Created
June 25, 2015 15:28
-
-
Save tisba/51f05bd80f384d6596a3 to your computer and use it in GitHub Desktop.
netcologne-mitm
This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
openssl s_client -connect google.de:443 -debug | |
CONNECTED(00000003) | |
write to 0x7faf99e00160 [0x7faf9a801000] (318 bytes => 318 (0x13E)) | |
0000 - 16 03 01 01 39 01 00 01-35 03 03 3c 69 2a c1 92 ....9...5..<i*.. | |
0010 - 63 9e 99 d9 b4 8d 9a a3-a2 eb a1 b3 ea 8a b8 12 c............... | |
0020 - f3 6b 2f ba 18 dc 13 ac-dd 2b 5b 00 00 b6 c0 30 .k/......+[....0 | |
0030 - c0 2c c0 28 c0 24 c0 14-c0 0a 00 a5 00 a3 00 a1 .,.(.$.......... | |
0040 - 00 9f 00 6b 00 6a 00 69-00 68 00 39 00 38 00 37 ...k.j.i.h.9.8.7 | |
0050 - 00 36 00 88 00 87 00 86-00 85 c0 32 c0 2e c0 2a .6.........2...* | |
0060 - c0 26 c0 0f c0 05 00 9d-00 3d 00 35 00 84 c0 2f .&.......=.5.../ | |
0070 - c0 2b c0 27 c0 23 c0 13-c0 09 00 a4 00 a2 00 a0 .+.'.#.......... | |
0080 - 00 9e 00 67 00 40 00 3f-00 3e 00 33 00 32 00 31 ...g.@.?.>.3.2.1 | |
0090 - 00 30 00 9a 00 99 00 98-00 97 00 45 00 44 00 43 .0.........E.D.C | |
00a0 - 00 42 c0 31 c0 2d c0 29-c0 25 c0 0e c0 04 00 9c .B.1.-.).%...... | |
00b0 - 00 3c 00 2f 00 96 00 41-00 07 c0 11 c0 07 c0 0c .<./...A........ | |
00c0 - c0 02 00 05 00 04 c0 12-c0 08 00 16 00 13 00 10 ................ | |
00d0 - 00 0d c0 0d c0 03 00 0a-00 15 00 12 00 0f 00 0c ................ | |
00e0 - 00 09 00 ff 02 01 00 00-55 00 0b 00 04 03 00 01 ........U....... | |
00f0 - 02 00 0a 00 1c 00 1a 00-17 00 19 00 1c 00 1b 00 ................ | |
0100 - 18 00 1a 00 16 00 0e 00-0d 00 0b 00 0c 00 09 00 ................ | |
0110 - 0a 00 23 00 00 00 0d 00-20 00 1e 06 01 06 02 06 ..#..... ....... | |
0120 - 03 05 01 05 02 05 03 04-01 04 02 04 03 03 01 03 ................ | |
0130 - 02 03 03 02 01 02 02 02-03 00 0f 00 01 01 .............. | |
read from 0x7faf99e00160 [0x7faf9a806600] (7 bytes => 7 (0x7)) | |
0000 - 16 03 03 00 3a 02 ....:. | |
0007 - <SPACES/NULS> | |
read from 0x7faf99e00160 [0x7faf9a80660a] (56 bytes => 56 (0x38)) | |
0000 - 00 36 03 03 55 8c 1d de-22 13 b9 84 40 25 05 81 .6..U..."...@%.. | |
0010 - 1d 9f a4 fc 33 eb cf 63-5a 87 ea 3a e4 8c 4a 1a ....3..cZ..:..J. | |
0020 - cc d1 51 58 00 00 9d 01-00 0e ff 01 00 01 00 00 ..QX............ | |
0030 - 23 00 00 00 0f 00 01 01- #....... | |
read from 0x7faf99e00160 [0x7faf9a806603] (5 bytes => 5 (0x5)) | |
0000 - 16 03 03 02 c3 ..... | |
read from 0x7faf99e00160 [0x7faf9a806608] (707 bytes => 707 (0x2C3)) | |
