SSL Checker
Submit the Hostname and Port in the fields below. This checker supports SNI and STARTTLS.
Report
Hostname: | done Matches Common Name or/and SAN |
Expired: | done No (187 days till expiration) |
Public Key: | done We were unable to find any issues in the public key of end-entity certificate |
Trusted: | close We were unable to verify this certificate |
Self-Signed: | done No, the end-entity certificate is not self-signed |
Chain Issues: | done No, we were unable to detect any issues in the certificate chain sent by the server |
Weak signatures: | done No, certificates sent by the server were not signed utilizing a weak hash function |
OCSP Status: | done OCSP Responder returned "good" status for the end-entity certificate |
DNS Information
Resolves To: | 151.101.0.200 |
Reverse IP lookup: | No records found |
Nameserver: | ns-1418.awsdns-49.org. |
Nameserver: | ns-1931.awsdns-49.co.uk. |
Nameserver: | ns-226.awsdns-28.com. |
Nameserver: | ns-872.awsdns-45.net. |
General Information
Common Name: | hearst.co.uk |
SANs: | DNS:hearst.co.ukDNS:*.bazaarartweek.co.ukDNS:*.bazaaratwork.co.ukDNS:*.bazaarsummit.co.ukDNS:*.bicycling.nlDNS:*.blogs.elle.esDNS:*.caranddriver.esDNS:*.cdnds.netDNS:*.cosmopolitan.co.ukDNS:*.cosmopolitan.itDNS:*.countryliving.co.ukDNS:*.countrylivingshop.co.ukDNS:*.crecerfeliz.esDNS:*.delish.co.ukDNS:*.diezminutos.esDNS:*.digitalspy.co.ukDNS:*.digitalspy.comDNS:*.elle.co.jpDNS:*.elle.itDNS:*.ellebeautyawards.itDNS:*.elledecor.itDNS:*.elledecoration.co.ukDNS:*.elleuk.comDNS:*.esquire.co.ukDNS:*.financiallyfabulous.co.ukDNS:*.fotogramas.esDNS:*.gioia.itDNS:*.goodhousekeeping.co.ukDNS:*.harpersbazaar.co.ukDNS:*.harpersbazaar.jpDNS:*.hdigital.netDNS:*.hearst.co.ukDNS:*.hearst.itDNS:*.hearstcontentagency.co.ukDNS:*.hearstcontentagency.comDNS:*.hearstgames.comDNS:*.hearstgames.netDNS:*.hearstglobalsolutions.comDNS:*.hearstmagazinesdirect.co.ukDNS:*.housebeautiful.co.ukDNS:*.jan-magazine.nlDNS:*.marieclaire.itDNS:*.menshealth.co.ukDNS:*.menshealth.esDNS:*.menshealth.nlDNS:*.micasarevista.comDNS:*.netdoctor.co.ukDNS:*.prima.co.ukDNS:*.princess.hdigital.netDNS:*.princessjourney.co.ukDNS:*.quemedices.esDNS:*.quest.nlDNS:*.quotenet.nlDNS:*.redonline.co.ukDNS:*.runnersweb.nlDNS:*.runnersworld.co.ukDNS:*.salonqp.comDNS:*.townandcountrymag.co.ukDNS:*.womenshealth.esDNS:*.womenshealthlive.co.ukDNS:*.womenshealthmag.co.ukDNS:*.womenshealthmag.nlDNS:bazaarartweek.co.ukDNS:bazaaratwork.co.ukDNS:bazaarsummit.co.ukDNS:bicycling.nlDNS:blogs.elle.esDNS:caranddriver.esDNS:cosmopolitan.itDNS:countryliving.co.ukDNS:countrylivingshop.co.ukDNS:crecerfeliz.esDNS:delish.co.ukDNS:diezminutos.esDNS:digitalspy.co.ukDNS:digitalspy.comDNS:elle.co.jpDNS:elle.itDNS:ellebeautyawards.itDNS:elledecor.itDNS:elledecoration.co.ukDNS:elleuk.comDNS:esquire.co.ukDNS:financiallyfabulous.co.ukDNS:fotogramas.esDNS:gioia.itDNS:goodhousekeeping.co.ukDNS:harpersbazaar.co.ukDNS:harpersbazaar.jpDNS:hearst.itDNS:hearstcontentagency.co.ukDNS:hearstcontentagency.comDNS:hearstglobal.comDNS:hearstglobalsolutions.comDNS:hearstmagazinesdirect.co.ukDNS:housebeautiful.co.ukDNS:insidesoap.co.ukDNS:jan-magazine.nlDNS:marieclaire.itDNS:menshealth.co.ukDNS:menshealth.esDNS:menshealth.nlDNS:micasarevista.comDNS:netdoctor.co.ukDNS:prima.co.ukDNS:princessjourney.co.ukDNS:quemedices.esDNS:quest.nlDNS:quotenet.nlDNS:redonline.co.ukDNS:runnersweb.nlDNS:runnersworld.co.ukDNS:salonqp.comDNS:townandcountrymag.co.ukDNS:womenshealth.esDNS:womenshealthlive.co.ukDNS:womenshealthmag.co.ukDNS:womenshealthmag.nlDNS:*.hearst.esDNS:hearst.esDNS:*.hearstmagazine.co.ukDNS:hearstmagazine.co.uk Total number of SANs: 122 |
Signature Algorithm: | sha256WithRSAEncryption |
Key Type: | RSA |
Key size: | 2048 bits |
Serial Number: | 12a7c1190e5d79fa6f2113d469ecd6c |
Not Before: | Sep 27, 2023 11:24:21 GMT |
Not After: | Oct 28, 2024 11:24:20 GMT |
Number of certs: | 2 |
Revocation Status: | good |
OCSP Stapling: | Supported |
Server: | Not Provided |
HSTS: | max-age=31557600; includeSubDomains |
HPKP: | Not Supported |
Chain Information
Certificate # 1 - Common Name: hearst.co.uk
Decode this certificate for verbose information → launchSubject Common Name | hearst.co.uk |
Issuer Common Name | GlobalSign Atlas R3 DV TLS CA 2023 Q3 |
Issuer Organization | GlobalSign nv-sa |
Not Before: | Sep 27, 2023 11:24:21 GMT |
Not After: | Oct 28, 2024 11:24:20 GMT |
Signature Algorithm: | sha256WithRSAEncryption |
Serial Number: | 12a7c1190e5d79fa6f2113d469ecd6c |
SHA1 Fingerprint: | 18:BF:B7:56:28:44:B7:29:B6:01:B5:86:E7:5D:ED:59:EA:49:EC:32 |
MD5 Fingerprint: | 7D:A2:EB:4E:12:04:AA:6E:2A:77:9E:68:B1:91:D8:01 |
Certificate # 2 - Common Name: GlobalSign Atlas R3 DV TLS CA 2023 Q3
Decode this certificate for verbose information → launchIn place? | Yes, this certificate directly certifies the preceding one |
Subject Common Name | GlobalSign Atlas R3 DV TLS CA 2023 Q3 |
Subject Organization | GlobalSign nv-sa |
Issuer Common Name | GlobalSign |
Issuer Organization | GlobalSign |
Not Before: | Apr 19, 2023 03:52:32 GMT |
Not After: | Apr 19, 2025 00:00:00 GMT |
Signature Algorithm: | sha256WithRSAEncryption |
Serial Number: | 7e87c2a325b274bbfabc90d6c528655e |
SHA1 Fingerprint: | 55:8A:B0:B7:56:E0:CF:22:F0:2C:29:C6:E7:33:BE:F0:FB:32:41:2E |
MD5 Fingerprint: | 40:AC:23:BC:EF:E8:31:29:61:7B:5E:A4:CC:32:58:98 |
OpenSSL Handshake
depth=1 C = BE, O = GlobalSign nv-sa, CN = GlobalSign Atlas R3 DV TLS CA 2023 Q3 verify error:num=20:unable to get local issuer certificate verify return:1 depth=0 CN = hearst.co.uk verify return:1 CONNECTED(00000003) OCSP response: ====================================== OCSP Response Data: OCSP Response Status: successful (0x0) Response Type: Basic OCSP Response Version: 1 (0x0) Responder Id: 655A11311C200040347ED0D72E0AA07B83C1EC4C Produced At: Apr 23 20:52:00 2024 GMT Responses: Certificate ID: Hash Algorithm: sha1 Issuer Name Hash: 52EAAEBCD28911C9DF50BF483C037F8C4FD1D48B Issuer Key Hash: EDA0E601053E34821AA44F5FC5BD1141AADFF361 Serial Number: 012A7C1190E5D79FA6F2113D469ECD6C Cert Status: good This Update: Apr 23 20:00:00 2024 GMT Next Update: Apr 24 08:00:00 2024 GMT Signature Algorithm: sha256WithRSAEncryption 10:f8:2d:93:34:b8:c7:38:27:28:25:d5:14:f8:f8:fc:12:6a: f6:f6:e7:e1:61:c9:10:63:97:d7:63:bc:97:97:cf:fa:45:bd: 91:d3:cd:95:cb:71:87:ca:fc:27:36:56:77:14:21:81:e8:21: 85:4b:bd:f4:00:64:9c:81:8f:64:33:5d:6d:8e:2f:2f:78:45: 54:c4:f7:31:45:1f:7c:48:c0:76:db:ef:61:ac:1f:dd:fb:dd: dc:8a:ae:50:14:f1:3e:3c:18:95:e2:9e:9b:38:0a:81:e3:7b: f9:f0:ec:dd:ac:b4:19:72:71:62:8a:52:50:9d:84:c6:05:a5: 64:67:7f:80:6f:e3:df:c4:01:d3:32:a4:46:dc:17:09:9c:01: 57:b3:b1:4a:74:c9:dc:7c:b3:e1:7f:b2:a6:2d:60:7c:6d:ab: 6f:28:7f:07:a1:b8:39:d3:75:86:b3:4f:78:68:69:c8:8a:79: ac:ce:49:07:bb:38:17:23:a0:e7:53:61:f9:34:c1:83:92:c4: 11:a4:4c:e5:67:5d:86:7e:60:3a:01:ab:18:81:98:fd:15:79: fd:a3:50:d7:a9:bf:24:f0:92:38:b6:34:2d:1d:cc:a8:2b:82: a1:8d:5a:2b:17:39:67:ff:2e:0b:31:8f:39:22:af:8b:17:d7: b7:8c:3b:ee Certificate: Data: Version: 3 (0x2) Serial Number: 01:c0:81:00:f2:e5:6a:3f:28:a0:05:d5:2a:d0:8a:fc Signature Algorithm: sha256WithRSAEncryption Issuer: C=BE, O=GlobalSign nv-sa, CN=GlobalSign Atlas R3 DV TLS CA 2023 Q3 Validity Not Before: Apr 19 12:54:47 2024 GMT Not After : Apr 26 12:54:47 2024 GMT Subject: C=BE, O=GlobalSign nv-sa, CN=GlobalSign Atlas R3 DV TLS CA 2023 Q3 - OCSP Responder Subject Public Key Info: Public Key Algorithm: rsaEncryption RSA Public-Key: (2048 bit) Modulus: 00:e3:06:4d:55:d0:32:e6:a6:a0:20:68:0d:a2:2c: e3:c4:0a:ed:4b:a7:d6:d7:90:2c:40:c8:3c:b2:ec: 4a:8a:2e:57:01:dc:67:0c:18:48:1b:31:a8:63:06: dc:e7:58:22:24:8c:e1:47:29:eb:4a:3a:63:d2:d3: 6a:27:a0:18:82:57:78:c7:fd:2e:e2:ac:1a:41:08: 40:cd:b5:4a:a3:92:37:e1:ae:49:ad:c1:ee:a7:9e: d7:15:6d:0c:1b:1d:48:64:fd:64:a7:ea:0d:a4:75: 8e:cd:5d:19:17:4f:75:8e:df:c0:01:9c:07:d9:d8: 15:89:48:2a:90:71:16:09:7a:16:30:1b:f4:96:77: 8e:90:86:93:9f:42:e4:d7:5b:46:9e:1a:9c:65:9c: 97:0b:05:46:66:32:90:a0:3c:a0:f8:ab:8d:33:e9: a8:6e:bc:c9:c3:31:97:ec:bb:6d:5d:c3:71:b4:3d: 31:5b:7c:e2:f6:96:f4:39:a1:22:95:57:48:ad:8d: 0b:42:a2:3d:12:33:0b:0a:43:f7:c5:d6:62:10:a4: aa:94:b5:0b:5b:5d:c0:c2:bc:88:1e:4f:bf:df:ea: 5a:87:5e:12:0b:69:fd:91:31:a0:a2:35:c7:68:dc: a6:b8:3c:aa:6b:e3:fe:53:5e:5c:86:1d:e0:16:20: e0:33 Exponent: 65537 (0x10001) X509v3 extensions: OCSP No Check: X509v3 Key Usage: critical Digital Signature X509v3 Extended Key Usage: OCSP Signing X509v3 Subject Key Identifier: 65:5A:11:31:1C:20:00:40:34:7E:D0:D7:2E:0A:A0:7B:83:C1:EC:4C X509v3 Basic Constraints: critical CA:FALSE X509v3 Authority Key Identifier: keyid:ED:A0:E6:01:05:3E:34:82:1A:A4:4F:5F:C5:BD:11:41:AA:DF:F3:61 Signature Algorithm: sha256WithRSAEncryption 55:9a:b5:3c:fb:ae:80:aa:43:35:d8:b6:75:80:65:4d:ea:c7: fc:78:f3:03:81:fc:79:98:1e:1d:97:eb:60:31:a1:ea:c2:24: 10:f6:37:0d:d6:23:a0:75:97:ed:f1:1e:f9:f2:8e:99:b2:7e: 80:31:4c:17:8a:5e:b1:e4:bd:9c:5b:4c:be:06:06:f0:78:8d: 98:b1:57:c4:24:b9:fd:3a:81:b3:50:42:d9:76:ba:58:11:03: 63:4d:1d:f3:74:f9:73:cd:3d:5d:a6:b2:79:84:76:f7:31:87: b2:bb:c2:88:62:68:05:ee:58:ba:5c:de:09:00:ff:45:31:04: 5b:8f:09:84:c0:88:56:98:1f:89:1a:6b:b2:4c:3b:b0:90:ec: 98:19:e9:40:e6:b8:05:8a:2c:ed:f9:d1:eb:43:91:62:d3:41: be:d6:13:3f:c3:32:4f:2a:02:b6:9d:46:c7:f9:5a:09:8b:4c: 4f:37:c1:5e:d9:ef:88:6f:67:f9:a8:b0:2f:ac:f2:0c:68:aa: fd:8f:0e:38:3e:41:4a:ac:ff:eb:68:eb:ab:42:42:bd:89:82: fc:dd:e6:51:ed:ef:00:5c:20:f6:41:37:62:74:21:35:5d:60: a7:db:94:78:1e:43:1b:6a:ad:31:6c:07:4c:e1:a7:2d:f5:5b: 40:fc:63:cf -----BEGIN CERTIFICATE----- MIID0zCCArugAwIBAgIQAcCBAPLlaj8ooAXVKtCK/DANBgkqhkiG9w0BAQsFADBY MQswCQYDVQQGEwJCRTEZMBcGA1UEChMQR2xvYmFsU2lnbiBudi1zYTEuMCwGA1UE AxMlR2xvYmFsU2lnbiBBdGxhcyBSMyBEViBUTFMgQ0EgMjAyMyBRMzAeFw0yNDA0 MTkxMjU0NDdaFw0yNDA0MjYxMjU0NDdaMGkxCzAJBgNVBAYTAkJFMRkwFwYDVQQK DBBHbG9iYWxTaWduIG52LXNhMT8wPQYDVQQDDDZHbG9iYWxTaWduIEF0bGFzIFIz IERWIFRMUyBDQSAyMDIzIFEzIC0gT0NTUCBSZXNwb25kZXIwggEiMA0GCSqGSIb3 DQEBAQUAA4IBDwAwggEKAoIBAQDjBk1V0DLmpqAgaA2iLOPECu1Lp9bXkCxAyDyy 7EqKLlcB3GcMGEgbMahjBtznWCIkjOFHKetKOmPS02onoBiCV3jH/S7irBpBCEDN tUqjkjfhrkmtwe6nntcVbQwbHUhk/WSn6g2kdY7NXRkXT3WO38ABnAfZ2BWJSCqQ cRYJehYwG/SWd46QhpOfQuTXW0aeGpxlnJcLBUZmMpCgPKD4q40z6ahuvMnDMZfs u21dw3G0PTFbfOL2lvQ5oSKVV0itjQtCoj0SMwsKQ/fF1mIQpKqUtQtbXcDCvIge T7/f6lqHXhILaf2RMaCiNcdo3Ka4PKpr4/5TXlyGHeAWIOAzAgMBAAGjgYcwgYQw DwYJKwYBBQUHMAEFBAIFADAOBgNVHQ8BAf8EBAMCB4AwEwYDVR0lBAwwCgYIKwYB BQUHAwkwHQYDVR0OBBYEFGVaETEcIABANH7Q1y4KoHuDwexMMAwGA1UdEwEB/wQC MAAwHwYDVR0jBBgwFoAU7aDmAQU+NIIapE9fxb0RQarf82EwDQYJKoZIhvcNAQEL BQADggEBAFWatTz7roCqQzXYtnWAZU3qx/x48wOB/HmYHh2X62AxoerCJBD2Nw3W I6B1l+3xHvnyjpmyfoAxTBeKXrHkvZxbTL4GBvB4jZixV8Qkuf06gbNQQtl2ulgR A2NNHfN0+XPNPV2msnmEdvcxh7K7wohiaAXuWLpc3gkA/0UxBFuPCYTAiFaYH4ka a7JMO7CQ7JgZ6UDmuAWKLO350etDkWLTQb7WEz/DMk8qAradRsf5WgmLTE83wV7Z 74hvZ/mosC+s8gxoqv2PDjg+QUqs/+to66tCQr2Jgvzd5lHt7wBcIPZBN2J0ITVd YKfblHgeQxtqrTFsB0zhpy31W0D8Y88= -----END CERTIFICATE----- ====================================== --- Certificate chain 0 s:CN = hearst.co.uk i:C = BE, O = GlobalSign nv-sa, CN = GlobalSign Atlas R3 DV TLS CA 2023 Q3 -----BEGIN CERTIFICATE----- MIIPWjCCDkKgAwIBAgIQASp8EZDl15+m8hE9Rp7NbDANBgkqhkiG9w0BAQsFADBY MQswCQYDVQQGEwJCRTEZMBcGA1UEChMQR2xvYmFsU2lnbiBudi1zYTEuMCwGA1UE AxMlR2xvYmFsU2lnbiBBdGxhcyBSMyBEViBUTFMgQ0EgMjAyMyBRMzAeFw0yMzA5 MjcxMTI0MjFaFw0yNDEwMjgxMTI0MjBaMBcxFTATBgNVBAMMDGhlYXJzdC5jby51 azCCASIwDQYJKoZIhvcNAQEBBQADggEPADCCAQoCggEBAJw/z2D0g2png6q51y+m kxpOHdsY3ydx+UeVq6ojMywsFqq1u8bvvFvG5/QjYXo8I4HG1gQU+JrL8Gwb5Zr2 0UjCifHqREyuDA3/3e+mJg2t2GY0exr3q+pFlt/a8zWA9m0Qv92QSVmvFF0q9kja MQb5YPAF9sNCetHURDL0fp1gya3XlMNh5LPzhgmJnvcenrJsrVQliFPSIschzuVm zHETtiYytCcuk7MKQpvtla9CEL2jVUOq7SXUnKU/hUG3X0wijx9b7SEzIsvZroXB Z5gd8H4l3C5dUPbSpeyfVMsuKo+ih4UqXpK1dqFAlkmgN7TJZtNI8cWYf11Dnpg7 zq8CAwEAAaOCDF8wggxbMIIJEwYDVR0RBIIJCjCCCQaCDGhlYXJzdC5jby51a4IV Ki5iYXphYXJhcnR3ZWVrLmNvLnVrghQqLmJhemFhcmF0d29yay5jby51a4IUKi5i YXphYXJzdW1taXQuY28udWuCDiouYmljeWNsaW5nLm5sgg8qLmJsb2dzLmVsbGUu ZXOCESouY2FyYW5kZHJpdmVyLmVzggsqLmNkbmRzLm5ldIIUKi5jb3Ntb3BvbGl0 YW4uY28udWuCESouY29zbW9wb2xpdGFuLml0ghUqLmNvdW50cnlsaXZpbmcuY28u dWuCGSouY291bnRyeWxpdmluZ3Nob3AuY28udWuCECouY3JlY2VyZmVsaXouZXOC DiouZGVsaXNoLmNvLnVrghAqLmRpZXptaW51dG9zLmVzghIqLmRpZ2l0YWxzcHku Y28udWuCECouZGlnaXRhbHNweS5jb22CDCouZWxsZS5jby5qcIIJKi5lbGxlLml0 ghUqLmVsbGViZWF1dHlhd2FyZHMuaXSCDiouZWxsZWRlY29yLml0ghYqLmVsbGVk ZWNvcmF0aW9uLmNvLnVrggwqLmVsbGV1ay5jb22CDyouZXNxdWlyZS5jby51a4Ib Ki5maW5hbmNpYWxseWZhYnVsb3VzLmNvLnVrgg8qLmZvdG9ncmFtYXMuZXOCCiou Z2lvaWEuaXSCGCouZ29vZGhvdXNla2VlcGluZy5jby51a4IVKi5oYXJwZXJzYmF6 YWFyLmNvLnVrghIqLmhhcnBlcnNiYXphYXIuanCCDiouaGRpZ2l0YWwubmV0gg4q LmhlYXJzdC5jby51a4ILKi5oZWFyc3QuaXSCGyouaGVhcnN0Y29udGVudGFnZW5j eS5jby51a4IZKi5oZWFyc3Rjb250ZW50YWdlbmN5LmNvbYIRKi5oZWFyc3RnYW1l cy5jb22CESouaGVhcnN0Z2FtZXMubmV0ghsqLmhlYXJzdGdsb2JhbHNvbHV0aW9u cy5jb22CHSouaGVhcnN0bWFnYXppbmVzZGlyZWN0LmNvLnVrghYqLmhvdXNlYmVh dXRpZnVsLmNvLnVrghEqLmphbi1tYWdhemluZS5ubIIQKi5tYXJpZWNsYWlyZS5p dIISKi5tZW5zaGVhbHRoLmNvLnVrgg8qLm1lbnNoZWFsdGguZXOCDyoubWVuc2hl YWx0aC5ubIITKi5taWNhc2FyZXZpc3RhLmNvbYIRKi5uZXRkb2N0b3IuY28udWuC DSoucHJpbWEuY28udWuCFyoucHJpbmNlc3MuaGRpZ2l0YWwubmV0ghcqLnByaW5j ZXNzam91cm5leS5jby51a4IPKi5xdWVtZWRpY2VzLmVzggoqLnF1ZXN0Lm5sgg0q LnF1b3RlbmV0Lm5sghEqLnJlZG9ubGluZS5jby51a4IPKi5ydW5uZXJzd2ViLm5s ghQqLnJ1bm5lcnN3b3JsZC5jby51a4INKi5zYWxvbnFwLmNvbYIZKi50b3duYW5k Y291bnRyeW1hZy5jby51a4IRKi53b21lbnNoZWFsdGguZXOCGCoud29tZW5zaGVh bHRobGl2ZS5jby51a4IXKi53b21lbnNoZWFsdGhtYWcuY28udWuCFCoud29tZW5z aGVhbHRobWFnLm5sghNiYXphYXJhcnR3ZWVrLmNvLnVrghJiYXphYXJhdHdvcmsu Y28udWuCEmJhemFhcnN1bW1pdC5jby51a4IMYmljeWNsaW5nLm5sgg1ibG9ncy5l bGxlLmVzgg9jYXJhbmRkcml2ZXIuZXOCD2Nvc21vcG9saXRhbi5pdIITY291bnRy eWxpdmluZy5jby51a4IXY291bnRyeWxpdmluZ3Nob3AuY28udWuCDmNyZWNlcmZl bGl6LmVzggxkZWxpc2guY28udWuCDmRpZXptaW51dG9zLmVzghBkaWdpdGFsc3B5 LmNvLnVrgg5kaWdpdGFsc3B5LmNvbYIKZWxsZS5jby5qcIIHZWxsZS5pdIITZWxs ZWJlYXV0eWF3YXJkcy5pdIIMZWxsZWRlY29yLml0ghRlbGxlZGVjb3JhdGlvbi5j by51a4IKZWxsZXVrLmNvbYINZXNxdWlyZS5jby51a4IZZmluYW5jaWFsbHlmYWJ1 bG91cy5jby51a4INZm90b2dyYW1hcy5lc4IIZ2lvaWEuaXSCFmdvb2Rob3VzZWtl ZXBpbmcuY28udWuCE2hhcnBlcnNiYXphYXIuY28udWuCEGhhcnBlcnNiYXphYXIu anCCCWhlYXJzdC5pdIIZaGVhcnN0Y29udGVudGFnZW5jeS5jby51a4IXaGVhcnN0 Y29udGVudGFnZW5jeS5jb22CEGhlYXJzdGdsb2JhbC5jb22CGWhlYXJzdGdsb2Jh bHNvbHV0aW9ucy5jb22CG2hlYXJzdG1hZ2F6aW5lc2RpcmVjdC5jby51a4IUaG91 c2ViZWF1dGlmdWwuY28udWuCEGluc2lkZXNvYXAuY28udWuCD2phbi1tYWdhemlu ZS5ubIIObWFyaWVjbGFpcmUuaXSCEG1lbnNoZWFsdGguY28udWuCDW1lbnNoZWFs dGguZXOCDW1lbnNoZWFsdGgubmyCEW1pY2FzYXJldmlzdGEuY29tgg9uZXRkb2N0 b3IuY28udWuCC3ByaW1hLmNvLnVrghVwcmluY2Vzc2pvdXJuZXkuY28udWuCDXF1 ZW1lZGljZXMuZXOCCHF1ZXN0Lm5sggtxdW90ZW5ldC5ubIIPcmVkb25saW5lLmNv LnVrgg1ydW5uZXJzd2ViLm5sghJydW5uZXJzd29ybGQuY28udWuCC3NhbG9ucXAu Y29tghd0b3duYW5kY291bnRyeW1hZy5jby51a4IPd29tZW5zaGVhbHRoLmVzghZ3 b21lbnNoZWFsdGhsaXZlLmNvLnVrghV3b21lbnNoZWFsdGhtYWcuY28udWuCEndv bWVuc2hlYWx0aG1hZy5ubIILKi5oZWFyc3QuZXOCCWhlYXJzdC5lc4IWKi5oZWFy c3RtYWdhemluZS5jby51a4IUaGVhcnN0bWFnYXppbmUuY28udWswDgYDVR0PAQH/ BAQDAgWgMB0GA1UdJQQWMBQGCCsGAQUFBwMBBggrBgEFBQcDAjAdBgNVHQ4EFgQU plEOFXPI073m2sC4nqNH1fxDLrwwVwYDVR0gBFAwTjAIBgZngQwBAgEwQgYKKwYB BAGgMgoBAzA0MDIGCCsGAQUFBwIBFiZodHRwczovL3d3dy5nbG9iYWxzaWduLmNv bS9yZXBvc2l0b3J5LzAMBgNVHRMBAf8EAjAAMIGeBggrBgEFBQcBAQSBkTCBjjBA BggrBgEFBQcwAYY0aHR0cDovL29jc3AuZ2xvYmFsc2lnbi5jb20vY2EvZ3NhdGxh c3IzZHZ0bHNjYTIwMjNxMzBKBggrBgEFBQcwAoY+aHR0cDovL3NlY3VyZS5nbG9i YWxzaWduLmNvbS9jYWNlcnQvZ3NhdGxhc3IzZHZ0bHNjYTIwMjNxMy5jcnQwHwYD VR0jBBgwFoAU7aDmAQU+NIIapE9fxb0RQarf82EwSAYDVR0fBEEwPzA9oDugOYY3 aHR0cDovL2NybC5nbG9iYWxzaWduLmNvbS9jYS9nc2F0bGFzcjNkdnRsc2NhMjAy M3EzLmNybDCCAX8GCisGAQQB1nkCBAIEggFvBIIBawFpAHcAdv+IPwq2+5VRwmHM 9Ye6NLSkzbsp3GhCCp/mZ0xaOnQAAAGK1mIRpwAABAMASDBGAiEAi+lX0YCn14SY y6sDZh024aODvDCJh3jYsd8XNiDAXhkCIQDiAuSHo8KRUrtKRnVjqqJ1n9S2Cq4b 7o7i9FLI2is0NQB3ANq2v2s/tbYin5vCu1xr6HCRcWy7UYSFNL2kPTBI1/urAAAB itZiEhEAAAQDAEgwRgIhAJ0zLd+ypDuGrpGnIeg9c2ILygOHnkJopZUSskjK1sYQ AiEA+L5svztXG8ghdTfG1o7Fn1sAwBdVJsYRusaKAPp0NNEAdQBIsONr2qZHNA/l agL6nTDrHFIBy1bdLIHZu7+rOdiEcwAAAYrWYhSKAAAEAwBGMEQCIDL1FrwKki8Z UConkOBOfIYTvnLnzWxHaUq8/slwBNCcAiAfLr5m2pURt/6jwrP21dvXiPVp0dj/ Xnj6I8ceIyGtVzANBgkqhkiG9w0BAQsFAAOCAQEAlagVZzaERerBGzDCiPzlHhBM q7/rNhNcQeFpfXWb5EZIG4tPLTzS+v80i7A1JrfKgeXG9Q8OcOO67ak8FqF76V0H crh3Gls0Gn/0D6P+cfrLIGgc2PJkjnMr+pHV5n7Cfe5D6iddr6Y1rk/PFiTDKJSu PIgPQ12RN5LOdtWswODeD8Yj59zcT8QL5oYb03djaK+FAH19xXyNFy8ch7xWx88B XH7gNGUDTmiH+8FWmXaBoOh2Y8PQVPMSQsTr2Tzji2c1zbzPniX5uDldr84mRvRU T+x9yHkvXZW8ti0kqQhYUrsNLI92mHFiOao9NefTg4JkeFKBt5Qz3KtN8KaCng== -----END CERTIFICATE----- 1 s:C = BE, O = GlobalSign nv-sa, CN = GlobalSign Atlas R3 DV TLS CA 2023 Q3 i:OU = GlobalSign Root CA - R3, O = GlobalSign, CN = GlobalSign -----BEGIN CERTIFICATE----- MIIEjzCCA3egAwIBAgIQfofCoyWydLv6vJDWxShlXjANBgkqhkiG9w0BAQsFADBM MSAwHgYDVQQLExdHbG9iYWxTaWduIFJvb3QgQ0EgLSBSMzETMBEGA1UEChMKR2xv YmFsU2lnbjETMBEGA1UEAxMKR2xvYmFsU2lnbjAeFw0yMzA0MTkwMzUyMzJaFw0y NTA0MTkwMDAwMDBaMFgxCzAJBgNVBAYTAkJFMRkwFwYDVQQKExBHbG9iYWxTaWdu IG52LXNhMS4wLAYDVQQDEyVHbG9iYWxTaWduIEF0bGFzIFIzIERWIFRMUyBDQSAy MDIzIFEzMIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAoH0SSUPDlZS1 Mc7W61LrUP+4J4g3vOnyefyPHSF4jWAXvjS1jo4ZGE7jvPc3H7w/RlH6bQw9tgis BXq/mHMwdBA3XEPQyZcoT2Tqf5YZ7Nl2/os9AE2XZ9+l3KFSw9toZJNbKry6vJau obJtqu1zC67LT+LrP6z66udM5x3xZk8JYWb8asI8gVdUm5o7kkearoN8PEBnIQHI xw6hsd+VZXwWV82O+XvTFpXLsFE/wYrsA7/PcodHVDzaNXbf3ppyRoZuatX1vAH0 GWDIZnIpqLf7yerhL5+ILWAACnQ77HcV6eS8Dp9pfbqQxTGylh1ynQ/IqOzKQwtA h+tDbAYcdwIDAQABo4IBXzCCAVswDgYDVR0PAQH/BAQDAgGGMB0GA1UdJQQWMBQG CCsGAQUFBwMBBggrBgEFBQcDAjASBgNVHRMBAf8ECDAGAQH/AgEAMB0GA1UdDgQW BBTtoOYBBT40ghqkT1/FvRFBqt/zYTAfBgNVHSMEGDAWgBSP8Et/qC5FJK5NUPpj move4t0bvDB7BggrBgEFBQcBAQRvMG0wLgYIKwYBBQUHMAGGImh0dHA6Ly9vY3Nw Mi5nbG9iYWxzaWduLmNvbS9yb290cjMwOwYIKwYBBQUHMAKGL2h0dHA6Ly9zZWN1 cmUuZ2xvYmFsc2lnbi5jb20vY2FjZXJ0L3Jvb3QtcjMuY3J0MDYGA1UdHwQvMC0w K6ApoCeGJWh0dHA6Ly9jcmwuZ2xvYmFsc2lnbi5jb20vcm9vdC1yMy5jcmwwIQYD VR0gBBowGDAIBgZngQwBAgEwDAYKKwYBBAGgMgoBAzANBgkqhkiG9w0BAQsFAAOC AQEAeCQukRcvr4vivbdfLulvgh+u4njzq5VVLa+6jUup8grih9tHMu+qUAo0HY56 2lBYdrF2c6UwTIv7nLPVuxtxFu/+iznc6q26uzaMo/EHIC1P1nspO86nq8fh6Aqq pn0eENfADthF/JaLbQ27DfkrrV5w/wgz9TH1TfYy3/jF6yTaZk6C97E0iR2HAhBR dknoZ2Nd+Lb2W1BB9o5umEeMgw4LsVU5HPEmEh6fj/zIAo3CO0EGkc+Fs0zToMQx cUjA64nXmL0P09OLMnT/ObJhnftZQsRUFhoCdnSIP4p2RwjKbGQXpFeOih8hNTJ3 2LduNzj/aVv/K6qMH95aCmxINw== -----END CERTIFICATE----- --- Server certificate subject=CN = hearst.co.uk issuer=C = BE, O = GlobalSign nv-sa, CN = GlobalSign Atlas R3 DV TLS CA 2023 Q3 --- No client certificate CA names sent Peer signing digest: SHA256 Peer signature type: RSA-PSS Server Temp Key: X25519, 253 bits --- SSL handshake has read 7124 bytes and written 391 bytes Verification error: unable to get local issuer certificate --- New, TLSv1.3, Cipher is TLS_AES_128_GCM_SHA256 Server public key is 2048 bit Secure Renegotiation IS NOT supported Compression: NONE Expansion: NONE No ALPN negotiated Early data was not sent Verify return code: 20 (unable to get local issuer certificate) --- DONE --- Post-Handshake New Session Ticket arrived: SSL-Session: Protocol : TLSv1.3 Cipher : TLS_AES_128_GCM_SHA256 Session-ID: A9912A355F15FD70473E4D1B7C9F28E34FFE70C493E4087A3153326BFF0F3037 Session-ID-ctx: Resumption PSK: 54553417E13E97FD984DD1574D9C7EF79FA27171A0995A9B42B29FC4923B123C PSK identity: None PSK identity hint: None SRP username: None TLS session ticket lifetime hint: 3600 (seconds) TLS session ticket: 0000 - c8 ab 82 f8 f4 b8 88 7c-c8 4d b5 12 34 92 89 1d .......|.M..4... 0010 - 7d 2d 51 4f d2 50 b6 1e-62 4e 02 51 cc 03 53 2c }-QO.P..bN.Q..S, 0020 - 0a 2e f7 4f 66 ab 30 59-75 2e 93 53 d7 21 67 a5 ...Of.0Yu..S.!g. 0030 - 8b ea de 5c 1b d4 50 e5-95 e5 3e 39 74 26 64 b1 ...\..P...>9t&d. 0040 - 80 91 c3 5b d2 71 91 53-f1 af 40 83 9c 48 c7 15 ...[.q.S..@..H.. 0050 - f2 64 53 77 76 8b 54 c7-cb 65 e8 40 7f 37 ea ba .dSwv.T..e.@.7.. 0060 - ea 7b bf d7 7f 87 29 ef-2a fe 30 da da 9d 4d 42 .{....).*.0...MB 0070 - 96 ac d6 2b ef d6 b3 05-5f a4 62 67 81 92 01 b8 ...+...._.bg.... 0080 - 6f 30 5a 84 76 b5 e7 9b-ea 38 bc 23 a6 4e e2 9a o0Z.v....8.#.N.. 0090 - 20 b7 a4 d2 d4 10 eb ff-96 0f 85 b7 0a b8 db 9b ............... Start Time: 1713919697 Timeout : 7200 (sec) Verify return code: 20 (unable to get local issuer certificate) Extended master secret: no Max Early Data: 8192 --- read R BLOCK