[openssl.org #3072] Strange behaviour when talking to microsoft exchange

Previous Topic Next Topic
 
classic Classic list List threaded Threaded
11 messages Options
Reply | Threaded
Open this post in threaded view
|

[openssl.org #3072] Strange behaviour when talking to microsoft exchange

Rich Salz via RT
Hi,

When talking to an exchange server I get some weird behaviour when
using the 1.0.1e version.  I get a TLS 1.0 connection, but the
problems go away when using -no_tls1_2

An example connection is with:
openssl s_client -connect mail.megacontractinginc.com:25 -starttls smtp -crlf -quiet

1)
<< 250 OK
>> HELP
<< 214-This server supports the following commands:
<< 214 HELO EHLO STARTTLS RCPT DATA RSET MAIL QUIT HELP AUTH TURN ETRN BDAT VRFY
140527452698280:error:1408F10B:SSL routines:SSL3_GET_RECORD:wrong version number:s3_pkt.c:337:

2)
<< 250 OK
>> MAIL FROM: [hidden email]
<< 250 2.1.0 [hidden email]....Sender OK
>> HELP

The connection hangs at this point, any command will hang it.

I don't see why the -no_tls1_2 should have any effect on it.


Kurt

______________________________________________________________________
OpenSSL Project                                 http://www.openssl.org
Development Mailing List                       [hidden email]
Automated List Manager                           [hidden email]
Reply | Threaded
Open this post in threaded view
|

Re: [openssl.org #3072] Strange behaviour when talking to microsoft exchange

Kurt Roeckx
On Thu, Jun 13, 2013 at 08:32:28AM +0200, Kurt Roeckx via RT wrote:

> Hi,
>
> When talking to an exchange server I get some weird behaviour when
> using the 1.0.1e version.  I get a TLS 1.0 connection, but the
> problems go away when using -no_tls1_2
>
> An example connection is with:
> openssl s_client -connect mail.megacontractinginc.com:25 -starttls smtp -crlf -quiet
>
> 1)
> << 250 OK
> >> HELP
> << 214-This server supports the following commands:
> << 214 HELO EHLO STARTTLS RCPT DATA RSET MAIL QUIT HELP AUTH TURN ETRN BDAT VRFY
> 140527452698280:error:1408F10B:SSL routines:SSL3_GET_RECORD:wrong version number:s3_pkt.c:337:
>
> 2)
> << 250 OK
> >> MAIL FROM: [hidden email]
> << 250 2.1.0 [hidden email]....Sender OK
> >> HELP
>
> The connection hangs at this point, any command will hang it.
>
> I don't see why the -no_tls1_2 should have any effect on it.

One thing I've noticed is that -no_tls1_2 has as effect that the
cipher gets changed from DES-CBC3-SHA to RC4-MD5.


Kurt

______________________________________________________________________
OpenSSL Project                                 http://www.openssl.org
Development Mailing List                       [hidden email]
Automated List Manager                           [hidden email]
Reply | Threaded
Open this post in threaded view
|

RE: [openssl.org #3072] Strange behaviour when talking to microsoft exchange

Dave Thompson-5
> From: [hidden email] On Behalf Of Kurt Roeckx
> Sent: Thursday, 13 June, 2013 03:13

> > When talking to an exchange server I get some weird behaviour when
> > using the 1.0.1e version.  I get a TLS 1.0 connection, but the
> > problems go away when using -no_tls1_2
> >
If you got an agreed protocol, then it isn't the "1.2-ClientHello
got bigger" problem.

> > An example connection is with:
> > openssl s_client -connect mail.megacontractinginc.com:25
> -starttls smtp -crlf -quiet
> >
> > 1)
> > << 250 OK
> > >> HELP
> > << 214-This server supports the following commands:
> > << 214 HELO EHLO STARTTLS RCPT DATA RSET MAIL QUIT HELP
> AUTH TURN ETRN BDAT VRFY
> > 140527452698280:error:1408F10B:SSL
> routines:SSL3_GET_RECORD:wrong version number:s3_pkt.c:337:
> >
That's really weird, unless the server isn't actually doing starttls
correctly (in spite of offering it). If you can get this to recur,
try with -state -debug to see exactly where/what is happening.

> > 2)
> > << 250 OK
> > >> MAIL FROM: [hidden email]
> > << 250 2.1.0 [hidden email]....Sender OK
> > >> HELP
> >
> > The connection hangs at this point, any command will hang it.
> >
> > I don't see why the -no_tls1_2 should have any effect on it.
>
> One thing I've noticed is that -no_tls1_2 has as effect that the
> cipher gets changed from DES-CBC3-SHA to RC4-MD5.
>
I don't see why that would result; -no_tls1_2 excludes the 1.2-only
suites (SHA2 and GCM) from ClientHello, but it still has akRSA-DES3CBC
preferred over akRSA-RC4 (and akRSA-RC4-SHA over akRSA-RC4-MD5!).
Are you sure there's nothing else different? Can you get a wire trace,
or -msg or -debug?

But given it happened, it means that the "empty_fragment" (0/N)
CBC patch now used against BEAST becomes inapplicable. If this
server/stack could be one of the ones rumored to not support
0/N (even though MS did implement 1/N in Jan. 2012 for BEAST, the
infamous MS12-006) try s_client with -bugs . -debug might also be
worth trying here if (most? of) your inputs and outputs are long
enough to be distinguished at granularity 8 (DES block size).


______________________________________________________________________
OpenSSL Project                                 http://www.openssl.org
Development Mailing List                       [hidden email]
Automated List Manager                           [hidden email]
Reply | Threaded
Open this post in threaded view
|

Re: [openssl.org #3072] Strange behaviour when talking to microsoft exchange

Rich Salz via RT
On Fri, Jun 14, 2013 at 08:09:56PM -0400, Dave Thompson wrote:

> > From: [hidden email] On Behalf Of Kurt Roeckx
> > Sent: Thursday, 13 June, 2013 03:13
>
> > > When talking to an exchange server I get some weird behaviour when
> > > using the 1.0.1e version.  I get a TLS 1.0 connection, but the
> > > problems go away when using -no_tls1_2
> > >
> If you got an agreed protocol, then it isn't the "1.2-ClientHello
> got bigger" problem.
>
> > > An example connection is with:
> > > openssl s_client -connect mail.megacontractinginc.com:25
> > -starttls smtp -crlf -quiet
> > >
> > > 1)
> > > << 250 OK
> > > >> HELP
> > > << 214-This server supports the following commands:
> > > << 214 HELO EHLO STARTTLS RCPT DATA RSET MAIL QUIT HELP
> > AUTH TURN ETRN BDAT VRFY
> > > 140527452698280:error:1408F10B:SSL
> > routines:SSL3_GET_RECORD:wrong version number:s3_pkt.c:337:
> > >
> That's really weird, unless the server isn't actually doing starttls
> correctly (in spite of offering it). If you can get this to recur,
> try with -state -debug to see exactly where/what is happening.
I can reproduce this with several servers.

> > > 2)
> > > << 250 OK
> > > >> MAIL FROM: [hidden email]
> > > << 250 2.1.0 [hidden email]....Sender OK
> > > >> HELP
> > >
> > > The connection hangs at this point, any command will hang it.
> > >
> > > I don't see why the -no_tls1_2 should have any effect on it.
> >
> > One thing I've noticed is that -no_tls1_2 has as effect that the
> > cipher gets changed from DES-CBC3-SHA to RC4-MD5.
> >
> I don't see why that would result; -no_tls1_2 excludes the 1.2-only
> suites (SHA2 and GCM) from ClientHello, but it still has akRSA-DES3CBC
> preferred over akRSA-RC4 (and akRSA-RC4-SHA over akRSA-RC4-MD5!).
> Are you sure there's nothing else different? Can you get a wire trace,
> or -msg or -debug?
I've attached 2 log files:
openssl s_client -connect mail.megacontractinginc.com:25 -starttls smtp -crlf -state -msg -debug &> state_debug.log
openssl s_client -connect mail.megacontractinginc.com:25 -starttls smtp -crlf -state -msg -debug -no_tls1_2 &> state_debug_no_tls1_2.log

One other thing I've learned so far is that with openssl 0.9.8 it
also negiotaties RC4-MD5 and not DES-CBC3-SHA.