0000 - 0b 00 02 bf 00 02 bc 00-02 b9 30 82 02 b5 30 82 ..........0...0. | |
0010 - 02 1e 02 09 00 c9 5f 34-72 25 17 3e c7 30 0d 06 ......_4r%.>.0.. | |
0020 - 09 2a 86 48 86 f7 0d 01-01 05 05 00 30 81 9e 31 .*.H........0..1 | |
0030 - 0b 30 09 06 03 55 04 06-13 02 44 45 31 0c 30 0a .0...U....DE1.0. | |
0040 - 06 03 55 04 08 13 03 4e-52 57 31 10 30 0e 06 03 ..U....NRW1.0... | |
0050 - 55 04 07 13 07 43 6f 6c-6f 67 6e 65 31 18 30 16 U....Cologne1.0. | |
0060 - 06 03 55 04 0a 13 0f 4e-65 74 43 6f 6c 6f 67 6e ..U....NetCologn | |
0070 - 65 20 47 6d 62 48 31 0c-30 0a 06 03 55 04 0b 13 e GmbH1.0...U... | |
0080 - 03 4e 45 44 31 1f 30 1d-06 03 55 04 03 13 16 73 .NED1.0...U....s | |
0090 - 69 6e 67 73 69 6e 67 2e-6e 65 74 63 6f 6c 6f 67 ingsing.netcolog | |
00a0 - 6e 65 2e 64 65 31 26 30-24 06 09 2a 86 48 86 f7 ne.de1&0$..*.H.. | |
00b0 - 0d 01 09 01 16 17 77 65-62 6d 61 73 74 65 72 40 ......webmaster@ | |
00c0 - 6e 65 74 63 6f 6c 6f 67-6e 65 2e 64 65 30 1e 17 netcologne.de0.. | |
00d0 - 0d 30 39 30 34 30 37 30-38 31 33 30 31 5a 17 0d .090407081301Z.. | |
00e0 - 31 39 30 34 30 35 30 38-31 33 30 31 5a 30 81 9e 190405081301Z0.. | |
00f0 - 31 0b 30 09 06 03 55 04-06 13 02 44 45 31 0c 30 1.0...U....DE1.0 | |
0100 - 0a 06 03 55 04 08 13 03-4e 52 57 31 10 30 0e 06 ...U....NRW1.0.. | |
0110 - 03 55 04 07 13 07 43 6f-6c 6f 67 6e 65 31 18 30 .U....Cologne1.0 | |
0120 - 16 06 03 55 04 0a 13 0f-4e 65 74 43 6f 6c 6f 67 ...U....NetColog | |
0130 - 6e 65 20 47 6d 62 48 31-0c 30 0a 06 03 55 04 0b ne GmbH1.0...U.. | |
0140 - 13 03 4e 45 44 31 1f 30-1d 06 03 55 04 03 13 16 ..NED1.0...U.... | |
0150 - 73 69 6e 67 73 69 6e 67-2e 6e 65 74 63 6f 6c 6f singsing.netcolo | |
0160 - 67 6e 65 2e 64 65 31 26-30 24 06 09 2a 86 48 86 gne.de1&0$..*.H. | |
0170 - f7 0d 01 09 01 16 17 77-65 62 6d 61 73 74 65 72 .......webmaster | |
0180 - 40 6e 65 74 63 6f 6c 6f-67 6e 65 2e 64 65 30 81 @netcologne.de0. | |
0190 - 9f 30 0d 06 09 2a 86 48-86 f7 0d 01 01 01 05 00 .0...*.H........ | |
01a0 - 03 81 8d 00 30 81 89 02-81 81 00 ca 19 46 d7 92 ....0........F.. | |
01b0 - e7 80 17 8d 20 de 51 8e-a3 af 5e f5 28 b5 d7 b1 .... .Q...^.(... | |
01c0 - 8b 38 dd 1d 40 54 c6 ba-77 86 91 57 bc 10 29 5a [email protected]..)Z | |
01d0 - 25 40 5f ec 92 18 2b 05-c3 01 6b fe 77 2d 13 64 %@_...+...k.w-.d | |
01e0 - af a3 33 e4 50 f1 58 95-d4 2a 85 cd 3b 0e 4f 23 ..3.P.X..*..;.O# | |
01f0 - 63 a1 58 b1 f6 72 b1 5e-6d a3 d4 16 59 41 aa f7 c.X..r.^m...YA.. | |
0200 - 7c 31 a5 2e 40 9a d4 4a-e9 a0 1c 81 52 f3 bf bb |[email protected]... | |
