
$ gnutls-cli redmine.org
Processed 183 CA certificate(s).
Resolving 'redmine.org'...
Connecting to '46.4.36.71:443'...
- Certificate type: X.509
- Got a certificate list of 5 certificates.
- Certificate[0] info:
 - subject `OU=Domain Control Validated,OU=Gandi Standard SSL,CN=redmine.org', issuer `C=FR,ST=Paris,L=Paris,O=Gandi,CN=Gandi Standard SSL CA 2', RSA key 2048 bits, signed using RSA-SHA256, activated `2014-11-08 00:00:00 UTC', expires `2017-11-08 23:59:59 UTC', SHA-1 fingerprint `f331cd62553f8b5053aae43bdeb3a3d6c1ec1863'
        Public Key ID:
                bcf7a5efd1ed1c2141c05338c8f6988fee764637
        Public key's random art:
                +--[ RSA 2048]----+
                |        . o.+o   |
                |         + =.    |
                |        . + o.   |
                |       . o .  .  |
                |        S o  . . |
                |         o o E..o|
                |        o o . +.o|
                |         + + o +.|
                |        o.o ooo o|
                +-----------------+

- Certificate[1] info:
 - subject `C=FR,ST=Paris,L=Paris,O=Gandi,CN=Gandi Standard SSL CA 2', issuer `C=US,ST=New Jersey,L=Jersey City,O=The USERTRUST Network,CN=USERTrust RSA Certification Authority', RSA key 2048 bits, signed using RSA-SHA384, activated `2014-09-12 00:00:00 UTC', expires `2024-09-11 23:59:59 UTC', SHA-1 fingerprint `247106a405b288a46e70a0262717162d0903e734'
- Certificate[2] info:
 - subject `C=US,ST=New Jersey,L=Jersey City,O=The USERTRUST Network,CN=USERTrust RSA Certification Authority', issuer `C=SE,O=AddTrust AB,OU=AddTrust External TTP Network,CN=AddTrust External CA Root', RSA key 4096 bits, signed using RSA-SHA384, activated `2000-05-30 10:48:38 UTC', expires `2020-05-30 10:48:38 UTC', SHA-1 fingerprint `eab040689a0d805b5d6fd654fc168cff00b78be3'
- Certificate[3] info:
 - subject `C=SE,O=AddTrust AB,OU=AddTrust External TTP Network,CN=AddTrust External CA Root', issuer `C=US,ST=UT,L=Salt Lake City,O=The USERTRUST Network,OU=http://www.usertrust.com,CN=UTN - DATACorp SGC', RSA key 2048 bits, signed using RSA-SHA1, activated `2005-06-07 08:09:10 UTC', expires `2019-06-24 19:06:30 UTC', SHA-1 fingerprint `3193786a48bdf2d4d20b8fc6501f4de8be231b05'
- Certificate[4] info:
 - subject `C=US,ST=UT,L=Salt Lake City,O=The USERTRUST Network,OU=http://www.usertrust.com,CN=UTN - DATACorp SGC', issuer `C=US,ST=UT,L=Salt Lake City,O=The USERTRUST Network,OU=http://www.usertrust.com,CN=UTN - DATACorp SGC', RSA key 2048 bits, signed using RSA-SHA1, activated `1999-06-24 18:57:21 UTC', expires `2019-06-24 19:06:30 UTC', SHA-1 fingerprint `58119f0e128287ea50fdd987456f4f78dcfad6d4'
- Status: The certificate is trusted.
- Description: (TLS1.0)-(RSA)-(AES-128-CBC)-(SHA1)
- Session ID: F2:30:77:6F:73:94:69:CC:D5:9C:04:79:EC:AC:F9:19:19:72:D0:ED:1B:4C:9C:CF:FE:88:7B:AF:78:91:C6:94
- Version: TLS1.0
- Key Exchange: RSA
- Cipher: AES-128-CBC
- MAC: SHA1
- Compression: NULL
- Options: safe renegotiation,
- Handshake was completed

- Simple Client Mode:

- Peer has closed the GnuTLS connection
$
$
$
$
$
$ gnutls-cli www.redmine.org
Processed 183 CA certificate(s).
Resolving 'www.redmine.org'...
Connecting to '46.4.36.71:443'...
- Certificate type: X.509
- Got a certificate list of 5 certificates.
- Certificate[0] info:
 - subject `OU=Domain Control Validated,OU=Gandi Standard SSL,CN=redmine.org', issuer `C=FR,ST=Paris,L=Paris,O=Gandi,CN=Gandi Standard SSL CA 2', RSA key 2048 bits, signed using RSA-SHA256, activated `2014-11-08 00:00:00 UTC', expires `2017-11-08 23:59:59 UTC', SHA-1 fingerprint `f331cd62553f8b5053aae43bdeb3a3d6c1ec1863'
        Public Key ID:
                bcf7a5efd1ed1c2141c05338c8f6988fee764637
        Public key's random art:
                +--[ RSA 2048]----+
                |        . o.+o   |
                |         + =.    |
                |        . + o.   |
                |       . o .  .  |
                |        S o  . . |
                |         o o E..o|
                |        o o . +.o|
                |         + + o +.|
                |        o.o ooo o|
                +-----------------+

