Namecheap.com

SSL Checker

Submit the Hostname and Port in the fields below. This checker supports SNI and STARTTLS.

Report

Hostname: Matches Common Name or/and SAN
Expired: No (187 days till expiration)
Public Key: We were unable to find any issues in the public key of end-entity certificate
Trusted: We were unable to verify this certificate
Self-Signed: No, the end-entity certificate is not self-signed
Chain Issues: No, we were unable to detect any issues in the certificate chain sent by the server
Weak signatures: No, certificates sent by the server were not signed utilizing a weak hash function
OCSP Status: OCSP Responder returned "good" status for the end-entity certificate

DNS Information

Resolves To: 151.101.0.200
Reverse IP lookup: No records found
Nameserver: ns-1418.awsdns-49.org.
Nameserver: ns-1931.awsdns-49.co.uk.
Nameserver: ns-226.awsdns-28.com.
Nameserver: ns-872.awsdns-45.net.

General Information

Common Name: hearst.co.uk
SANs: DNS:hearst.co.ukDNS:*.bazaarartweek.co.ukDNS:*.bazaaratwork.co.ukDNS:*.bazaarsummit.co.ukDNS:*.bicycling.nlDNS:*.blogs.elle.esDNS:*.caranddriver.esDNS:*.cdnds.netDNS:*.cosmopolitan.co.ukDNS:*.cosmopolitan.itDNS:*.countryliving.co.ukDNS:*.countrylivingshop.co.ukDNS:*.crecerfeliz.esDNS:*.delish.co.ukDNS:*.diezminutos.esDNS:*.digitalspy.co.ukDNS:*.digitalspy.comDNS:*.elle.co.jpDNS:*.elle.itDNS:*.ellebeautyawards.itDNS:*.elledecor.itDNS:*.elledecoration.co.ukDNS:*.elleuk.comDNS:*.esquire.co.ukDNS:*.financiallyfabulous.co.ukDNS:*.fotogramas.esDNS:*.gioia.itDNS:*.goodhousekeeping.co.ukDNS:*.harpersbazaar.co.ukDNS:*.harpersbazaar.jpDNS:*.hdigital.netDNS:*.hearst.co.ukDNS:*.hearst.itDNS:*.hearstcontentagency.co.ukDNS:*.hearstcontentagency.comDNS:*.hearstgames.comDNS:*.hearstgames.netDNS:*.hearstglobalsolutions.comDNS:*.hearstmagazinesdirect.co.ukDNS:*.housebeautiful.co.ukDNS:*.jan-magazine.nlDNS:*.marieclaire.itDNS:*.menshealth.co.ukDNS:*.menshealth.esDNS:*.menshealth.nlDNS:*.micasarevista.comDNS:*.netdoctor.co.ukDNS:*.prima.co.ukDNS:*.princess.hdigital.netDNS:*.princessjourney.co.ukDNS:*.quemedices.esDNS:*.quest.nlDNS:*.quotenet.nlDNS:*.redonline.co.ukDNS:*.runnersweb.nlDNS:*.runnersworld.co.ukDNS:*.salonqp.comDNS:*.townandcountrymag.co.ukDNS:*.womenshealth.esDNS:*.womenshealthlive.co.ukDNS:*.womenshealthmag.co.ukDNS:*.womenshealthmag.nlDNS:bazaarartweek.co.ukDNS:bazaaratwork.co.ukDNS:bazaarsummit.co.ukDNS:bicycling.nlDNS:blogs.elle.esDNS:caranddriver.esDNS:cosmopolitan.itDNS:countryliving.co.ukDNS:countrylivingshop.co.ukDNS:crecerfeliz.esDNS:delish.co.ukDNS:diezminutos.esDNS:digitalspy.co.ukDNS:digitalspy.comDNS:elle.co.jpDNS:elle.itDNS:ellebeautyawards.itDNS:elledecor.itDNS:elledecoration.co.ukDNS:elleuk.comDNS:esquire.co.ukDNS:financiallyfabulous.co.ukDNS:fotogramas.esDNS:gioia.itDNS:goodhousekeeping.co.ukDNS:harpersbazaar.co.ukDNS:harpersbazaar.jpDNS:hearst.itDNS:hearstcontentagency.co.ukDNS:hearstcontentagency.comDNS:hearstglobal.comDNS:hearstglobalsolutions.comDNS:hearstmagazinesdirect.co.ukDNS:housebeautiful.co.ukDNS:insidesoap.co.ukDNS:jan-magazine.nlDNS:marieclaire.itDNS:menshealth.co.ukDNS:menshealth.esDNS:menshealth.nlDNS:micasarevista.comDNS:netdoctor.co.ukDNS:prima.co.ukDNS:princessjourney.co.ukDNS:quemedices.esDNS:quest.nlDNS:quotenet.nlDNS:redonline.co.ukDNS:runnersweb.nlDNS:runnersworld.co.ukDNS:salonqp.comDNS:townandcountrymag.co.ukDNS:womenshealth.esDNS:womenshealthlive.co.ukDNS:womenshealthmag.co.ukDNS:womenshealthmag.nlDNS:*.hearst.esDNS:hearst.esDNS:*.hearstmagazine.co.ukDNS:hearstmagazine.co.uk Total number of SANs: 122
Signature Algorithm: sha256WithRSAEncryption
Key Type: RSA
Key size: 2048 bits
Serial Number: 12a7c1190e5d79fa6f2113d469ecd6c
Not Before: Sep 27, 2023 11:24:21 GMT
Not After: Oct 28, 2024 11:24:20 GMT
Number of certs: 2
Revocation Status: good
OCSP Stapling: Supported
Server: Not Provided
HSTS: max-age=31557600; includeSubDomains
HPKP: Not Supported