0210 - a0 42 d3 22 e0 b5 40 40-78 05 a1 dc e7 70 7f db .B."..@@x....p.. | |
0220 - 8c 3b 56 12 e6 0c 7e 20-d2 32 89 02 03 01 00 01 .;V...~ .2...... | |
0230 - 30 0d 06 09 2a 86 48 86-f7 0d 01 01 05 05 00 03 0...*.H......... | |
0240 - 81 81 00 52 ac ea 06 35-bf 0c 03 ed c3 78 0f 69 ...R...5.....x.i | |
0250 - f9 fc a6 ba 4d 75 2a 8a-a5 30 36 bf 8c 47 f9 22 ....Mu*..06..G." | |
0260 - c2 27 3e 13 87 15 db 58-e1 1d b3 27 ff b6 41 94 .'>....X...'..A. | |
0270 - fa 6e 8f 90 c1 5b 7d ec-a9 35 8a 8a 02 1e 5f 0e .n...[}..5...._. | |
0280 - 0e 32 96 a6 88 02 15 6e-00 60 5e 24 6f 9d 1f b0 .2.....n.`^$o... | |
0290 - 1d 2b dd 41 56 11 11 e7-5f 58 5c 8c 0f 79 8d 46 .+.AV..._X\..y.F | |
02a0 - 8c 08 d4 f1 00 ae 18 34-b8 f5 80 9c da 8e 24 1c .......4......$. | |
02b0 - f8 bd d3 bc 19 0b 03 a7-75 96 04 3a 67 4f 16 48 ........u..:gO.H | |
02c0 - 6c 4b 05 lK. | |
depth=0 C = DE, ST = NRW, L = Cologne, O = NetCologne GmbH, OU = NED, CN = singsing.netcologne.de, emailAddress = [email protected] | |
verify error:num=18:self signed certificate | |
verify return:1 | |
depth=0 C = DE, ST = NRW, L = Cologne, O = NetCologne GmbH, OU = NED, CN = singsing.netcologne.de, emailAddress = [email protected] | |
verify return:1 | |
read from 0x7faf99e00160 [0x7faf9a806603] (5 bytes => 5 (0x5)) | |
0000 - 16 03 03 00 04 ..... | |
read from 0x7faf99e00160 [0x7faf9a806608] (4 bytes => 4 (0x4)) | |
0000 - 0e . | |
0004 - <SPACES/NULS> | |
write to 0x7faf99e00160 [0x7faf9a01b200] (139 bytes => 139 (0x8B)) | |
0000 - 16 03 03 00 86 10 00 00-82 00 80 39 5e ba c5 3c ...........9^..< | |
0010 - 76 ae 43 6e 0e 9a 4b 99-11 ca 8e 06 48 04 b0 fe v.Cn..K.....H... | |
0020 - 68 0a c7 c9 42 e8 42 af-0c 49 68 98 80 3f 15 4b h...B.B..Ih..?.K | |
0030 - 5e d1 4c aa d6 46 55 ed-c7 74 7f 0f 6f 06 f2 86 ^.L..FU..t..o... | |
0040 - 8e d5 1a f3 fa 39 2e 08-d6 7d 0c 7d 31 e2 f7 19 .....9...}.}1... | |
0050 - 2d 1c 54 cd b9 c3 8f 7e-1b b7 3b 07 44 03 0b 1e -.T....~..;.D... | |
0060 - c7 ac 5c 41 a1 b6 df ba-9a b5 8c 0f 3f 7f 88 12 ..\A........?... | |
0070 - 10 8b 8e 0c 8b f0 4c 1b-59 f1 ff 2c e2 62 99 09 ......L.Y..,.b.. | |
0080 - 65 e1 61 da 8f 22 32 fb-b9 27 03 e.a.."2..'. | |
write to 0x7faf99e00160 [0x7faf9a01b200] (6 bytes => 6 (0x6)) | |
0000 - 14 03 03 00 01 01 ...... | |
write to 0x7faf99e00160 [0x7faf9a01b200] (54 bytes => 54 (0x36)) | |
0000 - 16 03 03 00 31 7f 6f a5-85 46 d3 83 68 ac df 6b ....1.o..F..h..k | |
0010 - 30 83 62 de c8 e8 64 07-43 78 59 01 95 40 c7 85 0.b...d.CxY..@.. | |