- Certificate[1] info:
 - subject `C=FR,ST=Paris,L=Paris,O=Gandi,CN=Gandi Standard SSL CA 2', issuer `C=US,ST=New Jersey,L=Jersey City,O=The USERTRUST Network,CN=USERTrust RSA Certification Authority', RSA key 2048 bits, signed using RSA-SHA384, activated `2014-09-12 00:00:00 UTC', expires `2024-09-11 23:59:59 UTC', SHA-1 fingerprint `247106a405b288a46e70a0262717162d0903e734'
- Certificate[2] info:
 - subject `C=US,ST=New Jersey,L=Jersey City,O=The USERTRUST Network,CN=USERTrust RSA Certification Authority', issuer `C=SE,O=AddTrust AB,OU=AddTrust External TTP Network,CN=AddTrust External CA Root', RSA key 4096 bits, signed using RSA-SHA384, activated `2000-05-30 10:48:38 UTC', expires `2020-05-30 10:48:38 UTC', SHA-1 fingerprint `eab040689a0d805b5d6fd654fc168cff00b78be3'
- Certificate[3] info:
 - subject `C=SE,O=AddTrust AB,OU=AddTrust External TTP Network,CN=AddTrust External CA Root', issuer `C=US,ST=UT,L=Salt Lake City,O=The USERTRUST Network,OU=http://www.usertrust.com,CN=UTN - DATACorp SGC', RSA key 2048 bits, signed using RSA-SHA1, activated `2005-06-07 08:09:10 UTC', expires `2019-06-24 19:06:30 UTC', SHA-1 fingerprint `3193786a48bdf2d4d20b8fc6501f4de8be231b05'
- Certificate[4] info:
 - subject `C=US,ST=UT,L=Salt Lake City,O=The USERTRUST Network,OU=http://www.usertrust.com,CN=UTN - DATACorp SGC', issuer `C=US,ST=UT,L=Salt Lake City,O=The USERTRUST Network,OU=http://www.usertrust.com,CN=UTN - DATACorp SGC', RSA key 2048 bits, signed using RSA-SHA1, activated `1999-06-24 18:57:21 UTC', expires `2019-06-24 19:06:30 UTC', SHA-1 fingerprint `58119f0e128287ea50fdd987456f4f78dcfad6d4'
- Status: The certificate is trusted.
- Description: (TLS1.0)-(RSA)-(AES-128-CBC)-(SHA1)
- Session ID: A3:CB:15:79:2B:8E:77:94:2E:53:7C:D8:5B:B2:73:14:6E:EA:EB:99:22:F3:70:B8:A7:4F:64:15:E9:38:5C:DC
- Version: TLS1.0
- Key Exchange: RSA
- Cipher: AES-128-CBC
- MAC: SHA1
- Compression: NULL
- Options: safe renegotiation,
- Handshake was completed

- Simple Client Mode:

- Peer has closed the GnuTLS connection
$
$
$
$ gnutls-cli svn.redmine.org
Processed 183 CA certificate(s).
Resolving 'svn.redmine.org'...
Connecting to '46.4.36.107:443'...
- Certificate type: X.509
- Got a certificate list of 1 certificates.
- Certificate[0] info:
 - subject `OU=Domain Control Validated,OU=Gandi Standard SSL,CN=svn.redmine.org', issuer `C=FR,ST=Paris,L=Paris,O=Gandi,CN=Gandi Standard SSL CA 2', RSA key 2048 bits, signed using RSA-SHA256, activated `2017-01-08 00:00:00 UTC', expires `2020-01-08 23:59:59 UTC', SHA-1 fingerprint `abf1c8b769a699bd20c159a45f609e272d8182b7'
        Public Key ID:
                06ed69beef2babbe79c472ac5fda09fa2866fe61
        Public key's random art:
                +--[ RSA 2048]----+
                |                 |
                |       .         |
                |      . .        |
                |       o .       |
                |       oS        |
                |      .+=        |
                |      E=o .      |
                |    +..=o* .     |
                |   +.+O**=*.     |
                +-----------------+

- Status: The certificate is NOT trusted. The certificate issuer is unknown.
*** PKI verification of server certificate failed...
*** Fatal error: Error in the certificate.
*** Handshake has failed
GnuTLS error: Error in the certificate.