> But given it happened, it means that the "empty_fragment" (0/N)
> CBC patch now used against BEAST becomes inapplicable. If this
> server/stack could be one of the ones rumored to not support
> 0/N (even though MS did implement 1/N in Jan. 2012 for BEAST, the
> infamous MS12-006) try s_client with -bugs . -debug might also be
> worth trying here if (most? of) your inputs and outputs are long
> enough to be distinguished at granularity 8 (DES block size).

Using -bugs doesn't have any effect.


Kurt



SSL_connect:before/connect initialization
CONNECTED(00000003)
read from 0x14aa630 [0x14aa760] (4096 bytes => 129 (0x81))
0000 - 32 32 30 20 6d 61 69 6c-2e 6d 65 67 61 63 6f 6e   220 mail.megacon
0010 - 74 72 61 63 74 69 6e 67-69 6e 63 2e 63 6f 6d 20   tractinginc.com
0020 - 4d 69 63 72 6f 73 6f 66-74 20 45 53 4d 54 50 20   Microsoft ESMTP
0030 - 4d 41 49 4c 20 53 65 72-76 69 63 65 2c 20 56 65   MAIL Service, Ve
0040 - 72 73 69 6f 6e 3a 20 36-2e 30 2e 33 37 39 30 2e   rsion: 6.0.3790.
0050 - 34 36 37 35 20 72 65 61-64 79 20 61 74 20 20 53   4675 ready at  S
0060 - 61 74 2c 20 31 35 20 4a-75 6e 20 32 30 31 33 20   at, 15 Jun 2013
0070 - 31 31 3a 30 30 3a 34 32-20 2d 30 34 30 30 20 0d   11:00:42 -0400 .
0080 - 0a                                                .
write to 0x14aa630 [0x14ab770] (25 bytes => 25 (0x19))
0000 - 45 48 4c 4f 20 6f 70 65-6e 73 73 6c 2e 63 6c 69   EHLO openssl.cli
0010 - 65 6e 74 2e 6e 65 74 0d-0a                        ent.net..
read from 0x14aa630 [0x14aa760] (4096 bytes => 299 (0x12B))
0000 - 32 35 30 2d 6d 61 69 6c-2e 6d 65 67 61 63 6f 6e   250-mail.megacon
0010 - 74 72 61 63 74 69 6e 67-69 6e 63 2e 63 6f 6d 20   tractinginc.com
0020 - 48 65 6c 6c 6f 20 5b 31-39 34 2e 31 37 37 2e 32   Hello [194.177.2
0030 - 31 31 2e 32 30 34 5d 0d-0a 32 35 30 2d 54 55 52   11.204]..250-TUR
0040 - 4e 0d 0a 32 35 30 2d 53-49 5a 45 0d 0a 32 35 30   N..250-SIZE..250
0050 - 2d 45 54 52 4e 0d 0a 32-35 30 2d 50 49 50 45 4c   -ETRN..250-PIPEL
0060 - 49 4e 49 4e 47 0d 0a 32-35 30 2d 44 53 4e 0d 0a   INING..250-DSN..
0070 - 32 35 30 2d 45 4e 48 41-4e 43 45 44 53 54 41 54   250-ENHANCEDSTAT
0080 - 55 53 43 4f 44 45 53 0d-0a 32 35 30 2d 38 62 69   USCODES..250-8bi
0090 - 74 6d 69 6d 65 0d 0a 32-35 30 2d 42 49 4e 41 52   tmime..250-BINAR
00a0 - 59 4d 49 4d 45 0d 0a 32-35 30 2d 43 48 55 4e 4b   YMIME..250-CHUNK
00b0 - 49 4e 47 0d 0a 32 35 30-2d 56 52 46 59 0d 0a 32   ING..250-VRFY..2
00c0 - 35 30 2d 54 4c 53 0d 0a-32 35 30 2d 53 54 41 52   50-TLS..250-STAR
00d0 - 54 54 4c 53 0d 0a 32 35-30 2d 58 2d 45 58 50 53   TTLS..250-X-EXPS
00e0 - 20 47 53 53 41 50 49 20-4e 54 4c 4d 0d 0a 32 35    GSSAPI NTLM..25
00f0 - 30 2d 41 55 54 48 20 47-53 53 41 50 49 20 4e 54   0-AUTH GSSAPI NT
0100 - 4c 4d 0d 0a 32 35 30 2d-58 2d 4c 49 4e 4b 32 53   LM..250-X-LINK2S
0110 - 54 41 54 45 0d 0a 32 35-30 2d 58 45 58 43 48 35   TATE..250-XEXCH5
0120 - 30 0d 0a 32 35 30 20 4f-4b 0d 0a                  0..250 OK..
write to 0x14aa630 [0x7fff297404d0] (10 bytes => 10 (0xA))
0000 - 53 54 41 52 54 54 4c 53-0d 0a                     STARTTLS..
read from 0x14aa630 [0x149c7d0] (8192 bytes => 29 (0x1D))
0000 - 32 32 30 20 32 2e 30 2e-30 20 53 4d 54 50 20 73   220 2.0.0 SMTP s
0010 - 65 72 76 65 72 20 72 65-61 64 79 0d 0a            erver ready..
write to 0x14aa630 [0x14aa6b0] (320 bytes => 320 (0x140))
0000 - 16 03 01 01 3b 01 00 01-37 03 03 51 bc 81 9b a6   ....;...7..Q....
0010 - fe fc 3d 23 7e db 6b 21-a7 4a af bd d0 b3 9e 71   ..=#~.k!.J.....q
0020 - 91 b8 0b a6 c5 4e 3e 7d-8a 0b a3 00 00 9e c0 30   .....N>}.......0
0030 - c0 2c c0 28 c0 24 c0 14-c0 0a c0 22 c0 21 00 a3   .,.(.$.....".!..
0040 - 00 9f 00 6b 00 6a 00 39-00 38 00 88 00 87 c0 32   ...k.j.9.8.....2
0050 - c0 2e c0 2a c0 26 c0 0f-c0 05 00 9d 00 3d 00 35   ...*.&.......=.5
0060 - 00 84 c0 12 c0 08 c0 1c-c0 1b 00 16 00 13 c0 0d   ................
0070 - c0 03 00 0a c0 2f c0 2b-c0 27 c0 23 c0 13 c0 09   ...../.+.'.#....
0080 - c0 1f c0 1e 00 a2 00 9e-00 67 00 40 00 33 00 32   .........g.@.3.2
0090 - 00 9a 00 99 00 45 00 44-c0 31 c0 2d c0 29 c0 25   .....E.D.1.-.).%
00a0 - c0 0e c0 04 00 9c 00 3c-00 2f 00 96 00 41 c0 11   .......<./...A..
00b0 - c0 07 c0 0c c0 02 00 05-00 04 00 15 00 12 00 09   ................
00c0 - 00 14 00 11 00 08 00 06-00 03 00 ff 02 01 00 00   ................
00d0 - 6f 00 0b 00 04 03 00 01-02 00 0a 00 34 00 32 00   o...........4.2.
00e0 - 0e 00 0d 00 19 00 0b 00-0c 00 18 00 09 00 0a 00   ................
00f0 - 16 00 17 00 08 00 06 00-07 00 14 00 15 00 04 00   ................
0100 - 05 00 12 00 13 00 01 00-02 00 03 00 0f 00 10 00   ................
0110 - 11 00 23 00 00 00 0d 00-22 00 20 06 01 06 02 06   ..#.....". .....
0120 - 03 05 01 05 02 05 03 04-01 04 02 04 03 03 01 03   ................
0130 - 02 03 03 02 01 02 02 02-03 01 01 00 0f 00 01 01   ................
>>> TLS 1.2 Handshake [length 013b], ClientHello
    01 00 01 37 03 03 51 bc 81 9b a6 fe fc 3d 23 7e
    db 6b 21 a7 4a af bd d0 b3 9e 71 91 b8 0b a6 c5
    4e 3e 7d 8a 0b a3 00 00 9e c0 30 c0 2c c0 28 c0
    24 c0 14 c0 0a c0 22 c0 21 00 a3 00 9f 00 6b 00
    6a 00 39 00 38 00 88 00 87 c0 32 c0 2e c0 2a c0
    26 c0 0f c0 05 00 9d 00 3d 00 35 00 84 c0 12 c0
    08 c0 1c c0 1b 00 16 00 13 c0 0d c0 03 00 0a c0
    2f c0 2b c0 27 c0 23 c0 13 c0 09 c0 1f c0 1e 00
    a2 00 9e 00 67 00 40 00 33 00 32 00 9a 00 99 00
    45 00 44 c0 31 c0 2d c0 29 c0 25 c0 0e c0 04 00
    9c 00 3c 00 2f 00 96 00 41 c0 11 c0 07 c0 0c c0
    02 00 05 00 04 00 15 00 12 00 09 00 14 00 11 00
    08 00 06 00 03 00 ff 02 01 00 00 6f 00 0b 00 04
    03 00 01 02 00 0a 00 34 00 32 00 0e 00 0d 00 19
    00 0b 00 0c 00 18 00 09 00 0a 00 16 00 17 00 08
    00 06 00 07 00 14 00 15 00 04 00 05 00 12 00 13
    00 01 00 02 00 03 00 0f 00 10 00 11 00 23 00 00
    00 0d 00 22 00 20 06 01 06 02 06 03 05 01 05 02
    05 03 04 01 04 02 04 03 03 01 03 02 03 03 02 01
    02 02 02 03 01 01 00 0f 00 01 01
SSL_connect:unknown state
read from 0x14aa630 [0x14afc10] (7 bytes => 7 (0x7))
0000 - 16 03 01 0a d2 02                                 ......
0007 - <SPACES/NULS>
read from 0x14aa630 [0x14afc1a] (2768 bytes => 1381 (0x565))
0000 - 00 46 03 01 51 bc 81 9b-aa 7e ae 5d 97 15 4c 0b   .F..Q....~.]..L.
0010 - d3 e7 1d 68 60 e8 76 57-89 92 2b 30 46 67 86 8d   ...h`.vW..+0Fg..
0020 - e7 2d 95 a2 20 6b 14 00-00 e4 1f 62 e7 ed 5c 63   .-.. k.....b..\c
0030 - fb 9d 1a bb 08 3a 53 6f-27 d8 e6 52 d7 91 e9 78   .....:So'..R...x
0040 - 99 a6 2e 3b 23 00 0a 00-0b 00 0a 80 00 0a 7d 00   ...;#.........}.
0050 - 05 95 30 82 05 91 30 82-04 79 a0 03 02 01 02 02   ..0...0..y......
0060 - 07 4b 31 37 8f 40 6f bb-30 0d 06 09 2a 86 48 86   .K17.@o.0...*.H.
0070 - f7 0d 01 01 05 05 00 30-81 ca 31 0b 30 09 06 03   .......0..1.0...
0080 - 55 04 06 13 02 55 53 31-10 30 0e 06 03 55 04 08   U....US1.0...U..
0090 - 13 07 41 72 69 7a 6f 6e-61 31 13 30 11 06 03 55   ..Arizona1.0...U
00a0 - 04 07 13 0a 53 63 6f 74-74 73 64 61 6c 65 31 1a   ....Scottsdale1.
00b0 - 30 18 06 03 55 04 0a 13-11 47 6f 44 61 64 64 79   0...U....GoDaddy
00c0 - 2e 63 6f 6d 2c 20 49 6e-63 2e 31 33 30 31 06 03   .com, Inc.1301..
00d0 - 55 04 0b 13 2a 68 74 74-70 3a 2f 2f 63 65 72 74   U...*http://cert
00e0 - 69 66 69 63 61 74 65 73-2e 67 6f 64 61 64 64 79   ificates.godaddy
00f0 - 2e 63 6f 6d 2f 72 65 70-6f 73 69 74 6f 72 79 31   .com/repository1
0100 - 30 30 2e 06 03 55 04 03-13 27 47 6f 20 44 61 64   00...U...'Go Dad
0110 - 64 79 20 53 65 63 75 72-65 20 43 65 72 74 69 66   dy Secure Certif
0120 - 69 63 61 74 69 6f 6e 20-41 75 74 68 6f 72 69 74   ication Authorit
0130 - 79 31 11 30 0f 06 03 55-04 05 13 08 30 37 39 36   y1.0...U....0796
0140 - 39 32 38 37 30 1e 17 0d-31 30 31 31 30 35 30 31   92870...10110501
0150 - 33 32 35 32 5a 17 0d 31-35 31 31 30 35 30 31 33   3252Z..151105013
0160 - 32 35 32 5a 30 6f 31 24-30 22 06 03 55 04 0a 13   252Z0o1$0"..U...
0170 - 1b 6d 61 69 6c 2e 6d 65-67 61 63 6f 6e 74 72 61   .mail.megacontra
0180 - 63 74 69 6e 67 69 6e 63-2e 63 6f 6d 31 21 30 1f   ctinginc.com1!0.
0190 - 06 03 55 04 0b 13 18 44-6f 6d 61 69 6e 20 43 6f   ..U....Domain Co
01a0 - 6e 74 72 6f 6c 20 56 61-6c 69 64 61 74 65 64 31   ntrol Validated1
01b0 - 24 30 22 06 03 55 04 03-13 1b 6d 61 69 6c 2e 6d   $0"..U....mail.m
01c0 - 65 67 61 63 6f 6e 74 72-61 63 74 69 6e 67 69 6e   egacontractingin
01d0 - 63 2e 63 6f 6d 30 82 01-22 30 0d 06 09 2a 86 48   c.com0.."0...*.H
01e0 - 86 f7 0d 01 01 01 05 00-03 82 01 0f 00 30 82 01   .............0..
01f0 - 0a 02 82 01 01 00 dc 8d-e3 23 4d 6b a3 2d dc a3   .........#Mk.-..
0200 - 12 33 a8 32 00 f8 c3 c4-a7 05 65 62 e4 28 1b a0   .3.2......eb.(..
0210 - 83 f1 ec 1d ec 33 d3 72-06 85 6f d2 36 f9 41 98   .....3.r..o.6.A.
0220 - bc 05 95 10 4f 0c 51 e4-fe 66 36 33 b6 7c 8e e0   ....O.Q..f63.|..
0230 - 74 ff 8d 0b ee 5a c7 30-fd 70 ba 0f 22 e3 53 a8   t....Z.0.p..".S.
0240 - 69 0c 71 2c 1a aa da fd-70 fe 10 56 b5 4d ba ea   i.q,....p..V.M..
0250 - f3 6a dc f2 cc d7 31 cb-b9 8c 62 90 98 b4 bd a7   .j....1...b.....
0260 - 78 ab f4 48 bb fa 4f a7-1b 41 6c 6c 59 85 95 55   x..H..O..AllY..U
0270 - 70 b8 08 87 cc 3c df 3d-b7 f9 d3 08 de 46 3d 00   p....<.=.....F=.
0280 - 0b 5b 27 aa 73 be a0 42-a5 8d c1 6b 1a cc 45 b3   .['.s..B...k..E.
0290 - 98 06 0e 12 9d 29 79 8e-d1 11 25 65 ea f9 a9 e5   .....)y...%e....
02a0 - a5 5f 96 f0 be d4 5f 90-f9 1d 4a 9d e6 04 8f 0c   ._...._...J.....
02b0 - 74 1f 69 e8 12 aa c1 7e-32 ba c2 03 3b c8 b2 4f   t.i....~2...;..O
02c0 - 23 c6 de ab 03 45 62 ea-57 8a b8 e0 e6 94 10 1d   #....Eb.W.......
02d0 - 54 96 b9 fe 79 b7 0e ea-9e 51 57 5d 78 5f fc 81   T...y....QW]x_..
02e0 - 68 25 e2 58 5d 0c 09 76-c5 4d eb 8d 0c eb 50 7a   h%.X]..v.M....Pz
02f0 - a7 3f f1 e0 4e 07 02 03-01 00 01 a3 82 01 d4 30   .?..N..........0
0300 - 82 01 d0 30 0f 06 03 55-1d 13 01 01 ff 04 05 30   ...0...U.......0
0310 - 03 01 01 00 30 1d 06 03-55 1d 25 04 16 30 14 06   ....0...U.%..0..
0320 - 08 2b 06 01 05 05 07 03-01 06 08 2b 06 01 05 05   .+.........+....
0330 - 07 03 02 30 0e 06 03 55-1d 0f 01 01 ff 04 04 03   ...0...U........
0340 - 02 05 a0 30 33 06 03 55-1d 1f 04 2c 30 2a 30 28   ...03..U...,0*0(
0350 - a0 26 a0 24 86 22 68 74-74 70 3a 2f 2f 63 72 6c   .&.$."http://crl
0360 - 2e 67 6f 64 61 64 64 79-2e 63 6f 6d 2f 67 64 73   .godaddy.com/gds
0370 - 31 2d 32 35 2e 63 72 6c-30 4d 06 03 55 1d 20 04   1-25.crl0M..U. .
0380 - 46 30 44 30 42 06 0b 60-86 48 01 86 fd 6d 01 07   F0D0B..`.H...m..
0390 - 17 01 30 33 30 31 06 08-2b 06 01 05 05 07 02 01   ..0301..+.......
03a0 - 16 25 68 74 74 70 73 3a-2f 2f 63 65 72 74 73 2e   .%https://certs.
03b0 - 67 6f 64 61 64 64 79 2e-63 6f 6d 2f 72 65 70 6f   godaddy.com/repo
03c0 - 73 69 74 6f 72 79 2f 30-81 80 06 08 2b 06 01 05   sitory/0....+...
03d0 - 05 07 01 01 04 74 30 72-30 24 06 08 2b 06 01 05   .....t0r0$..+...
03e0 - 05 07 30 01 86 18 68 74-74 70 3a 2f 2f 6f 63 73   ..0...http://ocs
03f0 - 70 2e 67 6f 64 61 64 64-79 2e 63 6f 6d 2f 30 4a   p.godaddy.com/0J
0400 - 06 08 2b 06 01 05 05 07-30 02 86 3e 68 74 74 70   ..+.....0..>http
0410 - 3a 2f 2f 63 65 72 74 69-66 69 63 61 74 65 73 2e   ://certificates.
0420 - 67 6f 64 61 64 64 79 2e-63 6f 6d 2f 72 65 70 6f   godaddy.com/repo
0430 - 73 69 74 6f 72 79 2f 67-64 5f 69 6e 74 65 72 6d   sitory/gd_interm
0440 - 65 64 69 61 74 65 2e 63-72 74 30 1f 06 03 55 1d   ediate.crt0...U.
0450 - 23 04 18 30 16 80 14 fd-ac 61 32 93 6c 45 d6 e2   #..0.....a2.lE..
0460 - ee 85 5f 9a ba e7 76 99-68 cc e7 30 47 06 03 55   .._...v.h..0G..U
0470 - 1d 11 04 40 30 3e 82 1b-6d 61 69 6c 2e 6d 65 67   ...@0>..mail.meg
0480 - 61 63 6f 6e 74 72 61 63-74 69 6e 67 69 6e 63 2e   acontractinginc.
0490 - 63 6f 6d 82 1f 77 77 77-2e 6d 61 69 6c 2e 6d 65   com..www.mail.me
04a0 - 67 61 63 6f 6e 74 72 61-63 74 69 6e 67 69 6e 63   gacontractinginc
04b0 - 2e 63 6f 6d 30 1d 06 03-55 1d 0e 04 16 04 14 31   .com0...U......1
04c0 - b6 94 b8 4e e7 0b 14 66-9e 54 5e 7b a2 fe d6 06   ...N...f.T^{....
04d0 - 9f 59 fd 30 0d 06 09 2a-86 48 86 f7 0d 01 01 05   .Y.0...*.H......
04e0 - 05 00 03 82 01 01 00 5b-d7 d7 76 96 4d 9d 11 d9   .......[..v.M...
04f0 - 51 be 2c 12 64 1d d7 90-d4 63 14 95 d2 d3 50 94   Q.,.d....c....P.
0500 - 46 35 f3 4e a2 c7 ca e2-68 2c ae 3b 63 41 8c a6   F5.N....h,.;cA..
0510 - 46 26 c8 a8 d5 c3 4d c9-7f ec 92 aa 87 f3 5e 33   F&....M.......^3
0520 - 40 c6 10 de 18 48 8e 62-70 0b a8 59 5a 2e 45 5a   @....H.bp..YZ.EZ
0530 - e6 45 93 84 06 74 99 8f-5a 05 1f d5 1f 3a 5d 68   .E...t..Z....:]h
0540 - c2 98 d9 ff 33 9c d2 af-20 fa 3c 6b 46 10 12 56   ....3... .<kF..V
0550 - 1d e8 2b 2f ce 7f c7 d8-ec 27 00 14 df 22 45 7f   ..+/.....'..."E.
0560 - 64 5c 40 59 a8                                    d\@Y.
read from 0x14aa630 [0x14b017f] (1387 bytes => 1387 (0x56B))
0000 - e8 37 f6 52 c9 c4 56 6e-32 03 f2 4b 93 25 9f d2   .7.R..Vn2..K.%..
0010 - 59 a8 c7 3a 69 38 2e 4c-64 73 aa 7d 63 71 68 3a   Y..:i8.Lds.}cqh:
0020 - 9e eb fe 8f 6d 5e 2e 20-f2 cf c6 b9 55 83 f7 23   ....m^. ....U..#
0030 - 0f 85 ae c5 1f 46 0c 3c-70 aa 15 5f e1 f3 e7 ca   .....F.<p.._....
0040 - 27 2a 6e 07 b3 4a b0 b1-49 96 26 cf df 1d ea d0   '*n..J..I.&.....
0050 - 00 83 31 0e ff 85 4f 66-53 99 37 2e 9b 58 37 9b   ..1...OfS.7..X7.
0060 - 59 fc 50 dc a9 d7 76 10-22 cc 27 47 cd 8e 41 88   Y.P...v.".'G..A.
0070 - 04 b3 d1 85 cc 34 f8 07-6f 9f 39 9a fd 1a c7 36   .....4..o.9....6
0080 - 31 49 00 04 e2 30 82 04-de 30 82 03 c6 a0 03 02   1I...0...0......
0090 - 01 02 02 02 03 01 30 0d-06 09 2a 86 48 86 f7 0d   ......0...*.H...
00a0 - 01 01 05 05 00 30 63 31-0b 30 09 06 03 55 04 06   .....0c1.0...U..
00b0 - 13 02 55 53 31 21 30 1f-06 03 55 04 0a 13 18 54   ..US1!0...U....T
00c0 - 68 65 20 47 6f 20 44 61-64 64 79 20 47 72 6f 75   he Go Daddy Grou
00d0 - 70 2c 20 49 6e 63 2e 31-31 30 2f 06 03 55 04 0b   p, Inc.110/..U..
00e0 - 13 28 47 6f 20 44 61 64-64 79 20 43 6c 61 73 73   .(Go Daddy Class
00f0 - 20 32 20 43 65 72 74 69-66 69 63 61 74 69 6f 6e    2 Certification
0100 - 20 41 75 74 68 6f 72 69-74 79 30 1e 17 0d 30 36    Authority0...06
0110 - 31 31 31 36 30 31 35 34-33 37 5a 17 0d 32 36 31   1116015437Z..261
0120 - 31 31 36 30 31 35 34 33-37 5a 30 81 ca 31 0b 30   116015437Z0..1.0
0130 - 09 06 03 55 04 06 13 02-55 53 31 10 30 0e 06 03   ...U....US1.0...
0140 - 55 04 08 13 07 41 72 69-7a 6f 6e 61 31 13 30 11   U....Arizona1.0.
0150 - 06 03 55 04 07 13 0a 53-63 6f 74 74 73 64 61 6c   ..U....Scottsdal
0160 - 65 31 1a 30 18 06 03 55-04 0a 13 11 47 6f 44 61   e1.0...U....GoDa
0170 - 64 64 79 2e 63 6f 6d 2c-20 49 6e 63 2e 31 33 30   ddy.com, Inc.130
0180 - 31 06 03 55 04 0b 13 2a-68 74 74 70 3a 2f 2f 63   1..U...*http://c
0190 - 65 72 74 69 66 69 63 61-74 65 73 2e 67 6f 64 61   ertificates.goda
01a0 - 64 64 79 2e 63 6f 6d 2f-72 65 70 6f 73 69 74 6f   ddy.com/reposito
01b0 - 72 79 31 30 30 2e 06 03-55 04 03 13 27 47 6f 20   ry100...U...'Go
01c0 - 44 61 64 64 79 20 53 65-63 75 72 65 20 43 65 72   Daddy Secure Cer
01d0 - 74 69 66 69 63 61 74 69-6f 6e 20 41 75 74 68 6f   tification Autho
01e0 - 72 69 74 79 31 11 30 0f-06 03 55 04 05 13 08 30   rity1.0...U....0
01f0 - 37 39 36 39 32 38 37 30-82 01 22 30 0d 06 09 2a   79692870.."0...*
0200 - 86 48 86 f7 0d 01 01 01-05 00 03 82 01 0f 00 30   .H.............0
0210 - 82 01 0a 02 82 01 01 00-c4 2d d5 15 8c 9c 26 4c   .........-....&L
0220 - ec 32 35 eb 5f b8 59 01-5a a6 61 81 59 3b 70 63   .25._.Y.Z.a.Y;pc
0230 - ab e3 dc 3d c7 2a b8 c9-33 d3 79 e4 3a ed 3c 30   ...=.*..3.y.:.<0
0240 - 23 84 8e b3 30 14 b6 b2-87 c3 3d 95 54 04 9e df   #...0.....=.T...
0250 - 99 dd 0b 25 1e 21 de 65-29 7e 35 a8 a9 54 eb f6   ...%.!.e)~5..T..
0260 - f7 32 39 d4 26 55 95 ad-ef fb fe 58 86 d7 9e f4   .29.&U.....X....
0270 - 00 8d 8c 2a 0c bd 42 04-ce a7 3f 04 f6 ee 80 f2   ...*..B...?.....
0280 - aa ef 52 a1 69 66 da be-1a ad 5d da 2c 66 ea 1a   ..R.if....].,f..
0290 - 6b bb e5 1a 51 4a 00 2f-48 c7 98 75 d8 b9 29 c8   k...QJ./H..u..).
02a0 - ee f8 66 6d 0a 9c b3 f3-fc 78 7c a2 f8 a3 f2 b5   ..fm.....x|.....
02b0 - c3 f3 b9 7a 91 c1 a7 e6-25 2e 9c a8 ed 12 65 6e   ...z....%.....en
02c0 - 6a f6 12 44 53 70 30 95-c3 9c 2b 58 2b 3d 08 74   j..DSp0...+X+=.t
02d0 - 4a f2 be 51 b0 bf 87 d0-4c 27 58 6b b5 35 c5 9d   J..Q....L'Xk.5..
02e0 - af 17 31 f8 0b 8f ee ad-81 36 05 89 08 98 cf 3a   ..1......6.....:
02f0 - af 25 87 c0 49 ea a7 fd-67 f7 45 8e 97 cc 14 39   .%..I...g.E....9
0300 - e2 36 85 b5 7e 1a 37 fd-16 f6 71 11 9a 74 30 16   .6..~.7...q..t0.
0310 - fe 13 94 a3 3f 84 0d 4f-02 03 01 00 01 a3 82 01   ....?..O........
0320 - 32 30 82 01 2e 30 1d 06-03 55 1d 0e 04 16 04 14   20...0...U......
0330 - fd ac 61 32 93 6c 45 d6-e2 ee 85 5f 9a ba e7 76   ..a2.lE...._...v
0340 - 99 68 cc e7 30 1f 06 03-55 1d 23 04 18 30 16 80   .h..0...U.#..0..
0350 - 14 d2 c4 b0 d2 91 d4 4c-11 71 b3 61 cb 3d a1 fe   .......L.q.a.=..
0360 - dd a8 6a d4 e3 30 12 06-03 55 1d 13 01 01 ff 04   ..j..0...U......
0370 - 08 30 06 01 01 ff 02 01-00 30 33 06 08 2b 06 01   .0.......03..+..
0380 - 05 05 07 01 01 04 27 30-25 30 23 06 08 2b 06 01   ......'0%0#..+..
0390 - 05 05 07 30 01 86 17 68-74 74 70 3a 2f 2f 6f 63   ...0...http://oc
03a0 - 73 70 2e 67 6f 64 61 64-64 79 2e 63 6f 6d 30 46   sp.godaddy.com0F
03b0 - 06 03 55 1d 1f 04 3f 30-3d 30 3b a0 39 a0 37 86   ..U...?0=0;.9.7.
03c0 - 35 68 74 74 70 3a 2f 2f-63 65 72 74 69 66 69 63   5http://certific
03d0 - 61 74 65 73 2e 67 6f 64-61 64 64 79 2e 63 6f 6d   ates.godaddy.com
03e0 - 2f 72 65 70 6f 73 69 74-6f 72 79 2f 67 64 72 6f   /repository/gdro
03f0 - 6f 74 2e 63 72 6c 30 4b-06 03 55 1d 20 04 44 30   ot.crl0K..U. .D0
0400 - 42 30 40 06 04 55 1d 20-00 30 38 30 36 06 08 2b   B0@..U. .0806..+
0410 - 06 01 05 05 07 02 01 16-2a 68 74 74 70 3a 2f 2f   ........*http://
0420 - 63 65 72 74 69 66 69 63-61 74 65 73 2e 67 6f 64   certificates.god
0430 - 61 64 64 79 2e 63 6f 6d-2f 72 65 70 6f 73 69 74   addy.com/reposit
0440 - 6f 72 79 30 0e 06 03 55-1d 0f 01 01 ff 04 04 03   ory0...U........
0450 - 02 01 06 30 0d 06 09 2a-86 48 86 f7 0d 01 01 05   ...0...*.H......
0460 - 05 00 03 82 01 01 00 d2-86 c0 ec bd f9 a1 b6 67   ...............g
0470 - ee 66 0b a2 06 3a 04 50-8e 15 72 ac 4a 74 95 53   .f...:.P..r.Jt.S
0480 - cb 37 cb 44 49 ef 07 90-6b 33 d9 96 f0 94 56 a5   .7.DI...k3....V.
0490 - 13 30 05 3c 85 32 21 7b-c9 c7 0a a8 24 a4 90 de   .0.<.2!{....$...
04a0 - 46 d3 25 23 14 03 67 c2-10 d6 6f 0f 5d 7b 7a cc   F.%#..g...o.]{z.
04b0 - 9f c5 58 2a c1 c4 9e 21-a8 5a f3 ac a4 46 f3 9e   ..X*...!.Z...F..
04c0 - e4 63 cb 2f 90 a4 29 29-01 d9 72 2c 29 df 37 01   .c./..))..r,).7.
04d0 - 27 bc 4f ee 68 d3 21 8f-c0 b3 e4 f5 09 ed d2 10   '.O.h.!.........
04e0 - aa 53 b4 be f0 cc 59 0b-d6 3b 96 1c 95 24 49 df   .S....Y..;...$I.
04f0 - ce ec fd a7 48 91 14 45-0e 3a 36 6f da 45 b3 45   ....H..E.:6o.E.E
0500 - a2 41 c9 d4 d7 44 4e 3e-b9 74 76 d5 a2 13 55 2c   .A...DN>.tv...U,
0510 - c6 87 a3 b5 99 ac 06 84-87 7f 75 06 fc bf 14 4c   ..........u....L
0520 - 0e cc 6e c4 df 3d b7 12-71 f4 e8 f1 51 40 22 28   ..n..=..q...Q@"(
0530 - 49 e0 1d 4b 87 a8 34 cc-06 a2 dd 12 5a d1 86 36   I..K..4.....Z..6
0540 - 64 03 35 6f 6f 77 6e eb-f2 85 50 98 5e ab 03 53   d.5oown...P.^..S
0550 - ad 91 23 63 1f 16 9c cd-b9 b2 05 63 3a e1 f4 68   ..#c.......c:..h
0560 - 1b 17 05 35 95 53 ee 0e-                          ...5.S..
056b - <SPACES/NULS>
<<< TLS 1.0 Handshake [length 004a], ServerHello
    02 00 00 46 03 01 51 bc 81 9b aa 7e ae 5d 97 15
    4c 0b d3 e7 1d 68 60 e8 76 57 89 92 2b 30 46 67
    86 8d e7 2d 95 a2 20 6b 14 00 00 e4 1f 62 e7 ed
    5c 63 fb 9d 1a bb 08 3a 53 6f 27 d8 e6 52 d7 91
    e9 78 99 a6 2e 3b 23 00 0a 00
SSL_connect:SSLv3 read server hello A
<<< TLS 1.0 Handshake [length 0a84], Certificate
    0b 00 0a 80 00 0a 7d 00 05 95 30 82 05 91 30 82
    04 79 a0 03 02 01 02 02 07 4b 31 37 8f 40 6f bb
    30 0d 06 09 2a 86 48 86 f7 0d 01 01 05 05 00 30
    81 ca 31 0b 30 09 06 03 55 04 06 13 02 55 53 31
    10 30 0e 06 03 55 04 08 13 07 41 72 69 7a 6f 6e
    61 31 13 30 11 06 03 55 04 07 13 0a 53 63 6f 74
    74 73 64 61 6c 65 31 1a 30 18 06 03 55 04 0a 13
    11 47 6f 44 61 64 64 79 2e 63 6f 6d 2c 20 49 6e
    63 2e 31 33 30 31 06 03 55 04 0b 13 2a 68 74 74
    70 3a 2f 2f 63 65 72 74 69 66 69 63 61 74 65 73
    2e 67 6f 64 61 64 64 79 2e 63 6f 6d 2f 72 65 70
    6f 73 69 74 6f 72 79 31 30 30 2e 06 03 55 04 03
    13 27 47 6f 20 44 61 64 64 79 20 53 65 63 75 72
    65 20 43 65 72 74 69 66 69 63 61 74 69 6f 6e 20
    41 75 74 68 6f 72 69 74 79 31 11 30 0f 06 03 55
    04 05 13 08 30 37 39 36 39 32 38 37 30 1e 17 0d
    31 30 31 31 30 35 30 31 33 32 35 32 5a 17 0d 31
    35 31 31 30 35 30 31 33 32 35 32 5a 30 6f 31 24
    30 22 06 03 55 04 0a 13 1b 6d 61 69 6c 2e 6d 65
    67 61 63 6f 6e 74 72 61 63 74 69 6e 67 69 6e 63
    2e 63 6f 6d 31 21 30 1f 06 03 55 04 0b 13 18 44
    6f 6d 61 69 6e 20 43 6f 6e 74 72 6f 6c 20 56 61
    6c 69 64 61 74 65 64 31 24 30 22 06 03 55 04 03
    13 1b 6d 61 69 6c 2e 6d 65 67 61 63 6f 6e 74 72
    61 63 74 69 6e 67 69 6e 63 2e 63 6f 6d 30 82 01
    22 30 0d 06 09 2a 86 48 86 f7 0d 01 01 01 05 00
    03 82 01 0f 00 30 82 01 0a 02 82 01 01 00 dc 8d
    e3 23 4d 6b a3 2d dc a3 12 33 a8 32 00 f8 c3 c4
    a7 05 65 62 e4 28 1b a0 83 f1 ec 1d ec 33 d3 72
    06 85 6f d2 36 f9 41 98 bc 05 95 10 4f 0c 51 e4
    fe 66 36 33 b6 7c 8e e0 74 ff 8d 0b ee 5a c7 30
    fd 70 ba 0f 22 e3 53 a8 69 0c 71 2c 1a aa da fd
    70 fe 10 56 b5 4d ba ea f3 6a dc f2 cc d7 31 cb
    b9 8c 62 90 98 b4 bd a7 78 ab f4 48 bb fa 4f a7
    1b 41 6c 6c 59 85 95 55 70 b8 08 87 cc 3c df 3d
    b7 f9 d3 08 de 46 3d 00 0b 5b 27 aa 73 be a0 42
    a5 8d c1 6b 1a cc 45 b3 98 06 0e 12 9d 29 79 8e
    d1 11 25 65 ea f9 a9 e5 a5 5f 96 f0 be d4 5f 90
    f9 1d 4a 9d e6 04 8f 0c 74 1f 69 e8 12 aa c1 7e
    32 ba c2 03 3b c8 b2 4f 23 c6 de ab 03 45 62 ea
    57 8a b8 e0 e6 94 10 1d 54 96 b9 fe 79 b7 0e ea
    9e 51 57 5d 78 5f fc 81 68 25 e2 58 5d 0c 09 76
    c5 4d eb 8d 0c eb 50 7a a7 3f f1 e0 4e 07 02 03
    01 00 01 a3 82 01 d4 30 82 01 d0 30 0f 06 03 55
    1d 13 01 01 ff 04 05 30 03 01 01 00 30 1d 06 03
    55 1d 25 04 16 30 14 06 08 2b 06 01 05 05 07 03
    01 06 08 2b 06 01 05 05 07 03 02 30 0e 06 03 55
    1d 0f 01 01 ff 04 04 03 02 05 a0 30 33 06 03 55
    1d 1f 04 2c 30 2a 30 28 a0 26 a0 24 86 22 68 74
    74 70 3a 2f 2f 63 72 6c 2e 67 6f 64 61 64 64 79
    2e 63 6f 6d 2f 67 64 73 31 2d 32 35 2e 63 72 6c
    30 4d 06 03 55 1d 20 04 46 30 44 30 42 06 0b 60
    86 48 01 86 fd 6d 01 07 17 01 30 33 30 31 06 08
    2b 06 01 05 05 07 02 01 16 25 68 74 74 70 73 3a
    2f 2f 63 65 72 74 73 2e 67 6f 64 61 64 64 79 2e
    63 6f 6d 2f 72 65 70 6f 73 69 74 6f 72 79 2f 30
    81 80 06 08 2b 06 01 05 05 07 01 01 04 74 30 72
    30 24 06 08 2b 06 01 05 05 07 30 01 86 18 68 74
    74 70 3a 2f 2f 6f 63 73 70 2e 67 6f 64 61 64 64
    79 2e 63 6f 6d 2f 30 4a 06 08 2b 06 01 05 05 07
    30 02 86 3e 68 74 74 70 3a 2f 2f 63 65 72 74 69
    66 69 63 61 74 65 73 2e 67 6f 64 61 64 64 79 2e
    63 6f 6d 2f 72 65 70 6f 73 69 74 6f 72 79 2f 67
    64 5f 69 6e 74 65 72 6d 65 64 69 61 74 65 2e 63
    72 74 30 1f 06 03 55 1d 23 04 18 30 16 80 14 fd
    ac 61 32 93 6c 45 d6 e2 ee 85 5f 9a ba e7 76 99
    68 cc e7 30 47 06 03 55 1d 11 04 40 30 3e 82 1b
    6d 61 69 6c 2e 6d 65 67 61 63 6f 6e 74 72 61 63
    74 69 6e 67 69 6e 63 2e 63 6f 6d 82 1f 77 77 77
    2e 6d 61 69 6c 2e 6d 65 67 61 63 6f 6e 74 72 61
    63 74 69 6e 67 69 6e 63 2e 63 6f 6d 30 1d 06 03
    55 1d 0e 04 16 04 14 31 b6 94 b8 4e e7 0b 14 66
    9e 54 5e 7b a2 fe d6 06 9f 59 fd 30 0d 06 09 2a
    86 48 86 f7 0d 01 01 05 05 00 03 82 01 01 00 5b
    d7 d7 76 96 4d 9d 11 d9 51 be 2c 12 64 1d d7 90
    d4 63 14 95 d2 d3 50 94 46 35 f3 4e a2 c7 ca e2
    68 2c ae 3b 63 41 8c a6 46 26 c8 a8 d5 c3 4d c9
    7f ec 92 aa 87 f3 5e 33 40 c6 10 de 18 48 8e 62
    70 0b a8 59 5a 2e 45 5a e6 45 93 84 06 74 99 8f
    5a 05 1f d5 1f 3a 5d 68 c2 98 d9 ff 33 9c d2 af
    20 fa 3c 6b 46 10 12 56 1d e8 2b 2f ce 7f c7 d8
    ec 27 00 14 df 22 45 7f 64 5c 40 59 a8 e8 37 f6
    52 c9 c4 56 6e 32 03 f2 4b 93 25 9f d2 59 a8 c7
    3a 69 38 2e 4c 64 73 aa 7d 63 71 68 3a 9e eb fe
    8f 6d 5e 2e 20 f2 cf c6 b9 55 83 f7 23 0f 85 ae
    c5 1f 46 0c 3c 70 aa 15 5f e1 f3 e7 ca 27 2a 6e
    07 b3 4a b0 b1 49 96 26 cf df 1d ea d0 00 83 31
    0e ff 85 4f 66 53 99 37 2e 9b 58 37 9b 59 fc 50
    dc a9 d7 76 10 22 cc 27 47 cd 8e 41 88 04 b3 d1
    85 cc 34 f8 07 6f 9f 39 9a fd 1a c7 36 31 49 00
    04 e2 30 82 04 de 30 82 03 c6 a0 03 02 01 02 02
    02 03 01 30 0d 06 09 2a 86 48 86 f7 0d 01 01 05
    05 00 30 63 31 0b 30 09 06 03 55 04 06 13 02 55
    53 31 21 30 1f 06 03 55 04 0a 13 18 54 68 65 20
    47 6f 20 44 61 64 64 79 20 47 72 6f 75 70 2c 20
    49 6e 63 2e 31 31 30 2f 06 03 55 04 0b 13 28 47
    6f 20 44 61 64 64 79 20 43 6c 61 73 73 20 32 20
    43 65 72 74 69 66 69 63 61 74 69 6f 6e 20 41 75
    74 68 6f 72 69 74 79 30 1e 17 0d 30 36 31 31 31
    36 30 31 35 34 33 37 5a 17 0d 32 36 31 31 31 36
    30 31 35 34 33 37 5a 30 81 ca 31 0b 30 09 06 03
    55 04 06 13 02 55 53 31 10 30 0e 06 03 55 04 08
    13 07 41 72 69 7a 6f 6e 61 31 13 30 11 06 03 55
    04 07 13 0a 53 63 6f 74 74 73 64 61 6c 65 31 1a
    30 18 06 03 55 04 0a 13 11 47 6f 44 61 64 64 79
    2e 63 6f 6d 2c 20 49 6e 63 2e 31 33 30 31 06 03
    55 04 0b 13 2a 68 74 74 70 3a 2f 2f 63 65 72 74
    69 66 69 63 61 74 65 73 2e 67 6f 64 61 64 64 79
    2e 63 6f 6d 2f 72 65 70 6f 73 69 74 6f 72 79 31
    30 30 2e 06 03 55 04 03 13 27 47 6f 20 44 61 64
    64 79 20 53 65 63 75 72 65 20 43 65 72 74 69 66
    69 63 61 74 69 6f 6e 20 41 75 74 68 6f 72 69 74
    79 31 11 30 0f 06 03 55 04 05 13 08 30 37 39 36
    39 32 38 37 30 82 01 22 30 0d 06 09 2a 86 48 86
    f7 0d 01 01 01 05 00 03 82 01 0f 00 30 82 01 0a
    02 82 01 01 00 c4 2d d5 15 8c 9c 26 4c ec 32 35
    eb 5f b8 59 01 5a a6 61 81 59 3b 70 63 ab e3 dc
    3d c7 2a b8 c9 33 d3 79 e4 3a ed 3c 30 23 84 8e
    b3 30 14 b6 b2 87 c3 3d 95 54 04 9e df 99 dd 0b
    25 1e 21 de 65 29 7e 35 a8 a9 54 eb f6 f7 32 39
    d4 26 55 95 ad ef fb fe 58 86 d7 9e f4 00 8d 8c
    2a 0c bd 42 04 ce a7 3f 04 f6 ee 80 f2 aa ef 52
    a1 69 66 da be 1a ad 5d da 2c 66 ea 1a 6b bb e5
    1a 51 4a 00 2f 48 c7 98 75 d8 b9 29 c8 ee f8 66
    6d 0a 9c b3 f3 fc 78 7c a2 f8 a3 f2 b5 c3 f3 b9
    7a 91 c1 a7 e6 25 2e 9c a8 ed 12 65 6e 6a f6 12
    44 53 70 30 95 c3 9c 2b 58 2b 3d 08 74 4a f2 be
    51 b0 bf 87 d0 4c 27 58 6b b5 35 c5 9d af 17 31
    f8 0b 8f ee ad 81 36 05 89 08 98 cf 3a af 25 87
    c0 49 ea a7 fd 67 f7 45 8e 97 cc 14 39 e2 36 85
    b5 7e 1a 37 fd 16 f6 71 11 9a 74 30 16 fe 13 94
    a3 3f 84 0d 4f 02 03 01 00 01 a3 82 01 32 30 82
    01 2e 30 1d 06 03 55 1d 0e 04 16 04 14 fd ac 61
    32 93 6c 45 d6 e2 ee 85 5f 9a ba e7 76 99 68 cc
    e7 30 1f 06 03 55 1d 23 04 18 30 16 80 14 d2 c4
    b0 d2 91 d4 4c 11 71 b3 61 cb 3d a1 fe dd a8 6a
    d4 e3 30 12 06 03 55 1d 13 01 01 ff 04 08 30 06
    01 01 ff 02 01 00 30 33 06 08 2b 06 01 05 05 07
    01 01 04 27 30 25 30 23 06 08 2b 06 01 05 05 07
    30 01 86 17 68 74 74 70 3a 2f 2f 6f 63 73 70 2e
    67 6f 64 61 64 64 79 2e 63 6f 6d 30 46 06 03 55
    1d 1f 04 3f 30 3d 30 3b a0 39 a0 37 86 35 68 74
    74 70 3a 2f 2f 63 65 72 74 69 66 69 63 61 74 65
    73 2e 67 6f 64 61 64 64 79 2e 63 6f 6d 2f 72 65
    70 6f 73 69 74 6f 72 79 2f 67 64 72 6f 6f 74 2e
    63 72 6c 30 4b 06 03 55 1d 20 04 44 30 42 30 40