Chain Information

Certificate # 1 - Common Name: hearst.co.uk

Decode this certificate for verbose information →
Subject Common Name hearst.co.uk
Issuer Common Name GlobalSign Atlas R3 DV TLS CA 2023 Q3
Issuer Organization GlobalSign nv-sa
Not Before: Sep 27, 2023 11:24:21 GMT
Not After: Oct 28, 2024 11:24:20 GMT
Signature Algorithm: sha256WithRSAEncryption
Serial Number: 12a7c1190e5d79fa6f2113d469ecd6c
SHA1 Fingerprint: 18:BF:B7:56:28:44:B7:29:B6:01:B5:86:E7:5D:ED:59:EA:49:EC:32
MD5 Fingerprint: 7D:A2:EB:4E:12:04:AA:6E:2A:77:9E:68:B1:91:D8:01

Certificate # 2 - Common Name: GlobalSign Atlas R3 DV TLS CA 2023 Q3

Decode this certificate for verbose information →
In place? Yes, this certificate directly certifies the preceding one
Subject Common Name GlobalSign Atlas R3 DV TLS CA 2023 Q3
Subject Organization GlobalSign nv-sa
Issuer Common Name GlobalSign
Issuer Organization GlobalSign
Not Before: Apr 19, 2023 03:52:32 GMT
Not After: Apr 19, 2025 00:00:00 GMT
Signature Algorithm: sha256WithRSAEncryption
Serial Number: 7e87c2a325b274bbfabc90d6c528655e
SHA1 Fingerprint: 55:8A:B0:B7:56:E0:CF:22:F0:2C:29:C6:E7:33:BE:F0:FB:32:41:2E
MD5 Fingerprint: 40:AC:23:BC:EF:E8:31:29:61:7B:5E:A4:CC:32:58:98

