jetty / jetty.project

Eclipse Jetty® - Web Container & Clients - supports HTTP/2, HTTP/1.1, HTTP/1.0, websocket, servlets, and more
https://eclipse.dev/jetty
Other
3.81k stars 1.9k forks source link

Jetty http2 client idle_timeout when trying to get the session after connected to Jetty HTTP2 server #1859

Closed WilliamGlob closed 6 years ago

WilliamGlob commented 6 years ago

Hello team,

I am trying to use Jetty 9.4.7 + JDK1.8.0_141 as the HTTP2 client. During trying to set up the connection to my Jetty HTTP2 server, it seems that the handshake process is successful, however, the HTTP2 client session failed to be retrieved with idle_timeout. It seems that when trying to negotiate using ALPN, the ALPN code part is not gone through. I requested the help from Jetty user mailing list two days ago, and got the help from Simone Bordet sbordet@webtide.com. Simone investigated the client logs, and told me to file an issue. Below is the detail. Could you please have the further investigation? If it is a bug, could you please give a workaround before the fix?

  1. Coding Actually I used the jetty sample client code. The difference is that I put it to an project, and use the ant to build out a WAR file for the deployment.

In below code, after “session = sessionPromise.get(5, TimeUnit.SECONDS);” is executed, my test result shows that “The retrieved session is null” is printed. So the client session failed to be retrieved.

//---------------------------------------------------------------------------------------------------------------- // Fetch/Create and start HTTP2Client. FuturePromise sessionPromise = new FuturePromise<>(); HTTP2Client client = null;

              // createHttp2Connection(host, port);
              PLogger.warn("Creating Http2 connection to " + host + ":" + port);
              ALPN.debug = true;
              SslContextFactory sslContextFactory = new SslContextFactory(true);
              // sslContextFactory.addExcludeCipherSuites("TLS_DHE_RSA.*");
              client = new HTTP2Client();
              client.addBean(sslContextFactory);

              try {
                      client.start();
              } catch (Exception e2) {
                      e2.printStackTrace();
              }

              client.connect(sslContextFactory,
                                        new InetSocketAddress(host, port),      
                                        new ServerSessionListener.Adapter(), sessionPromise);

              long connTime = System.currentTimeMillis();

              PLogger.warn("Connected to " + host + ":" + port + " in ms" + (connTime - startTime));
              // Obtain the client Session object.
              Session session = null;
              try {
                      session = sessionPromise.get(5, TimeUnit.SECONDS);
              } catch (InterruptedException | ExecutionException | TimeoutException e1) {
                      e1.printStackTrace();
              }

              if (null == session) {
                      PLogger.warn("The retrieved session is null");
              } else {
                      PLogger.warn("Successfully retrieved session");
              }

              long sessionTime = System.currentTimeMillis();
              PLogger.warn("POST session in ms" + (sessionTime - connTime) + " to " + host + ":" + port);

              // Prepare the HTTP request headers.
              HttpFields requestFields = new HttpFields();
              requestFields.put("User-Agent", client.getClass().getName() + "/" + Jetty.VERSION);
              requestFields.put("Content-Type", "application/xml");

              // Prepare the HTTP request object.
              MetaData.Request request = new MetaData.Request( "POST",
                               new HttpURI("https://" + host + ":" + port + "/MyROOT/mysubUrl"),
                               HttpVersion.HTTP_2, requestFields);
              // Create the HTTP/2 HEADERS frame representing the HTTP request.
              HeadersFrame headersFrame = new HeadersFrame(request, null, false);

              CountDownLatch latch = new CountDownLatch(1);

              // Prepare the listener to receive the HTTP response frames.
              Stream.Listener responseListener = new Stream.Listener.Adapter() {
                      @Override
                      public void onHeaders(Stream stream, HeadersFrame frame) {
                               int duration1 = (int) TimeUnit.NANOSECONDS.toSeconds(System.currentTimeMillis() - sessionTime);
                               if (frame.isEndStream())
                                        latch.countDown();
                               PLogger.warn("After ms" + duration1 + " get headers");
                      }

                      @Override
                      public void onData(Stream stream, DataFrame frame, Callback callback) {
                               byte[] bytes = new byte[frame.getData().remaining()];
                               frame.getData().get(bytes);
                               int duration = (int) TimeUnit.NANOSECONDS.toSeconds(System.currentTimeMillis() - sessionTime);
                               PLogger.warn("After ms" + duration + " get " + new String(bytes));
                               callback.succeeded();

                               if (frame.isEndStream())
                                        latch.countDown();

                      }
              };

              // Send the HEADERS frame to create a stream.
              FuturePromise<Stream> streamPromise = new FuturePromise<Stream>();
              if (null == session) {
                      PLogger.warn("The session is null"); 
                      return;
              }

              session.newStream(headersFrame, streamPromise, responseListener);

//----------------------------------------------------------------------------------------------------------------

  1. Testing environment 2.1 HTTP2 client 2.1.1 JDK: 1.8.0_141

    java -version

    openjdk version "1.8.0_141" OpenJDK Runtime Environment (build 1.8.0_141-b16) OpenJDK 64-Bit Server VM (build 25.141-b16, mixed mode)

2.1.2 ALPN: Change RUN_ARGS in $JETTY_HOME/bin/jetty.sh to include the alpn bootclasspath. RUN_ARGS=(-Xbootclasspath/p:/opt/ppsvr-jetty-instances/ppsvr0/lib/alpn/alpn-boot-8.1.11.v20170118.jar -jar "$JETTY_START" ${JETTY_ARGS[*]} ${JETTY_OPTIONS[@]})

$JETTY_HOME/modules/alpn-impl/alpn-1.8.0_141.mod, also change: [exec] -Xbootclasspath/p:/opt/ppsvr-jetty-instances/ppsvr0/lib/alpn/alpn-boot-8.1.11.v20170118.jar

2.1.3 The libs used in the client side (some may not be used actually): alpn-api-1.1.3.v20160715.jar http2-client-9.4.7.v20170914.jar http2-common-9.4.7.v20170914.jar http2-hpack-9.4.7.v20170914.jar http2-http-client-transport-9.4.7.v20170914.jar http2-server-9.4.7.v20170914.jar jetty-alpn-client-9.4.7.v20170914.jar jetty-client-9.4.7.v20170914.jar jetty-http-9.4.7.v20170914.jar jetty-io-9.4.7.v20170914.jar jetty-util-9.4.7.v20170914.jar

2.2 Jetty HTTP2 server JDK: 1.8.0_101

java -version

openjdk version "1.8.0_101" OpenJDK Runtime Environment (build 1.8.0_101-b13) OpenJDK 64-Bit Server VM (build 25.101-b13, mixed mode)

Jetty version: 9.4.7.v20170914

ALPN: $JETTY_HOME/modules/alpn-impl/alpn-1.8.0_101.mod, set below line [exec] -Xbootclasspath/p:lib/alpn/alpn-boot-8.1.9.v20160720.jar

  1. The client side logs:


    found key for : jetty chain [0] = [ [ Version: V3 Subject: CN=Alex Wang, OU=NCAPI, O=MN, L=Qingdao, ST=Shandong, C=CN Signature Algorithm: SHA256withRSA, OID = 1.2.840.113549.1.1.11

    Key: Sun RSA public key, 2048 bits modulus: 18852951151110675860393995343672814225442265189737291319557289053215686106858116751411874611940186193360326834002486875862888850837302127145446322988238927055166813313545417868320596593368864228176345553178129978050495363543073526502117868756680137961651623324637302033105514800660577354076835035459540748881691120799157580888887601279270255119689043421057370738643697416024521176829158686716513046197290151859311419767368476062965791897247056185865854067769152765284869549518765293979436451628728699388351500056351035095551260537981958828019831603325986534543231165727537381961128038672375265223900832994037390827009 public exponent: 65537 Validity: [From: Tue Aug 22 15:25:31 CST 2017, To: Mon Nov 20 15:25:31 CST 2017] Issuer: CN=Alex Wang, OU=NCAPI, O=MN, L=Qingdao, ST=Shandong, C=CN SerialNumber: [ 040426ea]

Certificate Extensions: 1 [1]: ObjectId: 2.5.29.14 Criticality=false SubjectKeyIdentifier [ KeyIdentifier [ 0000: 13 A8 4F 3B 39 9E 22 23 EA 98 4D 5F 16 EE 87 E1 ..O;9."#..M_.... 0010: 71 DB EB 97 q... ] ]

] Algorithm: [SHA256withRSA] Signature: 0000: 64 9B 62 EB B0 A9 D6 1E B2 1A 9A 10 10 81 92 98 d.b............. 0010: 89 AF 00 B1 44 C6 12 CF 40 E6 DE F6 6E 17 76 69 ....D...@...n.vi 0020: D3 68 21 7A 53 4F E6 F2 99 DA 59 72 49 DC 33 CA .h!zSO....YrI.3. 0030: 92 50 32 98 2D 4C C6 FC 72 29 B0 7C C9 3F C7 59 .P2.-L..r)...?.Y 0040: 04 26 66 B7 09 BC AB 67 31 64 45 46 63 CB 91 3D .&f....g1dEFc..= 0050: 13 DE 96 24 35 A7 66 BF E4 51 C8 76 30 45 CF 2C ...$5.f..Q.v0E., 0060: 2E 61 D7 43 40 5C C7 2E DC B3 CE 61 5F 08 3A CA .a.C@.....a_.:. 0070: 36 DE B8 A3 BE 0E 60 66 A2 ED B9 29 02 50 7B C3 6.....`f...).P.. 0080: C5 CB 7A 02 C2 C7 75 DB 63 53 A6 67 12 1C C1 93 ..z...u.cS.g.... 0090: 69 40 25 D4 F5 77 5B 30 B1 4E E4 43 1A 3D EE C1 i@%..w[0.N.C.=.. 00A0: 1E C6 DE 11 78 FE 7B 7F 0A 0E 16 19 48 3B E8 EA ....x.......H;.. 00B0: 5D 29 1C 66 A9 8C 9D 04 10 CB 6A D6 35 1A B8 7D ]).f......j.5... 00C0: 84 62 12 D1 F4 AF DF F3 77 32 AB E6 1C 46 8F E4 .b......w2...F.. 00D0: 20 CD 71 41 C9 3A E6 E4 9A A6 51 D7 2D CA 08 34 .qA.:....Q.-..4 00E0: 22 09 99 CA 1F 47 DB 93 BD A5 4B 95 46 7F CB BE "....G....K.F... 00F0: 7B 47 A0 41 25 B9 DA 70 9C 49 36 A1 1B 2F CD C9 .G.A%..p.I6../..

]


adding as trusted cert: Subject: CN=Alex Wang, OU=NCAPI, O=MN, L=Qingdao, ST=Shandong, C=CN Issuer: CN=Alex Wang, OU=NCAPI, O=MN, L=Qingdao, ST=Shandong, C=CN Algorithm: RSA; Serial number: 0x40426ea Valid from Tue Aug 22 15:25:31 CST 2017 until Mon Nov 20 15:25:31 CST 2017

trigger seeding of SecureRandom done seeding SecureRandom Using SSLEngineImpl. trustStore is: /usr/lib/jvm/java-1.8.0-openjdk-1.8.0.141-1.b16.el7_3.x86_64/jre/lib/security/cacerts trustStore type is : jks trustStore provider is : init truststore adding as trusted cert: Subject: CN=Hongkong Post Root CA 1, O=Hongkong Post, C=HK Issuer: CN=Hongkong Post Root CA 1, O=Hongkong Post, C=HK Algorithm: RSA; Serial number: 0x3e8 Valid from Thu May 15 13:13:14 CST 2003 until Mon May 15 12:52:29 CST 2023

adding as trusted cert: Subject: CN=SecureTrust CA, O=SecureTrust Corporation, C=US Issuer: CN=SecureTrust CA, O=SecureTrust Corporation, C=US Algorithm: RSA; Serial number: 0xcf08e5c0816a5ad427ff0eb271859d0 Valid from Wed Nov 08 03:31:18 CST 2006 until Tue Jan 01 03:40:55 CST 2030

adding as trusted cert: Subject: CN=Entrust Root Certification Authority - EC1, OU="(c) 2012 Entrust, Inc. - for authorized use only", OU=See www.entrust.net/legal-terms, O="Entrust, Inc.", C=US Issuer: CN=Entrust Root Certification Authority - EC1, OU="(c) 2012 Entrust, Inc. - for authorized use only", OU=See www.entrust.net/legal-terms, O="Entrust, Inc.", C=US Algorithm: EC; Serial number: 0xa68b79290000000050d091f9 Valid from Tue Dec 18 23:25:36 CST 2012 until Fri Dec 18 23:55:36 CST 2037

adding as trusted cert: Subject: CN=DigiCert Global Root CA, OU=www.digicert.com, O=DigiCert Inc, C=US Issuer: CN=DigiCert Global Root CA, OU=www.digicert.com, O=DigiCert Inc, C=US Algorithm: RSA; Serial number: 0x83be056904246b1a1756ac95991c74a Valid from Fri Nov 10 08:00:00 CST 2006 until Mon Nov 10 08:00:00 CST 2031

adding as trusted cert: Subject: OU=Security Communication RootCA1, O=SECOM Trust.net, C=JP Issuer: OU=Security Communication RootCA1, O=SECOM Trust.net, C=JP Algorithm: RSA; Serial number: 0x0 Valid from Tue Sep 30 12:20:49 CST 2003 until Sat Sep 30 12:20:49 CST 2023

adding as trusted cert: Subject: CN=QuoVadis Root CA 2 G3, O=QuoVadis Limited, C=BM Issuer: CN=QuoVadis Root CA 2 G3, O=QuoVadis Limited, C=BM Algorithm: RSA; Serial number: 0x445734245b81899b35f2ceb82b3b5ba726f07528 Valid from Fri Jan 13 02:59:32 CST 2012 until Mon Jan 13 02:59:32 CST 2042

adding as trusted cert: Subject: CN=Hellenic Academic and Research Institutions RootCA 2015, O=Hellenic Academic and Research Institutions Cert. Authority, L=Athens, C=GR Issuer: CN=Hellenic Academic and Research Institutions RootCA 2015, O=Hellenic Academic and Research Institutions Cert. Authority, L=Athens, C=GR Algorithm: RSA; Serial number: 0x0 Valid from Tue Jul 07 18:11:21 CST 2015 until Sat Jun 30 18:11:21 CST 2040

adding as trusted cert: Subject: CN=DigiCert Trusted Root G4, OU=www.digicert.com, O=DigiCert Inc, C=US Issuer: CN=DigiCert Trusted Root G4, OU=www.digicert.com, O=DigiCert Inc, C=US Algorithm: RSA; Serial number: 0x59b1b579e8e2132e23907bda777755c Valid from Thu Aug 01 20:00:00 CST 2013 until Fri Jan 15 20:00:00 CST 2038

adding as trusted cert: Subject: CN=Equifax Secure eBusiness CA-1, O=Equifax Secure Inc., C=US Issuer: CN=Equifax Secure eBusiness CA-1, O=Equifax Secure Inc., C=US Algorithm: RSA; Serial number: 0x4 Valid from Mon Jun 21 12:00:00 CST 1999 until Sun Jun 21 12:00:00 CST 2020

adding as trusted cert: Subject: EMAILADDRESS=info@valicert.com, CN=http://www.valicert.com/, OU=ValiCert Class 2 Policy Validation Authority, O="ValiCert, Inc.", L=ValiCert Validation Network Issuer: EMAILADDRESS=info@valicert.com, CN=http://www.valicert.com/, OU=ValiCert Class 2 Policy Validation Authority, O="ValiCert, Inc.", L=ValiCert Validation Network Algorithm: RSA; Serial number: 0x1 Valid from Sat Jun 26 08:19:54 CST 1999 until Wed Jun 26 08:19:54 CST 2019

adding as trusted cert: Subject: CN=GeoTrust Primary Certification Authority, O=GeoTrust Inc., C=US Issuer: CN=GeoTrust Primary Certification Authority, O=GeoTrust Inc., C=US Algorithm: RSA; Serial number: 0x18acb56afd69b6153a636cafdafac4a1 Valid from Mon Nov 27 08:00:00 CST 2006 until Thu Jul 17 07:59:59 CST 2036

adding as trusted cert: Subject: CN=Hellenic Academic and Research Institutions ECC RootCA 2015, O=Hellenic Academic and Research Institutions Cert. Authority, L=Athens, C=GR Issuer: CN=Hellenic Academic and Research Institutions ECC RootCA 2015, O=Hellenic Academic and Research Institutions Cert. Authority, L=Athens, C=GR Algorithm: EC; Serial number: 0x0 Valid from Tue Jul 07 18:37:12 CST 2015 until Sat Jun 30 18:37:12 CST 2040

adding as trusted cert: Subject: CN=OpenTrust Root CA G1, O=OpenTrust, C=FR Issuer: CN=OpenTrust Root CA G1, O=OpenTrust, C=FR Algorithm: RSA; Serial number: 0x1120b39055397d7f366d64c2a79f6b638e67 Valid from Mon May 26 16:45:50 CST 2014 until Fri Jan 15 08:00:00 CST 2038

adding as trusted cert: Subject: O=T?RKTRUST Bilgi ?leti?im ve Bili?im G?venli?i Hizmetleri A.?. (c) Aral?k 2007, L=Ankara, C=TR, CN=T?RKTRUST Elektronik Sertifika Hizmet Sa?lay?c?s? Issuer: O=T?RKTRUST Bilgi ?leti?im ve Bili?im G?venli?i Hizmetleri A.?. (c) Aral?k 2007, L=Ankara, C=TR, CN=T?RKTRUST Elektronik Sertifika Hizmet Sa?lay?c?s? Algorithm: RSA; Serial number: 0x1 Valid from Wed Dec 26 02:37:19 CST 2007 until Sat Dec 23 02:37:19 CST 2017

adding as trusted cert: Subject: OU=Security Communication RootCA2, O="SECOM Trust Systems CO.,LTD.", C=JP Issuer: OU=Security Communication RootCA2, O="SECOM Trust Systems CO.,LTD.", C=JP Algorithm: RSA; Serial number: 0x0 Valid from Fri May 29 13:00:39 CST 2009 until Tue May 29 13:00:39 CST 2029