0020 - 53 af 56 29 23 89 4e a5-85 fd a3 42 96 ae 86 ba S.V)#.N....B.... | |
0030 - 5e e8 23 33 fc 8d ^.#3.. | |
read from 0x7faf99e00160 [0x7faf9a806603] (5 bytes => 5 (0x5)) | |
0000 - 16 03 03 00 aa ..... | |
read from 0x7faf99e00160 [0x7faf9a806608] (170 bytes => 170 (0xAA)) | |
0000 - 04 00 00 a6 00 00 01 2c-00 a0 93 8f da fa a1 d4 .......,........ | |
0010 - 83 69 c4 9a d6 3d 00 1e-fa ce a2 79 8d f6 08 4d .i...=.....y...M | |
0020 - 29 31 6f 2b 5f aa 6a 80-a7 1a 7b c1 ee 38 98 70 )1o+_.j...{..8.p | |
0030 - 58 ab d7 31 e7 49 88 91-d8 ad 4a 2e 7f c9 d9 2d X..1.I....J....- | |
0040 - 9b dd 86 27 d6 cb fb 1f-1f e1 b9 8c db 6b 49 5a ...'.........kIZ | |
0050 - 63 ed 80 af 89 84 d2 19-69 04 8a ae ab 9b 17 a6 c.......i....... | |
0060 - 77 bd 6e a9 58 af d9 26-36 39 31 c5 40 36 0c 08 w.n.X..&691.@6.. | |
0070 - 7e f9 59 e9 e2 42 26 49-ca e6 36 d5 01 59 d5 1a ~.Y..B&I..6..Y.. | |
0080 - 20 c4 4a 75 5b 0e 7d 48-dd 1f 3a 31 c8 ec fd 40 .Ju[.}H..:1...@ | |
0090 - ee 48 83 19 fc f3 22 ad-33 ce 6f 3e e9 76 22 a5 .H....".3.o>.v". | |
00a0 - 8c c4 a8 c8 09 a8 2a b9-0b 7f ......*... | |
read from 0x7faf99e00160 [0x7faf9a806603] (5 bytes => 5 (0x5)) | |
0000 - 14 03 03 00 01 ..... | |
read from 0x7faf99e00160 [0x7faf9a806608] (1 bytes => 1 (0x1)) | |
0000 - 01 . | |
read from 0x7faf99e00160 [0x7faf9a806603] (5 bytes => 5 (0x5)) | |
0000 - 16 03 03 00 31 ....1 | |
read from 0x7faf99e00160 [0x7faf9a806608] (49 bytes => 49 (0x31)) | |
0000 - 2e b3 7c 4d 71 0b b8 61-d8 b9 09 d4 75 66 99 fb ..|Mq..a....uf.. | |
0010 - 57 1e 0a 82 8a c3 11 1b-1b fa 0d 3e a4 fb 66 be W..........>..f. | |
0020 - 25 c6 f5 33 6f ea 1b d5-ce c0 21 7b cc bd b9 d6 %..3o.....!{.... | |
0030 - 65 e | |
--- | |
Certificate chain | |
0 s:/C=DE/ST=NRW/L=Cologne/O=NetCologne GmbH/OU=NED/CN=singsing.netcologne.de/[email protected] | |
i:/C=DE/ST=NRW/L=Cologne/O=NetCologne GmbH/OU=NED/CN=singsing.netcologne.de/[email protected] | |
--- | |
Server certificate | |
-----BEGIN CERTIFICATE----- | |
MIICtTCCAh4CCQDJXzRyJRc+xzANBgkqhkiG9w0BAQUFADCBnjELMAkGA1UEBhMC | |
REUxDDAKBgNVBAgTA05SVzEQMA4GA1UEBxMHQ29sb2duZTEYMBYGA1UEChMPTmV0 | |
Q29sb2duZSBHbWJIMQwwCgYDVQQLEwNORUQxHzAdBgNVBAMTFnNpbmdzaW5nLm5l | |
dGNvbG9nbmUuZGUxJjAkBgkqhkiG9w0BCQEWF3dlYm1hc3RlckBuZXRjb2xvZ25l | |
LmRlMB4XDTA5MDQwNzA4MTMwMVoXDTE5MDQwNTA4MTMwMVowgZ4xCzAJBgNVBAYT | |
AkRFMQwwCgYDVQQIEwNOUlcxEDAOBgNVBAcTB0NvbG9nbmUxGDAWBgNVBAoTD05l | |
dENvbG9nbmUgR21iSDEMMAoGA1UECxMDTkVEMR8wHQYDVQQDExZzaW5nc2luZy5u | |