OpenSSL Handshake

depth=1 C = BE, O = GlobalSign nv-sa, CN = GlobalSign Atlas R3 DV TLS CA 2023 Q3
verify error:num=20:unable to get local issuer certificate
verify return:1
depth=0 CN = hearst.co.uk
verify return:1
CONNECTED(00000003)
OCSP response: 
======================================
OCSP Response Data:
    OCSP Response Status: successful (0x0)
    Response Type: Basic OCSP Response
    Version: 1 (0x0)
    Responder Id: 655A11311C200040347ED0D72E0AA07B83C1EC4C
    Produced At: Apr 23 20:52:00 2024 GMT
    Responses:
    Certificate ID:
      Hash Algorithm: sha1
      Issuer Name Hash: 52EAAEBCD28911C9DF50BF483C037F8C4FD1D48B
      Issuer Key Hash: EDA0E601053E34821AA44F5FC5BD1141AADFF361
      Serial Number: 012A7C1190E5D79FA6F2113D469ECD6C
    Cert Status: good
    This Update: Apr 23 20:00:00 2024 GMT
    Next Update: Apr 24 08:00:00 2024 GMT

    Signature Algorithm: sha256WithRSAEncryption
         10:f8:2d:93:34:b8:c7:38:27:28:25:d5:14:f8:f8:fc:12:6a:
         f6:f6:e7:e1:61:c9:10:63:97:d7:63:bc:97:97:cf:fa:45:bd:
         91:d3:cd:95:cb:71:87:ca:fc:27:36:56:77:14:21:81:e8:21:
         85:4b:bd:f4:00:64:9c:81:8f:64:33:5d:6d:8e:2f:2f:78:45:
         54:c4:f7:31:45:1f:7c:48:c0:76:db:ef:61:ac:1f:dd:fb:dd:
         dc:8a:ae:50:14:f1:3e:3c:18:95:e2:9e:9b:38:0a:81:e3:7b:
         f9:f0:ec:dd:ac:b4:19:72:71:62:8a:52:50:9d:84:c6:05:a5:
         64:67:7f:80:6f:e3:df:c4:01:d3:32:a4:46:dc:17:09:9c:01:
         57:b3:b1:4a:74:c9:dc:7c:b3:e1:7f:b2:a6:2d:60:7c:6d:ab:
         6f:28:7f:07:a1:b8:39:d3:75:86:b3:4f:78:68:69:c8:8a:79:
         ac:ce:49:07:bb:38:17:23:a0:e7:53:61:f9:34:c1:83:92:c4:
         11:a4:4c:e5:67:5d:86:7e:60:3a:01:ab:18:81:98:fd:15:79:
         fd:a3:50:d7:a9:bf:24:f0:92:38:b6:34:2d:1d:cc:a8:2b:82:
         a1:8d:5a:2b:17:39:67:ff:2e:0b:31:8f:39:22:af:8b:17:d7:
         b7:8c:3b:ee
Certificate:
    Data:
        Version: 3 (0x2)
        Serial Number:
            01:c0:81:00:f2:e5:6a:3f:28:a0:05:d5:2a:d0:8a:fc
        Signature Algorithm: sha256WithRSAEncryption
        Issuer: C=BE, O=GlobalSign nv-sa, CN=GlobalSign Atlas R3 DV TLS CA 2023 Q3
        Validity
            Not Before: Apr 19 12:54:47 2024 GMT
            Not After : Apr 26 12:54:47 2024 GMT
        Subject: C=BE, O=GlobalSign nv-sa, CN=GlobalSign Atlas R3 DV TLS CA 2023 Q3 - OCSP Responder
        Subject Public Key Info:
            Public Key Algorithm: rsaEncryption
                RSA Public-Key: (2048 bit)
                Modulus:
                    00:e3:06:4d:55:d0:32:e6:a6:a0:20:68:0d:a2:2c:
                    e3:c4:0a:ed:4b:a7:d6:d7:90:2c:40:c8:3c:b2:ec:
                    4a:8a:2e:57:01:dc:67:0c:18:48:1b:31:a8:63:06:
                    dc:e7:58:22:24:8c:e1:47:29:eb:4a:3a:63:d2:d3:
                    6a:27:a0:18:82:57:78:c7:fd:2e:e2:ac:1a:41:08:
                    40:cd:b5:4a:a3:92:37:e1:ae:49:ad:c1:ee:a7:9e:
                    d7:15:6d:0c:1b:1d:48:64:fd:64:a7:ea:0d:a4:75:
                    8e:cd:5d:19:17:4f:75:8e:df:c0:01:9c:07:d9:d8:
                    15:89:48:2a:90:71:16:09:7a:16:30:1b:f4:96:77:
                    8e:90:86:93:9f:42:e4:d7:5b:46:9e:1a:9c:65:9c:
                    97:0b:05:46:66:32:90:a0:3c:a0:f8:ab:8d:33:e9:
                    a8:6e:bc:c9:c3:31:97:ec:bb:6d:5d:c3:71:b4:3d:
                    31:5b:7c:e2:f6:96:f4:39:a1:22:95:57:48:ad:8d:
                    0b:42:a2:3d:12:33:0b:0a:43:f7:c5:d6:62:10:a4:
                    aa:94:b5:0b:5b:5d:c0:c2:bc:88:1e:4f:bf:df:ea:
                    5a:87:5e:12:0b:69:fd:91:31:a0:a2:35:c7:68:dc:
                    a6:b8:3c:aa:6b:e3:fe:53:5e:5c:86:1d:e0:16:20:
                    e0:33
                Exponent: 65537 (0x10001)
        X509v3 extensions:
            OCSP No Check: 