adding as trusted cert: Subject: OU=VeriSign Trust Network, OU="(c) 1998 VeriSign, Inc. - For authorized use only", OU=Class 3 Public Primary Certification Authority - G2, O="VeriSign, Inc.", C=US Issuer: OU=VeriSign Trust Network, OU="(c) 1998 VeriSign, Inc. - For authorized use only", OU=Class 3 Public Primary Certification Authority - G2, O="VeriSign, Inc.", C=US Algorithm: RSA; Serial number: 0x7dd9fe07cfa81eb7107967fba78934c6 Valid from Mon May 18 08:00:00 CST 1998 until Wed Aug 02 07:59:59 CST 2028

adding as trusted cert: Subject: OU=ePKI Root Certification Authority, O="Chunghwa Telecom Co., Ltd.", C=TW Issuer: OU=ePKI Root Certification Authority, O="Chunghwa Telecom Co., Ltd.", C=TW Algorithm: RSA; Serial number: 0x15c8bd65475cafb897005ee406d2bc9d Valid from Mon Dec 20 10:31:27 CST 2004 until Wed Dec 20 10:31:27 CST 2034

adding as trusted cert: Subject: CN=Equifax Secure Global eBusiness CA-1, O=Equifax Secure Inc., C=US Issuer: CN=Equifax Secure Global eBusiness CA-1, O=Equifax Secure Inc., C=US Algorithm: RSA; Serial number: 0x1 Valid from Mon Jun 21 12:00:00 CST 1999 until Sun Jun 21 12:00:00 CST 2020

adding as trusted cert: Subject: CN=AffirmTrust Commercial, O=AffirmTrust, C=US Issuer: CN=AffirmTrust Commercial, O=AffirmTrust, C=US Algorithm: RSA; Serial number: 0x7777062726a9b17c Valid from Fri Jan 29 22:06:06 CST 2010 until Tue Dec 31 22:06:06 CST 2030

adding as trusted cert: Subject: CN=Certum Trusted Network CA, OU=Certum Certification Authority, O=Unizeto Technologies S.A., C=PL Issuer: CN=Certum Trusted Network CA, OU=Certum Certification Authority, O=Unizeto Technologies S.A., C=PL Algorithm: RSA; Serial number: 0x444c0 Valid from Wed Oct 22 20:07:37 CST 2008 until Mon Dec 31 20:07:37 CST 2029

adding as trusted cert: Subject: CN=StartCom Certification Authority, OU=Secure Digital Certificate Signing, O=StartCom Ltd., C=IL Issuer: CN=StartCom Certification Authority, OU=Secure Digital Certificate Signing, O=StartCom Ltd., C=IL Algorithm: RSA; Serial number: 0x1 Valid from Mon Sep 18 03:46:36 CST 2006 until Thu Sep 18 03:46:36 CST 2036

adding as trusted cert: Subject: CN=Certinomis - Autorit? Racine, OU=0002 433998903, O=Certinomis, C=FR Issuer: CN=Certinomis - Autorit? Racine, OU=0002 433998903, O=Certinomis, C=FR Algorithm: RSA; Serial number: 0x1 Valid from Wed Sep 17 16:28:59 CST 2008 until Sun Sep 17 16:28:59 CST 2028

adding as trusted cert: Subject: CN=DST ACES CA X6, OU=DST ACES, O=Digital Signature Trust, C=US Issuer: CN=DST ACES CA X6, OU=DST ACES, O=Digital Signature Trust, C=US Algorithm: RSA; Serial number: 0xd5e990ad69db778ecd807563b8615d9 Valid from Fri Nov 21 05:19:58 CST 2003 until Tue Nov 21 05:19:58 CST 2017

adding as trusted cert: Subject: CN=XRamp Global Certification Authority, O=XRamp Security Services Inc, OU=www.xrampsecurity.com, C=US Issuer: CN=XRamp Global Certification Authority, O=XRamp Security Services Inc, OU=www.xrampsecurity.com, C=US Algorithm: RSA; Serial number: 0x50946cec18ead59c4dd597ef758fa0ad Valid from Tue Nov 02 01:14:04 CST 2004 until Mon Jan 01 13:37:19 CST 2035

adding as trusted cert: Subject: CN=EC-ACC, OU=Jerarquia Entitats de Certificacio Catalanes, OU=Vegeu https://www.catcert.net/verarrel (c)03, OU=Serveis Publics de Certificacio, O=Agencia Catalana de Certificacio (NIF Q-0801176-I), C=ES Issuer: CN=EC-ACC, OU=Jerarquia Entitats de Certificacio Catalanes, OU=Vegeu https://www.catcert.net/verarrel (c)03, OU=Serveis Publics de Certificacio, O=Agencia Catalana de Certificacio (NIF Q-0801176-I), C=ES Algorithm: RSA; Serial number: 0x-11d4c2142bde21eb579d53fb0c223bff Valid from Wed Jan 08 07:00:00 CST 2003 until Wed Jan 08 06:59:59 CST 2031

adding as trusted cert: Subject: CN=CA Disig Root R1, O=Disig a.s., L=Bratislava, C=SK Issuer: CN=CA Disig Root R1, O=Disig a.s., L=Bratislava, C=SK Algorithm: RSA; Serial number: 0xc3039aee50906e28 Valid from Thu Jul 19 17:06:56 CST 2012 until Sat Jul 19 17:06:56 CST 2042

adding as trusted cert: Subject: CN=Sonera Class2 CA, O=Sonera, C=FI Issuer: CN=Sonera Class2 CA, O=Sonera, C=FI Algorithm: RSA; Serial number: 0x1d Valid from Fri Apr 06 15:29:40 CST 2001 until Tue Apr 06 15:29:40 CST 2021

adding as trusted cert: Subject: CN=GeoTrust Primary Certification Authority - G2, OU=(c) 2007 GeoTrust Inc. - For authorized use only, O=GeoTrust Inc., C=US Issuer: CN=GeoTrust Primary Certification Authority - G2, OU=(c) 2007 GeoTrust Inc. - For authorized use only, O=GeoTrust Inc., C=US Algorithm: EC; Serial number: 0x3cb2f4480a00e2feeb243b5e603ec36b Valid from Mon Nov 05 08:00:00 CST 2007 until Tue Jan 19 07:59:59 CST 2038

adding as trusted cert: Subject: OU=Equifax Secure Certificate Authority, O=Equifax, C=US Issuer: OU=Equifax Secure Certificate Authority, O=Equifax, C=US Algorithm: RSA; Serial number: 0x35def4cf Valid from Sun Aug 23 00:41:51 CST 1998 until Thu Aug 23 00:41:51 CST 2018

adding as trusted cert: Subject: CN=COMODO ECC Certification Authority, O=COMODO CA Limited, L=Salford, ST=Greater Manchester, C=GB Issuer: CN=COMODO ECC Certification Authority, O=COMODO CA Limited, L=Salford, ST=Greater Manchester, C=GB Algorithm: EC; Serial number: 0x1f47afaa62007050544c019e9b63992a Valid from Thu Mar 06 08:00:00 CST 2008 until Tue Jan 19 07:59:59 CST 2038

adding as trusted cert: Subject: CN=CA ?????, O=WoSign CA Limited, C=CN Issuer: CN=CA ?????, O=WoSign CA Limited, C=CN Algorithm: RSA; Serial number: 0x50706bcdd813fc1b4e3b3372d211488d Valid from Sat Aug 08 09:00:01 CST 2009 until Mon Aug 08 09:00:01 CST 2039

adding as trusted cert: Subject: CN=Certinomis - Root CA, OU=0002 433998903, O=Certinomis, C=FR Issuer: CN=Certinomis - Root CA, OU=0002 433998903, O=Certinomis, C=FR Algorithm: RSA; Serial number: 0x1 Valid from Mon Oct 21 17:17:18 CST 2013 until Fri Oct 21 17:17:18 CST 2033

adding as trusted cert: Subject: CN=ISRG Root X1, O=Internet Security Research Group, C=US Issuer: CN=ISRG Root X1, O=Internet Security Research Group, C=US Algorithm: RSA; Serial number: 0x8210cfb0d240e3594463e0bb63828b00 Valid from Thu Jun 04 19:04:38 CST 2015 until Mon Jun 04 19:04:38 CST 2035

adding as trusted cert: Subject: CN=DigiCert High Assurance EV Root CA, OU=www.digicert.com, O=DigiCert Inc, C=US Issuer: CN=DigiCert High Assurance EV Root CA, OU=www.digicert.com, O=DigiCert Inc, C=US Algorithm: RSA; Serial number: 0x2ac5c266a0b409b8f0b79f2ae462577 Valid from Fri Nov 10 08:00:00 CST 2006 until Mon Nov 10 08:00:00 CST 2031

adding as trusted cert: Subject: CN=GlobalSign, O=GlobalSign, OU=GlobalSign Root CA - R3 Issuer: CN=GlobalSign, O=GlobalSign, OU=GlobalSign Root CA - R3 Algorithm: RSA; Serial number: 0x4000000000121585308a2 Valid from Wed Mar 18 18:00:00 CST 2009 until Sun Mar 18 18:00:00 CST 2029

adding as trusted cert: Subject: CN=GeoTrust Universal CA, O=GeoTrust Inc., C=US Issuer: CN=GeoTrust Universal CA, O=GeoTrust Inc., C=US Algorithm: RSA; Serial number: 0x1 Valid from Thu Mar 04 13:00:00 CST 2004 until Sun Mar 04 13:00:00 CST 2029

adding as trusted cert: Subject: CN=Certification Authority of WoSign, O=WoSign CA Limited, C=CN Issuer: CN=Certification Authority of WoSign, O=WoSign CA Limited, C=CN Algorithm: RSA; Serial number: 0x5e68d61171946350560068f33ec9c591 Valid from Sat Aug 08 09:00:01 CST 2009 until Mon Aug 08 09:00:01 CST 2039

adding as trusted cert: Subject: CN=GeoTrust Universal CA 2, O=GeoTrust Inc., C=US Issuer: CN=GeoTrust Universal CA 2, O=GeoTrust Inc., C=US Algorithm: RSA; Serial number: 0x1 Valid from Thu Mar 04 13:00:00 CST 2004 until Sun Mar 04 13:00:00 CST 2029

adding as trusted cert: Subject: CN=Baltimore CyberTrust Root, OU=CyberTrust, O=Baltimore, C=IE Issuer: CN=Baltimore CyberTrust Root, OU=CyberTrust, O=Baltimore, C=IE Algorithm: RSA; Serial number: 0x20000b9 Valid from Sat May 13 02:46:00 CST 2000 until Tue May 13 07:59:00 CST 2025

adding as trusted cert: Subject: OU=Starfield Class 2 Certification Authority, O="Starfield Technologies, Inc.", C=US Issuer: OU=Starfield Class 2 Certification Authority, O="Starfield Technologies, Inc.", C=US Algorithm: RSA; Serial number: 0x0 Valid from Wed Jun 30 01:39:16 CST 2004 until Fri Jun 30 01:39:16 CST 2034

adding as trusted cert: Subject: CN=AAA Certificate Services, O=Comodo CA Limited, L=Salford, ST=Greater Manchester, C=GB Issuer: CN=AAA Certificate Services, O=Comodo CA Limited, L=Salford, ST=Greater Manchester, C=GB Algorithm: RSA; Serial number: 0x1 Valid from Thu Jan 01 08:00:00 CST 2004 until Mon Jan 01 07:59:59 CST 2029

adding as trusted cert: Subject: CN=UTN-USERFirst-Hardware, OU=http://www.usertrust.com, O=The USERTRUST Network, L=Salt Lake City, ST=UT, C=US Issuer: CN=UTN-USERFirst-Hardware, OU=http://www.usertrust.com, O=The USERTRUST Network, L=Salt Lake City, ST=UT, C=US Algorithm: RSA; Serial number: 0x44be0c8b500024b411d3362afe650afd Valid from Sat Jul 10 02:10:42 CST 1999 until Wed Jul 10 02:19:22 CST 2019

adding as trusted cert: Subject: CN=Chambers of Commerce Root, OU=http://www.chambersign.org, O=AC Camerfirma SA CIF A82743287, C=EU Issuer: CN=Chambers of Commerce Root, OU=http://www.chambersign.org, O=AC Camerfirma SA CIF A82743287, C=EU Algorithm: RSA; Serial number: 0x0 Valid from Wed Oct 01 00:13:43 CST 2003 until Thu Oct 01 00:13:44 CST 2037

adding as trusted cert: Subject: CN=OpenTrust Root CA G2, O=OpenTrust, C=FR Issuer: CN=OpenTrust Root CA G2, O=OpenTrust, C=FR Algorithm: RSA; Serial number: 0x1120a1691bbfbdb9bd52968f23e848bf2611 Valid from Mon May 26 08:00:00 CST 2014 until Fri Jan 15 08:00:00 CST 2038

adding as trusted cert: Subject: CN=VeriSign Class 3 Public Primary Certification Authority - G3, OU="(c) 1999 VeriSign, Inc. - For authorized use only", OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US Issuer: CN=VeriSign Class 3 Public Primary Certification Authority - G3, OU="(c) 1999 VeriSign, Inc. - For authorized use only", OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US Algorithm: RSA; Serial number: 0x9b7e0649a33e62b9d5ee90487129ef57 Valid from Fri Oct 01 08:00:00 CST 1999 until Thu Jul 17 07:59:59 CST 2036

adding as trusted cert: Subject: OU=AC RAIZ FNMT-RCM, O=FNMT-RCM, C=ES Issuer: OU=AC RAIZ FNMT-RCM, O=FNMT-RCM, C=ES Algorithm: RSA; Serial number: 0x5d938d306736c8061d1ac754846907 Valid from Wed Oct 29 23:59:56 CST 2008 until Tue Jan 01 08:00:00 CST 2030

adding as trusted cert: Subject: CN=GlobalSign Root CA, OU=Root CA, O=GlobalSign nv-sa, C=BE Issuer: CN=GlobalSign Root CA, OU=Root CA, O=GlobalSign nv-sa, C=BE Algorithm: RSA; Serial number: 0x40000000001154b5ac394 Valid from Tue Sep 01 20:00:00 CST 1998 until Fri Jan 28 20:00:00 CST 2028

adding as trusted cert: Subject: CN=OpenTrust Root CA G3, O=OpenTrust, C=FR Issuer: CN=OpenTrust Root CA G3, O=OpenTrust, C=FR Algorithm: EC; Serial number: 0x1120e6f84cfc24b0be0540acda831b34603f Valid from Mon May 26 08:00:00 CST 2014 until Fri Jan 15 08:00:00 CST 2038

adding as trusted cert: Subject: CN=T?RKTRUST Elektronik Sertifika Hizmet Sa?lay?c?s? H5, O=T?RKTRUST Bilgi ?leti?im ve Bili?im G?venli?i Hizmetleri A.?., L=Ankara, C=TR Issuer: CN=T?RKTRUST Elektronik Sertifika Hizmet Sa?lay?c?s? H5, O=T?RKTRUST Bilgi ?leti?im ve Bili?im G?venli?i Hizmetleri A.?., L=Ankara, C=TR Algorithm: RSA; Serial number: 0x8e17fe242081 Valid from Tue Apr 30 16:07:01 CST 2013 until Fri Apr 28 16:07:01 CST 2023

adding as trusted cert: Subject: CN=AffirmTrust Networking, O=AffirmTrust, C=US Issuer: CN=AffirmTrust Networking, O=AffirmTrust, C=US Algorithm: RSA; Serial number: 0x7c4f04391cd4992d Valid from Fri Jan 29 22:08:24 CST 2010 until Tue Dec 31 22:08:24 CST 2030

adding as trusted cert: Subject: CN=TWCA Global Root CA, OU=Root CA, O=TAIWAN-CA, C=TW Issuer: CN=TWCA Global Root CA, OU=Root CA, O=TAIWAN-CA, C=TW Algorithm: RSA; Serial number: 0xcbe Valid from Wed Jun 27 14:28:33 CST 2012 until Tue Dec 31 23:59:59 CST 2030

adding as trusted cert: Subject: CN=AffirmTrust Premium, O=AffirmTrust, C=US Issuer: CN=AffirmTrust Premium, O=AffirmTrust, C=US Algorithm: RSA; Serial number: 0x6d8c1446b1a60aee Valid from Fri Jan 29 22:10:36 CST 2010 until Mon Dec 31 22:10:36 CST 2040

adding as trusted cert: Subject: CN=NetLock Expressz (Class C) Tanusitvanykiado, OU=Tanusitvanykiadok, O=NetLock Halozatbiztonsagi Kft., L=Budapest, C=HU Issuer: CN=NetLock Expressz (Class C) Tanusitvanykiado, OU=Tanusitvanykiadok, O=NetLock Halozatbiztonsagi Kft., L=Budapest, C=HU Algorithm: RSA; Serial number: 0x68 Valid from Thu Feb 25 22:08:11 CST 1999 until Wed Feb 20 22:08:11 CST 2019

adding as trusted cert: Subject: O=Government Root Certification Authority, C=TW Issuer: O=Government Root Certification Authority, C=TW Algorithm: RSA; Serial number: 0x1f9d595ad72fc20644a5800869e35ef6 Valid from Thu Dec 05 21:23:33 CST 2002 until Sun Dec 05 21:23:33 CST 2032

adding as trusted cert: Subject: CN=GeoTrust Primary Certification Authority - G3, OU=(c) 2008 GeoTrust Inc. - For authorized use only, O=GeoTrust Inc., C=US Issuer: CN=GeoTrust Primary Certification Authority - G3, OU=(c) 2008 GeoTrust Inc. - For authorized use only, O=GeoTrust Inc., C=US Algorithm: RSA; Serial number: 0x15ac6e9419b2794b41f627a9c3180f1f Valid from Wed Apr 02 08:00:00 CST 2008 until Wed Dec 02 07:59:59 CST 2037