ZXRjb2xvZ25lLmRlMSYwJAYJKoZIhvcNAQkBFhd3ZWJtYXN0ZXJAbmV0Y29sb2du | |
ZS5kZTCBnzANBgkqhkiG9w0BAQEFAAOBjQAwgYkCgYEAyhlG15LngBeNIN5RjqOv | |
XvUotdexizjdHUBUxrp3hpFXvBApWiVAX+ySGCsFwwFr/nctE2SvozPkUPFYldQq | |
hc07Dk8jY6FYsfZysV5to9QWWUGq93wxpS5AmtRK6aAcgVLzv7ugQtMi4LVAQHgF | |
odzncH/bjDtWEuYMfiDSMokCAwEAATANBgkqhkiG9w0BAQUFAAOBgQBSrOoGNb8M | |
A+3DeA9p+fymuk11KoqlMDa/jEf5IsInPhOHFdtY4R2zJ/+2QZT6bo+QwVt97Kk1 | |
iooCHl8ODjKWpogCFW4AYF4kb50fsB0r3UFWERHnX1hcjA95jUaMCNTxAK4YNLj1 | |
gJzajiQc+L3TvBkLA6d1lgQ6Z08WSGxLBQ== | |
-----END CERTIFICATE----- | |
subject=/C=DE/ST=NRW/L=Cologne/O=NetCologne GmbH/OU=NED/CN=singsing.netcologne.de/[email protected] | |
issuer=/C=DE/ST=NRW/L=Cologne/O=NetCologne GmbH/OU=NED/CN=singsing.netcologne.de/[email protected] | |
--- | |
No client certificate CA names sent | |
--- | |
SSL handshake has read 1019 bytes and written 517 bytes | |
--- | |
New, TLSv1/SSLv3, Cipher is AES256-GCM-SHA384 | |
Server public key is 1024 bit | |
Secure Renegotiation IS supported | |
Compression: zlib compression | |
Expansion: zlib compression | |
No ALPN negotiated | |
SSL-Session: | |
Protocol : TLSv1.2 | |
Cipher : AES256-GCM-SHA384 | |
Session-ID: 1C59E89E246A2A987163716F278D782B1A119E4340C472DA4C2E0F4F6AF6305B | |
Session-ID-ctx: | |
Master-Key: 209CDABFC306E1F1A19D1768C95F9EF19EA094BBBDA269EAB2A72F134BAB3EFFE041C8451542FF261D6C7D8CF95A9FF8 | |
Key-Arg : None | |
PSK identity: None | |
PSK identity hint: None | |
SRP username: None | |
TLS session ticket lifetime hint: 300 (seconds) | |
TLS session ticket: | |
0000 - 93 8f da fa a1 d4 83 69-c4 9a d6 3d 00 1e fa ce .......i...=.... | |
0010 - a2 79 8d f6 08 4d 29 31-6f 2b 5f aa 6a 80 a7 1a .y...M)1o+_.j... | |
0020 - 7b c1 ee 38 98 70 58 ab-d7 31 e7 49 88 91 d8 ad {..8.pX..1.I.... | |
0030 - 4a 2e 7f c9 d9 2d 9b dd-86 27 d6 cb fb 1f 1f e1 J....-...'...... | |
0040 - b9 8c db 6b 49 5a 63 ed-80 af 89 84 d2 19 69 04 ...kIZc.......i. | |
0050 - 8a ae ab 9b 17 a6 77 bd-6e a9 58 af d9 26 36 39 ......w.n.X..&69 | |
0060 - 31 c5 40 36 0c 08 7e f9-59 e9 e2 42 26 49 ca e6 1.@6..~.Y..B&I.. | |
0070 - 36 d5 01 59 d5 1a 20 c4-4a 75 5b 0e 7d 48 dd 1f 6..Y.. .Ju[.}H.. | |
0080 - 3a 31 c8 ec fd 40 ee 48-83 19 fc f3 22 ad 33 ce :[email protected]....".3. | |
0090 - 6f 3e e9 76 22 a5 8c c4-a8 c8 09 a8 2a b9 0b 7f o>.v".......*... | |
Compression: 1 (zlib compression) | |
Start Time: 1435246048 | |
Timeout : 300 (sec) | |
Verify return code: 18 (self signed certificate) | |
--- |
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment