OpenSSL单向与双向认证通信( 三 )


客户端:
google@ubuntu1404:~/workspace/test/client$ openssl s_client -connect localhost:2020CONNECTED(00000003)Can't use SSL_get_servernamedepth=0 C = 12, ST = 12, L = 12, O = 12, OU = 121, CN = 2, emailAddress = 12verify error:num=18:self signed certificateverify return:1depth=0 C = 12, ST = 12, L = 12, O = 12, OU = 121, CN = 2, emailAddress = 12verify return:1---Certificate chain0 s:C = 12, ST = 12, L = 12, O = 12, OU = 121, CN = 2, emailAddress = 12i:C = 12, ST = 12, L = 12, O = 12, OU = 121, CN = 2, emailAddress = 12---Server certificate-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----subject=C = 12, ST = 12, L = 12, O = 12, OU = 121, CN = 2, emailAddress = 12issuer=C = 12, ST = 12, L = 12, O = 12, OU = 121, CN = 2, emailAddress = 12---No client certificate CA names sentPeer signing digest: SHA256Peer signature type: RSA-PSSServer Temp Key: X25519, 253 bits---SSL handshake has read 1102 bytes and written 373 bytesVerification error: self signed certificate---New, TLSv1.3, Cipher is TLS_AES_256_GCM_SHA384Server public key is 1024 bitSecure Renegotiation IS NOT supportedCompression: NONEExpansion: NONENo ALPN negotiatedEarly data was not sentVerify return code: 18 (self signed certificate)------Post-Handshake New Session Ticket arrived:SSL-Session:Protocol: TLSv1.3Cipher: TLS_AES_256_GCM_SHA384Session-ID: D7A22DBF1AD765BF5D4ECB21CC9EF5200731FAA21F44A13333DE296C6089D77DSession-ID-ctx: Resumption PSK: 0861E43EC64B80978A063BFE01E911FECF38EADA7F8CF99A8993A5459C9DE26687CCD233CDD2A55F3192EFC0F325A302PSK identity: NonePSK identity hint: NoneSRP username: NoneTLS session ticket lifetime hint: 7200 (seconds)TLS session ticket:0000 - 07 f4 d5 34 9b 8b 6b 50-e5 47 99 5b c8 a5 be e3...4..kP.G.[....0010 - 8f 85 8b 8b df 02 27 16-58 02 ee 2c 26 0c ae 22......'.X..,&.."0020 - 7e 1d 29 9c bc 37 fc 54-94 ae da cb 53 70 5d cc~.)..7.T....Sp].0030 - 2e 0f 94 6b 17 be d7 36-26 41 d3 d9 68 dd aa ff...k...6&A..h...0040 - b3 39 de a3 1d da c3 51-4f 95 35 0c 69 1e f4 be.9.....QO.5.i...0050 - 91 10 e5 88 e9 ee f4 3b-97 83 10 e9 22 fa 37 b9.......;....".7.0060 - 1b 70 a7 72 80 be e1 ff-07 0a 3c f2 6c a7 90 69.p.r......<.l..i0070 - 4f f2 1d 2f c2 5d b2 ee-30 e0 5c 0c 6b ad f1 a2O../.]..0.\.k...0080 - 51 c3 38 f6 3c 98 21 f6-eb 4f 38 a9 36 80 5f 66Q.8.<.!..O8.6._f0090 - d6 59 24 85 70 e1 f3 45-da 04 7a 0c 64 3d c6 d7.Y$.p..E..z.d=..00a0 - d2 99 31 00 aa 6e 4b 87-5b f4 1b 81 4d aa b2 ce..1..nK.[...M...00b0 - 41 1c 59 f5 e3 9c 40 c0-40 67 c9 fe 2b 62 06 cdA.Y...@.@g..+b..Start Time: 1594351318Timeout: 7200 (sec)Verify return code: 18 (self signed certificate)Extended master secret: noMax Early Data: 0---read R BLOCK---Post-Handshake New Session Ticket arrived:SSL-Session:Protocol: TLSv1.3Cipher: TLS_AES_256_GCM_SHA384Session-ID: DFF8E82B51E0EDDD3D814E28B0CC9947307AD2E3DB188C8C58A129C8AFB58065Session-ID-ctx: Resumption PSK: BC436D4D2D664CCA637AC9BDAD6D00158F56AFB8C5ADD0CE8EBD69352E380C22334BEF182B3052052D6A474EFEDEB6DDPSK identity: NonePSK identity hint: NoneSRP username: NoneTLS session ticket lifetime hint: 7200 (seconds)TLS session ticket:0000 - 07 f4 d5 34 9b 8b 6b 50-e5 47 99 5b c8 a5 be e3...4..kP.G.[....0010 - 3f eb 6d 01 29 e6 16 ea-38 5a ad 57 ba 39 bf a7?.m.)...8Z.W.9..0020 - de 1b 01 7d 2f 02 09 80-eb 36 a5 5e 7d cd 56 57...}/....6.^}.VW0030 - ac 78 e6 f3 30 1a 7c 2a-bf e0 20 7e d3 17 be 86.x..0.|*.. ~....0040 - 5d 64 a5 aa 19 9f b8 66-e5 a1 42 fc d7 30 a6 b2]d.....f..B..0..0050 - 12 f0 f2 96 94 a5 75 4f-4b 25 6c 58 58 fe 5d f2......uOK%lXX.].0060 - 80 96 f9 4c 6a 7d 33 ed-2b 04 89 08 d0 e3 fd 1b...Lj}3.+.......0070 - 8e a4 b8 a9 12 73 5c f5-da a4 4e 95 a9 5c e6 75.....s\...N..\.u0080 - 1b e4 92 10 7f 4d c2 a6-08 4b fe 03 35 b0 55 00.....M...K..5.U.0090 - a4 3f 59 8c 32 13 a9 b7-9f de 71 bf 07 0b 79 a2.?Y.2.....q...y.00a0 - e3 d3 97 40 f4 d6 93 16-38 07 59 4c 8f e5 99 ed...@....8.YL....00b0 - 31 2b 9e bc 9b 26 fb bd-6b ec ed 69 2c 4c 95 451+...&..k..i,L.E00c0 - c8 ea 86 17 12 44 60 e5-55 b0 26 a2 3f 44 a3 07.....D`.U.&.?D..Start Time: 1594351318Timeout: 7200 (sec)Verify return code: 18 (self signed certificate)Extended master secret: noMax Early Data: 0---read R BLOCKhello world!