23.3]
> [PolicyQualifierInfo: [
>   qualifierID: 1.3.6.1.5.5.7.2.1
>   qualifier: 0000: 16 1C 68 74 74 70 73 3A   2F 2F 77 77 77 2E 76 65  ..
> https://www.ve
> 0010: 72 69 73 69 67 6E 2E 63   6F 6D 2F 72 70 61        risign.com/rpa
>
> ]]  ]
> ]
>
> [6]: ObjectId: 2.5.29.15 Criticality=false
> KeyUsage [
>   DigitalSignature
>   Key_Encipherment
> ]
>
> [7]: ObjectId: 1.3.6.1.5.5.7.1.1 Criticality=false
> AuthorityInfoAccess [
>   [
>    accessMethod: ocsp
>    accessLocation: URIName: http://ocsp.verisign.com
> ,
>    accessMethod: caIssuers
>    accessLocation: URIName:
> http://SVRSecure-G2-aia.verisign.com/SVRSecureG2.cer
> ]
> ]
>
> [8]: ObjectId: 2.5.29.19 Criticality=false
> BasicConstraints:[
>   CA:false
>   PathLen: undefined
> ]
>
> ]
>   Algorithm: [SHA1withRSA]
>   Signature:
> 0000: C4 EE 63 80 48 20 0F B8   AF A1 75 2D BF 73 2D 89  ..c.H ....u-.s-.
> 0010: 6B 16 22 3D B8 7D 47 7B   45 B5 B6 BA BE A9 6A A7  k."=..G.E.....j.
> 0020: 90 52 C4 6A 86 C8 D1 7E   1B 6F 6D 68 64 9A 9A 58  .R.j.....omhd..X
> 0030: 28 BA 81 30 29 DF 4B 63   ED E3 DD A8 8E 45 4D 66  (..0).Kc.....EMf
> 0040: 01 70 C7 B1 72 71 11 26   A3 A1 62 12 26 41 50 8A  .p..rq.&..b.&AP.
> 0050: B3 2F D6 31 B5 40 96 4F   1F 04 17 19 85 E0 56 E0  ./.1.@.O......V.
> 0060: D7 77 71 C4 50 F6 88 AB   CD 62 33 CB E8 B7 E2 1F  .wq.P....b3.....
> 0070: A8 C2 3C DB 11 5B 67 E4   A0 56 3B 71 65 53 B6 BF  ..<..[g..V;qeS..
> 0080: B4 FE FC D9 D9 91 D4 41   C6 9F 53 07 69 A9 C8 24  .......A..S.i..$
> 0090: 3E AA 6A 48 DF 93 DA FA   53 0D 1B 9A 3D 34 11 5C  >.jH....S...=4.\
> 00A0: 89 E3 06 45 D1 14 7F D0   77 9A 25 E7 36 D0 46 E3  ...E....w.%.6.F.
> 00B0: 56 75 B3 F9 A1 A2 4C 8C   7D D7 41 FF D1 65 EA 5B  Vu....L...A..e.[
> 00C0: 41 A1 D4 B9 13 CE B5 0F   CF 96 52 CC F7 EA 58 DF  A.........R...X.
> 00D0: 30 4E 38 91 9A 82 D7 7D   93 64 4E D0 99 B8 94 35  0N8......dN....5
> 00E0: FF 91 F1 30 4C E2 B3 5B   B1 6E F5 EE 5F C9 A5 B2  ...0L..[.n.._...
> 00F0: C4 EB FD EC C1 8E 80 FD   DB B5 AF 00 26 92 74 25  ............&.t%
>
> ]
> chain [1] = [
> [
>   Version: V3
>   Subject: CN=VeriSign Class 3 Secure Server CA - G2, OU=Terms of use at
> https://www.verisign.com/rpa (c)09, OU=VeriSign Trust Network,
> O="VeriSign, Inc.", C=US
>   Signature Algorithm: SHA1withRSA, OID = 1.2.840.113549.1.1.5
>
>   Key:  Sun RSA public key, 2048 bits
>   modulus:
> 26805204942585697129650144595412463242250954291268709266301036024495824973791027819926204981390876127290839630417484149807410261804746759508089765580200356679253083062442260429054606133775019319855909690673182949845768709091396443714887475939342052069620800117254986852728989808912206509895456659303962714198147323815844210204755323690694416931540007728348788504368090654485031400731324687788140860328317017574035903713518686616483759762127757340334587164914231647532002560800506890060600870709333066696688183972273266844851783083813089052543687803822033242547205194080177117946550162762041618232446174602291249555723
>   public exponent: 65537
>   Validity: [From: Wed Mar 25 04:00:00 GST 2009,
>                To: Mon Mar 25 03:59:59 GST 2019]
>   Issuer: OU=VeriSign Trust Network, OU="(c) 1998 VeriSign, Inc. - For
> authorized use only", OU=Class 3 Public Primary Certification Authority -
> G2, O="VeriSign, Inc.", C=US
>   SerialNumber: [    6e4ffab3 c5e669c4 d167c992 abe858c4]
>
> Certificate Extensions: 9
> [1]: ObjectId: 2.5.29.35 Criticality=false
> AuthorityKeyIdentifier [
> [OU=VeriSign Trust Network, OU="(c) 1998 VeriSign, Inc. - For authorized
> use only", OU=Class 3 Public Primary Certification Authority - G2,
> O="VeriSign, Inc.", C=US]
> SerialNumber: [    7dd9fe07 cfa81eb7 107967fb a78934c6]
> ]
>
> [2]: ObjectId: 1.3.6.1.5.5.7.1.1 Criticality=false
> AuthorityInfoAccess [
>   [
>    accessMethod: ocsp
>    accessLocation: URIName: http://ocsp.verisign.com
> ]
> ]
>
> [3]: ObjectId: 2.5.29.17 Criticality=false
> SubjectAlternativeName [
>   CN=Class3CA2048-1-52
> ]
>
> [4]: ObjectId: 2.5.29.14 Criticality=false
> SubjectKeyIdentifier [
> KeyIdentifier [
> 0000: A5 EF 0B 11 CE C0 41 03   A3 4A 65 90 48 B2 1C E0  ......A..Je.H...
> 0010: 57 2D 7D 47                                        W-.G
> ]
> ]
>
> [5]: ObjectId: 2.5.29.32 Criticality=false
> CertificatePolicies [
>   [CertificatePolicyId: [2.16.840.1.113733.1.7.23.3]
> [PolicyQualifierInfo: [
>   qualifierID: 1.3.6.1.5.5.7.2.1
>   qualifier: 0000: 16 1C 68 74 74 70 73 3A   2F 2F 77 77 77 2E 76 65  ..
> https://www.ve
> 0010: 72 69 73 69 67 6E 2E 63   6F 6D 2F 63 70 73        risign.com/cps
>
> ], PolicyQualifierInfo: [
>   qualifierID: 1.3.6.1.5.5.7.2.2
>   qualifier: 0000: 30 1E 1A 1C 68 74 74 70   73 3A 2F 2F 77 77 77 2E  0...
> https://www.
> 0010: 76 65 72 69 73 69 67 6E   2E 63 6F 6D 2F 72 70 61  verisign.com/rpa
>
> ]]  ]
> ]
>
> [6]: ObjectId: 2.5.29.19 Criticality=true
> BasicConstraints:[
>   CA:true
>   PathLen:0
> ]
>
> [7]: ObjectId: 2.5.29.31 Criticality=false
> CRLDistributionPoints [
>   [DistributionPoint:
>      [URIName: http://crl.verisign.com/pca3-g2.crl]
> ]]
>
> [8]: ObjectId: 1.3.6.1.5.5.7.1.12 Criticality=false
> Extension unknown: DER encoded OCTET string =
> 0000: 04 61 30 5F A1 5D A0 5B   30 59 30 57 30 55 16 09  .a0_.].[0Y0W0U..
> 0010: 69 6D 61 67 65 2F 67 69   66 30 21 30 1F 30 07 06  image/gif0!0.0..
> 0020: 05 2B 0E 03 02 1A 04 14   8F E5 D3 1A 86 AC 8D 8E  .+..............
> 0030: 6B C3 CF 80 6A D4 48 18   2C 7B 19 2E 30 25 16 23  k...j.H.,...0%.#
> 0040: 68 74 74 70 3A 2F 2F 6C   6F 67 6F 2E 76 65 72 69  http://logo.veri
> 0050: 73 69 67 6E 2E 63 6F 6D   2F 76 73 6C 6F 67 6F 2E  sign.com/vslogo.
> 0060: 67 69 66                                           gif
>
>
> [9]: ObjectId: 2.5.29.15 Criticality=true
> KeyUsage [
>   Key_CertSign
>   Crl_Sign
> ]
>
> ]
>   Algorithm: [SHA1withRSA]
>   Signature:
> 0000: 63 74 2F 3D 53 AA 2F 97   EC 26 11 66 1A FE F1 DE  ct/=S./..&.f....
> 0010: 41 27 19 D2 7F D8 C1 1C   F9 E2 38 56 3A 1F 90 AE  A'........8V:...
> 0020: 39 C5 20 75 AB F8 6C 2D   67 1F 29 C2 21 D7 14 88  9. u..l-g.).!...
> 0030: 63 4B B0 9B 27 63 91 F8   F0 A3 01 24 B6 FB 8F E3  cK..'c.....$....
> 0040: 3D 02 0B 6F 54 FE D4 CC   DB D6 85 BF 7C 95 1E 5E  =..oT..........^
> 0050: 62 11 C1 D9 09 9C 42 B9   B2 D4 AA 2D 98 3A 23 60  b.....B....-.:#`
> 0060: CC A2 9A F1 6E E8 CF 8E   D1 1A 3C 5E 19 C5 D7 9B  ....n.....<^....
> 0070: 35 B0 02 23 24 E5 05 B8   D5 88 E3 E0 FA B9 F4 5F  5..#$.........._
>
> ]
> ***
> Found trusted certificate:
> [
> [
>   Version: V3
>   Subject: CN=xxx.xxx.xxx.xxx, OU=Terms of use at www.verisign.com/rpa(c)00, O=GXS, L=Gaithersburg, ST=Maryland, C=US
>   Signature Algorithm: SHA1withRSA, OID = 1.2.840.113549.1.1.5
>
>   Key:  Sun RSA public key, 1024 bits
>   modulus:
> 135757105610199649632380269734642672042427792068399474122539854101119374535286418245414814307881091421019689852764706750670141728882195455096048045113122805851737242286943287296034269939871215517150595234817892513843300528632206280882813704472498596956065273278065918782915210349654872108493591043958652548901
>   public exponent: 65537
>   Validity: [From: Fri Jun 11 04:00:00 GST 2010,
>                To: Mon Jun 11 03:59:59 GST 2012]
>   Issuer: CN=VeriSign Class 3 Secure Server CA - G2, OU=Terms of use at
> https://www.verisign.com/rpa (c)09, OU=VeriSign Trust Network,
> O="VeriSign, Inc.", C=US
>   SerialNumber: [    2a7d25d4 71c332e4 726c8795 d83071ae]
>
> Certificate Extensions: 8
> [1]: ObjectId: 1.3.6.1.5.5.7.1.12 Criticality=false
> Extension unknown: DER encoded OCTET string =
> 0000: 04 62 30 60 A1 5E A0 5C   30 5A 30 58 30 56 16 09  .b0`.^.\0Z0X0V..
> 0010: 69 6D 61 67 65 2F 67 69   66 30 21 30 1F 30 07 06  image/gif0!0.0..
> 0020: 05 2B 0E 03 02 1A 04 14   4B 6B B9 28 96 06 0C BB  .+......Kk.(....
> 0030: D0 52 38 9B 29 AC 4B 07   8B 21 05 18 30 26 16 24  .R8.).K..!..0&.$
> 0040: 68 74 74 70 3A 2F 2F 6C   6F 67 6F 2E 76 65 72 69  http://logo.veri
> 0050: 73 69 67 6E 2E 63 6F 6D   2F 76 73 6C 6F 67 6F 31  sign.com/vslogo1
> 0060: 2E 67 69 66                                        .gif
>
>
> [2]: ObjectId: 2.5.29.35 Criticality=false
> AuthorityKeyIdentifier [
> KeyIdentifier [
> 0000: A5 EF 0B 11 CE C0 41 03   A3 4A 65 90 48 B2 1C E0  ......A..Je.H...
> 0010: 57 2D 7D 47                                        W-.G
> ]
> ]
>
> [3]: ObjectId: 2.5.29.31 Criticality=false
> CRLDistributionPoints [
>   [DistributionPoint:
>      [URIName: http://SVRSecure-G2-crl.verisign.com/SVRSecureG2.crl]
> ]]
>
> [4]: ObjectId: 2.5.29.37 Criticality=false
> ExtendedKeyUsages [
>   serverAuth
>   clientAuth
> ]
>
> [5]: ObjectId: 2.5.29.32 Criticality=false
> CertificatePolicies [
>   [CertificatePolicyId: [2.16.840.1.113733.1.7.23.3]
> [PolicyQualifierInfo: [
>   qualifierID: 1.3.6.1.5.5.7.2.1
>   qualifier: 0000: 16 1C 68 74 74 70 73 3A   2F 2F 77 77 77 2E 76 65  ..
> https://www.ve
> 0010: 72 69 73 69 67 6E 2E 63   6F 6D 2F 72 70 61        risign.com/rpa
>
> ]]  ]
> ]
>
> [6]: ObjectId: 2.5.29.15 Criticality=false
> KeyUsage [
>   DigitalSignature
>   Key_Encipherment
> ]
>
> [7]: ObjectId: 1.3.6.1.5.5.7.1.1 Criticality=false
> AuthorityInfoAccess [
>   [
>    accessMethod: ocsp
>    accessLocation: URIName: http://ocsp.verisign.com
> ,
>    accessMethod: caIssuers
>    accessLocation: URIName:
> http://SVRSecure-G2-aia.verisign.com/SVRSecureG2.cer
> ]
> ]
>
> [8]: ObjectId: 2.5.29.19 Criticality=false
> BasicConstraints:[
>   CA:false
>   PathLen: undefined
> ]
>
> ]
>   Algorithm: [SHA1withRSA]
>   Signature:
> 0000: C4 EE 63 80 48 20 0F B8   AF A1 75 2D BF 73 2D 89  ..c.H ....u-.s-.
> 0010: 6B 16 22 3D B8 7D 47 7B   45 B5 B6 BA BE A9 6A A7  k."=..G.E.....j.
> 0020: 90 52 C4 6A 86 C8 D1 7E   1B 6F 6D 68 64 9A 9A 58  .R.j.....omhd..X
> 0030: 28 BA 81 30 29 DF 4B 63   ED E3 DD A8 8E 45 4D 66  (..0).Kc.....EMf
> 0040: 01 70 C7 B1 72 71 11 26   A3 A1 62 12 26 41 50 8A  .p..rq.&..b.&AP.
> 0050: B3 2F D6 31 B5 40 96 4F   1F 04 17 19 85 E0 56 E0  ./.1.@.O......V.
> 0060: D7 77 71 C4 50 F6 88 AB   CD 62 33 CB E8 B7 E2 1F  .wq.P....b3.....
> 0070: A8 C2 3C DB 11 5B 67 E4   A0 56 3B 71 65 53 B6 BF  ..<..[g..V;qeS..
> 0080: B4 FE FC D9 D9 91 D4 41   C6 9F 53 07 69 A9 C8 24  .......A..S.i..$
> 0090: 3E AA 6A 48 DF 93 DA FA   53 0D 1B 9A 3D 34 11 5C  >.jH....S...=4.\
> 00A0: 89 E3 06 45 D1 14 7F D0   77 9A 25 E7 36 D0 46 E3  ...E....w.%.6.F.
> 00B0: 56 75 B3 F9 A1 A2 4C 8C   7D D7 41 FF D1 65 EA 5B  Vu....L...A..e.[
> 00C0: 41 A1 D4 B9 13 CE B5 0F   CF 96 52 CC F7 EA 58 DF  A.........R...X.
> 00D0: 30 4E 38 91 9A 82 D7 7D   93 64 4E D0 99 B8 94 35  0N8......dN....5
> 00E0: FF 91 F1 30 4C E2 B3 5B   B1 6E F5 EE 5F C9 A5 B2  ...0L..[.n.._...
> 00F0: C4 EB FD EC C1 8E 80 FD   DB B5 AF 00 26 92 74 25  ............&.t%
>
> ]
> [read] MD5 and SHA1 hashes:  len = 2921
> 0000: 0B 00 0B 65 00 0B 62 00   05 2C 30 82 05 28 30 82  ...e..b..,0..(0.
> 0010: 04 10 A0 03 02 01 02 02   10 2A 7D 25 D4 71 C3 32  .........*.%.q.2
> 0020: E4 72 6C 87 95 D8 30 71   AE 30 0D 06 09 2A 86 48  .rl...0q.0...*.H
> 0030: 86 F7 0D 01 01 05 05 00   30 81 B5 31 0B 30 09 06  ........0..1.0..
> 0040: 03 55 04 06 13 02 55 53   31 17 30 15 06 03 55 04  .U....US1.0...U.
> 0050: 0A 13 0E 56 65 72 69 53   69 67 6E 2C 20 49 6E 63  ...VeriSign, Inc
> 0060: 2E 31 1F 30 1D 06 03 55   04 0B 13 16 56 65 72 69  .1.0...U....Veri
> 0070: 53 69 67 6E 20 54 72 75   73 74 20 4E 65 74 77 6F  Sign Trust Netwo
> 0080: 72 6B 31 3B 30 39 06 03   55 04 0B 13 32 54 65 72  rk1;09..U...2Ter
> 0090: 6D 73 20 6F 66 20 75 73   65 20 61 74 20 68 74 74  ms of use at htt
> 00A0: 70 73 3A 2F 2F 77 77 77   2E 76 65 72 69 73 69 67  ps://www.verisig
> 00B0: 6E 2E 63 6F 6D 2F 72 70   61 20 28 63 29 30 39 31  n.com/rpa (c)091
> 00C0: 2F 30 2D 06 03 55 04 03   13 26 56 65 72 69 53 69  /0-..U...&VeriSi
> 00D0: 67 6E 20 43 6C 61 73 73   20 33 20 53 65 63 75 72  gn Class 3 Secur
> 00E0: 65 20 53 65 72 76 65 72   20 43 41 20 2D 20 47 32  e Server CA - G2
> 00F0: 30 1E 17 0D 31 30 30 36   31 31 30 30 30 30 30 30  0...100611000000
> 0100: 5A 17 0D 31 32 30 36 31   30 32 33 35 39 35 39 5A  Z..120610235959Z
> 0110: 30 81 98 31 0B 30 09 06   03 55 04 06 13 02 55 53  0..1.0...U....US
> 0120: 31 11 30 0F 06 03 55 04   08 13 08 4D 61 72 79 6C  1.0...U....Maryl
> 0130: 61 6E 64 31 15 30 13 06   03 55 04 07 14 0C 47 61  and1.0...U....Ga
> 0140: 69 74 68 65 72 73 62 75   72 67 31 0C 30 0A 06 03  ithersburg1.0...
> 0150: 55 04 0A 14 03 47 58 53   31 33 30 31 06 03 55 04  U....GXS1301..U.
> 0160: 0B 14 2A 54 65 72 6D 73   20 6F 66 20 75 73 65 20  ..*Terms of use
> 0170: 61 74 20 77 77 77 2E 76   65 72 69 73 69 67 6E 2E  at www.verisign.
> 0180: 63 6F 6D 2F 72 70 61 20   28 63 29 30 30 31 1C 30  com/rpa (c)001.0
> 0190: 1A 06 03 55 04 03 14 13   62 32 62 2E 65 63 73 63  ...U....b2b.ecsc
> 01A0: 2E 75 73 2E 67 78 73 2E   63 6F 6D 30 81 9F 30 0D  .us.gxs.com0..0.
> 01B0: 06 09 2A 86 48 86 F7 0D   01 01 01 05 00 03 81 8D  ..*.H...........
> 01C0: 00 30 81 89 02 81 81 00   C1 53 14 C3 0D D5 C5 E3  .0.......S......
> 01D0: A7 06 31 4C 99 E3 56 1D   A2 47 AD 05 27 C6 A6 2F  ..1L..V..G..'../
> 01E0: BE EC 34 DB DB 11 DB 20   B9 F2 B0 5A 79 E8 5B D5  ..4.... ...Zy.[.
> 01F0: 35 A8 CC AE 32 FD 2F 06   5A 50 47 C7 F5 B5 D1 06  5...2./.ZPG.....
> 0200: 40 3E 71 34 80 38 F3 1D   B1 2D 63 00 21 DF 1F B8  @>q4.8...-c.!...
> 0210: 55 F2 EA 25 58 5D 9F 2F   4D 02 C7 73 57 97 36 FA  U..%X]./M..sW.6.
> 0220: E0 84 F4 1A 72 4A E7 29   EA 09 69 72 78 79 2D 8E  ....rJ.)..irxy-.
> 0230: C5 6C 75 81 AD 78 FB B4   0E B0 9A 7E 68 9C 30 E3  .lu..x......h.0.
> 0240: F7 57 9B 8E F1 34 37 25   02 03 01 00 01 A3 82 01  .W...47%........
> 0250: D1 30 82 01 CD 30 09 06   03 55 1D 13 04 02 30 00  .0...0...U....0.
> 0260: 30 0B 06 03 55 1D 0F 04   04 03 02 05 A0 30 45 06  0...U........0E.
> 0270: 03 55 1D 1F 04 3E 30 3C   30 3A A0 38 A0 36 86 34  .U...>0<0:.8.6.4
> 0280: 68 74 74 70 3A 2F 2F 53   56 52 53 65 63 75 72 65  http://SVRSecure
> 0290: 2D 47 32 2D 63 72 6C 2E   76 65 72 69 73 69 67 6E  -G2-crl.verisign
> 02A0: 2E 63 6F 6D 2F 53 56 52   53 65 63 75 72 65 47 32  .com/SVRSecureG2
> 02B0: 2E 63 72 6C 30 44 06 03   55 1D 20 04 3D 30 3B 30  .crl0D..U. .=0;0
> 02C0: 39 06 0B 60 86 48 01 86   F8 45 01 07 17 03 30 2A  9..`.H...E....0*
> 02D0: 30 28 06 08 2B 06 01 05   05 07 02 01 16 1C 68 74  0(..+.........ht
> 02E0: 74 70 73 3A 2F 2F 77 77   77 2E 76 65 72 69 73 69  tps://www.verisi
> 02F0: 67 6E 2E 63 6F 6D 2F 72   70 61 30 1D 06 03 55 1D  gn.com/rpa0...U.
> 0300: 25 04 16 30 14 06 08 2B   06 01 05 05 07 03 01 06  %..0...+........
> 0310: 08 2B 06 01 05 05 07 03   02 30 1F 06 03 55 1D 23  .+.......0...U.#
> 0320: 04 18 30 16 80 14 A5 EF   0B 11 CE C0 41 03 A3 4A  ..0.........A..J
> 0330: 65 90 48 B2 1C E0 57 2D   7D 47 30 76 06 08 2B 06  e.H...W-.G0v..+.
> 0340: 01 05 05 07 01 01 04 6A   30 68 30 24 06 08 2B 06  .......j0h0$..+.
> 0350: 01 05 05 07 30 01 86 18   68 74 74 70 3A 2F 2F 6F  ....0...http://o
> 0360: 63 73 70 2E 76 65 72 69   73 69 67 6E 2E 63 6F 6D  csp.verisign.com
> 0370: 30 40 06 08 2B 06 01 05   05 07 30 02 86 34 68 74  0@..+.....0..4ht
> 0380: 74 70 3A 2F 2F 53 56 52   53 65 63 75 72 65 2D 47  tp://SVRSecure-G
> 0390: 32 2D 61 69 61 2E 76 65   72 69 73 69 67 6E 2E 63  2-aia.verisign.c
> 03A0: 6F 6D 2F 53 56 52 53 65   63 75 72 65 47 32 2E 63  om/SVRSecureG2.c
> 03B0: 65 72 30 6E 06 08 2B 06   01 05 05 07 01 0C 04 62  er0n..+........b
> 03C0: 30 60 A1 5E A0 5C 30 5A   30 58 30 56 16 09 69 6D  0`.^.\0Z0X0V..im
> 03D0: 61 67 65 2F 67 69 66 30   21 30 1F 30 07 06 05 2B  age/gif0!0.0...+
> 03E0: 0E 03 02 1A 04 14 4B 6B   B9 28 96 06 0C BB D0 52  ......Kk.(.....R
> 03F0: 38 9B 29 AC 4B 07 8B 21   05 18 30 26 16 24 68 74  8.).K..!..0&.$ht
> 0400: 74 70 3A 2F 2F 6C 6F 67   6F 2E 76 65 72 69 73 69  tp://logo.verisi
> 0410: 67 6E 2E 63 6F 6D 2F 76   73 6C 6F 67 6F 31 2E 67  gn.com/vslogo1.g
> 0420: 69 66 30 0D 06 09 2A 86   48 86 F7 0D 01 01 05 05  if0...*.H.......
> 0430: 00 03 82 01 01 00 C4 EE   63 80 48 20 0F B8 AF A1  ........c.H ....
> 0440: 75 2D BF 73 2D 89 6B 16   22 3D B8 7D 47 7B 45 B5  u-.s-.k."=..G.E.
> 0450: B6 BA BE A9 6A A7 90 52   C4 6A 86 C8 D1 7E 1B 6F  ....j..R.j.....o
> 0460: 6D 68 64 9A 9A 58 28 BA   81 30 29 DF 4B 63 ED E3  mhd..X(..0).Kc..
> 0470: DD A8 8E 45 4D 66 01 70   C7 B1 72 71 11 26 A3 A1  ...EMf.p..rq.&..
> 0480: 62 12 26 41 50 8A B3 2F   D6 31 B5 40 96 4F 1F 04  b.&AP../.1.@.O..
> 0490: 17 19 85 E0 56 E0 D7 77   71 C4 50 F6 88 AB CD 62  ....V..wq.P....b
> 04A0: 33 CB E8 B7 E2 1F A8 C2   3C DB 11 5B 67 E4 A0 56  3.......<..[g..V
> 04B0: 3B 71 65 53 B6 BF B4 FE   FC D9 D9 91 D4 41 C6 9F  ;qeS.........A..
> 04C0: 53 07 69 A9 C8 24 3E AA   6A 48 DF 93 DA FA 53 0D  S.i..$>.jH....S.
> 04D0: 1B 9A 3D 34 11 5C 89 E3   06 45 D1 14 7F D0 77 9A  ..=4.\...E....w.
> 04E0: 25 E7 36 D0 46 E3 56 75   B3 F9 A1 A2 4C 8C 7D D7  %.6.F.Vu....L...
> 04F0: 41 FF D1 65 EA 5B 41 A1   D4 B9 13 CE B5 0F CF 96  A..e.[A.........
> 0500: 52 CC F7 EA 58 DF 30 4E   38 91 9A 82 D7 7D 93 64  R...X.0N8......d
> 0510: 4E D0 99 B8 94 35 FF 91   F1 30 4C E2 B3 5B B1 6E  N....5...0L..[.n
> 0520: F5 EE 5F C9 A5 B2 C4 EB   FD EC C1 8E 80 FD DB B5  .._.............
> 0530: AF 00 26 92 74 25 00 06   30 30 82 06 2C 30 82 05  ..&.t%..00..,0..
> 0540: 95 A0 03 02 01 02 02 10   6E 4F FA B3 C5 E6 69 C4  ........nO....i.
> 0550: D1 67 C9 92 AB E8 58 C4   30 0D 06 09 2A 86 48 86  .g....X.0...*.H.
> 0560: F7 0D 01 01 05 05 00 30   81 C1 31 0B 30 09 06 03  .......0..1.0...
> 0570: 55 04 06 13 02 55 53 31   17 30 15 06 03 55 04 0A  U....US1.0...U..
> 0580: 13 0E 56 65 72 69 53 69   67 6E 2C 20 49 6E 63 2E  ..VeriSign, Inc.
> 0590: 31 3C 30 3A 06 03 55 04   0B 13 33 43 6C 61 73 73  1<0:..U...3Class
> 05A0: 20 33 20 50 75 62 6C 69   63 20 50 72 69 6D 61 72   3 Public Primar
> 05B0: 79 20 43 65 72 74 69 66   69 63 61 74 69 6F 6E 20  y Certification
> 05C0: 41 75 74 68 6F 72 69 74   79 20 2D 20 47 32 31 3A  Authority - G21:
> 05D0: 30 38 06 03 55 04 0B 13   31 28 63 29 20 31 39 39  08..U...1(c) 199
> 05E0: 38 20 56 65 72 69 53 69   67 6E 2C 20 49 6E 63 2E  8 VeriSign, Inc.
> 05F0: 20 2D 20 46 6F 72 20 61   75 74 68 6F 72 69 7A 65   - For authorize
> 0600: 64 20 75 73 65 20 6F 6E   6C 79 31 1F 30 1D 06 03  d use only1.0...
> 0610: 55 04 0B 13 16 56 65 72   69 53 69 67 6E 20 54 72  U....VeriSign Tr
> 0620: 75 73 74 20 4E 65 74 77   6F 72 6B 30 1E 17 0D 30  ust Network0...0
> 0630: 39 30 33 32 35 30 30 30   30 30 30 5A 17 0D 31 39  90325000000Z..19
> 0640: 30 33 32 34 32 33 35 39   35 39 5A 30 81 B5 31 0B  0324235959Z0..1.
> 0650: 30 09 06 03 55 04 06 13   02 55 53 31 17 30 15 06  0...U....US1.0..
> 0660: 03 55 04 0A 13 0E 56 65   72 69 53 69 67 6E 2C 20  .U....VeriSign,
> 0670: 49 6E 63 2E 31 1F 30 1D   06 03 55 04 0B 13 16 56  Inc.1.0...U....V
> 0680: 65 72 69 53 69 67 6E 20   54 72 75 73 74 20 4E 65  eriSign Trust Ne
> 0690: 74 77 6F 72 6B 31 3B 30   39 06 03 55 04 0B 13 32  twork1;09..U...2
> 06A0: 54 65 72 6D 73 20 6F 66   20 75 73 65 20 61 74 20  Terms of use at
> 06B0: 68 74 74 70 73 3A 2F 2F   77 77 77 2E 76 65 72 69  https://www.veri
> 06C0: 73 69 67 6E 2E 63 6F 6D   2F 72 70 61 20 28 63 29  sign.com/rpa (c)
> 06D0: 30 39 31 2F 30 2D 06 03   55 04 03 13 26 56 65 72  091/0-..U...&Ver
> 06E0: 69 53 69 67 6E 20 43 6C   61 73 73 20 33 20 53 65  iSign Class 3 Se
> 06F0: 63 75 72 65 20 53 65 72   76 65 72 20 43 41 20 2D  cure Server CA -
> 0700: 20 47 32 30 82 01 22 30   0D 06 09 2A 86 48 86 F7   G20.."0...*.H..
> 0710: 0D 01 01 01 05 00 03 82   01 0F 00 30 82 01 0A 02  ...........0....
> 0720: 82 01 01 00 D4 56 8F 57   3B 37 28 A6 40 63 D2 95  .....V.W;7(.@c..
> 0730: D5 05 74 DA B5 19 6A 96   D6 71 57 2F E2 C0 34 8C  ..t...j..qW/..4.
> 0740: A0 95 B3 8C E1 37 24 F3   2E ED 43 45 05 8E 89 D7  .....7$...CE....
> 0750: FA DA 4A B5 F8 3E 8D 4E   C7 F9 49 50 45 37 40 9F  ..J..>.N..IPE7@.
> 0760: 74 AA A0 51 55 61 F1 60   84 89 A5 9E 80 8D 2F B0  t..QUa.`....../.
> 0770: 21 AA 45 82 C4 CF B4 14   7F 47 15 20 28 82 B0 68  !.E......G. (..h
> 0780: 12 C0 AE 5C 07 D7 F6 59   CC CB 62 56 5C 4D 49 FF  ...\...Y..bV\MI.
> 0790: 26 88 AB 54 51 3A 2F 4A   DA 0E 98 E2 89 72 B9 FC  &..TQ:/J.....r..
> 07A0: F7 68 3C C4 1F 39 7A CB   17 81 F3 0C AD 0F DC 61  .h<..9z........a
> 07B0: 62 1B 10 0B 04 1E 29 18   71 5E 62 CB 43 DE BE 31  b.....).q^b.C..1
> 07C0: BA 71 02 19 4E 26 A9 51   DA 8C 64 69 03 DE 9C FD  .q..N&.Q..di....
> 07D0: 7D FD 7B 61 BC FC 84 7C   88 5C B4 C3 7B ED 5F 2B  ...a.....\...._+
> 07E0: 46 12 F1 FD 00 01 9A 8B   5B E9 A3 05 2E 8F 2E 5B  F.......[......[
> 07F0: DE F3 1B 78 F8 66 91 08   C0 5E CE D5 B0 36 CA D4  ...x.f...^...6..
> 0800: A8 7B A0 7D F9 30 7A BF   F8 DD 19 51 2B 20 BA FE  .....0z....Q+ ..
> 0810: A7 CF A1 4E B0 67 F5 80   AA 2B 83 2E D2 8E 54 89  ...N.g...+....T.
> 0820: 8E 1E 29 0B 02 03 01 00   01 A3 82 02 A9 30 82 02  ..)..........0..
> 0830: A5 30 34 06 08 2B 06 01   05 05 07 01 01 04 28 30  .04..+........(0
> 0840: 26 30 24 06 08 2B 06 01   05 05 07 30 01 86 18 68  &0$..+.....0...h
> 0850: 74 74 70 3A 2F 2F 6F 63   73 70 2E 76 65 72 69 73  ttp://ocsp.veris
> 0860: 69 67 6E 2E 63 6F 6D 30   12 06 03 55 1D 13 01 01  ign.com0...U....
> 0870: FF 04 08 30 06 01 01 FF   02 01 00 30 70 06 03 55  ...0.......0p..U
> 0880: 1D 20 04 69 30 67 30 65   06 0B 60 86 48 01 86 F8  . .i0g0e..`.H...
> 0890: 45 01 07 17 03 30 56 30   28 06 08 2B 06 01 05 05  E....0V0(..+....
> 08A0: 07 02 01 16 1C 68 74 74   70 73 3A 2F 2F 77 77 77  .....https://www
> 08B0: 2E 76 65 72 69 73 69 67   6E 2E 63 6F 6D 2F 63 70  .verisign.com/cp
> 08C0: 73 30 2A 06 08 2B 06 01   05 05 07 02 02 30 1E 1A  s0*..+.......0..
> 08D0: 1C 68 74 74 70 73 3A 2F   2F 77 77 77 2E 76 65 72  .https://www.ver
> 08E0: 69 73 69 67 6E 2E 63 6F   6D 2F 72 70 61 30 34 06  isign.com/rpa04.
> 08F0: 03 55 1D 1F 04 2D 30 2B   30 29 A0 27 A0 25 86 23  .U...-0+0).'.%.#
> 0900: 68 74 74 70 3A 2F 2F 63   72 6C 2E 76 65 72 69 73  http://crl.veris
> 0910: 69 67 6E 2E 63 6F 6D 2F   70 63 61 33 2D 67 32 2E  ign.com/pca3-g2.
> 0920: 63 72 6C 30 0E 06 03 55   1D 0F 01 01 FF 04 04 03  crl0...U........
> 0930: 02 01 06 30 6D 06 08 2B   06 01 05 05 07 01 0C 04  ...0m..+........
> 0940: 61 30 5F A1 5D A0 5B 30   59 30 57 30 55 16 09 69  a0_.].[0Y0W0U..i
> 0950: 6D 61 67 65 2F 67 69 66   30 21 30 1F 30 07 06 05  mage/gif0!0.0...
> 0960: 2B 0E 03 02 1A 04 14 8F   E5 D3 1A 86 AC 8D 8E 6B  +..............k
> 0970: C3 CF 80 6A D4 48 18 2C   7B 19 2E 30 25 16 23 68  ...j.H.,...0%.#h
> 0980: 74 74 70 3A 2F 2F 6C 6F   67 6F 2E 76 65 72 69 73  ttp://logo.veris
> 0990: 69 67 6E 2E 63 6F 6D 2F   76 73 6C 6F 67 6F 2E 67  ign.com/vslogo.g
> 09A0: 69 66 30 29 06 03 55 1D   11 04 22 30 20 A4 1E 30  if0)..U..."0 ..0
> 09B0: 1C 31 1A 30 18 06 03 55   04 03 13 11 43 6C 61 73  .1.0...U....Clas
> 09C0: 73 33 43 41 32 30 34 38   2D 31 2D 35 32 30 1D 06  s3CA2048-1-520..
> 09D0: 03 55 1D 0E 04 16 04 14   A5 EF 0B 11 CE C0 41 03  .U............A.
> 09E0: A3 4A 65 90 48 B2 1C E0   57 2D 7D 47 30 81 E7 06  .Je.H...W-.G0...
> 09F0: 03 55 1D 23 04 81 DF 30   81 DC A1 81 C7 A4 81 C4  .U.#...0........
> 0A00: 30 81 C1 31 0B 30 09 06   03 55 04 06 13 02 55 53  0..1.0...U....US
> 0A10: 31 17 30 15 06 03 55 04   0A 13 0E 56 65 72 69 53  1.0...U....VeriS
> 0A20: 69 67 6E 2C 20 49 6E 63   2E 31 3C 30 3A 06 03 55  ign, Inc.1<0:..U
> 0A30: 04 0B 13 33 43 6C 61 73   73 20 33 20 50 75 62 6C  ...3Class 3 Publ
> 0A40: 69 63 20 50 72 69 6D 61   72 79 20 43 65 72 74 69  ic Primary Certi
> 0A50: 66 69 63 61 74 69 6F 6E   20 41 75 74 68 6F 72 69  fication Authori
> 0A60: 74 79 20 2D 20 47 32 31   3A 30 38 06 03 55 04 0B  ty - G21:08..U..
> 0A70: 13 31 28 63 29 20 31 39   39 38 20 56 65 72 69 53  .1(c) 1998 VeriS
> 0A80: 69 67 6E 2C 20 49 6E 63   2E 20 2D 20 46 6F 72 20  ign, Inc. - For
> 0A90: 61 75 74 68 6F 72 69 7A   65 64 20 75 73 65 20 6F  authorized use o
> 0AA0: 6E 6C 79 31 1F 30 1D 06   03 55 04 0B 13 16 56 65  nly1.0...U....Ve
> 0AB0: 72 69 53 69 67 6E 20 54   72 75 73 74 20 4E 65 74  riSign Trust Net
> 0AC0: 77 6F 72 6B 82 10 7D D9   FE 07 CF A8 1E B7 10 79  work...........y
> 0AD0: 67 FB A7 89 34 C6 30 0D   06 09 2A 86 48 86 F7 0D  g...4.0...*.H...
> 0AE0: 01 01 05 05 00 03 81 81   00 63 74 2F 3D 53 AA 2F  .........ct/=S./
> 0AF0: 97 EC 26 11 66 1A FE F1   DE 41 27 19 D2 7F D8 C1  ..&.f....A'.....
> 0B00: 1C F9 E2 38 56 3A 1F 90   AE 39 C5 20 75 AB F8 6C  ...8V:...9. u..l
> 0B10: 2D 67 1F 29 C2 21 D7 14   88 63 4B B0 9B 27 63 91  -g.).!...cK..'c.
> 0B20: F8 F0 A3 01 24 B6 FB 8F   E3 3D 02 0B 6F 54 FE D4  ....$....=..oT..
> 0B30: CC DB D6 85 BF 7C 95 1E   5E 62 11 C1 D9 09 9C 42  ........^b.....B
> 0B40: B9 B2 D4 AA 2D 98 3A 23   60 CC A2 9A F1 6E E8 CF  ....-.:#`....n..
> 0B50: 8E D1 1A 3C 5E 19 C5 D7   9B 35 B0 02 23 24 E5 05  ...<^....5..#$..
> 0B60: B8 D5 88 E3 E0 FA B9 F4   5F                       ........_
> [Raw read]: length = 5
> 0000: 16 03 01 00 04                                     .....
> [Raw read]: length = 4
> 0000: 0E 00 00 00                                        ....
> main, READ: TLSv1 Handshake, length = 4
> *** ServerHelloDone
> [read] MD5 and SHA1 hashes:  len = 4
> 0000: 0E 00 00 00                                        ....
> *** ClientKeyExchange, RSA PreMasterSecret, TLSv1
> [write] MD5 and SHA1 hashes:  len = 134
> 0000: 10 00 00 82 00 80 52 FA   23 EA F4 38 E0 94 53 CE  ......R.#..8..S.
> 0010: 6E CA A0 1F 46 E6 B7 A9   B9 7F C6 8E 49 0E 0B AF  n...F.......I...
> 0020: D7 4F D6 77 B6 41 74 FC   05 92 20 45 58 DF F2 67  .O.w.At... EX..g
> 0030: 69 48 86 BE C2 D8 C9 5B   D3 F9 64 CE 54 FF A7 99  iH.....[..d.T...
> 0040: 2F F4 8C C2 F0 BE CE E2   86 34 9E 94 AD C8 3C 1D  /........4....<.
> 0050: 62 A3 8D 9A 5B 15 8D F9   DE BA 2B 70 19 77 68 52  b...[.....+p.whR
> 0060: C4 8F 3B 96 5D 60 EB 7F   D4 FC 59 8C 99 1E D8 D3  ..;.]`....Y.....
> 0070: 68 CD 5F 1D 70 4D 8C 00   77 29 6A C2 FB 2D F4 C9  h._.pM..w)j..-..
> 0080: E3 8A 48 0B 58 82                                  ..H.X.
> main, WRITE: TLSv1 Handshake, length = 134
> [Raw write]: length = 139
> 0000: 16 03 01 00 86 10 00 00   82 00 80 52 FA 23 EA F4  ...........R.#..
> 0010: 38 E0 94 53 CE 6E CA A0   1F 46 E6 B7 A9 B9 7F C6  8..S.n...F......
> 0020: 8E 49 0E 0B AF D7 4F D6   77 B6 41 74 FC 05 92 20  .I....O.w.At...
> 0030: 45 58 DF F2 67 69 48 86   BE C2 D8 C9 5B D3 F9 64  EX..giH.....[..d
> 0040: CE 54 FF A7 99 2F F4 8C   C2 F0 BE CE E2 86 34 9E  .T.../........4.
> 0050: 94 AD C8 3C 1D 62 A3 8D   9A 5B 15 8D F9 DE BA 2B  ...<.b...[.....+
> 0060: 70 19 77 68 52 C4 8F 3B   96 5D 60 EB 7F D4 FC 59  p.whR..;.]`....Y
> 0070: 8C 99 1E D8 D3 68 CD 5F   1D 70 4D 8C 00 77 29 6A  .....h._.pM..w)j
> 0080: C2 FB 2D F4 C9 E3 8A 48   0B 58 82                 ..-....H.X.
> SESSION KEYGEN:
> PreMaster Secret:
> 0000: 03 01 C5 8D 41 74 9C FF   85 D0 DC D9 0B 48 3C 02  ....At.......H<.
> 0010: 4C B3 6B 27 7C AB 10 F3   05 18 CF 36 2A 7E 21 C6  L.k'.......6*.!.
> 0020: 29 27 E8 A9 55 A1 F5 F4   01 BD EE C6 5B 27 1D F4  )'..U.......['..
> CONNECTION KEYGEN:
> Client Nonce:
> 0000: 4F 61 84 50 0E 98 DA 5B   4B 0B 88 46 33 33 5D FD  Oa.P...[K..F33].
> 0010: 8A F1 63 27 57 86 40 7F   EE 08 69 4B 1D D6 2F 5A  ..c'W.@...iK../Z
> Server Nonce:
> 0000: A9 0D 42 39 56 8E B3 D2   01 93 58 63 D9 BC 60 B0  ..B9V.....Xc..`.
> 0010: 78 7D 1A 63 C8 55 5B 0E   97 C9 87 22 4B 75 8C B7  x..c.U[...."Ku..
> Master Secret:
> 0000: 40 6A 47 2E 0B B9 44 E6   49 36 72 6E E0 96 AD C8  @jG...D.I6rn....
> 0010: C8 3F A3 0C 08 D7 28 48   92 EB F8 F4 0E 55 8F 5B  .?....(H.....U.[
> 0020: A2 22 7A 25 57 7F 44 6C   5E 42 13 4B 4A 77 B9 2D  ."z%W.Dl^B.KJw.-
> Client MAC write Secret:
> 0000: E0 7E BB EC 90 83 93 47   D5 CB 5D 59 09 0C EE 95  .......G..]Y....
> Server MAC write Secret:
> 0000: 05 4D EA 91 93 D0 95 AB   D0 7B FD BF F7 AC 28 55  .M............(U
> Client write key:
> 0000: 24 44 78 A1 4C 76 90 1B   92 74 1D CA F5 9B CB 9F  $Dx.Lv...t......
> Server write key:
> 0000: AA B4 74 B0 ED 27 38 FE   E2 7A 40 6F 33 C0 39 1B  ..t..'8..z@o3.9.
> ... no IV used for this cipher
> main, WRITE: TLSv1 Change Cipher Spec, length = 1
> [Raw write]: length = 6
> 0000: 14 03 01 00 01 01                                  ......
> *** Finished
> verify_data:  { 38, 248, 188, 249, 116, 25, 244, 87, 165, 218, 84, 39 }
> ***
> [write] MD5 and SHA1 hashes:  len = 16
> 0000: 14 00 00 0C 26 F8 BC F9   74 19 F4 57 A5 DA 54 27  ....&...t..W..T'
> Padded plaintext before ENCRYPTION:  len = 32
> 0000: 14 00 00 0C 26 F8 BC F9   74 19 F4 57 A5 DA 54 27  ....&...t..W..T'
> 0010: A3 C8 7E CE A3 06 CD 20   4B C7 10 2A 41 9C 03 F2  ....... K..*A...
> main, WRITE: TLSv1 Handshake, length = 32
> [Raw write]: length = 37
> 0000: 16 03 01 00 20 1D 01 D2   4E 20 D6 24 8C CF AB 11  .... ...N .$....
> 0010: 89 CF AC A8 5C 7E E5 77   DD D7 5C 6E 16 19 03 E8  ....\..w..\n....
> 0020: CE C4 DF 73 33                                     ...s3
> main, received EOFException: error
> main, handling exception: javax.net.ssl.SSLHandshakeException: Remote host
> closed connection during handshake
> %% Invalidated:  [Session-1, SSL_RSA_WITH_RC4_128_MD5]
> main, SEND TLSv1 ALERT:  fatal, description = handshake_failure
> Padded plaintext before ENCRYPTION:  len = 18
> 0000: 02 28 9B 9D 10 BC 2A B2   A4 08 7C B0 6A 52 5D CC  .(....*.....jR].
> 0010: 07 89                                              ..
> main, WRITE: TLSv1 Alert, length = 18
> [Raw write]: length = 23
> 0000: 15 03 01 00 12 64 43 86   5C F8 90 69 D2 C9 FF 13  .....dC.\..i....
> 0010: 7D E8 83 61 10 1A 8C                               ...a...
> main, called closeSocket()
> main, IOException in getSession():  javax.net.ssl.SSLHandshakeException:
> Remote host closed connection during handshake
> main, called close()
> main, called closeInternal(true)
> main, called close()
> main, called closeInternal(true)
> javax.net.ssl.SSLPeerUnverifiedException: peer not authenticated
> at
> sun.security.ssl.SSLSessionImpl.getPeerCertificates(SSLSessionImpl.java:397)
>  at
> org.apache.http.conn.ssl.AbstractVerifier.verify(AbstractVerifier.java:128)
> at
> org.apache.http.conn.ssl.SSLSocketFactory.connectSocket(SSLSocketFactory.java:397)
>  at
> org.apache.http.impl.conn.DefaultClientConnectionOperator.openConnection(DefaultClientConnectionOperator.java:148)
>  at
> org.apache.http.impl.conn.AbstractPoolEntry.open(AbstractPoolEntry.java:150)
> at
> org.apache.http.impl.conn.AbstractPooledConnAdapter.open(AbstractPooledConnAdapter.java:121)
>  at
> org.apache.http.impl.client.DefaultRequestDirector.tryConnect(DefaultRequestDirector.java:575)
>  at
> org.apache.http.impl.client.DefaultRequestDirector.execute(DefaultRequestDirector.java:425)
>  at
> org.apache.http.impl.client.AbstractHttpClient.execute(AbstractHttpClient.java:820)
> at
> org.apache.http.impl.client.AbstractHttpClient.execute(AbstractHttpClient.java:754)
>  at
> org.apache.http.impl.client.AbstractHttpClient.execute(AbstractHttpClient.java:732)
> at
> com.marcura.onlineaccounts.services.bankintegration.impl.RequestFileSenderImpl.send(RequestFileSenderImpl.java:114)
>  at
> com.marcura.onlineaccounts.services.bankintegration.RequestFileSenderImplTest.testSend(RequestFileSenderImplTest.java:18)
>  at sun.reflect.NativeMethodAccessorImpl.invoke0(Native Method)
> at
> sun.reflect.NativeMethodAccessorImpl.invoke(NativeMethodAccessorImpl.java:57)
>  at
> sun.reflect.DelegatingMethodAccessorImpl.invoke(DelegatingMethodAccessorImpl.java:43)
> at java.lang.reflect.Method.invoke(Method.java:601)
>  at
> org.junit.runners.model.FrameworkMethod$1.runReflectiveCall(FrameworkMethod.java:44)
> at
> org.junit.internal.runners.model.ReflectiveCallable.run(ReflectiveCallable.java:15)
>  at
> org.junit.runners.model.FrameworkMethod.invokeExplosively(FrameworkMethod.java:41)
> at
> org.junit.internal.runners.statements.InvokeMethod.evaluate(InvokeMethod.java:20)
>  at
> org.springframework.test.context.junit4.statements.RunBeforeTestMethodCallbacks.evaluate(RunBeforeTestMethodCallbacks.java:74)
>  at
> org.springframework.test.context.junit4.statements.RunAfterTestMethodCallbacks.evaluate(RunAfterTestMethodCallbacks.java:82)
>  at
> org.springframework.test.context.junit4.statements.SpringRepeat.evaluate(SpringRepeat.java:72)
>  at
> org.springframework.test.context.junit4.SpringJUnit4ClassRunner.runChild(SpringJUnit4ClassRunner.java:240)
>  at
> org.junit.runners.BlockJUnit4ClassRunner.runChild(BlockJUnit4ClassRunner.java:49)
> at org.junit.runners.ParentRunner$3.run(ParentRunner.java:193)
>  at org.junit.runners.ParentRunner$1.schedule(ParentRunner.java:52)
> at org.junit.runners.ParentRunner.runChildren(ParentRunner.java:191)
>  at org.junit.runners.ParentRunner.access$000(ParentRunner.java:42)
> at org.junit.runners.ParentRunner$2.evaluate(ParentRunner.java:184)
>  at
> org.springframework.test.context.junit4.statements.RunBeforeTestClassCallbacks.evaluate(RunBeforeTestClassCallbacks.java:61)
>  at
> org.springframework.test.context.junit4.statements.RunAfterTestClassCallbacks.evaluate(RunAfterTestClassCallbacks.java:70)
>  at org.junit.runners.ParentRunner.run(ParentRunner.java:236)
> at
> org.springframework.test.context.junit4.SpringJUnit4ClassRunner.run(SpringJUnit4ClassRunner.java:180)
>  at org.junit.runners.Suite.runChild(Suite.java:128)
> at org.junit.runners.Suite.runChild(Suite.java:24)
>  at org.junit.runners.ParentRunner$3.run(ParentRunner.java:193)
> at org.junit.runners.ParentRunner$1.schedule(ParentRunner.java:52)
>  at org.junit.runners.ParentRunner.runChildren(ParentRunner.java:191)
> at org.junit.runners.ParentRunner.access$000(ParentRunner.java:42)
>  at org.junit.runners.ParentRunner$2.evaluate(ParentRunner.java:184)
> at org.junit.runners.ParentRunner.run(ParentRunner.java:236)
>  at org.junit.runners.Suite.runChild(Suite.java:128)
> at org.junit.runners.Suite.runChild(Suite.java:24)
>  at org.junit.runners.ParentRunner$3.run(ParentRunner.java:193)
> at org.junit.runners.ParentRunner$1.schedule(ParentRunner.java:52)
>  at org.junit.runners.ParentRunner.runChildren(ParentRunner.java:191)
> at org.junit.runners.ParentRunner.access$000(ParentRunner.java:42)
>  at org.junit.runners.ParentRunner$2.evaluate(ParentRunner.java:184)
> at org.junit.runners.ParentRunner.run(ParentRunner.java:236)
>  at org.junit.runners.Suite.runChild(Suite.java:128)
> at org.junit.runners.Suite.runChild(Suite.java:24)
>  at org.junit.runners.ParentRunner$3.run(ParentRunner.java:193)
> at org.junit.runners.ParentRunner$1.schedule(ParentRunner.java:52)
>  at org.junit.runners.ParentRunner.runChildren(ParentRunner.java:191)
> at org.junit.runners.ParentRunner.access$000(ParentRunner.java:42)
>  at org.junit.runners.ParentRunner$2.evaluate(ParentRunner.java:184)
> at org.junit.runners.ParentRunner.run(ParentRunner.java:236)
>  at
> org.eclipse.jdt.internal.junit4.runner.JUnit4TestReference.run(JUnit4TestReference.java:50)
>  at
> org.eclipse.jdt.internal.junit.runner.TestExecution.run(TestExecution.java:38)
> at
> org.eclipse.jdt.internal.junit.runner.RemoteTestRunner.runTests(RemoteTestRunner.java:467)
>  at
> org.eclipse.jdt.internal.junit.runner.RemoteTestRunner.runTests(RemoteTestRunner.java:683)
>  at
> org.eclipse.jdt.internal.junit.runner.RemoteTestRunner.run(RemoteTestRunner.java:390)
> at
> org.eclipse.jdt.internal.junit.runner.RemoteTestRunner.main(RemoteTestRunner.java:197)
>
>
> Please guide. Thanks.
> --
> -Jehanzeb
>
>


-- 
-Jehanzeb

Mime
  • Unnamed multipart/alternative (inline, None, 0 bytes)
View raw message