adding as trusted cert: Subject: CN=TWCA Root Certification Authority, OU=Root CA, O=TAIWAN-CA, C=TW Issuer: CN=TWCA Root Certification Authority, OU=Root CA, O=TAIWAN-CA, C=TW Algorithm: RSA; Serial number: 0x1 Valid from Thu Aug 28 15:24:33 CST 2008 until Tue Dec 31 23:59:59 CST 2030

adding as trusted cert: Subject: CN=LuxTrust Global Root 2, O=LuxTrust S.A., C=LU Issuer: CN=LuxTrust Global Root 2, O=LuxTrust S.A., C=LU Algorithm: RSA; Serial number: 0xa7ea6df4b449eda6a24859ee6b815d3167fbbb1 Valid from Thu Mar 05 21:21:57 CST 2015 until Mon Mar 05 21:21:57 CST 2035

adding as trusted cert: Subject: C=DE, O=Atos, CN=Atos TrustedRoot 2011 Issuer: C=DE, O=Atos, CN=Atos TrustedRoot 2011 Algorithm: RSA; Serial number: 0x5c33cb622c5fb332 Valid from Thu Jul 07 22:58:30 CST 2011 until Wed Jan 01 07:59:59 CST 2031

adding as trusted cert: Subject: CN=Chambers of Commerce Root - 2008, O=AC Camerfirma S.A., SERIALNUMBER=A82743287, L=Madrid (see current address at www.camerfirma.com/address), C=EU Issuer: CN=Chambers of Commerce Root - 2008, O=AC Camerfirma S.A., SERIALNUMBER=A82743287, L=Madrid (see current address at www.camerfirma.com/address), C=EU Algorithm: RSA; Serial number: 0xa3da427ea4b1aeda Valid from Fri Aug 01 20:29:50 CST 2008 until Sat Jul 31 20:29:50 CST 2038

adding as trusted cert: Subject: CN=SecureSign RootCA11, O="Japan Certification Services, Inc.", C=JP Issuer: CN=SecureSign RootCA11, O="Japan Certification Services, Inc.", C=JP Algorithm: RSA; Serial number: 0x1 Valid from Wed Apr 08 12:56:47 CST 2009 until Sun Apr 08 12:56:47 CST 2029

adding as trusted cert: Subject: CN=SwissSign Silver CA - G2, O=SwissSign AG, C=CH Issuer: CN=SwissSign Silver CA - G2, O=SwissSign AG, C=CH Algorithm: RSA; Serial number: 0x4f1bd42f54bb2f4b Valid from Wed Oct 25 16:32:46 CST 2006 until Sat Oct 25 16:32:46 CST 2036

adding as trusted cert: Subject: CN=CNNIC ROOT, O=CNNIC, C=CN Issuer: CN=CNNIC ROOT, O=CNNIC, C=CN Algorithm: RSA; Serial number: 0x49330001 Valid from Mon Apr 16 15:09:14 CST 2007 until Fri Apr 16 15:09:14 CST 2027

adding as trusted cert: Subject: CN=Entrust Root Certification Authority - G2, OU="(c) 2009 Entrust, Inc. - for authorized use only", OU=See www.entrust.net/legal-terms, O="Entrust, Inc.", C=US Issuer: CN=Entrust Root Certification Authority - G2, OU="(c) 2009 Entrust, Inc. - for authorized use only", OU=See www.entrust.net/legal-terms, O="Entrust, Inc.", C=US Algorithm: RSA; Serial number: 0x4a538c28 Valid from Wed Jul 08 01:25:54 CST 2009 until Sun Dec 08 01:55:54 CST 2030

adding as trusted cert: Subject: OU=Go Daddy Class 2 Certification Authority, O="The Go Daddy Group, Inc.", C=US Issuer: OU=Go Daddy Class 2 Certification Authority, O="The Go Daddy Group, Inc.", C=US Algorithm: RSA; Serial number: 0x0 Valid from Wed Jun 30 01:06:20 CST 2004 until Fri Jun 30 01:06:20 CST 2034

adding as trusted cert: Subject: CN=DigiCert Assured ID Root CA, OU=www.digicert.com, O=DigiCert Inc, C=US Issuer: CN=DigiCert Assured ID Root CA, OU=www.digicert.com, O=DigiCert Inc, C=US Algorithm: RSA; Serial number: 0xce7e0e517d846fe8fe560fc1bf03039 Valid from Fri Nov 10 08:00:00 CST 2006 until Mon Nov 10 08:00:00 CST 2031

adding as trusted cert: Subject: CN=TUBITAK Kamu SM SSL Kok Sertifikasi - Surum 1, OU=Kamu Sertifikasyon Merkezi - Kamu SM, O=Turkiye Bilimsel ve Teknolojik Arastirma Kurumu - TUBITAK, L=Gebze - Kocaeli, C=TR Issuer: CN=TUBITAK Kamu SM SSL Kok Sertifikasi - Surum 1, OU=Kamu Sertifikasyon Merkezi - Kamu SM, O=Turkiye Bilimsel ve Teknolojik Arastirma Kurumu - TUBITAK, L=Gebze - Kocaeli, C=TR Algorithm: RSA; Serial number: 0x1 Valid from Mon Nov 25 16:25:55 CST 2013 until Sun Oct 25 16:25:55 CST 2043

adding as trusted cert: Subject: CN=Secure Global CA, O=SecureTrust Corporation, C=US Issuer: CN=Secure Global CA, O=SecureTrust Corporation, C=US Algorithm: RSA; Serial number: 0x75622a4e8d48a894df413c8f0f8eaa5 Valid from Wed Nov 08 03:42:28 CST 2006 until Tue Jan 01 03:52:06 CST 2030

adding as trusted cert: Subject: EMAILADDRESS=info@valicert.com, CN=http://www.valicert.com/, OU=ValiCert Class 3 Policy Validation Authority, O="ValiCert, Inc.", L=ValiCert Validation Network Issuer: EMAILADDRESS=info@valicert.com, CN=http://www.valicert.com/, OU=ValiCert Class 3 Policy Validation Authority, O="ValiCert, Inc.", L=ValiCert Validation Network Algorithm: RSA; Serial number: 0x1 Valid from Sat Jun 26 08:22:33 CST 1999 until Wed Jun 26 08:22:33 CST 2019

adding as trusted cert: Subject: CN=AddTrust External CA Root, OU=AddTrust External TTP Network, O=AddTrust AB, C=SE Issuer: CN=AddTrust External CA Root, OU=AddTrust External TTP Network, O=AddTrust AB, C=SE Algorithm: RSA; Serial number: 0x1 Valid from Tue May 30 18:48:38 CST 2000 until Sat May 30 18:48:38 CST 2020

adding as trusted cert: Subject: CN=Secure Certificate Services, O=Comodo CA Limited, L=Salford, ST=Greater Manchester, C=GB Issuer: CN=Secure Certificate Services, O=Comodo CA Limited, L=Salford, ST=Greater Manchester, C=GB Algorithm: RSA; Serial number: 0x1 Valid from Thu Jan 01 08:00:00 CST 2004 until Mon Jan 01 07:59:59 CST 2029

adding as trusted cert: Subject: CN=T-TeleSec GlobalRoot Class 3, OU=T-Systems Trust Center, O=T-Systems Enterprise Services GmbH, C=DE Issuer: CN=T-TeleSec GlobalRoot Class 3, OU=T-Systems Trust Center, O=T-Systems Enterprise Services GmbH, C=DE Algorithm: RSA; Serial number: 0x1 Valid from Wed Oct 01 18:29:56 CST 2008 until Sun Oct 02 07:59:59 CST 2033

adding as trusted cert: Subject: CN=DigiCert Global Root G3, OU=www.digicert.com, O=DigiCert Inc, C=US Issuer: CN=DigiCert Global Root G3, OU=www.digicert.com, O=DigiCert Inc, C=US Algorithm: EC; Serial number: 0x55556bcf25ea43535c3a40fd5ab4572 Valid from Thu Aug 01 20:00:00 CST 2013 until Fri Jan 15 20:00:00 CST 2038

adding as trusted cert: Subject: CN=Swisscom Root CA 1, OU=Digital Certificate Services, O=Swisscom, C=ch Issuer: CN=Swisscom Root CA 1, OU=Digital Certificate Services, O=Swisscom, C=ch Algorithm: RSA; Serial number: 0x5c0b855c0be75941df57cc3f7f9da836 Valid from Thu Aug 18 20:06:20 CST 2005 until Tue Aug 19 06:06:20 CST 2025

adding as trusted cert: Subject: CN=PSCProcert, C=VE, O=Sistema Nacional de Certificacion Electronica, OU=Proveedor de Certificados PROCERT, ST=Miranda, L=Chacao, EMAILADDRESS=contacto@procert.net.ve Issuer: EMAILADDRESS=acraiz@suscerte.gob.ve, OU=Superintendencia de Servicios de Certificacion Electronica, O=Sistema Nacional de Certificacion Electronica, ST=Distrito Capital, L=Caracas, C=VE, CN=Autoridad de Certificacion Raiz del Estado Venezolano Algorithm: RSA; Serial number: 0xb Valid from Wed Dec 29 00:51:00 CST 2010 until Sat Dec 26 07:59:59 CST 2020

adding as trusted cert: Subject: CN=GeoTrust Global CA 2, O=GeoTrust Inc., C=US Issuer: CN=GeoTrust Global CA 2, O=GeoTrust Inc., C=US Algorithm: RSA; Serial number: 0x1 Valid from Thu Mar 04 13:00:00 CST 2004 until Mon Mar 04 13:00:00 CST 2019

adding as trusted cert: Subject: CN=Class 2 Primary CA, O=Certplus, C=FR Issuer: CN=Class 2 Primary CA, O=Certplus, C=FR Algorithm: RSA; Serial number: 0x85bd4bf3d8dae369f694d75fc3a54423 Valid from Thu Jul 08 01:05:00 CST 1999 until Sun Jul 07 07:59:59 CST 2019

adding as trusted cert: Subject: CN=OISTE WISeKey Global Root GA CA, OU=OISTE Foundation Endorsed, OU=Copyright (c) 2005, O=WISeKey, C=CH Issuer: CN=OISTE WISeKey Global Root GA CA, OU=OISTE Foundation Endorsed, OU=Copyright (c) 2005, O=WISeKey, C=CH Algorithm: RSA; Serial number: 0x413d72c7f46b1f81437df1d22854df9a Valid from Mon Dec 12 00:03:44 CST 2005 until Sat Dec 12 00:09:51 CST 2037

adding as trusted cert: Subject: EMAILADDRESS=premium-server@thawte.com, CN=Thawte Premium Server CA, OU=Certification Services Division, O=Thawte Consulting cc, L=Cape Town, ST=Western Cape, C=ZA Issuer: EMAILADDRESS=premium-server@thawte.com, CN=Thawte Premium Server CA, OU=Certification Services Division, O=Thawte Consulting cc, L=Cape Town, ST=Western Cape, C=ZA Algorithm: RSA; Serial number: 0x1 Valid from Thu Aug 01 08:00:00 CST 1996 until Fri Jan 01 07:59:59 CST 2021

adding as trusted cert: Subject: CN=GeoTrust Global CA, O=GeoTrust Inc., C=US Issuer: CN=GeoTrust Global CA, O=GeoTrust Inc., C=US Algorithm: RSA; Serial number: 0x23456 Valid from Tue May 21 12:00:00 CST 2002 until Sat May 21 12:00:00 CST 2022

adding as trusted cert: Subject: CN=Network Solutions Certificate Authority, O=Network Solutions L.L.C., C=US Issuer: CN=Network Solutions Certificate Authority, O=Network Solutions L.L.C., C=US Algorithm: RSA; Serial number: 0x57cb336fc25c16e6471617e3903168e0 Valid from Fri Dec 01 08:00:00 CST 2006 until Tue Jan 01 07:59:59 CST 2030

adding as trusted cert: Subject: CN=CFCA EV ROOT, O=China Financial Certification Authority, C=CN Issuer: CN=CFCA EV ROOT, O=China Financial Certification Authority, C=CN Algorithm: RSA; Serial number: 0x184accd6 Valid from Wed Aug 08 11:07:01 CST 2012 until Mon Dec 31 11:07:01 CST 2029

adding as trusted cert: Subject: CN=GlobalSign, O=GlobalSign, OU=GlobalSign ECC Root CA - R5 Issuer: CN=GlobalSign, O=GlobalSign, OU=GlobalSign ECC Root CA - R5 Algorithm: EC; Serial number: 0x605949e0262ebb55f90a778a71f94ad86c Valid from Tue Nov 13 08:00:00 CST 2012 until Tue Jan 19 11:14:07 CST 2038

adding as trusted cert: Subject: CN=Hellenic Academic and Research Institutions RootCA 2011, O=Hellenic Academic and Research Institutions Cert. Authority, C=GR Issuer: CN=Hellenic Academic and Research Institutions RootCA 2011, O=Hellenic Academic and Research Institutions Cert. Authority, C=GR Algorithm: RSA; Serial number: 0x0 Valid from Tue Dec 06 21:49:52 CST 2011 until Mon Dec 01 21:49:52 CST 2031

adding as trusted cert: Subject: CN=CA WoSign ECC Root, O=WoSign CA Limited, C=CN Issuer: CN=CA WoSign ECC Root, O=WoSign CA Limited, C=CN Algorithm: EC; Serial number: 0x684a5870806bf08f02faf6dee8b09090 Valid from Sat Nov 08 08:58:58 CST 2014 until Tue Nov 08 08:58:58 CST 2044

adding as trusted cert: Subject: CN=Starfield Root Certificate Authority - G2, O="Starfield Technologies, Inc.", L=Scottsdale, ST=Arizona, C=US Issuer: CN=Starfield Root Certificate Authority - G2, O="Starfield Technologies, Inc.", L=Scottsdale, ST=Arizona, C=US Algorithm: RSA; Serial number: 0x0 Valid from Tue Sep 01 08:00:00 CST 2009 until Fri Jan 01 07:59:59 CST 2038

adding as trusted cert: Subject: CN=Certum Trusted Network CA 2, OU=Certum Certification Authority, O=Unizeto Technologies S.A., C=PL Issuer: CN=Certum Trusted Network CA 2, OU=Certum Certification Authority, O=Unizeto Technologies S.A., C=PL Algorithm: RSA; Serial number: 0x21d6d04a4f250fc93237fcaa5e128de9 Valid from Thu Oct 06 16:39:56 CST 2011 until Sat Oct 06 16:39:56 CST 2046

adding as trusted cert: Subject: CN=Entrust.net Certification Authority (2048), OU=(c) 1999 Entrust.net Limited, OU=www.entrust.net/CPS_2048 incorp. by ref. (limits liab.), O=Entrust.net Issuer: CN=Entrust.net Certification Authority (2048), OU=(c) 1999 Entrust.net Limited, OU=www.entrust.net/CPS_2048 incorp. by ref. (limits liab.), O=Entrust.net Algorithm: RSA; Serial number: 0x3863def8 Valid from Sat Dec 25 01:50:51 CST 1999 until Tue Jul 24 22:15:12 CST 2029

adding as trusted cert: Subject: CN=IdenTrust Public Sector Root CA 1, O=IdenTrust, C=US Issuer: CN=IdenTrust Public Sector Root CA 1, O=IdenTrust, C=US Algorithm: RSA; Serial number: 0xa0142800000014523cf467c00000002 Valid from Fri Jan 17 01:53:32 CST 2014 until Tue Jan 17 01:53:32 CST 2034

adding as trusted cert: Subject: CN=Staat der Nederlanden Root CA - G3, O=Staat der Nederlanden, C=NL Issuer: CN=Staat der Nederlanden Root CA - G3, O=Staat der Nederlanden, C=NL Algorithm: RSA; Serial number: 0x98a239 Valid from Thu Nov 14 19:28:42 CST 2013 until Tue Nov 14 07:00:00 CST 2028

adding as trusted cert: Subject: CN=TeliaSonera Root CA v1, O=TeliaSonera Issuer: CN=TeliaSonera Root CA v1, O=TeliaSonera Algorithm: RSA; Serial number: 0x95be16a0f72e46f17b398272fa8bcd96 Valid from Thu Oct 18 20:00:50 CST 2007 until Mon Oct 18 20:00:50 CST 2032

adding as trusted cert: Subject: CN=thawte Primary Root CA, OU="(c) 2006 thawte, Inc. - For authorized use only", OU=Certification Services Division, O="thawte, Inc.", C=US Issuer: CN=thawte Primary Root CA, OU="(c) 2006 thawte, Inc. - For authorized use only", OU=Certification Services Division, O="thawte, Inc.", C=US Algorithm: RSA; Serial number: 0x344ed55720d5edec49f42fce37db2b6d Valid from Fri Nov 17 08:00:00 CST 2006 until Thu Jul 17 07:59:59 CST 2036

adding as trusted cert: Subject: EMAILADDRESS=server-certs@thawte.com, CN=Thawte Server CA, OU=Certification Services Division, O=Thawte Consulting cc, L=Cape Town, ST=Western Cape, C=ZA Issuer: EMAILADDRESS=server-certs@thawte.com, CN=Thawte Server CA, OU=Certification Services Division, O=Thawte Consulting cc, L=Cape Town, ST=Western Cape, C=ZA Algorithm: RSA; Serial number: 0x1 Valid from Thu Aug 01 08:00:00 CST 1996 until Fri Jan 01 07:59:59 CST 2021

adding as trusted cert: Subject: CN=Go Daddy Root Certificate Authority - G2, O="GoDaddy.com, Inc.", L=Scottsdale, ST=Arizona, C=US Issuer: CN=Go Daddy Root Certificate Authority - G2, O="GoDaddy.com, Inc.", L=Scottsdale, ST=Arizona, C=US Algorithm: RSA; Serial number: 0x0 Valid from Tue Sep 01 08:00:00 CST 2009 until Fri Jan 01 07:59:59 CST 2038

adding as trusted cert: Subject: CN=Visa eCommerce Root, OU=Visa International Service Association, O=VISA, C=US Issuer: CN=Visa eCommerce Root, OU=Visa International Service Association, O=VISA, C=US Algorithm: RSA; Serial number: 0x1386354d1d3f06f2c1f96505d5901c62 Valid from Wed Jun 26 10:18:36 CST 2002 until Fri Jun 24 08:16:12 CST 2022

adding as trusted cert: Subject: CN=VeriSign Class 3 Public Primary Certification Authority - G4, OU="(c) 2007 VeriSign, Inc. - For authorized use only", OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US Issuer: CN=VeriSign Class 3 Public Primary Certification Authority - G4, OU="(c) 2007 VeriSign, Inc. - For authorized use only", OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US Algorithm: EC; Serial number: 0x2f80fe238c0e220f486712289187acb3 Valid from Mon Nov 05 08:00:00 CST 2007 until Tue Jan 19 07:59:59 CST 2038

adding as trusted cert: Subject: CN=Staat der Nederlanden EV Root CA, O=Staat der Nederlanden, C=NL Issuer: CN=Staat der Nederlanden EV Root CA, O=Staat der Nederlanden, C=NL Algorithm: RSA; Serial number: 0x98968d Valid from Wed Dec 08 19:19:29 CST 2010 until Thu Dec 08 19:10:28 CST 2022

adding as trusted cert: Subject: CN=Entrust Root Certification Authority, OU="(c) 2006 Entrust, Inc.", OU=www.entrust.net/CPS is incorporated by reference, O="Entrust, Inc.", C=US Issuer: CN=Entrust Root Certification Authority, OU="(c) 2006 Entrust, Inc.", OU=www.entrust.net/CPS is incorporated by reference, O="Entrust, Inc.", C=US Algorithm: RSA; Serial number: 0x456b5054 Valid from Tue Nov 28 04:23:42 CST 2006 until Sat Nov 28 04:53:42 CST 2026

adding as trusted cert: Subject: CN=Certification Authority of WoSign G2, O=WoSign CA Limited, C=CN Issuer: CN=Certification Authority of WoSign G2, O=WoSign CA Limited, C=CN Algorithm: RSA; Serial number: 0x6b25da8a889d7cbc0f05b3b17a614544 Valid from Sat Nov 08 08:58:58 CST 2014 until Tue Nov 08 08:58:58 CST 2044

adding as trusted cert: Subject: CN=DigiCert Assured ID Root G2, OU=www.digicert.com, O=DigiCert Inc, C=US Issuer: CN=DigiCert Assured ID Root G2, OU=www.digicert.com, O=DigiCert Inc, C=US Algorithm: RSA; Serial number: 0xb931c3ad63967ea6723bfc3af9af44b Valid from Thu Aug 01 20:00:00 CST 2013 until Fri Jan 15 20:00:00 CST 2038

adding as trusted cert: Subject: CN=Amazon Root CA 4, O=Amazon, C=US Issuer: CN=Amazon Root CA 4, O=Amazon, C=US Algorithm: EC; Serial number: 0x66c9fd7c1bb104c2943e5717b7b2cc81ac10e Valid from Tue May 26 08:00:00 CST 2015 until Sat May 26 08:00:00 CST 2040

adding as trusted cert: Subject: CN=StartCom Certification Authority, OU=Secure Digital Certificate Signing, O=StartCom Ltd., C=IL Issuer: CN=StartCom Certification Authority, OU=Secure Digital Certificate Signing, O=StartCom Ltd., C=IL Algorithm: RSA; Serial number: 0x2d Valid from Mon Sep 18 03:46:37 CST 2006 until Thu Sep 18 03:46:36 CST 2036

adding as trusted cert: Subject: CN=Certum CA, O=Unizeto Sp. z o.o., C=PL Issuer: CN=Certum CA, O=Unizeto Sp. z o.o., C=PL Algorithm: RSA; Serial number: 0x10020 Valid from Tue Jun 11 18:46:39 CST 2002 until Fri Jun 11 18:46:39 CST 2027

adding as trusted cert: Subject: CN=CA Disig Root R2, O=Disig a.s., L=Bratislava, C=SK Issuer: CN=CA Disig Root R2, O=Disig a.s., L=Bratislava, C=SK Algorithm: RSA; Serial number: 0x92b888dbb08ac163 Valid from Thu Jul 19 17:15:30 CST 2012 until Sat Jul 19 17:15:30 CST 2042

adding as trusted cert: Subject: CN=AddTrust Qualified CA Root, OU=AddTrust TTP Network, O=AddTrust AB, C=SE Issuer: CN=AddTrust Qualified CA Root, OU=AddTrust TTP Network, O=AddTrust AB, C=SE Algorithm: RSA; Serial number: 0x1 Valid from Tue May 30 18:44:50 CST 2000 until Sat May 30 18:44:50 CST 2020

adding as trusted cert: Subject: CN=DST Root CA X3, O=Digital Signature Trust Co. Issuer: CN=DST Root CA X3, O=Digital Signature Trust Co. Algorithm: RSA; Serial number: 0x44afb080d6a327ba893039862ef8406b Valid from Sun Oct 01 05:12:19 CST 2000 until Thu Sep 30 22:01:15 CST 2021

adding as trusted cert: Subject: CN=Buypass Class 2 Root CA, O=Buypass AS-983163327, C=NO Issuer: CN=Buypass Class 2 Root CA, O=Buypass AS-983163327, C=NO Algorithm: RSA; Serial number: 0x2 Valid from Tue Oct 26 16:38:03 CST 2010 until Fri Oct 26 16:38:03 CST 2040

adding as trusted cert: Subject: OU=Class 3 Public Primary Certification Authority, O="VeriSign, Inc.", C=US Issuer: OU=Class 3 Public Primary Certification Authority, O="VeriSign, Inc.", C=US Algorithm: RSA; Serial number: 0x70bae41d10d92934b638ca7b03ccbabf Valid from Mon Jan 29 08:00:00 CST 1996 until Wed Aug 02 07:59:59 CST 2028

adding as trusted cert: Subject: CN=D-TRUST Root Class 3 CA 2 EV 2009, O=D-Trust GmbH, C=DE Issuer: CN=D-TRUST Root Class 3 CA 2 EV 2009, O=D-Trust GmbH, C=DE Algorithm: RSA; Serial number: 0x983f4 Valid from Thu Nov 05 16:50:46 CST 2009 until Mon Nov 05 16:50:46 CST 2029

adding as trusted cert: Subject: CN=DigiCert Assured ID Root G3, OU=www.digicert.com, O=DigiCert Inc, C=US Issuer: CN=DigiCert Assured ID Root G3, OU=www.digicert.com, O=DigiCert Inc, C=US Algorithm: EC; Serial number: 0xba15afa1ddfa0b54944afcd24a06cec Valid from Thu Aug 01 20:00:00 CST 2013 until Fri Jan 15 20:00:00 CST 2038

adding as trusted cert: Subject: CN=SwissSign Gold CA - G2, O=SwissSign AG, C=CH Issuer: CN=SwissSign Gold CA - G2, O=SwissSign AG, C=CH Algorithm: RSA; Serial number: 0xbb401c43f55e4fb0 Valid from Wed Oct 25 16:30:35 CST 2006 until Sat Oct 25 16:30:35 CST 2036

adding as trusted cert: Subject: CN=USERTrust ECC Certification Authority, O=The USERTRUST Network, L=Jersey City, ST=New Jersey, C=US Issuer: CN=USERTrust ECC Certification Authority, O=The USERTRUST Network, L=Jersey City, ST=New Jersey, C=US Algorithm: EC; Serial number: 0x5c8b99c55a94c5d27156decd8980cc26 Valid from Mon Feb 01 08:00:00 CST 2010 until Tue Jan 19 07:59:59 CST 2038

adding as trusted cert: Subject: OU=certSIGN ROOT CA, O=certSIGN, C=RO Issuer: OU=certSIGN ROOT CA, O=certSIGN, C=RO Algorithm: RSA; Serial number: 0x200605167002 Valid from Wed Jul 05 01:20:04 CST 2006 until Sat Jul 05 01:20:04 CST 2031

adding as trusted cert: Subject: CN=QuoVadis Root CA 2, O=QuoVadis Limited, C=BM Issuer: CN=QuoVadis Root CA 2, O=QuoVadis Limited, C=BM Algorithm: RSA; Serial number: 0x509 Valid from Sat Nov 25 02:27:00 CST 2006 until Tue Nov 25 02:23:33 CST 2031

adding as trusted cert: Subject: CN=IdenTrust Commercial Root CA 1, O=IdenTrust, C=US Issuer: CN=IdenTrust Commercial Root CA 1, O=IdenTrust, C=US Algorithm: RSA; Serial number: 0xa0142800000014523c844b500000002 Valid from Fri Jan 17 02:12:23 CST 2014 until Tue Jan 17 02:12:23 CST 2034

adding as trusted cert: Subject: CN=QuoVadis Root CA 1 G3, O=QuoVadis Limited, C=BM Issuer: CN=QuoVadis Root CA 1 G3, O=QuoVadis Limited, C=BM Algorithm: RSA; Serial number: 0x78585f2ead2c194be3370735341328b596d46593 Valid from Fri Jan 13 01:27:44 CST 2012 until Mon Jan 13 01:27:44 CST 2042

adding as trusted cert: Subject: CN=D-TRUST Root Class 3 CA 2 2009, O=D-Trust GmbH, C=DE Issuer: CN=D-TRUST Root Class 3 CA 2 2009, O=D-Trust GmbH, C=DE Algorithm: RSA; Serial number: 0x983f3 Valid from Thu Nov 05 16:35:58 CST 2009 until Mon Nov 05 16:35:58 CST 2029

adding as trusted cert: Subject: CN=Deutsche Telekom Root CA 2, OU=T-TeleSec Trust Center, O=Deutsche Telekom AG, C=DE Issuer: CN=Deutsche Telekom Root CA 2, OU=T-TeleSec Trust Center, O=Deutsche Telekom AG, C=DE Algorithm: RSA; Serial number: 0x26 Valid from Fri Jul 09 20:11:00 CST 1999 until Wed Jul 10 07:59:00 CST 2019

adding as trusted cert: Subject: CN=USERTrust RSA Certification Authority, O=The USERTRUST Network, L=Jersey City, ST=New Jersey, C=US Issuer: CN=USERTrust RSA Certification Authority, O=The USERTRUST Network, L=Jersey City, ST=New Jersey, C=US Algorithm: RSA; Serial number: 0x1fd6d30fca3ca51a81bbc640e35032d Valid from Mon Feb 01 08:00:00 CST 2010 until Tue Jan 19 07:59:59 CST 2038

adding as trusted cert: Subject: CN=Izenpe.com, O=IZENPE S.A., C=ES Issuer: CN=Izenpe.com, O=IZENPE S.A., C=ES Algorithm: RSA; Serial number: 0xb0b75a16485fbfe1cbf58bd719e67d Valid from Thu Dec 13 21:08:28 CST 2007 until Sun Dec 13 16:27:25 CST 2037

adding as trusted cert: Subject: CN=GlobalSign, O=GlobalSign, OU=GlobalSign Root CA - R2 Issuer: CN=GlobalSign, O=GlobalSign, OU=GlobalSign Root CA - R2 Algorithm: RSA; Serial number: 0x400000000010f8626e60d Valid from Fri Dec 15 16:00:00 CST 2006 until Wed Dec 15 16:00:00 CST 2021

adding as trusted cert: Subject: CN=VeriSign Class 3 Public Primary Certification Authority - G5, OU="(c) 2006 VeriSign, Inc. - For authorized use only", OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US Issuer: CN=VeriSign Class 3 Public Primary Certification Authority - G5, OU="(c) 2006 VeriSign, Inc. - For authorized use only", OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US Algorithm: RSA; Serial number: 0x18dad19e267de8bb4a2158cdcc6b3b4a Valid from Wed Nov 08 08:00:00 CST 2006 until Thu Jul 17 07:59:59 CST 2036

adding as trusted cert: Subject: CN=QuoVadis Root CA 3, O=QuoVadis Limited, C=BM Issuer: CN=QuoVadis Root CA 3, O=QuoVadis Limited, C=BM Algorithm: RSA; Serial number: 0x5c6 Valid from Sat Nov 25 03:11:23 CST 2006 until Tue Nov 25 03:06:44 CST 2031

adding as trusted cert: Subject: CN=Starfield Services Root Certificate Authority - G2, O="Starfield Technologies, Inc.", L=Scottsdale, ST=Arizona, C=US Issuer: CN=Starfield Services Root Certificate Authority - G2, O="Starfield Technologies, Inc.", L=Scottsdale, ST=Arizona, C=US Algorithm: RSA; Serial number: 0x0 Valid from Tue Sep 01 08:00:00 CST 2009 until Fri Jan 01 07:59:59 CST 2038

adding as trusted cert: Subject: CN=OISTE WISeKey Global Root GB CA, OU=OISTE Foundation Endorsed, O=WISeKey, C=CH Issuer: CN=OISTE WISeKey Global Root GB CA, OU=OISTE Foundation Endorsed, O=WISeKey, C=CH Algorithm: RSA; Serial number: 0x76b1205274f0858746b3f8231af6c2c0 Valid from Mon Dec 01 23:00:32 CST 2014 until Thu Dec 01 23:10:31 CST 2039

adding as trusted cert: Subject: CN=Amazon Root CA 3, O=Amazon, C=US Issuer: CN=Amazon Root CA 3, O=Amazon, C=US Algorithm: EC; Serial number: 0x66c9fd5749736663f3b0b9ad9e89e7603f24a Valid from Tue May 26 08:00:00 CST 2015 until Sat May 26 08:00:00 CST 2040

adding as trusted cert: Subject: CN=Swisscom Root CA 2, OU=Digital Certificate Services, O=Swisscom, C=ch Issuer: CN=Swisscom Root CA 2, OU=Digital Certificate Services, O=Swisscom, C=ch Algorithm: RSA; Serial number: 0x1e9e28e848f2e5efc37c4a1e5a1867b6 Valid from Fri Jun 24 16:38:14 CST 2011 until Wed Jun 25 15:38:14 CST 2031

adding as trusted cert: Subject: CN=QuoVadis Root CA 3 G3, O=QuoVadis Limited, C=BM Issuer: CN=QuoVadis Root CA 3 G3, O=QuoVadis Limited, C=BM Algorithm: RSA; Serial number: 0x2ef59b0228a7db7affd5a3a9eebd03a0cf126a1d Valid from Fri Jan 13 04:26:32 CST 2012 until Mon Jan 13 04:26:32 CST 2042

adding as trusted cert: Subject: EMAILADDRESS=info@e-szigno.hu, CN=Microsec e-Szigno Root CA 2009, O=Microsec Ltd., L=Budapest, C=HU Issuer: EMAILADDRESS=info@e-szigno.hu, CN=Microsec e-Szigno Root CA 2009, O=Microsec Ltd., L=Budapest, C=HU Algorithm: RSA; Serial number: 0xc27e43044e473f19 Valid from Tue Jun 16 19:30:18 CST 2009 until Sun Dec 30 19:30:18 CST 2029

adding as trusted cert: Subject: CN=StartCom Certification Authority G2, O=StartCom Ltd., C=IL Issuer: CN=StartCom Certification Authority G2, O=StartCom Ltd., C=IL Algorithm: RSA; Serial number: 0x3b Valid from Fri Jan 01 09:00:01 CST 2010 until Sun Jan 01 07:59:01 CST 2040

adding as trusted cert: Subject: CN=NetLock Arany (Class Gold) F?tan?s?tv?ny, OU=Tan?s?tv?nykiad?k (Certification Services), O=NetLock Kft., L=Budapest, C=HU Issuer: CN=NetLock Arany (Class Gold) F?tan?s?tv?ny, OU=Tan?s?tv?nykiad?k (Certification Services), O=NetLock Kft., L=Budapest, C=HU Algorithm: RSA; Serial number: 0x49412ce40010 Valid from Thu Dec 11 23:08:21 CST 2008 until Wed Dec 06 23:08:21 CST 2028

adding as trusted cert: Subject: CN=Actalis Authentication Root CA, O=Actalis S.p.A./03358520967, L=Milan, C=IT Issuer: CN=Actalis Authentication Root CA, O=Actalis S.p.A./03358520967, L=Milan, C=IT Algorithm: RSA; Serial number: 0x570a119742c4e3cc Valid from Thu Sep 22 19:22:02 CST 2011 until Sun Sep 22 19:22:02 CST 2030

adding as trusted cert: Subject: CN=T?B?TAK UEKAE K?k Sertifika Hizmet Sa?lay?c?s? - S?r?m 3, OU=Kamu Sertifikasyon Merkezi, OU=Ulusal Elektronik ve Kriptoloji Ara?t?rma Enstit?s? - UEKAE, O=T?rkiye Bilimsel ve Teknolojik Ara?t?rma Kurumu - T?B?TAK, L=Gebze - Kocaeli, C=TR Issuer: CN=T?B?TAK UEKAE K?k Sertifika Hizmet Sa?lay?c?s? - S?r?m 3, OU=Kamu Sertifikasyon Merkezi, OU=Ulusal Elektronik ve Kriptoloji Ara?t?rma Enstit?s? - UEKAE, O=T?rkiye Bilimsel ve Teknolojik Ara?t?rma Kurumu - T?B?TAK, L=Gebze - Kocaeli, C=TR Algorithm: RSA; Serial number: 0x11 Valid from Fri Aug 24 19:37:07 CST 2007 until Mon Aug 21 19:37:07 CST 2017

adding as trusted cert: Subject: CN=Autoridad de Certificacion Firmaprofesional CIF A62634068, C=ES Issuer: CN=Autoridad de Certificacion Firmaprofesional CIF A62634068, C=ES Algorithm: RSA; Serial number: 0x53ec3beefbb2485f Valid from Wed May 20 16:38:15 CST 2009 until Tue Dec 31 16:38:15 CST 2030

adding as trusted cert: Subject: CN=Certplus Root CA G1, O=Certplus, C=FR Issuer: CN=Certplus Root CA G1, O=Certplus, C=FR Algorithm: RSA; Serial number: 0x11205583e42d3e5456852d8337b72cdc4611 Valid from Mon May 26 08:00:00 CST 2014 until Fri Jan 15 08:00:00 CST 2038

adding as trusted cert: Subject: CN=Certigna, O=Dhimyotis, C=FR Issuer: CN=Certigna, O=Dhimyotis, C=FR Algorithm: RSA; Serial number: 0xfedce3010fc948ff Valid from Fri Jun 29 23:13:05 CST 2007 until Tue Jun 29 23:13:05 CST 2027

adding as trusted cert: Subject: CN=E-Tugra Certification Authority, OU=E-Tugra Sertifikasyon Merkezi, O=E-Tu?ra EBG Bili?im Teknolojileri ve Hizmetleri A.?., L=Ankara, C=TR Issuer: CN=E-Tugra Certification Authority, OU=E-Tugra Sertifikasyon Merkezi, O=E-Tu?ra EBG Bili?im Teknolojileri ve Hizmetleri A.?., L=Ankara, C=TR Algorithm: RSA; Serial number: 0x6a683e9c519bcb53 Valid from Tue Mar 05 20:09:48 CST 2013 until Fri Mar 03 20:09:48 CST 2023

adding as trusted cert: Subject: CN=AddTrust Public CA Root, OU=AddTrust TTP Network, O=AddTrust AB, C=SE Issuer: CN=AddTrust Public CA Root, OU=AddTrust TTP Network, O=AddTrust AB, C=SE Algorithm: RSA; Serial number: 0x1 Valid from Tue May 30 18:41:50 CST 2000 until Sat May 30 18:41:50 CST 2020

adding as trusted cert: Subject: C=ES, O=ACCV, OU=PKIACCV, CN=ACCVRAIZ1 Issuer: C=ES, O=ACCV, OU=PKIACCV, CN=ACCVRAIZ1 Algorithm: RSA; Serial number: 0x5ec3b7a6437fa4e0 Valid from Thu May 05 17:37:37 CST 2011 until Tue Dec 31 17:37:37 CST 2030

adding as trusted cert: Subject: OU=Class 3 Public Primary Certification Authority, O="VeriSign, Inc.", C=US Issuer: OU=Class 3 Public Primary Certification Authority, O="VeriSign, Inc.", C=US Algorithm: RSA; Serial number: 0x3c9131cb1ff6d01b0e9ab8d044bf12be Valid from Mon Jan 29 08:00:00 CST 1996 until Thu Aug 03 07:59:59 CST 2028

adding as trusted cert: Subject: CN=QuoVadis Root Certification Authority, OU=Root Certification Authority, O=QuoVadis Limited, C=BM Issuer: CN=QuoVadis Root Certification Authority, OU=Root Certification Authority, O=QuoVadis Limited, C=BM Algorithm: RSA; Serial number: 0x3ab6508b Valid from Tue Mar 20 02:33:33 CST 2001 until Thu Mar 18 02:33:33 CST 2021

adding as trusted cert: Subject: OU=Security Communication EV RootCA1, O="SECOM Trust Systems CO.,LTD.", C=JP Issuer: OU=Security Communication EV RootCA1, O="SECOM Trust Systems CO.,LTD.", C=JP Algorithm: RSA; Serial number: 0x0 Valid from Wed Jun 06 10:12:32 CST 2007 until Sat Jun 06 10:12:32 CST 2037

adding as trusted cert: Subject: CN=Buypass Class 3 Root CA, O=Buypass AS-983163327, C=NO Issuer: CN=Buypass Class 3 Root CA, O=Buypass AS-983163327, C=NO Algorithm: RSA; Serial number: 0x2 Valid from Tue Oct 26 16:28:58 CST 2010 until Fri Oct 26 16:28:58 CST 2040

adding as trusted cert: Subject: CN=thawte Primary Root CA - G2, OU="(c) 2007 thawte, Inc. - For authorized use only", O="thawte, Inc.", C=US Issuer: CN=thawte Primary Root CA - G2, OU="(c) 2007 thawte, Inc. - For authorized use only", O="thawte, Inc.", C=US Algorithm: EC; Serial number: 0x35fc265cd9844fc93d263d579baed756 Valid from Mon Nov 05 08:00:00 CST 2007 until Tue Jan 19 07:59:59 CST 2038

adding as trusted cert: Subject: CN=Swisscom Root EV CA 2, OU=Digital Certificate Services, O=Swisscom, C=ch Issuer: CN=Swisscom Root EV CA 2, OU=Digital Certificate Services, O=Swisscom, C=ch Algorithm: RSA; Serial number: 0xf2fa64e27463d38dfd101d041f76ca58 Valid from Fri Jun 24 17:45:08 CST 2011 until Wed Jun 25 16:45:08 CST 2031

adding as trusted cert: Subject: CN=VeriSign Universal Root Certification Authority, OU="(c) 2008 VeriSign, Inc. - For authorized use only", OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US Issuer: CN=VeriSign Universal Root Certification Authority, OU="(c) 2008 VeriSign, Inc. - For authorized use only", OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US Algorithm: RSA; Serial number: 0x401ac46421b31321030ebbe4121ac51d Valid from Wed Apr 02 08:00:00 CST 2008 until Wed Dec 02 07:59:59 CST 2037

adding as trusted cert: Subject: CN=China Internet Network Information Center EV Certificates Root, O=China Internet Network Information Center, C=CN Issuer: CN=China Internet Network Information Center EV Certificates Root, O=China Internet Network Information Center, C=CN Algorithm: RSA; Serial number: 0x489f0001 Valid from Tue Aug 31 15:11:25 CST 2010 until Sat Aug 31 15:11:25 CST 2030

adding as trusted cert: Subject: CN=Cybertrust Global Root, O="Cybertrust, Inc" Issuer: CN=Cybertrust Global Root, O="Cybertrust, Inc" Algorithm: RSA; Serial number: 0x400000000010f85aa2d48 Valid from Fri Dec 15 16:00:00 CST 2006 until Wed Dec 15 16:00:00 CST 2021

adding as trusted cert: Subject: CN=Trusted Certificate Services, O=Comodo CA Limited, L=Salford, ST=Greater Manchester, C=GB Issuer: CN=Trusted Certificate Services, O=Comodo CA Limited, L=Salford, ST=Greater Manchester, C=GB Algorithm: RSA; Serial number: 0x1 Valid from Thu Jan 01 08:00:00 CST 2004 until Mon Jan 01 07:59:59 CST 2029

adding as trusted cert: Subject: CN=Global Chambersign Root, OU=http://www.chambersign.org, O=AC Camerfirma SA CIF A82743287, C=EU Issuer: CN=Global Chambersign Root, OU=http://www.chambersign.org, O=AC Camerfirma SA CIF A82743287, C=EU Algorithm: RSA; Serial number: 0x0 Valid from Wed Oct 01 00:14:18 CST 2003 until Thu Oct 01 00:14:18 CST 2037

adding as trusted cert: Subject: OU=Trustis FPS Root CA, O=Trustis Limited, C=GB Issuer: OU=Trustis FPS Root CA, O=Trustis Limited, C=GB Algorithm: RSA; Serial number: 0x1b1fadb620f924d3366bf7c7f18ca059 Valid from Tue Dec 23 20:14:06 CST 2003 until Sun Jan 21 19:36:54 CST 2024

adding as trusted cert: Subject: CN=Amazon Root CA 1, O=Amazon, C=US Issuer: CN=Amazon Root CA 1, O=Amazon, C=US Algorithm: RSA; Serial number: 0x66c9fcf99bf8c0a39e2f0788a43e696365bca Valid from Tue May 26 08:00:00 CST 2015 until Sun Jan 17 08:00:00 CST 2038

adding as trusted cert: Subject: CN=AddTrust Class 1 CA Root, OU=AddTrust TTP Network, O=AddTrust AB, C=SE Issuer: CN=AddTrust Class 1 CA Root, OU=AddTrust TTP Network, O=AddTrust AB, C=SE Algorithm: RSA; Serial number: 0x1 Valid from Tue May 30 18:38:31 CST 2000 until Sat May 30 18:38:31 CST 2020

adding as trusted cert: Subject: CN=Amazon Root CA 2, O=Amazon, C=US Issuer: CN=Amazon Root CA 2, O=Amazon, C=US Algorithm: RSA; Serial number: 0x66c9fd29635869f0a0fe58678f85b26bb8a37 Valid from Tue May 26 08:00:00 CST 2015 until Sat May 26 08:00:00 CST 2040

adding as trusted cert: Subject: CN=NetLock Uzleti (Class B) Tanusitvanykiado, OU=Tanusitvanykiadok, O=NetLock Halozatbiztonsagi Kft., L=Budapest, C=HU Issuer: CN=NetLock Uzleti (Class B) Tanusitvanykiado, OU=Tanusitvanykiadok, O=NetLock Halozatbiztonsagi Kft., L=Budapest, C=HU Algorithm: RSA; Serial number: 0x69 Valid from Thu Feb 25 22:10:22 CST 1999 until Wed Feb 20 22:10:22 CST 2019

adding as trusted cert: Subject: CN=GlobalSign, O=GlobalSign, OU=GlobalSign ECC Root CA - R4 Issuer: CN=GlobalSign, O=GlobalSign, OU=GlobalSign ECC Root CA - R4 Algorithm: EC; Serial number: 0x2a38a41c960a04de42b228a50be8349802 Valid from Tue Nov 13 08:00:00 CST 2012 until Tue Jan 19 11:14:07 CST 2038

adding as trusted cert: Subject: CN=COMODO Certification Authority, O=COMODO CA Limited, L=Salford, ST=Greater Manchester, C=GB Issuer: CN=COMODO Certification Authority, O=COMODO CA Limited, L=Salford, ST=Greater Manchester, C=GB Algorithm: RSA; Serial number: 0x4e812d8a8265e00b02ee3e350246e53d Valid from Fri Dec 01 08:00:00 CST 2006 until Tue Jan 01 07:59:59 CST 2030

adding as trusted cert: Subject: EMAILADDRESS=pki@sk.ee, CN=EE Certification Centre Root CA, O=AS Sertifitseerimiskeskus, C=EE Issuer: EMAILADDRESS=pki@sk.ee, CN=EE Certification Centre Root CA, O=AS Sertifitseerimiskeskus, C=EE Algorithm: RSA; Serial number: 0x5480f9a073ed3f004cca89d8e371e64a Valid from Sat Oct 30 18:10:30 CST 2010 until Wed Dec 18 07:59:59 CST 2030

adding as trusted cert: Subject: CN=Global Chambersign Root - 2008, O=AC Camerfirma S.A., SERIALNUMBER=A82743287, L=Madrid (see current address at www.camerfirma.com/address), C=EU Issuer: CN=Global Chambersign Root - 2008, O=AC Camerfirma S.A., SERIALNUMBER=A82743287, L=Madrid (see current address at www.camerfirma.com/address), C=EU Algorithm: RSA; Serial number: 0xc9cdd3e9d57d23ce Valid from Fri Aug 01 20:31:40 CST 2008 until Sat Jul 31 20:31:40 CST 2038

adding as trusted cert: Subject: CN=thawte Primary Root CA - G3, OU="(c) 2008 thawte, Inc. - For authorized use only", OU=Certification Services Division, O="thawte, Inc.", C=US Issuer: CN=thawte Primary Root CA - G3, OU="(c) 2008 thawte, Inc. - For authorized use only", OU=Certification Services Division, O="thawte, Inc.", C=US Algorithm: RSA; Serial number: 0x600197b746a7eab4b49ad64b2ff790fb Valid from Wed Apr 02 08:00:00 CST 2008 until Wed Dec 02 07:59:59 CST 2037

adding as trusted cert: Subject: EMAILADDRESS=info@valicert.com, CN=http://www.valicert.com/, OU=ValiCert Class 1 Policy Validation Authority, O="ValiCert, Inc.", L=ValiCert Validation Network Issuer: EMAILADDRESS=info@valicert.com, CN=http://www.valicert.com/, OU=ValiCert Class 1 Policy Validation Authority, O="ValiCert, Inc.", L=ValiCert Validation Network Algorithm: RSA; Serial number: 0x1 Valid from Sat Jun 26 06:23:48 CST 1999 until Wed Jun 26 06:23:48 CST 2019

adding as trusted cert: Subject: CN=COMODO RSA Certification Authority, O=COMODO CA Limited, L=Salford, ST=Greater Manchester, C=GB Issuer: CN=COMODO RSA Certification Authority, O=COMODO CA Limited, L=Salford, ST=Greater Manchester, C=GB Algorithm: RSA; Serial number: 0x4caaf9cadb636fe01ff74ed85b03869d Valid from Tue Jan 19 08:00:00 CST 2010 until Tue Jan 19 07:59:59 CST 2038

adding as trusted cert: Subject: EMAILADDRESS=premium-server@thawte.com, CN=Thawte Premium Server CA, OU=Certification Services Division, O=Thawte Consulting cc, L=Cape Town, ST=Western Cape, C=ZA Issuer: EMAILADDRESS=premium-server@thawte.com, CN=Thawte Premium Server CA, OU=Certification Services Division, O=Thawte Consulting cc, L=Cape Town, ST=Western Cape, C=ZA Algorithm: RSA; Serial number: 0x36122296c5e338a520a1d25f4cd70954 Valid from Thu Aug 01 08:00:00 CST 1996 until Sat Jan 02 07:59:59 CST 2021

adding as trusted cert: Subject: CN=GTE CyberTrust Global Root, OU="GTE CyberTrust Solutions, Inc.", O=GTE Corporation, C=US Issuer: CN=GTE CyberTrust Global Root, OU="GTE CyberTrust Solutions, Inc.", O=GTE Corporation, C=US Algorithm: RSA; Serial number: 0x1a5 Valid from Thu Aug 13 08:29:00 CST 1998 until Tue Aug 14 07:59:00 CST 2018

adding as trusted cert: Subject: CN=Certplus Root CA G2, O=Certplus, C=FR Issuer: CN=Certplus Root CA G2, O=Certplus, C=FR Algorithm: EC; Serial number: 0x1120d991ceaea3e8c5e7ffe902afcf73bc55 Valid from Mon May 26 08:00:00 CST 2014 until Fri Jan 15 08:00:00 CST 2038

adding as trusted cert: Subject: CN=AffirmTrust Premium ECC, O=AffirmTrust, C=US Issuer: CN=AffirmTrust Premium ECC, O=AffirmTrust, C=US Algorithm: EC; Serial number: 0x7497258ac73f7a54 Valid from Fri Jan 29 22:20:24 CST 2010 until Mon Dec 31 22:20:24 CST 2040

adding as trusted cert: Subject: CN=Staat der Nederlanden Root CA - G2, O=Staat der Nederlanden, C=NL Issuer: CN=Staat der Nederlanden Root CA - G2, O=Staat der Nederlanden, C=NL Algorithm: RSA; Serial number: 0x98968c Valid from Wed Mar 26 19:18:17 CST 2008 until Wed Mar 25 19:03:10 CST 2020

adding as trusted cert: Subject: CN=T-TeleSec GlobalRoot Class 2, OU=T-Systems Trust Center, O=T-Systems Enterprise Services GmbH, C=DE Issuer: CN=T-TeleSec GlobalRoot Class 2, OU=T-Systems Trust Center, O=T-Systems Enterprise Services GmbH, C=DE Algorithm: RSA; Serial number: 0x1 Valid from Wed Oct 01 18:40:14 CST 2008 until Sun Oct 02 07:59:59 CST 2033

adding as trusted cert: Subject: CN=Entrust.net Secure Server Certification Authority, OU=(c) 1999 Entrust.net Limited, OU=www.entrust.net/CPS incorp. by ref. (limits liab.), O=Entrust.net, C=US Issuer: CN=Entrust.net Secure Server Certification Authority, OU=(c) 1999 Entrust.net Limited, OU=www.entrust.net/CPS incorp. by ref. (limits liab.), O=Entrust.net, C=US Algorithm: RSA; Serial number: 0x374ad243 Valid from Wed May 26 00:09:40 CST 1999 until Sun May 26 00:39:40 CST 2019

adding as trusted cert: Subject: CN=SZAFIR ROOT CA2, O=Krajowa Izba Rozliczeniowa S.A., C=PL Issuer: CN=SZAFIR ROOT CA2, O=Krajowa Izba Rozliczeniowa S.A., C=PL Algorithm: RSA; Serial number: 0x3e8a5d07ec55d232d5b7e3b65f01eb2ddce4d6e4 Valid from Mon Oct 19 15:43:30 CST 2015 until Fri Oct 19 15:43:30 CST 2035

adding as trusted cert: Subject: CN=DigiCert Global Root G2, OU=www.digicert.com, O=DigiCert Inc, C=US Issuer: CN=DigiCert Global Root G2, OU=www.digicert.com, O=DigiCert Inc, C=US Algorithm: RSA; Serial number: 0x33af1e6a711a9a0bb2864b11d09fae5 Valid from Thu Aug 01 20:00:00 CST 2013 until Fri Jan 15 20:00:00 CST 2038

adding as trusted cert: Subject: C=ES, O=EDICOM, OU=PKI, CN=ACEDICOM Root Issuer: C=ES, O=EDICOM, OU=PKI, CN=ACEDICOM Root Algorithm: RSA; Serial number: 0x618dc7863b018205 Valid from Sat Apr 19 00:24:22 CST 2008 until Fri Apr 14 00:24:22 CST 2028

keyStore is : keyStore type is : jks keyStore provider is : init keystore init keymanager of type SunX509 trigger seeding of SecureRandom done seeding SecureRandom Using SSLEngineImpl. Finalizer, called close() Finalizer, called closeInternal(true) Finalizer, called closeSocket(true) Finalizer, called close() Finalizer, called closeInternal(true) Finalizer, called closeSocket(true) trigger seeding of SecureRandom done seeding SecureRandom Using SSLEngineImpl. Allow unsafe renegotiation: false Allow legacy hello messages: true Is initial handshake: true Is secure renegotiation: false Ignoring unsupported cipher suite: TLS_ECDHE_ECDSA_WITH_AES_256_CBC_SHA384 for TLSv1 Ignoring unsupported cipher suite: TLS_ECDHE_RSA_WITH_AES_256_CBC_SHA384 for TLSv1 Ignoring unsupported cipher suite: TLS_RSA_WITH_AES_256_CBC_SHA256 for TLSv1 Ignoring unsupported cipher suite: TLS_ECDH_ECDSA_WITH_AES_256_CBC_SHA384 for TLSv1 Ignoring unsupported cipher suite: TLS_ECDH_RSA_WITH_AES_256_CBC_SHA384 for TLSv1 Ignoring unsupported cipher suite: TLS_DHE_RSA_WITH_AES_256_CBC_SHA256 for TLSv1 Ignoring unsupported cipher suite: TLS_DHE_DSS_WITH_AES_256_CBC_SHA256 for TLSv1 Ignoring unsupported cipher suite: TLS_ECDHE_ECDSA_WITH_AES_128_CBC_SHA256 for TLSv1 Ignoring unsupported cipher suite: TLS_ECDHE_RSA_WITH_AES_128_CBC_SHA256 for TLSv1 Ignoring unsupported cipher suite: TLS_RSA_WITH_AES_128_CBC_SHA256 for TLSv1 Ignoring unsupported cipher suite: TLS_ECDH_ECDSA_WITH_AES_128_CBC_SHA256 for TLSv1 Ignoring unsupported cipher suite: TLS_ECDH_RSA_WITH_AES_128_CBC_SHA256 for TLSv1 Ignoring unsupported cipher suite: TLS_DHE_RSA_WITH_AES_128_CBC_SHA256 for TLSv1 Ignoring unsupported cipher suite: TLS_DHE_DSS_WITH_AES_128_CBC_SHA256 for TLSv1 Ignoring unsupported cipher suite: TLS_ECDHE_ECDSA_WITH_AES_256_GCM_SHA384 for TLSv1 Ignoring unsupported cipher suite: TLS_ECDHE_ECDSA_WITH_AES_128_GCM_SHA256 for TLSv1 Ignoring unsupported cipher suite: TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384 for TLSv1 Ignoring unsupported cipher suite: TLS_RSA_WITH_AES_256_GCM_SHA384 for TLSv1 Ignoring unsupported cipher suite: TLS_ECDH_ECDSA_WITH_AES_256_GCM_SHA384 for TLSv1 Ignoring unsupported cipher suite: TLS_ECDH_RSA_WITH_AES_256_GCM_SHA384 for TLSv1 Ignoring unsupported cipher suite: TLS_DHE_RSA_WITH_AES_256_GCM_SHA384 for TLSv1 Ignoring unsupported cipher suite: TLS_DHE_DSS_WITH_AES_256_GCM_SHA384 for TLSv1 Ignoring unsupported cipher suite: TLS_ECDHE_RSA_WITH_AES_128_GCM_SHA256 for TLSv1 Ignoring unsupported cipher suite: TLS_RSA_WITH_AES_128_GCM_SHA256 for TLSv1 Ignoring unsupported cipher suite: TLS_ECDH_ECDSA_WITH_AES_128_GCM_SHA256 for TLSv1 Ignoring unsupported cipher suite: TLS_ECDH_RSA_WITH_AES_128_GCM_SHA256 for TLSv1 Ignoring unsupported cipher suite: TLS_DHE_RSA_WITH_AES_128_GCM_SHA256 for TLSv1 Ignoring unsupported cipher suite: TLS_DHE_DSS_WITH_AES_128_GCM_SHA256 for TLSv1 Ignoring unsupported cipher suite: TLS_ECDHE_ECDSA_WITH_AES_256_CBC_SHA384 for TLSv1.1 Ignoring unsupported cipher suite: TLS_ECDHE_RSA_WITH_AES_256_CBC_SHA384 for TLSv1.1 Ignoring unsupported cipher suite: TLS_RSA_WITH_AES_256_CBC_SHA256 for TLSv1.1 Ignoring unsupported cipher suite: TLS_ECDH_ECDSA_WITH_AES_256_CBC_SHA384 for TLSv1.1 Ignoring unsupported cipher suite: TLS_ECDH_RSA_WITH_AES_256_CBC_SHA384 for TLSv1.1 Ignoring unsupported cipher suite: TLS_DHE_RSA_WITH_AES_256_CBC_SHA256 for TLSv1.1 Ignoring unsupported cipher suite: TLS_DHE_DSS_WITH_AES_256_CBC_SHA256 for TLSv1.1 Ignoring unsupported cipher suite: TLS_ECDHE_ECDSA_WITH_AES_128_CBC_SHA256 for TLSv1.1 Ignoring unsupported cipher suite: TLS_ECDHE_RSA_WITH_AES_128_CBC_SHA256 for TLSv1.1 Ignoring unsupported cipher suite: TLS_RSA_WITH_AES_128_CBC_SHA256 for TLSv1.1 Ignoring unsupported cipher suite: TLS_ECDH_ECDSA_WITH_AES_128_CBC_SHA256 for TLSv1.1 Ignoring unsupported cipher suite: TLS_ECDH_RSA_WITH_AES_128_CBC_SHA256 for TLSv1.1 Ignoring unsupported cipher suite: TLS_DHE_RSA_WITH_AES_128_CBC_SHA256 for TLSv1.1 Ignoring unsupported cipher suite: TLS_DHE_DSS_WITH_AES_128_CBC_SHA256 for TLSv1.1 Ignoring unsupported cipher suite: TLS_ECDHE_ECDSA_WITH_AES_256_GCM_SHA384 for TLSv1.1 Ignoring unsupported cipher suite: TLS_ECDHE_ECDSA_WITH_AES_128_GCM_SHA256 for TLSv1.1 Ignoring unsupported cipher suite: TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384 for TLSv1.1 Ignoring unsupported cipher suite: TLS_RSA_WITH_AES_256_GCM_SHA384 for TLSv1.1 Ignoring unsupported cipher suite: TLS_ECDH_ECDSA_WITH_AES_256_GCM_SHA384 for TLSv1.1 Ignoring unsupported cipher suite: TLS_ECDH_RSA_WITH_AES_256_GCM_SHA384 for TLSv1.1 Ignoring unsupported cipher suite: TLS_DHE_RSA_WITH_AES_256_GCM_SHA384 for TLSv1.1 Ignoring unsupported cipher suite: TLS_DHE_DSS_WITH_AES_256_GCM_SHA384 for TLSv1.1 Ignoring unsupported cipher suite: TLS_ECDHE_RSA_WITH_AES_128_GCM_SHA256 for TLSv1.1 Ignoring unsupported cipher suite: TLS_RSA_WITH_AES_128_GCM_SHA256 for TLSv1.1 Ignoring unsupported cipher suite: TLS_ECDH_ECDSA_WITH_AES_128_GCM_SHA256 for TLSv1.1 Ignoring unsupported cipher suite: TLS_ECDH_RSA_WITH_AES_128_GCM_SHA256 for TLSv1.1 Ignoring unsupported cipher suite: TLS_DHE_RSA_WITH_AES_128_GCM_SHA256 for TLSv1.1 Ignoring unsupported cipher suite: TLS_DHE_DSS_WITH_AES_128_GCM_SHA256 for TLSv1.1 %% No cached client session *** ClientHello, TLSv1.2 RandomCookie: GMT: 1489551420 bytes = { 154, 216, 80, 162, 227, 209, 171, 158, 22, 12, 209, 190, 174, 21, 18, 12, 204, 146, 204, 28, 71, 156, 175, 187, 169, 186, 41, 211 } Session ID: {} Cipher Suites: [TLS_ECDHE_ECDSA_WITH_AES_256_CBC_SHA384, TLS_ECDHE_RSA_WITH_AES_256_CBC_SHA384, TLS_RSA_WITH_AES_256_CBC_SHA256, TLS_ECDH_ECDSA_WITH_AES_256_CBC_SHA384, TLS_ECDH_RSA_WITH_AES_256_CBC_SHA384, TLS_DHE_RSA_WITH_AES_256_CBC_SHA256, TLS_DHE_DSS_WITH_AES_256_CBC_SHA256, TLS_ECDHE_ECDSA_WITH_AES_128_CBC_SHA256, TLS_ECDHE_RSA_WITH_AES_128_CBC_SHA256, TLS_RSA_WITH_AES_128_CBC_SHA256, TLS_ECDH_ECDSA_WITH_AES_128_CBC_SHA256, TLS_ECDH_RSA_WITH_AES_128_CBC_SHA256, TLS_DHE_RSA_WITH_AES_128_CBC_SHA256, TLS_DHE_DSS_WITH_AES_128_CBC_SHA256, TLS_ECDHE_ECDSA_WITH_AES_256_GCM_SHA384, TLS_ECDHE_ECDSA_WITH_AES_128_GCM_SHA256, TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384, TLS_RSA_WITH_AES_256_GCM_SHA384, TLS_ECDH_ECDSA_WITH_AES_256_GCM_SHA384, TLS_ECDH_RSA_WITH_AES_256_GCM_SHA384, TLS_DHE_RSA_WITH_AES_256_GCM_SHA384, TLS_DHE_DSS_WITH_AES_256_GCM_SHA384, TLS_ECDHE_RSA_WITH_AES_128_GCM_SHA256, TLS_RSA_WITH_AES_128_GCM_SHA256, TLS_ECDH_ECDSA_WITH_AES_128_GCM_SHA256, TLS_ECDH_RSA_WITH_AES_128_GCM_SHA256, TLS_DHE_RSA_WITH_AES_128_GCM_SHA256, TLS_DHE_DSS_WITH_AES_128_GCM_SHA256, TLS_EMPTY_RENEGOTIATION_INFO_SCSV] Compression Methods: { 0 } Extension elliptic_curves, curve names: {secp256r1, secp384r1, secp521r1} Extension ec_point_formats, formats: [uncompressed] Extension signature_algorithms, signature_algorithms: SHA512withECDSA, SHA512withRSA, SHA384withECDSA, SHA384withRSA, SHA256withECDSA, SHA256withRSA, SHA256withDSA, SHA224withECDSA, SHA224withRSA, SHA224withDSA, SHA1withECDSA, SHA1withRSA, SHA1withDSA


[write] MD5 and SHA1 hashes: len = 153 0000: 01 00 00 95 03 03 59 C9 C0 3C 9A D8 50 A2 E3 D1 ......Y..<..P... 0010: AB 9E 16 0C D1 BE AE 15 12 0C CC 92 CC 1C 47 9C ..............G. 0020: AF BB A9 BA 29 D3 00 00 3A C0 24 C0 28 00 3D C0 ....)...:.$.(.=. 0030: 26 C0 2A 00 6B 00 6A C0 23 C0 27 00 3C C0 25 C0 &..k.j.#.'.<.%. 0040: 29 00 67 00 40 C0 2C C0 2B C0 30 00 9D C0 2E C0 ).g.@.,.+.0..... 0050: 32 00 9F 00 A3 C0 2F 00 9C C0 2D C0 31 00 9E 00 2...../...-.1... 0060: A2 00 FF 01 00 00 32 00 0A 00 08 00 06 00 17 00 ......2......... 0070: 18 00 19 00 0B 00 02 01 00 00 0D 00 1C 00 1A 06 ................ 0080: 03 06 01 05 03 05 01 04 03 04 01 04 02 03 03 03 ................ 0090: 01 03 02 02 03 02 01 02 02 ......... qtp1128252739-304, WRITE: TLSv1.2 Handshake, length = 153 [Raw write]: length = 158 0000: 16 03 03 00 99 01 00 00 95 03 03 59 C9 C0 3C 9A ...........Y..<. 0010: D8 50 A2 E3 D1 AB 9E 16 0C D1 BE AE 15 12 0C CC .P.............. 0020: 92 CC 1C 47 9C AF BB A9 BA 29 D3 00 00 3A C0 24 ...G.....)...:.$ 0030: C0 28 00 3D C0 26 C0 2A 00 6B 00 6A C0 23 C0 27 .(.=.&..k.j.#.' 0040: 00 3C C0 25 C0 29 00 67 00 40 C0 2C C0 2B C0 30 .<.%.).g.@.,.+.0 0050: 00 9D C0 2E C0 32 00 9F 00 A3 C0 2F 00 9C C0 2D .....2...../...- 0060: C0 31 00 9E 00 A2 00 FF 01 00 00 32 00 0A 00 08 .1.........2.... 0070: 00 06 00 17 00 18 00 19 00 0B 00 02 01 00 00 0D ................ 0080: 00 1C 00 1A 06 03 06 01 05 03 05 01 04 03 04 01 ................ 0090: 04 02 03 03 03 01 03 02 02 03 02 01 02 02 .............. [Raw read]: length = 5 0000: 16 03 03 05 D7 ..... [Raw read]: length = 1495 0000: 02 00 00 4D 03 03 59 C9 C0 3C 8D DF 6D 09 4E F0 ...M..Y..<..m.N. 0010: B1 B5 1B 55 B8 DE A0 41 AD 8C E4 0D 32 38 FD EA ...U...A....28.. 0020: 78 52 71 2B C8 B6 20 59 C9 C0 3C A9 EF E9 B6 E9 xRq+.. Y..<..... 0030: 9C 70 BC FD 60 5E 69 CF F5 4C A8 5D FE 57 71 DD .p..^i..L.].Wq. 0040: F4 B7 FE C8 B1 F0 78 00 9F 00 00 05 FF 01 00 01 ......x......... 0050: 00 0B 00 03 6F 00 03 6C 00 03 69 30 82 03 65 30 ....o..l..i0..e0 0060: 82 02 4D A0 03 02 01 02 02 04 04 04 26 EA 30 0D ..M.........&.0. 0070: 06 09 2A 86 48 86 F7 0D 01 01 0B 05 00 30 63 31 ..*.H........0c1 0080: 0B 30 09 06 03 55 04 06 13 02 43 4E 31 11 30 0F .0...U....CN1.0. 0090: 06 03 55 04 08 13 08 53 68 61 6E 64 6F 6E 67 31 ..U....Shandong1 00A0: 10 30 0E 06 03 55 04 07 13 07 51 69 6E 67 64 61 .0...U....Qingda 00B0: 6F 31 0B 30 09 06 03 55 04 0A 13 02 4D 4E 31 0E o1.0...U....MN1. 00C0: 30 0C 06 03 55 04 0B 13 05 4E 43 41 50 49 31 12 0...U....NCAPI1. 00D0: 30 10 06 03 55 04 03 13 09 41 6C 65 78 20 57 61 0...U....Alex Wa 00E0: 6E 67 30 1E 17 0D 31 37 30 38 32 32 30 37 32 35 ng0...1708220725 00F0: 33 31 5A 17 0D 31 37 31 31 32 30 30 37 32 35 33 31Z..17112007253 0100: 31 5A 30 63 31 0B 30 09 06 03 55 04 06 13 02 43 1Z0c1.0...U....C 0110: 4E 31 11 30 0F 06 03 55 04 08 13 08 53 68 61 6E N1.0...U....Shan 0120: 64 6F 6E 67 31 10 30 0E 06 03 55 04 07 13 07 51 dong1.0...U....Q 0130: 69 6E 67 64 61 6F 31 0B 30 09 06 03 55 04 0A 13 ingdao1.0...U... 0140: 02 4D 4E 31 0E 30 0C 06 03 55 04 0B 13 05 4E 43 .MN1.0...U....NC 0150: 41 50 49 31 12 30 10 06 03 55 04 03 13 09 41 6C API1.0...U....Al 0160: 65 78 20 57 61 6E 67 30 82 01 22 30 0D 06 09 2A ex Wang0.."0...* 0170: 86 48 86 F7 0D 01 01 01 05 00 03 82 01 0F 00 30 .H.............0 0180: 82 01 0A 02 82 01 01 00 95 58 19 97 35 1F 70 74 .........X..5.pt 0190: FC FB D4 59 7B 30 6A 62 AD 42 79 19 E5 0E 66 F9 ...Y.0jb.By...f. 01A0: 2D E9 66 BC A0 E5 F4 7B 76 74 0F 4E 6F 63 AA 9B -.f.....vt.Noc.. 01B0: 35 07 5D 85 EA 68 93 A3 16 E6 28 FD 53 5F 69 D0 5.]..h....(.S_i. 01C0: C1 1F 8F 50 0A 6F F7 F6 3E 48 BA D2 B1 77 5A 35 ...P.o..>H...wZ5 01D0: 4F 0E FB D5 BC AF 76 67 A1 8A C3 65 21 6E 81 41 O.....vg...e!n.A 01E0: 1C 24 7E 94 03 4A 1A 68 10 D8 39 57 A6 45 6D A2 .$...J.h..9W.Em. 01F0: A4 0A AF 3B 36 2E 8C 3E 5F F2 4E CF 21 D4 43 79 ...;6..>_.N.!.Cy 0200: 10 94 2D 48 80 DD B2 1F C9 F2 58 E4 21 64 49 E8 ..-H......X.!dI. 0210: 3C C8 69 AD 30 1D 1F 4F 6B 40 6E 14 07 47 3F 57 <.i.0..Ok@n..G?W 0220: 58 A3 1C AF A1 31 96 3F 08 DE F4 FA 22 37 C9 E6 X....1.?...."7.. 0230: 98 90 1F 32 CC AE 12 33 12 6B DF 1A 83 86 94 9F ...2...3.k...... 0240: 66 18 20 B1 97 F2 C0 A9 9E C5 CC B6 76 CE 5A 81 f. .........v.Z. 0250: 2C 6C 39 C5 BF D2 25 79 28 28 FF CD 5F C5 1A 21 ,l9...%y((.._..! 0260: 94 41 A4 6E F1 E8 6E DD F4 46 41 08 66 BE B3 FB .A.n..n..FA.f... 0270: E0 BA 55 F2 FF 8A A0 3D EA FE C7 2A 47 CE AB 1B ..U....=...*G... 0280: B9 64 4A B6 CC A2 DE 01 02 03 01 00 01 A3 21 30 .dJ...........!0 0290: 1F 30 1D 06 03 55 1D 0E 04 16 04 14 13 A8 4F 3B .0...U........O; 02A0: 39 9E 22 23 EA 98 4D 5F 16 EE 87 E1 71 DB EB 97 9."#..M_....q... 02B0: 30 0D 06 09 2A 86 48 86 F7 0D 01 01 0B 05 00 03 0...*.H......... 02C0: 82 01 01 00 64 9B 62 EB B0 A9 D6 1E B2 1A 9A 10 ....d.b......... 02D0: 10 81 92 98 89 AF 00 B1 44 C6 12 CF 40 E6 DE F6 ........D...@... 02E0: 6E 17 76 69 D3 68 21 7A 53 4F E6 F2 99 DA 59 72 n.vi.h!zSO....Yr 02F0: 49 DC 33 CA 92 50 32 98 2D 4C C6 FC 72 29 B0 7C I.3..P2.-L..r).. 0300: C9 3F C7 59 04 26 66 B7 09 BC AB 67 31 64 45 46 .?.Y.&f....g1dEF 0310: 63 CB 91 3D 13 DE 96 24 35 A7 66 BF E4 51 C8 76 c..=...$5.f..Q.v 0320: 30 45 CF 2C 2E 61 D7 43 40 5C C7 2E DC B3 CE 61 0E.,.a.C@\.....a 0330: 5F 08 3A CA 36 DE B8 A3 BE 0E 60 66 A2 ED B9 29 _.:.6.....f...) 0340: 02 50 7B C3 C5 CB 7A 02 C2 C7 75 DB 63 53 A6 67 .P....z...u.cS.g 0350: 12 1C C1 93 69 40 25 D4 F5 77 5B 30 B1 4E E4 43 ....i@%..w[0.N.C 0360: 1A 3D EE C1 1E C6 DE 11 78 FE 7B 7F 0A 0E 16 19 .=......x....... 0370: 48 3B E8 EA 5D 29 1C 66 A9 8C 9D 04 10 CB 6A D6 H;..]).f......j. 0380: 35 1A B8 7D 84 62 12 D1 F4 AF DF F3 77 32 AB E6 5....b......w2.. 0390: 1C 46 8F E4 20 CD 71 41 C9 3A E6 E4 9A A6 51 D7 .F.. .qA.:....Q. 03A0: 2D CA 08 34 22 09 99 CA 1F 47 DB 93 BD A5 4B 95 -..4"....G....K. 03B0: 46 7F CB BE 7B 47 A0 41 25 B9 DA 70 9C 49 36 A1 F....G.A%..p.I6. 03C0: 1B 2F CD C9 0C 00 02 0B 00 80 FF FF FF FF FF FF ./.............. 03D0: FF FF C9 0F DA A2 21 68 C2 34 C4 C6 62 8B 80 DC ......!h.4..b... 03E0: 1C D1 29 02 4E 08 8A 67 CC 74 02 0B BE A6 3B 13 ..).N..g.t....;. 03F0: 9B 22 51 4A 08 79 8E 34 04 DD EF 95 19 B3 CD 3A ."QJ.y.4.......: 0400: 43 1B 30 2B 0A 6D F2 5F 14 37 4F E1 35 6D 6D 51 C.0+.m..7O.5mmQ 0410: C2 45 E4 85 B5 76 62 5E 7E C6 F4 4C 42 E9 A6 37 .E...vb^...LB..7 0420: ED 6B 0B FF 5C B6 F4 06 B7 ED EE 38 6B FB 5A 89 .k........8k.Z. 0430: 9F A5 AE 9F 24 11 7C 4B 1F E6 49 28 66 51 EC E6 ....$..K..I(fQ.. 0440: 53 81 FF FF FF FF FF FF FF FF 00 01 02 00 80 0E S............... 0450: 6E D5 33 6D 38 A4 C7 B3 3B B7 D7 57 5E 74 F9 FA n.3m8...;..W^t.. 0460: C6 77 09 5F 15 41 C0 99 90 42 6D 46 5F D2 EE F6 .w..A...BmF... 0470: 47 77 A9 34 CA 5B 45 4F 64 8C CA 75 9A 6D F1 29 Gw.4.[EOd..u.m.) 0480: 92 84 71 A7 92 16 0F 0F 49 45 9A 67 11 C3 D6 06 ..q.....IE.g.... 0490: 0B 64 3E D6 20 15 04 67 79 36 2B 9A EC 55 15 B0 .d>. ..gy6+..U.. 04A0: 58 A5 10 99 3E E7 DA 60 87 F0 6D 60 64 AD 6E A9 X...>....md.n. 04B0: 14 61 13 20 48 E9 5D 22 FA AC 9D 44 BD 25 D1 B5 .a. H.]"...D.%.. 04C0: 63 69 4A 9A AD E9 58 57 1F 08 C1 5F 2B 3C AE 06 ciJ...XW...+<.. 04D0: 01 01 00 32 C2 C6 D3 3E 97 5E 44 82 C7 04 47 4F ...2...>.^D...GO 04E0: D6 DC DE FB C1 A8 34 F0 1E 40 99 CA 32 B0 A0 CB ......4..@..2... 04F0: 18 28 30 BE B8 BF 07 91 20 6C 6F DD 85 94 B4 28 .(0..... lo....( 0500: 3C 92 EC 2B 1F 08 24 3C 64 BC 0A A8 0C D5 D0 67 <..+..$<d......g 0510: 8D A9 B8 C8 E5 AB BD 52 97 05 D9 E7 DE 2E 5B 08 .......R......[. 0520: B4 05 88 EA A1 74 A3 5A 5F 94 2A B9 9E FF E2 BC .....t.Z_...... 0530: 17 DC 81 E5 58 E7 E3 3D 82 CE BB 80 B6 23 EC 2B ....X..=.....#.+ 0540: DD DA 54 2A 46 EC A7 E1 0D 63 7D 0D 5F 4F 79 3C ..TF....c.._Oy< 0550: A7 3A A7 E5 FB FC B0 0E 3E EE 76 16 2D 6F 8C 30 .:......>.v.-o.0 0560: AC 07 67 2B 15 6B DF D4 B4 E6 6F C8 35 33 C6 0F ..g+.k....o.53.. 0570: C8 B8 C4 B7 B6 4D 53 5A E7 EC 8D 80 94 BF BD DC .....MSZ........ 0580: F5 92 5B 62 E2 EE 19 E2 51 20 3C 02 F5 32 A0 4E ..[b....Q <..2.N 0590: 4E E2 52 6E F5 6F E1 2F A9 31 EF E9 5F 44 7D 57 N.Rn.o./.1.._D.W 05A0: C6 CC 8F 3E 75 43 A3 84 AB F9 E6 B5 27 19 8A 0F ...>uC......'... 05B0: B5 2F 14 2D 89 C8 C6 A8 C4 D1 2C 2A 78 91 7E F6 ./.-......,*x... 05C0: 96 74 D0 3D 5A EE 52 E9 F0 6E 9E 9F 67 27 8F AA .t.=Z.R..n..g'.. 05D0: EA 89 66 0E 00 00 00 ..f.... qtp1128252739-302, READ: TLSv1.2 Handshake, length = 1495 *** ServerHello, TLSv1.2 RandomCookie: GMT: 1489551420 bytes = { 141, 223, 109, 9, 78, 240, 177, 181, 27, 85, 184, 222, 160, 65, 173, 140, 228, 13, 50, 56, 253, 234, 120, 82, 113, 43, 200, 182 } Session ID: {89, 201, 192, 60, 169, 239, 233, 182, 233, 156, 112, 188, 253, 96, 94, 105, 207, 245, 76, 168, 93, 254, 87, 113, 221, 244, 183, 254, 200, 177, 240, 120} Cipher Suite: TLS_DHE_RSA_WITH_AES_256_GCM_SHA384 Compression Method: 0 Extension renegotiation_info, renegotiated_connection:


%% Initialized: [Session-1, TLS_DHE_RSA_WITH_AES_256_GCM_SHA384] ** TLS_DHE_RSA_WITH_AES_256_GCM_SHA384 [read] MD5 and SHA1 hashes: len = 81 0000: 02 00 00 4D 03 03 59 C9 C0 3C 8D DF 6D 09 4E F0 ...M..Y..<..m.N. 0010: B1 B5 1B 55 B8 DE A0 41 AD 8C E4 0D 32 38 FD EA ...U...A....28.. 0020: 78 52 71 2B C8 B6 20 59 C9 C0 3C A9 EF E9 B6 E9 xRq+.. Y..<..... 0030: 9C 70 BC FD 60 5E 69 CF F5 4C A8 5D FE 57 71 DD .p..`^i..L.].Wq. 0040: F4 B7 FE C8 B1 F0 78 00 9F 00 00 05 FF 01 00 01 ......x......... 0050: 00 . *** Certificate chain chain [0] = [ [ Version: V3 Subject: CN=Alex Wang, OU=NCAPI, O=MN, L=Qingdao, ST=Shandong, C=CN Signature Algorithm: SHA256withRSA, OID = 1.2.840.113549.1.1.11

Key: Sun RSA public key, 2048 bits modulus: 18852951151110675860393995343672814225442265189737291319557289053215686106858116751411874611940186193360326834002486875862888850837302127145446322988238927055166813313545417868320596593368864228176345553178129978050495363543073526502117868756680137961651623324637302033105514800660577354076835035459540748881691120799157580888887601279270255119689043421057370738643697416024521176829158686716513046197290151859311419767368476062965791897247056185865854067769152765284869549518765293979436451628728699388351500056351035095551260537981958828019831603325986534543231165727537381961128038672375265223900832994037390827009 public exponent: 65537 Validity: [From: Tue Aug 22 15:25:31 CST 2017, To: Mon Nov 20 15:25:31 CST 2017] Issuer: CN=Alex Wang, OU=NCAPI, O=MN, L=Qingdao, ST=Shandong, C=CN SerialNumber: [ 040426ea]

Certificate Extensions: 1 [1]: ObjectId: 2.5.29.14 Criticality=false SubjectKeyIdentifier [ KeyIdentifier [ 0000: 13 A8 4F 3B 39 9E 22 23 EA 98 4D 5F 16 EE 87 E1 ..O;9."#..M_.... 0010: 71 DB EB 97 q... ] ]

] Algorithm: [SHA256withRSA] Signature: 0000: 64 9B 62 EB B0 A9 D6 1E B2 1A 9A 10 10 81 92 98 d.b............. 0010: 89 AF 00 B1 44 C6 12 CF 40 E6 DE F6 6E 17 76 69 ....D...@...n.vi 0020: D3 68 21 7A 53 4F E6 F2 99 DA 59 72 49 DC 33 CA .h!zSO....YrI.3. 0030: 92 50 32 98 2D 4C C6 FC 72 29 B0 7C C9 3F C7 59 .P2.-L..r)...?.Y 0040: 04 26 66 B7 09 BC AB 67 31 64 45 46 63 CB 91 3D .&f....g1dEFc..= 0050: 13 DE 96 24 35 A7 66 BF E4 51 C8 76 30 45 CF 2C ...$5.f..Q.v0E., 0060: 2E 61 D7 43 40 5C C7 2E DC B3 CE 61 5F 08 3A CA .a.C@.....a_.:. 0070: 36 DE B8 A3 BE 0E 60 66 A2 ED B9 29 02 50 7B C3 6.....`f...).P.. 0080: C5 CB 7A 02 C2 C7 75 DB 63 53 A6 67 12 1C C1 93 ..z...u.cS.g.... 0090: 69 40 25 D4 F5 77 5B 30 B1 4E E4 43 1A 3D EE C1 i@%..w[0.N.C.=.. 00A0: 1E C6 DE 11 78 FE 7B 7F 0A 0E 16 19 48 3B E8 EA ....x.......H;.. 00B0: 5D 29 1C 66 A9 8C 9D 04 10 CB 6A D6 35 1A B8 7D ]).f......j.5... 00C0: 84 62 12 D1 F4 AF DF F3 77 32 AB E6 1C 46 8F E4 .b......w2...F.. 00D0: 20 CD 71 41 C9 3A E6 E4 9A A6 51 D7 2D CA 08 34 .qA.:....Q.-..4 00E0: 22 09 99 CA 1F 47 DB 93 BD A5 4B 95 46 7F CB BE "....G....K.F... 00F0: 7B 47 A0 41 25 B9 DA 70 9C 49 36 A1 1B 2F CD C9 .G.A%..p.I6../..

]


[read] MD5 and SHA1 hashes: len = 883 0000: 0B 00 03 6F 00 03 6C 00 03 69 30 82 03 65 30 82 ...o..l..i0..e0. 0010: 02 4D A0 03 02 01 02 02 04 04 04 26 EA 30 0D 06 .M.........&.0.. 0020: 09 2A 86 48 86 F7 0D 01 01 0B 05 00 30 63 31 0B ..H........0c1. 0030: 30 09 06 03 55 04 06 13 02 43 4E 31 11 30 0F 06 0...U....CN1.0.. 0040: 03 55 04 08 13 08 53 68 61 6E 64 6F 6E 67 31 10 .U....Shandong1. 0050: 30 0E 06 03 55 04 07 13 07 51 69 6E 67 64 61 6F 0...U....Qingdao 0060: 31 0B 30 09 06 03 55 04 0A 13 02 4D 4E 31 0E 30 1.0...U....MN1.0 0070: 0C 06 03 55 04 0B 13 05 4E 43 41 50 49 31 12 30 ...U....NCAPI1.0 0080: 10 06 03 55 04 03 13 09 41 6C 65 78 20 57 61 6E ...U....Alex Wan 0090: 67 30 1E 17 0D 31 37 30 38 32 32 30 37 32 35 33 g0...17082207253 00A0: 31 5A 17 0D 31 37 31 31 32 30 30 37 32 35 33 31 1Z..171120072531 00B0: 5A 30 63 31 0B 30 09 06 03 55 04 06 13 02 43 4E Z0c1.0...U....CN 00C0: 31 11 30 0F 06 03 55 04 08 13 08 53 68 61 6E 64 1.0...U....Shand 00D0: 6F 6E 67 31 10 30 0E 06 03 55 04 07 13 07 51 69 ong1.0...U....Qi 00E0: 6E 67 64 61 6F 31 0B 30 09 06 03 55 04 0A 13 02 ngdao1.0...U.... 00F0: 4D 4E 31 0E 30 0C 06 03 55 04 0B 13 05 4E 43 41 MN1.0...U....NCA 0100: 50 49 31 12 30 10 06 03 55 04 03 13 09 41 6C 65 PI1.0...U....Ale 0110: 78 20 57 61 6E 67 30 82 01 22 30 0D 06 09 2A 86 x Wang0.."0.... 0120: 48 86 F7 0D 01 01 01 05 00 03 82 01 0F 00 30 82 H.............0. 0130: 01 0A 02 82 01 01 00 95 58 19 97 35 1F 70 74 FC ........X..5.pt. 0140: FB D4 59 7B 30 6A 62 AD 42 79 19 E5 0E 66 F9 2D ..Y.0jb.By...f.- 0150: E9 66 BC A0 E5 F4 7B 76 74 0F 4E 6F 63 AA 9B 35 .f.....vt.Noc..5 0160: 07 5D 85 EA 68 93 A3 16 E6 28 FD 53 5F 69 D0 C1 .]..h....(.Si.. 0170: 1F 8F 50 0A 6F F7 F6 3E 48 BA D2 B1 77 5A 35 4F ..P.o..>H...wZ5O 0180: 0E FB D5 BC AF 76 67 A1 8A C3 65 21 6E 81 41 1C .....vg...e!n.A. 0190: 24 7E 94 03 4A 1A 68 10 D8 39 57 A6 45 6D A2 A4 $...J.h..9W.Em.. 01A0: 0A AF 3B 36 2E 8C 3E 5F F2 4E CF 21 D4 43 79 10 ..;6..>.N.!.Cy. 01B0: 94 2D 48 80 DD B2 1F C9 F2 58 E4 21 64 49 E8 3C .-H......X.!dI.< 01C0: C8 69 AD 30 1D 1F 4F 6B 40 6E 14 07 47 3F 57 58 .i.0..Ok@n..G?WX 01D0: A3 1C AF A1 31 96 3F 08 DE F4 FA 22 37 C9 E6 98 ....1.?...."7... 01E0: 90 1F 32 CC AE 12 33 12 6B DF 1A 83 86 94 9F 66 ..2...3.k......f 01F0: 18 20 B1 97 F2 C0 A9 9E C5 CC B6 76 CE 5A 81 2C . .........v.Z., 0200: 6C 39 C5 BF D2 25 79 28 28 FF CD 5F C5 1A 21 94 l9...%y((....!. 0210: 41 A4 6E F1 E8 6E DD F4 46 41 08 66 BE B3 FB E0 A.n..n..FA.f.... 0220: BA 55 F2 FF 8A A0 3D EA FE C7 2A 47 CE AB 1B B9 .U....=...*G.... 0230: 64 4A B6 CC A2 DE 01 02 03 01 00 01 A3 21 30 1F dJ...........!0. 0240: 30 1D 06 03 55 1D 0E 04 16 04 14 13 A8 4F 3B 39 0...U........O;9 0250: 9E 22 23 EA 98 4D 5F 16 EE 87 E1 71 DB EB 97 30 ."#..M....q...0 0260: 0D 06 09 2A 86 48 86 F7 0D 01 01 0B 05 00 03 82 ...*.H.......... 0270: 01 01 00 64 9B 62 EB B0 A9 D6 1E B2 1A 9A 10 10 ...d.b.......... 0280: 81 92 98 89 AF 00 B1 44 C6 12 CF 40 E6 DE F6 6E .......D...@...n 0290: 17 76 69 D3 68 21 7A 53 4F E6 F2 99 DA 59 72 49 .vi.h!zSO....YrI 02A0: DC 33 CA 92 50 32 98 2D 4C C6 FC 72 29 B0 7C C9 .3..P2.-L..r)... 02B0: 3F C7 59 04 26 66 B7 09 BC AB 67 31 64 45 46 63 ?.Y.&f....g1dEFc 02C0: CB 91 3D 13 DE 96 24 35 A7 66 BF E4 51 C8 76 30 ..=...$5.f..Q.v0 02D0: 45 CF 2C 2E 61 D7 43 40 5C C7 2E DC B3 CE 61 5F E.,.a.C@.....a 02E0: 08 3A CA 36 DE B8 A3 BE 0E 60 66 A2 ED B9 29 02 .:.6.....`f...). 02F0: 50 7B C3 C5 CB 7A 02 C2 C7 75 DB 63 53 A6 67 12 P....z...u.cS.g. 0300: 1C C1 93 69 40 25 D4 F5 77 5B 30 B1 4E E4 43 1A ...i@%..w[0.N.C. 0310: 3D EE C1 1E C6 DE 11 78 FE 7B 7F 0A 0E 16 19 48 =......x.......H 0320: 3B E8 EA 5D 29 1C 66 A9 8C 9D 04 10 CB 6A D6 35 ;..]).f......j.5 0330: 1A B8 7D 84 62 12 D1 F4 AF DF F3 77 32 AB E6 1C ....b......w2... 0340: 46 8F E4 20 CD 71 41 C9 3A E6 E4 9A A6 51 D7 2D F.. .qA.:....Q.- 0350: CA 08 34 22 09 99 CA 1F 47 DB 93 BD A5 4B 95 46 ..4"....G....K.F 0360: 7F CB BE 7B 47 A0 41 25 B9 DA 70 9C 49 36 A1 1B ....G.A%..p.I6.. 0370: 2F CD C9 /.. *** Diffie-Hellman ServerKeyExchange DH Modulus: { 255, 255, 255, 255, 255, 255, 255, 255, 201, 15, 218, 162, 33, 104, 194, 52, 196, 198, 98, 139, 128, 220, 28, 209, 41, 2, 78, 8, 138, 103, 204, 116, 2, 11, 190, 166, 59, 19, 155, 34, 81, 74, 8, 121, 142, 52, 4, 221, 239, 149, 25, 179, 205, 58, 67, 27, 48, 43, 10, 109, 242, 95, 20, 55, 79, 225, 53, 109, 109, 81, 194, 69, 228, 133, 181, 118, 98, 94, 126, 198, 244, 76, 66, 233, 166, 55, 237, 107, 11, 255, 92, 182, 244, 6, 183, 237, 238, 56, 107, 251, 90, 137, 159, 165, 174, 159, 36, 17, 124, 75, 31, 230, 73, 40, 102, 81, 236, 230, 83, 129, 255, 255, 255, 255, 255, 255, 255, 255 } DH Base: { 2 } Server DH Public Key: { 14, 110, 213, 51, 109, 56, 164, 199, 179, 59, 183, 215, 87, 94, 116, 249, 250, 198, 119, 9, 95, 21, 65, 192, 153, 144, 66, 109, 70, 95, 210, 238, 246, 71, 119, 169, 52, 202, 91, 69, 79, 100, 140, 202, 117, 154, 109, 241, 41, 146, 132, 113, 167, 146, 22, 15, 15, 73, 69, 154, 103, 17, 195, 214, 6, 11, 100, 62, 214, 32, 21, 4, 103, 121, 54, 43, 154, 236, 85, 21, 176, 88, 165, 16, 153, 62, 231, 218, 96, 135, 240, 109, 96, 100, 173, 110, 169, 20, 97, 19, 32, 72, 233, 93, 34, 250, 172, 157, 68, 189, 37, 209, 181, 99, 105, 74, 154, 173, 233, 88, 87, 31, 8, 193, 95, 43, 60, 174 } Anonymous [read] MD5 and SHA1 hashes: len = 527 0000: 0C 00 02 0B 00 80 FF FF FF FF FF FF FF FF C9 0F ................ 0010: DA A2 21 68 C2 34 C4 C6 62 8B 80 DC 1C D1 29 02 ..!h.4..b.....). 0020: 4E 08 8A 67 CC 74 02 0B BE A6 3B 13 9B 22 51 4A N..g.t....;.."QJ 0030: 08 79 8E 34 04 DD EF 95 19 B3 CD 3A 43 1B 30 2B .y.4.......:C.0+ 0040: 0A 6D F2 5F 14 37 4F E1 35 6D 6D 51 C2 45 E4 85 .m..7O.5mmQ.E.. 0050: B5 76 62 5E 7E C6 F4 4C 42 E9 A6 37 ED 6B 0B FF .vb^...LB..7.k.. 0060: 5C B6 F4 06 B7 ED EE 38 6B FB 5A 89 9F A5 AE 9F ......8k.Z..... 0070: 24 11 7C 4B 1F E6 49 28 66 51 EC E6 53 81 FF FF $..K..I(fQ..S... 0080: FF FF FF FF FF FF 00 01 02 00 80 0E 6E D5 33 6D ............n.3m 0090: 38 A4 C7 B3 3B B7 D7 57 5E 74 F9 FA C6 77 09 5F 8...;..W^t...w. 00A0: 15 41 C0 99 90 42 6D 46 5F D2 EE F6 47 77 A9 34 .A...BmF...Gw.4 00B0: CA 5B 45 4F 64 8C CA 75 9A 6D F1 29 92 84 71 A7 .[EOd..u.m.)..q. 00C0: 92 16 0F 0F 49 45 9A 67 11 C3 D6 06 0B 64 3E D6 ....IE.g.....d>. 00D0: 20 15 04 67 79 36 2B 9A EC 55 15 B0 58 A5 10 99 ..gy6+..U..X... 00E0: 3E E7 DA 60 87 F0 6D 60 64 AD 6E A9 14 61 13 20 >....md.n..a. 00F0: 48 E9 5D 22 FA AC 9D 44 BD 25 D1 B5 63 69 4A 9A H.]"...D.%..ciJ. 0100: AD E9 58 57 1F 08 C1 5F 2B 3C AE 06 01 01 00 32 ..XW...+<.....2 0110: C2 C6 D3 3E 97 5E 44 82 C7 04 47 4F D6 DC DE FB ...>.^D...GO.... 0120: C1 A8 34 F0 1E 40 99 CA 32 B0 A0 CB 18 28 30 BE ..4..@..2....(0. 0130: B8 BF 07 91 20 6C 6F DD 85 94 B4 28 3C 92 EC 2B .... lo....(<..+ 0140: 1F 08 24 3C 64 BC 0A A8 0C D5 D0 67 8D A9 B8 C8 ..$<d......g.... 0150: E5 AB BD 52 97 05 D9 E7 DE 2E 5B 08 B4 05 88 EA ...R......[..... 0160: A1 74 A3 5A 5F 94 2A B9 9E FF E2 BC 17 DC 81 E5 .t.Z.......... 0170: 58 E7 E3 3D 82 CE BB 80 B6 23 EC 2B DD DA 54 2A X..=.....#.+..T 0180: 46 EC A7 E1 0D 63 7D 0D 5F 4F 79 3C A7 3A A7 E5 F....c.._Oy<.:.. 0190: FB FC B0 0E 3E EE 76 16 2D 6F 8C 30 AC 07 67 2B ....>.v.-o.0..g+ 01A0: 15 6B DF D4 B4 E6 6F C8 35 33 C6 0F C8 B8 C4 B7 .k....o.53...... 01B0: B6 4D 53 5A E7 EC 8D 80 94 BF BD DC F5 92 5B 62 .MSZ..........[b 01C0: E2 EE 19 E2 51 20 3C 02 F5 32 A0 4E 4E E2 52 6E ....Q <..2.NN.Rn 01D0: F5 6F E1 2F A9 31 EF E9 5F 44 7D 57 C6 CC 8F 3E .o./.1..D.W...> 01E0: 75 43 A3 84 AB F9 E6 B5 27 19 8A 0F B5 2F 14 2D uC......'..../.- 01F0: 89 C8 C6 A8 C4 D1 2C 2A 78 91 7E F6 96 74 D0 3D ......,*x....t.= 0200: 5A EE 52 E9 F0 6E 9E 9F 67 27 8F AA EA 89 66 Z.R..n..g'....f ServerHelloDone [read] MD5 and SHA1 hashes: len = 4 0000: 0E 00 00 00 .... ClientKeyExchange, DH DH Public key: { 93, 38, 50, 29, 136, 24, 9, 221, 2, 115, 0, 200, 173, 242, 152, 41, 185, 162, 106, 229, 106, 34, 110, 133, 222, 253, 26, 210, 92, 200, 172, 125, 78, 79, 32, 188, 148, 61, 170, 134, 45, 217, 82, 74, 37, 133, 36, 40, 219, 162, 199, 81, 80, 237, 116, 35, 10, 188, 74, 253, 79, 147, 117, 210, 65, 119, 251, 81, 89, 165, 184, 230, 204, 37, 244, 88, 218, 130, 45, 91, 111, 208, 184, 65, 38, 70, 158, 97, 93, 251, 178, 181, 45, 23, 13, 79, 31, 12, 115, 200, 18, 161, 193, 115, 251, 75, 234, 192, 41, 203, 109, 203, 195, 253, 135, 24, 192, 123, 2, 214, 24, 168, 49, 217, 8, 41, 42, 197 } [write] MD5 and SHA1 hashes: len = 134 0000: 10 00 00 82 00 80 5D 26 32 1D 88 18 09 DD 02 73 ......]&2......s 0010: 00 C8 AD F2 98 29 B9 A2 6A E5 6A 22 6E 85 DE FD .....)..j.j"n... 0020: 1A D2 5C C8 AC 7D 4E 4F 20 BC 94 3D AA 86 2D D9 .....NO ..=..-. 0030: 52 4A 25 85 24 28 DB A2 C7 51 50 ED 74 23 0A BC RJ%.$(...QP.t#.. 0040: 4A FD 4F 93 75 D2 41 77 FB 51 59 A5 B8 E6 CC 25 J.O.u.Aw.QY....% 0050: F4 58 DA 82 2D 5B 6F D0 B8 41 26 46 9E 61 5D FB .X..-[o..A&F.a]. 0060: B2 B5 2D 17 0D 4F 1F 0C 73 C8 12 A1 C1 73 FB 4B ..-..O..s....s.K 0070: EA C0 29 CB 6D CB C3 FD 87 18 C0 7B 02 D6 18 A8 ..).m........... 0080: 31 D9 08 29 2A C5 1..)*. qtp1128252739-302, WRITE: TLSv1.2 Handshake, length = 134 SESSION KEYGEN: PreMaster Secret: 0000: 71 84 2D AC 50 13 20 FA E0 37 B6 72 D9 43 B4 49 q.-.P. ..7.r.C.I 0010: C3 F6 A9 9B 90 83 F5 E5 C1 BD 26 29 43 85 53 33 ..........&)C.S3 0020: 1F 04 B6 CC 0F FD 9D D0 DE C2 7F 40 3F 65 BC DD ...........@?e.. 0030: F4 92 FA 16 24 92 FC E5 9E F0 79 D9 FE 3B 9B 37 ....$.....y..;.7 0040: 8C D3 68 4E 54 79 F8 3F EB AF 4C 8D 7D 9B 88 5F ..hNTy.?..L.... 0050: 7D 1C 1F 4F FC FF B3 3A C8 48 98 D9 80 4C 5A 97 ...O...:.H...LZ. 0060: 2B 2A CD CF 43 55 27 10 CE 9B A9 4E E5 A3 60 B7 +*..CU'....N..`. 0070: 84 1E 61 F8 1A 56 9D C1 C1 B0 A4 9F 4E 75 B6 0D ..a..V......Nu.. CONNECTION KEYGEN: Client Nonce: 0000: 59 C9 C0 3C 9A D8 50 A2 E3 D1 AB 9E 16 0C D1 BE Y..<..P......... 0010: AE 15 12 0C CC 92 CC 1C 47 9C AF BB A9 BA 29 D3 ........G.....). Server Nonce: 0000: 59 C9 C0 3C 8D DF 6D 09 4E F0 B1 B5 1B 55 B8 DE Y..<..m.N....U.. 0010: A0 41 AD 8C E4 0D 32 38 FD EA 78 52 71 2B C8 B6 .A....28..xRq+.. Master Secret: 0000: E1 39 05 B2 43 A4 27 79 07 8A 33 EA 34 43 C6 F8 .9..C.'y..3.4C.. 0010: 11 CB B3 C6 5E 89 98 C5 31 AE C1 7C 80 C4 0D E8 ....^...1....... 0020: 41 DC C6 A0 90 F4 85 7E 2B 1F 9D FC 4E B0 80 1D A.......+...N... ... no MAC keys used for this cipher Client write key: 0000: 7C FC A8 64 E1 BC EA 98 ED E3 C2 B3 65 3D 02 5B ...d........e=.[ 0010: 1E 3C 5A 00 1A 11 15 C8 CF EE 89 C3 59 2E 8E F8 .<Z.........Y... Server write key: 0000: 50 05 B8 69 B9 63 6E 28 8C 00 FF EE 72 90 67 CB P..i.cn(....r.g. 0010: 55 0B 30 D1 A4 D3 BC 63 0B FC 81 61 9F B2 52 87 U.0....c...a..R. Client write IV: 0000: ED FE 80 5B ...[ Server write IV: 0000: 05 78 9C 0B .x.. qtp1128252739-302, WRITE: TLSv1.2 Change Cipher Spec, length = 1 *** Finished verify_data: { 94, 191, 141, 53, 85, 172, 47, 30, 171, 34, 224, 255 }


[write] MD5 and SHA1 hashes: len = 16 0000: 14 00 00 0C 5E BF 8D 35 55 AC 2F 1E AB 22 E0 FF ....^..5U./..".. Padded plaintext before ENCRYPTION: len = 16 0000: 14 00 00 0C 5E BF 8D 35 55 AC 2F 1E AB 22 E0 FF ....^..5U./..".. qtp1128252739-302, WRITE: TLSv1.2 Handshake, length = 40 [Raw write]: length = 139 0000: 16 03 03 00 86 10 00 00 82 00 80 5D 26 32 1D 88 ...........]&2.. 0010: 18 09 DD 02 73 00 C8 AD F2 98 29 B9 A2 6A E5 6A ....s.....)..j.j 0020: 22 6E 85 DE FD 1A D2 5C C8 AC 7D 4E 4F 20 BC 94 "n........NO .. 0030: 3D AA 86 2D D9 52 4A 25 85 24 28 DB A2 C7 51 50 =..-.RJ%.$(...QP 0040: ED 74 23 0A BC 4A FD 4F 93 75 D2 41 77 FB 51 59 .t#..J.O.u.Aw.QY 0050: A5 B8 E6 CC 25 F4 58 DA 82 2D 5B 6F D0 B8 41 26 ....%.X..-[o..A& 0060: 46 9E 61 5D FB B2 B5 2D 17 0D 4F 1F 0C 73 C8 12 F.a]...-..O..s.. 0070: A1 C1 73 FB 4B EA C0 29 CB 6D CB C3 FD 87 18 C0 ..s.K..).m...... 0080: 7B 02 D6 18 A8 31 D9 08 29 2A C5 .....1..)*. [Raw write]: length = 6 0000: 14 03 03 00 01 01 ...... [Raw write]: length = 45 0000: 16 03 03 00 28 00 00 00 00 00 00 00 00 45 06 96 ....(........E.. 0010: C7 73 D0 AA AB 9A FC E0 ED C5 DA A2 E0 87 30 5E .s............0^ 0020: 47 97 89 43 00 1B 0C C8 AE 69 F1 25 1C G..C.....i.%. [Raw read]: length = 5 0000: 14 03 03 00 01 ..... [Raw read]: length = 1 0000: 01 . qtp1128252739-303, READ: TLSv1.2 Change Cipher Spec, length = 1 [Raw read]: length = 5 0000: 16 03 03 00 28 ....( [Raw read]: length = 40 0000: 00 00 00 00 00 00 00 00 90 3C 97 FF 9B 5C A6 1C .........<..... 0010: 23 86 C3 37 8F 8D C2 66 5A CF 19 5D 3F AC D1 41 #..7...fZ..]?..A 0020: DB 5A 5C 03 14 1E C4 E8 .Z..... qtp1128252739-303, READ: TLSv1.2 Handshake, length = 40 Padded plaintext after DECRYPTION: len = 16 0000: 14 00 00 0C B3 D7 77 15 2C FF 71 93 25 FF D9 23 ......w.,.q.%..# *** Finished verify_data: { 179, 215, 119, 21, 44, 255, 113, 147, 37, 255, 217, 35 }


%% Cached client session: [Session-1, TLS_DHE_RSA_WITH_AES_256_GCMSHA384] [read] MD5 and SHA1 hashes: len = 16 0000: 14 00 00 0C B3 D7 77 15 2C FF 71 93 25 FF D9 23 ......w.,.q.%..# [Raw read (bb)]: length = 58 0000: 17 03 03 00 35 00 00 00 00 00 00 00 01 63 0D 63 ....5........c.c 0010: F2 E1 59 60 04 5E A0 46 56 24 89 FA 85 68 71 8E ..Y`.^.FV$...hq. 0020: 6F 05 A7 22 BC C7 74 D2 74 CD 68 13 A0 A6 92 5F o.."..t.t.h.... 0030: 04 1B 03 28 4C 01 A9 A3 BA E1 ...(L..... Padded plaintext after DECRYPTION: len = 29 0000: 00 00 14 07 00 00 00 00 00 00 00 00 00 00 00 00 ................ 0010: 00 69 64 6C 65 5F 74 69 6D 65 6F 75 74 .idle_timeout Finalizer, called close() Finalizer, called closeInternal(true) Finalizer, called closeSocket(true) Finalizer, called close() Finalizer, called closeInternal(true) Finalizer, called closeSocket(true)

Best Regards, William Cao

sbordet commented 6 years ago

@WilliamGlob, I have written a test case for using HTTP2Client from within a web application in a6e28b5. Works without problems, so you must check that your configuration is correct. You can use that test case to verify that your configuration is similar to that of the test case to solve your issue.

sbordet commented 6 years ago

@WilliamGlob closing the issue, as you have not reported additional problems. Please reopen if that's the case.