SSL Checker
Submit the Hostname and Port in the fields below. This checker supports SNI and STARTTLS.
Report
Hostname: | done Matches Common Name or/and SAN |
Expired: | done No (186 days till expiration) |
Public Key: | done We were unable to find any issues in the public key of end-entity certificate |
Trusted: | close We were unable to verify this certificate |
Self-Signed: | done No, the end-entity certificate is not self-signed |
Chain Issues: | done No, we were unable to detect any issues in the certificate chain sent by the server |
Weak signatures: | done No, certificates sent by the server were not signed utilizing a weak hash function |
OCSP Status: | done OCSP Responder returned "good" status for the end-entity certificate |
DNS Information
Resolves To: | 151.101.0.200 |
Reverse IP lookup: | No records found |
Nameserver: | ns-1502.awsdns-59.org. |
Nameserver: | ns-1724.awsdns-23.co.uk. |
Nameserver: | ns-50.awsdns-06.com. |
Nameserver: | ns-759.awsdns-30.net. |
General Information
Common Name: | hearst.co.uk |
SANs: | DNS:hearst.co.ukDNS:*.bazaarartweek.co.ukDNS:*.bazaaratwork.co.ukDNS:*.bazaarsummit.co.ukDNS:*.bicycling.nlDNS:*.blogs.elle.esDNS:*.caranddriver.esDNS:*.cdnds.netDNS:*.cosmopolitan.co.ukDNS:*.cosmopolitan.itDNS:*.countryliving.co.ukDNS:*.countrylivingshop.co.ukDNS:*.crecerfeliz.esDNS:*.delish.co.ukDNS:*.diezminutos.esDNS:*.digitalspy.co.ukDNS:*.digitalspy.comDNS:*.elle.co.jpDNS:*.elle.itDNS:*.ellebeautyawards.itDNS:*.elledecor.itDNS:*.elledecoration.co.ukDNS:*.elleuk.comDNS:*.esquire.co.ukDNS:*.financiallyfabulous.co.ukDNS:*.fotogramas.esDNS:*.gioia.itDNS:*.goodhousekeeping.co.ukDNS:*.harpersbazaar.co.ukDNS:*.harpersbazaar.jpDNS:*.hdigital.netDNS:*.hearst.co.ukDNS:*.hearst.itDNS:*.hearstcontentagency.co.ukDNS:*.hearstcontentagency.comDNS:*.hearstgames.comDNS:*.hearstgames.netDNS:*.hearstglobalsolutions.comDNS:*.hearstmagazinesdirect.co.ukDNS:*.housebeautiful.co.ukDNS:*.jan-magazine.nlDNS:*.marieclaire.itDNS:*.menshealth.co.ukDNS:*.menshealth.esDNS:*.menshealth.nlDNS:*.micasarevista.comDNS:*.netdoctor.co.ukDNS:*.prima.co.ukDNS:*.princess.hdigital.netDNS:*.princessjourney.co.ukDNS:*.quemedices.esDNS:*.quest.nlDNS:*.quotenet.nlDNS:*.redonline.co.ukDNS:*.runnersweb.nlDNS:*.runnersworld.co.ukDNS:*.salonqp.comDNS:*.townandcountrymag.co.ukDNS:*.womenshealth.esDNS:*.womenshealthlive.co.ukDNS:*.womenshealthmag.co.ukDNS:*.womenshealthmag.nlDNS:bazaarartweek.co.ukDNS:bazaaratwork.co.ukDNS:bazaarsummit.co.ukDNS:bicycling.nlDNS:blogs.elle.esDNS:caranddriver.esDNS:cosmopolitan.itDNS:countryliving.co.ukDNS:countrylivingshop.co.ukDNS:crecerfeliz.esDNS:delish.co.ukDNS:diezminutos.esDNS:digitalspy.co.ukDNS:digitalspy.comDNS:elle.co.jpDNS:elle.itDNS:ellebeautyawards.itDNS:elledecor.itDNS:elledecoration.co.ukDNS:elleuk.comDNS:esquire.co.ukDNS:financiallyfabulous.co.ukDNS:fotogramas.esDNS:gioia.itDNS:goodhousekeeping.co.ukDNS:harpersbazaar.co.ukDNS:harpersbazaar.jpDNS:hearst.itDNS:hearstcontentagency.co.ukDNS:hearstcontentagency.comDNS:hearstglobal.comDNS:hearstglobalsolutions.comDNS:hearstmagazinesdirect.co.ukDNS:housebeautiful.co.ukDNS:insidesoap.co.ukDNS:jan-magazine.nlDNS:marieclaire.itDNS:menshealth.co.ukDNS:menshealth.esDNS:menshealth.nlDNS:micasarevista.comDNS:netdoctor.co.ukDNS:prima.co.ukDNS:princessjourney.co.ukDNS:quemedices.esDNS:quest.nlDNS:quotenet.nlDNS:redonline.co.ukDNS:runnersweb.nlDNS:runnersworld.co.ukDNS:salonqp.comDNS:townandcountrymag.co.ukDNS:womenshealth.esDNS:womenshealthlive.co.ukDNS:womenshealthmag.co.ukDNS:womenshealthmag.nlDNS:*.hearst.esDNS:hearst.esDNS:*.hearstmagazine.co.ukDNS:hearstmagazine.co.uk Total number of SANs: 122 |
Signature Algorithm: | sha256WithRSAEncryption |
Key Type: | RSA |
Key size: | 2048 bits |
Serial Number: | 12a7c1190e5d79fa6f2113d469ecd6c |
Not Before: | Sep 27, 2023 11:24:21 GMT |
Not After: | Oct 28, 2024 11:24:20 GMT |
Number of certs: | 2 |
Revocation Status: | good |
OCSP Stapling: | Supported |
Server: | Not Provided |
HSTS: | max-age=31557600; includeSubDomains |
HPKP: | Not Supported |
Chain Information
Certificate # 1 - Common Name: hearst.co.uk
Decode this certificate for verbose information → launchSubject Common Name | hearst.co.uk |
Issuer Common Name | GlobalSign Atlas R3 DV TLS CA 2023 Q3 |
Issuer Organization | GlobalSign nv-sa |
Not Before: | Sep 27, 2023 11:24:21 GMT |
Not After: | Oct 28, 2024 11:24:20 GMT |
Signature Algorithm: | sha256WithRSAEncryption |
Serial Number: | 12a7c1190e5d79fa6f2113d469ecd6c |
SHA1 Fingerprint: | 18:BF:B7:56:28:44:B7:29:B6:01:B5:86:E7:5D:ED:59:EA:49:EC:32 |
MD5 Fingerprint: | 7D:A2:EB:4E:12:04:AA:6E:2A:77:9E:68:B1:91:D8:01 |
Certificate # 2 - Common Name: GlobalSign Atlas R3 DV TLS CA 2023 Q3
Decode this certificate for verbose information → launchIn place? | Yes, this certificate directly certifies the preceding one |
Subject Common Name | GlobalSign Atlas R3 DV TLS CA 2023 Q3 |
Subject Organization | GlobalSign nv-sa |
Issuer Common Name | GlobalSign |
Issuer Organization | GlobalSign |
Not Before: | Apr 19, 2023 03:52:32 GMT |
Not After: | Apr 19, 2025 00:00:00 GMT |
Signature Algorithm: | sha256WithRSAEncryption |
Serial Number: | 7e87c2a325b274bbfabc90d6c528655e |
SHA1 Fingerprint: | 55:8A:B0:B7:56:E0:CF:22:F0:2C:29:C6:E7:33:BE:F0:FB:32:41:2E |
MD5 Fingerprint: | 40:AC:23:BC:EF:E8:31:29:61:7B:5E:A4:CC:32:58:98 |
OpenSSL Handshake
depth=1 C = BE, O = GlobalSign nv-sa, CN = GlobalSign Atlas R3 DV TLS CA 2023 Q3 verify error:num=20:unable to get local issuer certificate verify return:1 depth=0 CN = hearst.co.uk verify return:1 CONNECTED(00000003) OCSP response: ====================================== OCSP Response Data: OCSP Response Status: successful (0x0) Response Type: Basic OCSP Response Version: 1 (0x0) Responder Id: 099D05DB670C24D2B764CEF8900DC0FB4926F005 Produced At: Apr 24 21:56:00 2024 GMT Responses: Certificate ID: Hash Algorithm: sha1 Issuer Name Hash: 52EAAEBCD28911C9DF50BF483C037F8C4FD1D48B Issuer Key Hash: EDA0E601053E34821AA44F5FC5BD1141AADFF361 Serial Number: 012A7C1190E5D79FA6F2113D469ECD6C Cert Status: good This Update: Apr 24 21:00:00 2024 GMT Next Update: Apr 25 09:00:00 2024 GMT Signature Algorithm: sha256WithRSAEncryption 15:82:98:72:cf:bf:19:5d:de:97:fa:0f:7c:4b:b9:af:b5:7e: e3:12:14:6f:e3:21:d8:79:73:c8:1e:94:7b:da:f3:81:46:b0: 29:1c:31:ca:2c:96:c8:04:ca:e4:99:24:02:6b:ea:f2:3b:23: a4:4a:56:60:b1:46:f0:e6:e1:45:30:13:61:84:e8:3f:98:25: 27:fa:19:79:56:17:31:f5:39:ec:f4:b3:43:63:52:ca:63:59: bf:0d:5a:85:c4:36:49:1b:c1:24:b0:c0:ec:7b:9a:2c:0d:c4: b3:01:41:12:e6:f6:b9:7e:eb:7e:e3:e2:f0:aa:e0:35:7b:60: 8f:8c:39:4b:1e:05:7e:1c:ee:0b:5c:6f:0c:61:6c:f7:8a:0d: 0f:e0:0c:9e:8c:d6:4d:db:87:7d:ab:2d:1c:56:2e:69:2b:a2: 31:00:0e:96:cf:9b:7b:29:dd:e7:9a:2e:66:aa:50:50:f6:ee: 62:30:29:31:49:1c:44:9a:59:f5:bb:aa:b9:90:5c:dc:30:9c: 06:01:cf:29:3e:1d:87:f2:b7:38:c1:54:4d:1e:e7:ce:3d:81: 1a:ef:8b:31:e1:c4:c5:b6:1b:7c:3d:c5:76:91:2f:eb:72:53: 97:5b:ff:dc:35:e7:7a:63:da:9a:73:b5:32:9d:d8:c2:79:92: 66:a3:41:6c Certificate: Data: Version: 3 (0x2) Serial Number: 01:93:58:60:71:84:54:cf:2d:34:7c:89:75:de:5b:99 Signature Algorithm: sha256WithRSAEncryption Issuer: C=BE, O=GlobalSign nv-sa, CN=GlobalSign Atlas R3 DV TLS CA 2023 Q3 Validity Not Before: Apr 24 13:03:33 2024 GMT Not After : May 1 13:03:33 2024 GMT Subject: C=BE, O=GlobalSign nv-sa, CN=GlobalSign Atlas R3 DV TLS CA 2023 Q3 - OCSP Responder Subject Public Key Info: Public Key Algorithm: rsaEncryption RSA Public-Key: (2048 bit) Modulus: 00:87:eb:2d:61:2b:80:cc:35:93:5f:4b:0e:bc:5d: c4:d2:57:0e:8a:84:c4:0f:23:d0:84:a8:70:1e:46: d3:ad:2e:55:ac:ca:8b:a8:59:4f:a8:69:93:5b:3b: 52:78:d3:35:19:37:25:5e:6d:27:f1:37:70:d9:14: 06:4e:02:7e:f3:d6:f9:58:72:10:fe:39:61:6f:66: ce:33:53:8a:90:4f:4f:7a:a2:66:9f:cd:55:4b:13: 54:cc:3b:50:7b:3a:86:fc:94:bc:c5:31:40:51:c8: 54:e6:0b:c4:a4:92:e8:f7:ed:7e:7a:20:8e:ca:85: 83:7e:ad:22:57:35:ec:f9:78:da:bf:3d:26:48:80: b2:71:bb:3f:f1:12:83:06:3d:be:56:f6:4e:8d:ec: 8c:4c:c4:ed:ba:56:c5:b2:fb:87:33:ed:51:69:44: 83:be:d1:3d:9d:c3:87:c8:c7:be:23:51:a6:83:df: f5:a3:0f:56:d9:6c:d3:0f:5a:53:aa:b8:53:54:5e: e4:1c:05:8c:3d:64:19:d3:e8:e7:49:51:cf:ba:40: a7:f6:92:4a:1d:26:b6:cc:9e:72:1f:45:21:da:b6: 0b:42:b4:8a:49:d6:67:74:4e:0d:03:d9:92:71:a1: ec:57:a9:6f:c6:73:f0:3f:bf:6f:ca:b2:c0:69:de: 63:97 Exponent: 65537 (0x10001) X509v3 extensions: OCSP No Check: X509v3 Key Usage: critical Digital Signature X509v3 Extended Key Usage: OCSP Signing X509v3 Subject Key Identifier: 09:9D:05:DB:67:0C:24:D2:B7:64:CE:F8:90:0D:C0:FB:49:26:F0:05 X509v3 Basic Constraints: critical CA:FALSE X509v3 Authority Key Identifier: keyid:ED:A0:E6:01:05:3E:34:82:1A:A4:4F:5F:C5:BD:11:41:AA:DF:F3:61 Signature Algorithm: sha256WithRSAEncryption 1b:ad:32:49:eb:bb:39:3d:2b:06:e8:1d:4c:05:d6:4d:50:4d: af:e2:2c:9b:36:43:89:d5:94:9a:6f:74:48:46:eb:c4:74:ea: 04:38:44:53:3d:29:e1:a9:ee:98:9d:6c:c8:a4:a8:09:46:c8: 04:f8:1a:f3:80:90:d3:35:ee:bf:27:28:4e:fd:d3:c2:5d:65: 3b:32:47:f1:72:43:02:3f:14:97:86:8c:6a:61:58:dd:56:b6: 79:2c:54:be:a7:a6:e4:3a:15:ce:32:42:ae:65:b8:fd:c5:83: b2:ea:a8:53:b8:8b:82:45:54:55:ff:8c:d7:45:0e:a9:4b:e9: bd:98:a7:af:14:04:56:3f:c1:51:c0:15:86:05:f4:db:e5:40: 0f:40:57:52:a0:9a:25:eb:af:b9:87:0e:50:f1:0f:ea:59:fd: ed:a0:b7:89:fc:52:77:43:ac:ee:0c:e2:e5:27:eb:e7:c4:d6: ae:03:58:d8:f5:fc:14:0b:bc:3b:36:69:6c:e5:86:4c:c7:51: 87:e1:af:6c:2c:db:fa:89:8b:2d:27:19:23:3b:53:e0:e8:57: ec:48:48:e5:e2:5a:fb:e3:e0:a9:8b:b4:a5:e6:ed:b6:ff:2c: a9:ba:4a:f6:73:07:bd:74:fc:bf:24:0c:d0:cf:ed:4c:f8:5d: e4:c3:87:33 -----BEGIN CERTIFICATE----- MIID0zCCArugAwIBAgIQAZNYYHGEVM8tNHyJdd5bmTANBgkqhkiG9w0BAQsFADBY MQswCQYDVQQGEwJCRTEZMBcGA1UEChMQR2xvYmFsU2lnbiBudi1zYTEuMCwGA1UE AxMlR2xvYmFsU2lnbiBBdGxhcyBSMyBEViBUTFMgQ0EgMjAyMyBRMzAeFw0yNDA0 MjQxMzAzMzNaFw0yNDA1MDExMzAzMzNaMGkxCzAJBgNVBAYTAkJFMRkwFwYDVQQK DBBHbG9iYWxTaWduIG52LXNhMT8wPQYDVQQDDDZHbG9iYWxTaWduIEF0bGFzIFIz IERWIFRMUyBDQSAyMDIzIFEzIC0gT0NTUCBSZXNwb25kZXIwggEiMA0GCSqGSIb3 DQEBAQUAA4IBDwAwggEKAoIBAQCH6y1hK4DMNZNfSw68XcTSVw6KhMQPI9CEqHAe RtOtLlWsyouoWU+oaZNbO1J40zUZNyVebSfxN3DZFAZOAn7z1vlYchD+OWFvZs4z U4qQT096omafzVVLE1TMO1B7Oob8lLzFMUBRyFTmC8Skkuj37X56II7KhYN+rSJX Nez5eNq/PSZIgLJxuz/xEoMGPb5W9k6N7IxMxO26VsWy+4cz7VFpRIO+0T2dw4fI x74jUaaD3/WjD1bZbNMPWlOquFNUXuQcBYw9ZBnT6OdJUc+6QKf2kkodJrbMnnIf RSHatgtCtIpJ1md0Tg0D2ZJxoexXqW/Gc/A/v2/KssBp3mOXAgMBAAGjgYcwgYQw DwYJKwYBBQUHMAEFBAIFADAOBgNVHQ8BAf8EBAMCB4AwEwYDVR0lBAwwCgYIKwYB BQUHAwkwHQYDVR0OBBYEFAmdBdtnDCTSt2TO+JANwPtJJvAFMAwGA1UdEwEB/wQC MAAwHwYDVR0jBBgwFoAU7aDmAQU+NIIapE9fxb0RQarf82EwDQYJKoZIhvcNAQEL BQADggEBAButMknruzk9KwboHUwF1k1QTa/iLJs2Q4nVlJpvdEhG68R06gQ4RFM9 KeGp7pidbMikqAlGyAT4GvOAkNM17r8nKE7908JdZTsyR/FyQwI/FJeGjGphWN1W tnksVL6npuQ6Fc4yQq5luP3Fg7LqqFO4i4JFVFX/jNdFDqlL6b2Yp68UBFY/wVHA FYYF9NvlQA9AV1KgmiXrr7mHDlDxD+pZ/e2gt4n8UndDrO4M4uUn6+fE1q4DWNj1 /BQLvDs2aWzlhkzHUYfhr2ws2/qJiy0nGSM7U+DoV+xISOXiWvvj4KmLtKXm7bb/ LKm6SvZzB710/L8kDNDP7Uz4XeTDhzM= -----END CERTIFICATE----- ====================================== --- Certificate chain 0 s:CN = hearst.co.uk i:C = BE, O = GlobalSign nv-sa, CN = GlobalSign Atlas R3 DV TLS CA 2023 Q3 -----BEGIN CERTIFICATE----- MIIPWjCCDkKgAwIBAgIQASp8EZDl15+m8hE9Rp7NbDANBgkqhkiG9w0BAQsFADBY MQswCQYDVQQGEwJCRTEZMBcGA1UEChMQR2xvYmFsU2lnbiBudi1zYTEuMCwGA1UE AxMlR2xvYmFsU2lnbiBBdGxhcyBSMyBEViBUTFMgQ0EgMjAyMyBRMzAeFw0yMzA5 MjcxMTI0MjFaFw0yNDEwMjgxMTI0MjBaMBcxFTATBgNVBAMMDGhlYXJzdC5jby51 azCCASIwDQYJKoZIhvcNAQEBBQADggEPADCCAQoCggEBAJw/z2D0g2png6q51y+m kxpOHdsY3ydx+UeVq6ojMywsFqq1u8bvvFvG5/QjYXo8I4HG1gQU+JrL8Gwb5Zr2 0UjCifHqREyuDA3/3e+mJg2t2GY0exr3q+pFlt/a8zWA9m0Qv92QSVmvFF0q9kja MQb5YPAF9sNCetHURDL0fp1gya3XlMNh5LPzhgmJnvcenrJsrVQliFPSIschzuVm zHETtiYytCcuk7MKQpvtla9CEL2jVUOq7SXUnKU/hUG3X0wijx9b7SEzIsvZroXB Z5gd8H4l3C5dUPbSpeyfVMsuKo+ih4UqXpK1dqFAlkmgN7TJZtNI8cWYf11Dnpg7 zq8CAwEAAaOCDF8wggxbMIIJEwYDVR0RBIIJCjCCCQaCDGhlYXJzdC5jby51a4IV Ki5iYXphYXJhcnR3ZWVrLmNvLnVrghQqLmJhemFhcmF0d29yay5jby51a4IUKi5i YXphYXJzdW1taXQuY28udWuCDiouYmljeWNsaW5nLm5sgg8qLmJsb2dzLmVsbGUu ZXOCESouY2FyYW5kZHJpdmVyLmVzggsqLmNkbmRzLm5ldIIUKi5jb3Ntb3BvbGl0 YW4uY28udWuCESouY29zbW9wb2xpdGFuLml0ghUqLmNvdW50cnlsaXZpbmcuY28u dWuCGSouY291bnRyeWxpdmluZ3Nob3AuY28udWuCECouY3JlY2VyZmVsaXouZXOC DiouZGVsaXNoLmNvLnVrghAqLmRpZXptaW51dG9zLmVzghIqLmRpZ2l0YWxzcHku Y28udWuCECouZGlnaXRhbHNweS5jb22CDCouZWxsZS5jby5qcIIJKi5lbGxlLml0 ghUqLmVsbGViZWF1dHlhd2FyZHMuaXSCDiouZWxsZWRlY29yLml0ghYqLmVsbGVk ZWNvcmF0aW9uLmNvLnVrggwqLmVsbGV1ay5jb22CDyouZXNxdWlyZS5jby51a4Ib Ki5maW5hbmNpYWxseWZhYnVsb3VzLmNvLnVrgg8qLmZvdG9ncmFtYXMuZXOCCiou Z2lvaWEuaXSCGCouZ29vZGhvdXNla2VlcGluZy5jby51a4IVKi5oYXJwZXJzYmF6 YWFyLmNvLnVrghIqLmhhcnBlcnNiYXphYXIuanCCDiouaGRpZ2l0YWwubmV0gg4q LmhlYXJzdC5jby51a4ILKi5oZWFyc3QuaXSCGyouaGVhcnN0Y29udGVudGFnZW5j eS5jby51a4IZKi5oZWFyc3Rjb250ZW50YWdlbmN5LmNvbYIRKi5oZWFyc3RnYW1l cy5jb22CESouaGVhcnN0Z2FtZXMubmV0ghsqLmhlYXJzdGdsb2JhbHNvbHV0aW9u cy5jb22CHSouaGVhcnN0bWFnYXppbmVzZGlyZWN0LmNvLnVrghYqLmhvdXNlYmVh dXRpZnVsLmNvLnVrghEqLmphbi1tYWdhemluZS5ubIIQKi5tYXJpZWNsYWlyZS5p dIISKi5tZW5zaGVhbHRoLmNvLnVrgg8qLm1lbnNoZWFsdGguZXOCDyoubWVuc2hl YWx0aC5ubIITKi5taWNhc2FyZXZpc3RhLmNvbYIRKi5uZXRkb2N0b3IuY28udWuC DSoucHJpbWEuY28udWuCFyoucHJpbmNlc3MuaGRpZ2l0YWwubmV0ghcqLnByaW5j ZXNzam91cm5leS5jby51a4IPKi5xdWVtZWRpY2VzLmVzggoqLnF1ZXN0Lm5sgg0q LnF1b3RlbmV0Lm5sghEqLnJlZG9ubGluZS5jby51a4IPKi5ydW5uZXJzd2ViLm5s ghQqLnJ1bm5lcnN3b3JsZC5jby51a4INKi5zYWxvbnFwLmNvbYIZKi50b3duYW5k Y291bnRyeW1hZy5jby51a4IRKi53b21lbnNoZWFsdGguZXOCGCoud29tZW5zaGVh bHRobGl2ZS5jby51a4IXKi53b21lbnNoZWFsdGhtYWcuY28udWuCFCoud29tZW5z aGVhbHRobWFnLm5sghNiYXphYXJhcnR3ZWVrLmNvLnVrghJiYXphYXJhdHdvcmsu Y28udWuCEmJhemFhcnN1bW1pdC5jby51a4IMYmljeWNsaW5nLm5sgg1ibG9ncy5l bGxlLmVzgg9jYXJhbmRkcml2ZXIuZXOCD2Nvc21vcG9saXRhbi5pdIITY291bnRy eWxpdmluZy5jby51a4IXY291bnRyeWxpdmluZ3Nob3AuY28udWuCDmNyZWNlcmZl bGl6LmVzggxkZWxpc2guY28udWuCDmRpZXptaW51dG9zLmVzghBkaWdpdGFsc3B5 LmNvLnVrgg5kaWdpdGFsc3B5LmNvbYIKZWxsZS5jby5qcIIHZWxsZS5pdIITZWxs ZWJlYXV0eWF3YXJkcy5pdIIMZWxsZWRlY29yLml0ghRlbGxlZGVjb3JhdGlvbi5j by51a4IKZWxsZXVrLmNvbYINZXNxdWlyZS5jby51a4IZZmluYW5jaWFsbHlmYWJ1 bG91cy5jby51a4INZm90b2dyYW1hcy5lc4IIZ2lvaWEuaXSCFmdvb2Rob3VzZWtl ZXBpbmcuY28udWuCE2hhcnBlcnNiYXphYXIuY28udWuCEGhhcnBlcnNiYXphYXIu anCCCWhlYXJzdC5pdIIZaGVhcnN0Y29udGVudGFnZW5jeS5jby51a4IXaGVhcnN0 Y29udGVudGFnZW5jeS5jb22CEGhlYXJzdGdsb2JhbC5jb22CGWhlYXJzdGdsb2Jh bHNvbHV0aW9ucy5jb22CG2hlYXJzdG1hZ2F6aW5lc2RpcmVjdC5jby51a4IUaG91 c2ViZWF1dGlmdWwuY28udWuCEGluc2lkZXNvYXAuY28udWuCD2phbi1tYWdhemlu ZS5ubIIObWFyaWVjbGFpcmUuaXSCEG1lbnNoZWFsdGguY28udWuCDW1lbnNoZWFs dGguZXOCDW1lbnNoZWFsdGgubmyCEW1pY2FzYXJldmlzdGEuY29tgg9uZXRkb2N0 b3IuY28udWuCC3ByaW1hLmNvLnVrghVwcmluY2Vzc2pvdXJuZXkuY28udWuCDXF1 ZW1lZGljZXMuZXOCCHF1ZXN0Lm5sggtxdW90ZW5ldC5ubIIPcmVkb25saW5lLmNv LnVrgg1ydW5uZXJzd2ViLm5sghJydW5uZXJzd29ybGQuY28udWuCC3NhbG9ucXAu Y29tghd0b3duYW5kY291bnRyeW1hZy5jby51a4IPd29tZW5zaGVhbHRoLmVzghZ3 b21lbnNoZWFsdGhsaXZlLmNvLnVrghV3b21lbnNoZWFsdGhtYWcuY28udWuCEndv bWVuc2hlYWx0aG1hZy5ubIILKi5oZWFyc3QuZXOCCWhlYXJzdC5lc4IWKi5oZWFy c3RtYWdhemluZS5jby51a4IUaGVhcnN0bWFnYXppbmUuY28udWswDgYDVR0PAQH/ BAQDAgWgMB0GA1UdJQQWMBQGCCsGAQUFBwMBBggrBgEFBQcDAjAdBgNVHQ4EFgQU plEOFXPI073m2sC4nqNH1fxDLrwwVwYDVR0gBFAwTjAIBgZngQwBAgEwQgYKKwYB BAGgMgoBAzA0MDIGCCsGAQUFBwIBFiZodHRwczovL3d3dy5nbG9iYWxzaWduLmNv bS9yZXBvc2l0b3J5LzAMBgNVHRMBAf8EAjAAMIGeBggrBgEFBQcBAQSBkTCBjjBA BggrBgEFBQcwAYY0aHR0cDovL29jc3AuZ2xvYmFsc2lnbi5jb20vY2EvZ3NhdGxh c3IzZHZ0bHNjYTIwMjNxMzBKBggrBgEFBQcwAoY+aHR0cDovL3NlY3VyZS5nbG9i YWxzaWduLmNvbS9jYWNlcnQvZ3NhdGxhc3IzZHZ0bHNjYTIwMjNxMy5jcnQwHwYD VR0jBBgwFoAU7aDmAQU+NIIapE9fxb0RQarf82EwSAYDVR0fBEEwPzA9oDugOYY3 aHR0cDovL2NybC5nbG9iYWxzaWduLmNvbS9jYS9nc2F0bGFzcjNkdnRsc2NhMjAy M3EzLmNybDCCAX8GCisGAQQB1nkCBAIEggFvBIIBawFpAHcAdv+IPwq2+5VRwmHM 9Ye6NLSkzbsp3GhCCp/mZ0xaOnQAAAGK1mIRpwAABAMASDBGAiEAi+lX0YCn14SY y6sDZh024aODvDCJh3jYsd8XNiDAXhkCIQDiAuSHo8KRUrtKRnVjqqJ1n9S2Cq4b 7o7i9FLI2is0NQB3ANq2v2s/tbYin5vCu1xr6HCRcWy7UYSFNL2kPTBI1/urAAAB itZiEhEAAAQDAEgwRgIhAJ0zLd+ypDuGrpGnIeg9c2ILygOHnkJopZUSskjK1sYQ AiEA+L5svztXG8ghdTfG1o7Fn1sAwBdVJsYRusaKAPp0NNEAdQBIsONr2qZHNA/l agL6nTDrHFIBy1bdLIHZu7+rOdiEcwAAAYrWYhSKAAAEAwBGMEQCIDL1FrwKki8Z UConkOBOfIYTvnLnzWxHaUq8/slwBNCcAiAfLr5m2pURt/6jwrP21dvXiPVp0dj/ Xnj6I8ceIyGtVzANBgkqhkiG9w0BAQsFAAOCAQEAlagVZzaERerBGzDCiPzlHhBM q7/rNhNcQeFpfXWb5EZIG4tPLTzS+v80i7A1JrfKgeXG9Q8OcOO67ak8FqF76V0H crh3Gls0Gn/0D6P+cfrLIGgc2PJkjnMr+pHV5n7Cfe5D6iddr6Y1rk/PFiTDKJSu PIgPQ12RN5LOdtWswODeD8Yj59zcT8QL5oYb03djaK+FAH19xXyNFy8ch7xWx88B XH7gNGUDTmiH+8FWmXaBoOh2Y8PQVPMSQsTr2Tzji2c1zbzPniX5uDldr84mRvRU T+x9yHkvXZW8ti0kqQhYUrsNLI92mHFiOao9NefTg4JkeFKBt5Qz3KtN8KaCng== -----END CERTIFICATE----- 1 s:C = BE, O = GlobalSign nv-sa, CN = GlobalSign Atlas R3 DV TLS CA 2023 Q3 i:OU = GlobalSign Root CA - R3, O = GlobalSign, CN = GlobalSign -----BEGIN CERTIFICATE----- MIIEjzCCA3egAwIBAgIQfofCoyWydLv6vJDWxShlXjANBgkqhkiG9w0BAQsFADBM MSAwHgYDVQQLExdHbG9iYWxTaWduIFJvb3QgQ0EgLSBSMzETMBEGA1UEChMKR2xv YmFsU2lnbjETMBEGA1UEAxMKR2xvYmFsU2lnbjAeFw0yMzA0MTkwMzUyMzJaFw0y NTA0MTkwMDAwMDBaMFgxCzAJBgNVBAYTAkJFMRkwFwYDVQQKExBHbG9iYWxTaWdu IG52LXNhMS4wLAYDVQQDEyVHbG9iYWxTaWduIEF0bGFzIFIzIERWIFRMUyBDQSAy MDIzIFEzMIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAoH0SSUPDlZS1 Mc7W61LrUP+4J4g3vOnyefyPHSF4jWAXvjS1jo4ZGE7jvPc3H7w/RlH6bQw9tgis BXq/mHMwdBA3XEPQyZcoT2Tqf5YZ7Nl2/os9AE2XZ9+l3KFSw9toZJNbKry6vJau obJtqu1zC67LT+LrP6z66udM5x3xZk8JYWb8asI8gVdUm5o7kkearoN8PEBnIQHI xw6hsd+VZXwWV82O+XvTFpXLsFE/wYrsA7/PcodHVDzaNXbf3ppyRoZuatX1vAH0 GWDIZnIpqLf7yerhL5+ILWAACnQ77HcV6eS8Dp9pfbqQxTGylh1ynQ/IqOzKQwtA h+tDbAYcdwIDAQABo4IBXzCCAVswDgYDVR0PAQH/BAQDAgGGMB0GA1UdJQQWMBQG CCsGAQUFBwMBBggrBgEFBQcDAjASBgNVHRMBAf8ECDAGAQH/AgEAMB0GA1UdDgQW BBTtoOYBBT40ghqkT1/FvRFBqt/zYTAfBgNVHSMEGDAWgBSP8Et/qC5FJK5NUPpj move4t0bvDB7BggrBgEFBQcBAQRvMG0wLgYIKwYBBQUHMAGGImh0dHA6Ly9vY3Nw Mi5nbG9iYWxzaWduLmNvbS9yb290cjMwOwYIKwYBBQUHMAKGL2h0dHA6Ly9zZWN1 cmUuZ2xvYmFsc2lnbi5jb20vY2FjZXJ0L3Jvb3QtcjMuY3J0MDYGA1UdHwQvMC0w K6ApoCeGJWh0dHA6Ly9jcmwuZ2xvYmFsc2lnbi5jb20vcm9vdC1yMy5jcmwwIQYD VR0gBBowGDAIBgZngQwBAgEwDAYKKwYBBAGgMgoBAzANBgkqhkiG9w0BAQsFAAOC AQEAeCQukRcvr4vivbdfLulvgh+u4njzq5VVLa+6jUup8grih9tHMu+qUAo0HY56 2lBYdrF2c6UwTIv7nLPVuxtxFu/+iznc6q26uzaMo/EHIC1P1nspO86nq8fh6Aqq pn0eENfADthF/JaLbQ27DfkrrV5w/wgz9TH1TfYy3/jF6yTaZk6C97E0iR2HAhBR dknoZ2Nd+Lb2W1BB9o5umEeMgw4LsVU5HPEmEh6fj/zIAo3CO0EGkc+Fs0zToMQx cUjA64nXmL0P09OLMnT/ObJhnftZQsRUFhoCdnSIP4p2RwjKbGQXpFeOih8hNTJ3 2LduNzj/aVv/K6qMH95aCmxINw== -----END CERTIFICATE----- --- Server certificate subject=CN = hearst.co.uk issuer=C = BE, O = GlobalSign nv-sa, CN = GlobalSign Atlas R3 DV TLS CA 2023 Q3 --- No client certificate CA names sent Peer signing digest: SHA256 Peer signature type: RSA-PSS Server Temp Key: X25519, 253 bits --- SSL handshake has read 7124 bytes and written 389 bytes Verification error: unable to get local issuer certificate --- New, TLSv1.3, Cipher is TLS_AES_128_GCM_SHA256 Server public key is 2048 bit Secure Renegotiation IS NOT supported Compression: NONE Expansion: NONE No ALPN negotiated Early data was not sent Verify return code: 20 (unable to get local issuer certificate) --- DONE --- Post-Handshake New Session Ticket arrived: SSL-Session: Protocol : TLSv1.3 Cipher : TLS_AES_128_GCM_SHA256 Session-ID: FBD9309A25C2FE42684FE13C4721AE061285F84C29BF7E7B6C0285FACBDBD185 Session-ID-ctx: Resumption PSK: 02300780210263830BD29D77653B7265ABD2D95ECBE863912A02AB704DE9AD23 PSK identity: None PSK identity hint: None SRP username: None TLS session ticket lifetime hint: 3600 (seconds) TLS session ticket: 0000 - 91 39 4a ec b5 5c dc 9d-fe 95 b4 87 6c 01 4a 68 .9J..\......l.Jh 0010 - dd b6 3f eb 42 be 0c 54-f6 08 9f 21 07 d0 c1 3a ..?.B..T...!...: 0020 - 60 ac 25 c5 3e 21 eb 49-ec 9c 7f 2f 76 03 41 c7 `.%.>!.I.../v.A. 0030 - ee 11 59 d7 9d 18 b7 e8-89 c1 a6 c3 4c 9a a5 ba ..Y.........L... 0040 - 79 f4 ac ff a4 bd c9 69-2c 01 19 92 cf b1 90 e0 y......i,....... 0050 - ef 47 fe 14 b8 41 1b 9a-91 8e a5 db 10 4a ed d2 .G...A.......J.. 0060 - e5 22 be 2f b8 be 35 f3-74 fa c4 f4 42 04 6a f6 ."./..5.t...B.j. 0070 - 5f d3 e1 ea 3a e6 18 1b-4a 44 4c b1 f2 5f 85 d9 _...:...JDL.._.. 0080 - f6 1c 0a 84 7d 80 8e bf-83 c5 95 24 c0 6b b9 66 ....}......$.k.f 0090 - b9 3f 35 0c f4 0b 46 d4-58 04 b2 a6 ac 0a 85 4a .?5...F.X......J Start Time: 1714006477 Timeout : 7200 (sec) Verify return code: 20 (unable to get local issuer certificate) Extended master secret: no Max Early Data: 8192 --- read R BLOCK