[GTALUG] Script to show HTTP(S) and TLS details for a website

Stewart C. Russell scruss at gmail.com
Sun Aug 11 09:04:31 EDT 2019


Nice work, Giles!

It's just a little loud on sites that don't support https:

$ tls-details.sh c-raine.com
Using OpenSSL:  /usr/bin/openssl
unable to load certificate
140536996852864:error:0909006C:PEM routines:get_name:no start
line:../crypto/pem/pem_lib.c:745:Expecting: TRUSTED CERTIFICATE
unable to load certificate
139639350289536:error:0909006C:PEM routines:get_name:no start
line:../crypto/pem/pem_lib.c:745:Expecting: TRUSTED CERTIFICATE
Expiry Date:     (0 days)
unable to load certificate
139787601568896:error:0909006C:PEM routines:get_name:no start
line:../crypto/pem/pem_lib.c:745:Expecting: TRUSTED CERTIFICATE
Issuer:
TLS Versions:    (tried but unavailable: tls1_3 tls1_2 tls1_1 tls1 ssl3
ssl2 )
HTTP Version:   1.1

Sites without https support still exist, despite what Google wants you
to hear. This is on a host that doesn't support Let's Encrypt (ionos
still want something ridiculous like $50/year for a certificate) and the
inertia of moving to another host is just too much.

cheers,
 Stewart



More information about the talk mailing list