            X509v3 Key Usage: critical
                Digital Signature
            X509v3 Extended Key Usage: 
                OCSP Signing
            X509v3 Subject Key Identifier: 
                65:5A:11:31:1C:20:00:40:34:7E:D0:D7:2E:0A:A0:7B:83:C1:EC:4C
            X509v3 Basic Constraints: critical
                CA:FALSE
            X509v3 Authority Key Identifier: 
                keyid:ED:A0:E6:01:05:3E:34:82:1A:A4:4F:5F:C5:BD:11:41:AA:DF:F3:61

    Signature Algorithm: sha256WithRSAEncryption
         55:9a:b5:3c:fb:ae:80:aa:43:35:d8:b6:75:80:65:4d:ea:c7:
         fc:78:f3:03:81:fc:79:98:1e:1d:97:eb:60:31:a1:ea:c2:24:
         10:f6:37:0d:d6:23:a0:75:97:ed:f1:1e:f9:f2:8e:99:b2:7e:
         80:31:4c:17:8a:5e:b1:e4:bd:9c:5b:4c:be:06:06:f0:78:8d:
         98:b1:57:c4:24:b9:fd:3a:81:b3:50:42:d9:76:ba:58:11:03:
         63:4d:1d:f3:74:f9:73:cd:3d:5d:a6:b2:79:84:76:f7:31:87:
         b2:bb:c2:88:62:68:05:ee:58:ba:5c:de:09:00:ff:45:31:04:
         5b:8f:09:84:c0:88:56:98:1f:89:1a:6b:b2:4c:3b:b0:90:ec:
         98:19:e9:40:e6:b8:05:8a:2c:ed:f9:d1:eb:43:91:62:d3:41:
         be:d6:13:3f:c3:32:4f:2a:02:b6:9d:46:c7:f9:5a:09:8b:4c:
         4f:37:c1:5e:d9:ef:88:6f:67:f9:a8:b0:2f:ac:f2:0c:68:aa:
         fd:8f:0e:38:3e:41:4a:ac:ff:eb:68:eb:ab:42:42:bd:89:82:
         fc:dd:e6:51:ed:ef:00:5c:20:f6:41:37:62:74:21:35:5d:60:
         a7:db:94:78:1e:43:1b:6a:ad:31:6c:07:4c:e1:a7:2d:f5:5b:
         40:fc:63:cf
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
======================================
---
Certificate chain
 0 s:CN = hearst.co.uk
   i:C = BE, O = GlobalSign nv-sa, CN = GlobalSign Atlas R3 DV TLS CA 2023 Q3
-----BEGIN CERTIFICATE-----
MIIPWjCCDkKgAwIBAgIQASp8EZDl15+m8hE9Rp7NbDANBgkqhkiG9w0BAQsFADBY
MQswCQYDVQQGEwJCRTEZMBcGA1UEChMQR2xvYmFsU2lnbiBudi1zYTEuMCwGA1UE
AxMlR2xvYmFsU2lnbiBBdGxhcyBSMyBEViBUTFMgQ0EgMjAyMyBRMzAeFw0yMzA5
MjcxMTI0MjFaFw0yNDEwMjgxMTI0MjBaMBcxFTATBgNVBAMMDGhlYXJzdC5jby51
azCCASIwDQYJKoZIhvcNAQEBBQADggEPADCCAQoCggEBAJw/z2D0g2png6q51y+m
kxpOHdsY3ydx+UeVq6ojMywsFqq1u8bvvFvG5/QjYXo8I4HG1gQU+JrL8Gwb5Zr2
0UjCifHqREyuDA3/3e+mJg2t2GY0exr3q+pFlt/a8zWA9m0Qv92QSVmvFF0q9kja
MQb5YPAF9sNCetHURDL0fp1gya3XlMNh5LPzhgmJnvcenrJsrVQliFPSIschzuVm
zHETtiYytCcuk7MKQpvtla9CEL2jVUOq7SXUnKU/hUG3X0wijx9b7SEzIsvZroXB
Z5gd8H4l3C5dUPbSpeyfVMsuKo+ih4UqXpK1dqFAlkmgN7TJZtNI8cWYf11Dnpg7
zq8CAwEAAaOCDF8wggxbMIIJEwYDVR0RBIIJCjCCCQaCDGhlYXJzdC5jby51a4IV
Ki5iYXphYXJhcnR3ZWVrLmNvLnVrghQqLmJhemFhcmF0d29yay5jby51a4IUKi5i
YXphYXJzdW1taXQuY28udWuCDiouYmljeWNsaW5nLm5sgg8qLmJsb2dzLmVsbGUu
ZXOCESouY2FyYW5kZHJpdmVyLmVzggsqLmNkbmRzLm5ldIIUKi5jb3Ntb3BvbGl0
YW4uY28udWuCESouY29zbW9wb2xpdGFuLml0ghUqLmNvdW50cnlsaXZpbmcuY28u
dWuCGSouY291bnRyeWxpdmluZ3Nob3AuY28udWuCECouY3JlY2VyZmVsaXouZXOC
DiouZGVsaXNoLmNvLnVrghAqLmRpZXptaW51dG9zLmVzghIqLmRpZ2l0YWxzcHku
Y28udWuCECouZGlnaXRhbHNweS5jb22CDCouZWxsZS5jby5qcIIJKi5lbGxlLml0
ghUqLmVsbGViZWF1dHlhd2FyZHMuaXSCDiouZWxsZWRlY29yLml0ghYqLmVsbGVk
ZWNvcmF0aW9uLmNvLnVrggwqLmVsbGV1ay5jb22CDyouZXNxdWlyZS5jby51a4Ib
Ki5maW5hbmNpYWxseWZhYnVsb3VzLmNvLnVrgg8qLmZvdG9ncmFtYXMuZXOCCiou
Z2lvaWEuaXSCGCouZ29vZGhvdXNla2VlcGluZy5jby51a4IVKi5oYXJwZXJzYmF6
YWFyLmNvLnVrghIqLmhhcnBlcnNiYXphYXIuanCCDiouaGRpZ2l0YWwubmV0gg4q
LmhlYXJzdC5jby51a4ILKi5oZWFyc3QuaXSCGyouaGVhcnN0Y29udGVudGFnZW5j
eS5jby51a4IZKi5oZWFyc3Rjb250ZW50YWdlbmN5LmNvbYIRKi5oZWFyc3RnYW1l
cy5jb22CESouaGVhcnN0Z2FtZXMubmV0ghsqLmhlYXJzdGdsb2JhbHNvbHV0aW9u
cy5jb22CHSouaGVhcnN0bWFnYXppbmVzZGlyZWN0LmNvLnVrghYqLmhvdXNlYmVh
dXRpZnVsLmNvLnVrghEqLmphbi1tYWdhemluZS5ubIIQKi5tYXJpZWNsYWlyZS5p
dIISKi5tZW5zaGVhbHRoLmNvLnVrgg8qLm1lbnNoZWFsdGguZXOCDyoubWVuc2hl
YWx0aC5ubIITKi5taWNhc2FyZXZpc3RhLmNvbYIRKi5uZXRkb2N0b3IuY28udWuC
DSoucHJpbWEuY28udWuCFyoucHJpbmNlc3MuaGRpZ2l0YWwubmV0ghcqLnByaW5j
ZXNzam91cm5leS5jby51a4IPKi5xdWVtZWRpY2VzLmVzggoqLnF1ZXN0Lm5sgg0q
LnF1b3RlbmV0Lm5sghEqLnJlZG9ubGluZS5jby51a4IPKi5ydW5uZXJzd2ViLm5s
ghQqLnJ1bm5lcnN3b3JsZC5jby51a4INKi5zYWxvbnFwLmNvbYIZKi50b3duYW5k
Y291bnRyeW1hZy5jby51a4IRKi53b21lbnNoZWFsdGguZXOCGCoud29tZW5zaGVh
bHRobGl2ZS5jby51a4IXKi53b21lbnNoZWFsdGhtYWcuY28udWuCFCoud29tZW5z
aGVhbHRobWFnLm5sghNiYXphYXJhcnR3ZWVrLmNvLnVrghJiYXphYXJhdHdvcmsu
Y28udWuCEmJhemFhcnN1bW1pdC5jby51a4IMYmljeWNsaW5nLm5sgg1ibG9ncy5l
bGxlLmVzgg9jYXJhbmRkcml2ZXIuZXOCD2Nvc21vcG9saXRhbi5pdIITY291bnRy
eWxpdmluZy5jby51a4IXY291bnRyeWxpdmluZ3Nob3AuY28udWuCDmNyZWNlcmZl
bGl6LmVzggxkZWxpc2guY28udWuCDmRpZXptaW51dG9zLmVzghBkaWdpdGFsc3B5
LmNvLnVrgg5kaWdpdGFsc3B5LmNvbYIKZWxsZS5jby5qcIIHZWxsZS5pdIITZWxs
ZWJlYXV0eWF3YXJkcy5pdIIMZWxsZWRlY29yLml0ghRlbGxlZGVjb3JhdGlvbi5j
by51a4IKZWxsZXVrLmNvbYINZXNxdWlyZS5jby51a4IZZmluYW5jaWFsbHlmYWJ1
bG91cy5jby51a4INZm90b2dyYW1hcy5lc4IIZ2lvaWEuaXSCFmdvb2Rob3VzZWtl
ZXBpbmcuY28udWuCE2hhcnBlcnNiYXphYXIuY28udWuCEGhhcnBlcnNiYXphYXIu
anCCCWhlYXJzdC5pdIIZaGVhcnN0Y29udGVudGFnZW5jeS5jby51a4IXaGVhcnN0
Y29udGVudGFnZW5jeS5jb22CEGhlYXJzdGdsb2JhbC5jb22CGWhlYXJzdGdsb2Jh
bHNvbHV0aW9ucy5jb22CG2hlYXJzdG1hZ2F6aW5lc2RpcmVjdC5jby51a4IUaG91
c2ViZWF1dGlmdWwuY28udWuCEGluc2lkZXNvYXAuY28udWuCD2phbi1tYWdhemlu
ZS5ubIIObWFyaWVjbGFpcmUuaXSCEG1lbnNoZWFsdGguY28udWuCDW1lbnNoZWFs
dGguZXOCDW1lbnNoZWFsdGgubmyCEW1pY2FzYXJldmlzdGEuY29tgg9uZXRkb2N0
b3IuY28udWuCC3ByaW1hLmNvLnVrghVwcmluY2Vzc2pvdXJuZXkuY28udWuCDXF1
ZW1lZGljZXMuZXOCCHF1ZXN0Lm5sggtxdW90ZW5ldC5ubIIPcmVkb25saW5lLmNv
LnVrgg1ydW5uZXJzd2ViLm5sghJydW5uZXJzd29ybGQuY28udWuCC3NhbG9ucXAu
Y29tghd0b3duYW5kY291bnRyeW1hZy5jby51a4IPd29tZW5zaGVhbHRoLmVzghZ3
b21lbnNoZWFsdGhsaXZlLmNvLnVrghV3b21lbnNoZWFsdGhtYWcuY28udWuCEndv
bWVuc2hlYWx0aG1hZy5ubIILKi5oZWFyc3QuZXOCCWhlYXJzdC5lc4IWKi5oZWFy
c3RtYWdhemluZS5jby51a4IUaGVhcnN0bWFnYXppbmUuY28udWswDgYDVR0PAQH/
BAQDAgWgMB0GA1UdJQQWMBQGCCsGAQUFBwMBBggrBgEFBQcDAjAdBgNVHQ4EFgQU
plEOFXPI073m2sC4nqNH1fxDLrwwVwYDVR0gBFAwTjAIBgZngQwBAgEwQgYKKwYB
BAGgMgoBAzA0MDIGCCsGAQUFBwIBFiZodHRwczovL3d3dy5nbG9iYWxzaWduLmNv
bS9yZXBvc2l0b3J5LzAMBgNVHRMBAf8EAjAAMIGeBggrBgEFBQcBAQSBkTCBjjBA
BggrBgEFBQcwAYY0aHR0cDovL29jc3AuZ2xvYmFsc2lnbi5jb20vY2EvZ3NhdGxh
c3IzZHZ0bHNjYTIwMjNxMzBKBggrBgEFBQcwAoY+aHR0cDovL3NlY3VyZS5nbG9i
YWxzaWduLmNvbS9jYWNlcnQvZ3NhdGxhc3IzZHZ0bHNjYTIwMjNxMy5jcnQwHwYD
VR0jBBgwFoAU7aDmAQU+NIIapE9fxb0RQarf82EwSAYDVR0fBEEwPzA9oDugOYY3
aHR0cDovL2NybC5nbG9iYWxzaWduLmNvbS9jYS9nc2F0bGFzcjNkdnRsc2NhMjAy
M3EzLmNybDCCAX8GCisGAQQB1nkCBAIEggFvBIIBawFpAHcAdv+IPwq2+5VRwmHM
9Ye6NLSkzbsp3GhCCp/mZ0xaOnQAAAGK1mIRpwAABAMASDBGAiEAi+lX0YCn14SY
y6sDZh024aODvDCJh3jYsd8XNiDAXhkCIQDiAuSHo8KRUrtKRnVjqqJ1n9S2Cq4b
7o7i9FLI2is0NQB3ANq2v2s/tbYin5vCu1xr6HCRcWy7UYSFNL2kPTBI1/urAAAB
itZiEhEAAAQDAEgwRgIhAJ0zLd+ypDuGrpGnIeg9c2ILygOHnkJopZUSskjK1sYQ
AiEA+L5svztXG8ghdTfG1o7Fn1sAwBdVJsYRusaKAPp0NNEAdQBIsONr2qZHNA/l
agL6nTDrHFIBy1bdLIHZu7+rOdiEcwAAAYrWYhSKAAAEAwBGMEQCIDL1FrwKki8Z
UConkOBOfIYTvnLnzWxHaUq8/slwBNCcAiAfLr5m2pURt/6jwrP21dvXiPVp0dj/
Xnj6I8ceIyGtVzANBgkqhkiG9w0BAQsFAAOCAQEAlagVZzaERerBGzDCiPzlHhBM
q7/rNhNcQeFpfXWb5EZIG4tPLTzS+v80i7A1JrfKgeXG9Q8OcOO67ak8FqF76V0H
crh3Gls0Gn/0D6P+cfrLIGgc2PJkjnMr+pHV5n7Cfe5D6iddr6Y1rk/PFiTDKJSu
PIgPQ12RN5LOdtWswODeD8Yj59zcT8QL5oYb03djaK+FAH19xXyNFy8ch7xWx88B
XH7gNGUDTmiH+8FWmXaBoOh2Y8PQVPMSQsTr2Tzji2c1zbzPniX5uDldr84mRvRU
T+x9yHkvXZW8ti0kqQhYUrsNLI92mHFiOao9NefTg4JkeFKBt5Qz3KtN8KaCng==
-----END CERTIFICATE-----
 1 s:C = BE, O = GlobalSign nv-sa, CN = GlobalSign Atlas R3 DV TLS CA 2023 Q3
   i:OU = GlobalSign Root CA - R3, O = GlobalSign, CN = GlobalSign
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
---
Server certificate
subject=CN = hearst.co.uk

issuer=C = BE, O = GlobalSign nv-sa, CN = GlobalSign Atlas R3 DV TLS CA 2023 Q3

---
No client certificate CA names sent
Peer signing digest: SHA256
Peer signature type: RSA-PSS
Server Temp Key: X25519, 253 bits
---
SSL handshake has read 7124 bytes and written 391 bytes
Verification error: unable to get local issuer certificate
---
New, TLSv1.3, Cipher is TLS_AES_128_GCM_SHA256
Server public key is 2048 bit
Secure Renegotiation IS NOT supported
Compression: NONE
Expansion: NONE
No ALPN negotiated
Early data was not sent
Verify return code: 20 (unable to get local issuer certificate)
---
DONE
---
Post-Handshake New Session Ticket arrived:
SSL-Session:
    Protocol  : TLSv1.3
    Cipher    : TLS_AES_128_GCM_SHA256
    Session-ID: A9912A355F15FD70473E4D1B7C9F28E34FFE70C493E4087A3153326BFF0F3037
    Session-ID-ctx: 
    Resumption PSK: 54553417E13E97FD984DD1574D9C7EF79FA27171A0995A9B42B29FC4923B123C
    PSK identity: None
    PSK identity hint: None
    SRP username: None
    TLS session ticket lifetime hint: 3600 (seconds)
    TLS session ticket:
    0000 - c8 ab 82 f8 f4 b8 88 7c-c8 4d b5 12 34 92 89 1d   .......|.M..4...
    0010 - 7d 2d 51 4f d2 50 b6 1e-62 4e 02 51 cc 03 53 2c   }-QO.P..bN.Q..S,
    0020 - 0a 2e f7 4f 66 ab 30 59-75 2e 93 53 d7 21 67 a5   ...Of.0Yu..S.!g.
    0030 - 8b ea de 5c 1b d4 50 e5-95 e5 3e 39 74 26 64 b1   ...\..P...>9t&d.
    0040 - 80 91 c3 5b d2 71 91 53-f1 af 40 83 9c 48 c7 15   ...[.q.S..@..H..
    0050 - f2 64 53 77 76 8b 54 c7-cb 65 e8 40 7f 37 ea ba   .dSwv.T..e.@.7..
    0060 - ea 7b bf d7 7f 87 29 ef-2a fe 30 da da 9d 4d 42   .{....).*.0...MB
    0070 - 96 ac d6 2b ef d6 b3 05-5f a4 62 67 81 92 01 b8   ...+...._.bg....
    0080 - 6f 30 5a 84 76 b5 e7 9b-ea 38 bc 23 a6 4e e2 9a   o0Z.v....8.#.N..
    0090 - 20 b7 a4 d2 d4 10 eb ff-96 0f 85 b7 0a b8 db 9b    ...............

    Start Time: 1713919697
    Timeout   : 7200 (sec)
    Verify return code: 20 (unable to get local issuer certificate)
    Extended master secret: no
    Max Early Data: 8192
---
read R BLOCK