    06 04 55 1d 20 00 30 38 30 36 06 08 2b 06 01 05
    05 07 02 01 16 2a 68 74 74 70 3a 2f 2f 63 65 72
    74 69 66 69 63 61 74 65 73 2e 67 6f 64 61 64 64
    79 2e 63 6f 6d 2f 72 65 70 6f 73 69 74 6f 72 79
    30 0e 06 03 55 1d 0f 01 01 ff 04 04 03 02 01 06
    30 0d 06 09 2a 86 48 86 f7 0d 01 01 05 05 00 03
    82 01 01 00 d2 86 c0 ec bd f9 a1 b6 67 ee 66 0b
    a2 06 3a 04 50 8e 15 72 ac 4a 74 95 53 cb 37 cb
    44 49 ef 07 90 6b 33 d9 96 f0 94 56 a5 13 30 05
    3c 85 32 21 7b c9 c7 0a a8 24 a4 90 de 46 d3 25
    23 14 03 67 c2 10 d6 6f 0f 5d 7b 7a cc 9f c5 58
    2a c1 c4 9e 21 a8 5a f3 ac a4 46 f3 9e e4 63 cb
    2f 90 a4 29 29 01 d9 72 2c 29 df 37 01 27 bc 4f
    ee 68 d3 21 8f c0 b3 e4 f5 09 ed d2 10 aa 53 b4
    be f0 cc 59 0b d6 3b 96 1c 95 24 49 df ce ec fd
    a7 48 91 14 45 0e 3a 36 6f da 45 b3 45 a2 41 c9
    d4 d7 44 4e 3e b9 74 76 d5 a2 13 55 2c c6 87 a3
    b5 99 ac 06 84 87 7f 75 06 fc bf 14 4c 0e cc 6e
    c4 df 3d b7 12 71 f4 e8 f1 51 40 22 28 49 e0 1d
    4b 87 a8 34 cc 06 a2 dd 12 5a d1 86 36 64 03 35
    6f 6f 77 6e eb f2 85 50 98 5e ab 03 53 ad 91 23
    63 1f 16 9c cd b9 b2 05 63 3a e1 f4 68 1b 17 05
    35 95 53 ee
depth=1 C = US, ST = Arizona, L = Scottsdale, O = "GoDaddy.com, Inc.", OU = http://certificates.godaddy.com/repository, CN = Go Daddy Secure Certification Authority, serialNumber = 07969287
verify error:num=20:unable to get local issuer certificate
verify return:0
SSL_connect:SSLv3 read server certificate A
<<< TLS 1.0 Handshake [length 0004], ServerHelloDone
    0e 00 00 00
SSL_connect:SSLv3 read server done A
>>> TLS 1.0 Handshake [length 0106], ClientKeyExchange
    10 00 01 02 01 00 46 3a 4e 20 88 0d eb 34 e8 7c
    e9 ec c9 bc 2a b0 88 f7 35 4f 33 ec cf e8 bf ca
    e0 fa c0 3d 6b 41 24 aa 49 e8 00 fe 55 ae 61 23
    ac 2d ae 3d d9 ec 27 e6 bd 37 a2 7b 81 7b 2c 67
    8c 82 3f 81 0f c0 50 f5 06 7c 1a a9 fb 60 57 91
    72 18 13 b4 15 73 48 af 6e 11 f2 39 f3 4a dc e0
    f5 35 c3 b9 41 33 02 74 94 47 55 06 39 82 f7 92
    8b ae f6 f0 e5 a3 0f 6f ee c3 34 ec ae e8 c5 b7
    e1 7e 20 c8 8f bc ec 06 c8 b8 ca d1 de c5 2e 4e
    bd 87 cd 5b 9b a6 55 5f 7e 0f 0c a1 b7 83 9d 94
    ac 06 38 8b a5 15 85 5f 0c bf 13 c9 2d 0f f4 cf
    b0 1f 11 60 94 a2 fe a4 e1 ea 02 3a 66 a8 6b c1
    00 03 ac a9 42 bb fe 0a 20 fe 63 04 92 42 61 d4
    58 04 16 1c b5 22 b3 7e ce ee 3d aa d9 4c 1f 0b
    5d ca 87 94 e7 a2 cb d7 87 86 19 86 d3 47 97 a7
    98 36 df 43 ea b6 1a 20 46 2b 6c 3f 0c 06 d4 e9
    43 b6 58 27 45 dd
SSL_connect:SSLv3 write client key exchange A
write to 0x14aa630 [0x14b9a20] (267 bytes => 267 (0x10B))
0000 - 16 03 01 01 06 10 00 01-02 01 00 46 3a 4e 20 88   ...........F:N .
0010 - 0d eb 34 e8 7c e9 ec c9-bc 2a b0 88 f7 35 4f 33   ..4.|....*...5O3
0020 - ec cf e8 bf ca e0 fa c0-3d 6b 41 24 aa 49 e8 00   ........=kA$.I..
0030 - fe 55 ae 61 23 ac 2d ae-3d d9 ec 27 e6 bd 37 a2   .U.a#.-.=..'..7.
0040 - 7b 81 7b 2c 67 8c 82 3f-81 0f c0 50 f5 06 7c 1a   {.{,g..?...P..|.
0050 - a9 fb 60 57 91 72 18 13-b4 15 73 48 af 6e 11 f2   ..`W.r....sH.n..
0060 - 39 f3 4a dc e0 f5 35 c3-b9 41 33 02 74 94 47 55   9.J...5..A3.t.GU
0070 - 06 39 82 f7 92 8b ae f6-f0 e5 a3 0f 6f ee c3 34   .9..........o..4
0080 - ec ae e8 c5 b7 e1 7e 20-c8 8f bc ec 06 c8 b8 ca   ......~ ........
0090 - d1 de c5 2e 4e bd 87 cd-5b 9b a6 55 5f 7e 0f 0c   ....N...[..U_~..
00a0 - a1 b7 83 9d 94 ac 06 38-8b a5 15 85 5f 0c bf 13   .......8...._...
00b0 - c9 2d 0f f4 cf b0 1f 11-60 94 a2 fe a4 e1 ea 02   .-......`.......
00c0 - 3a 66 a8 6b c1 00 03 ac-a9 42 bb fe 0a 20 fe 63   :f.k.....B... .c
00d0 - 04 92 42 61 d4 58 04 16-1c b5 22 b3 7e ce ee 3d   ..Ba.X....".~..=
00e0 - aa d9 4c 1f 0b 5d ca 87-94 e7 a2 cb d7 87 86 19   ..L..]..........
00f0 - 86 d3 47 97 a7 98 36 df-43 ea b6 1a 20 46 2b 6c   ..G...6.C... F+l
0100 - 3f 0c 06 d4 e9 43 b6 58-27 45 dd                  ?....C.X'E.
>>> TLS 1.0 ChangeCipherSpec [length 0001]
    01
SSL_connect:SSLv3 write change cipher spec A
write to 0x14aa630 [0x14b9a20] (6 bytes => 6 (0x6))
0000 - 14 03 01 00 01 01                                 ......
>>> TLS 1.0 Handshake [length 0010], Finished
    14 00 00 0c b0 b2 74 e3 38 11 af 74 3c f7 0a 0f
SSL_connect:SSLv3 write finished A
SSL_connect:SSLv3 flush data
write to 0x14aa630 [0x14b9a20] (45 bytes => 45 (0x2D))
0000 - 16 03 01 00 28 c8 d6 28-e5 a3 3c c4 50 51 0c dc   ....(..(..<.PQ..
0010 - 8e ff e9 68 6d 67 c1 6d-2c 67 4b e9 a4 ca 0f ab   ...hmg.m,gK.....
0020 - 14 30 af fb 8f 44 b5 4a-33 d2 0e 24 8e            .0...D.J3..$.
read from 0x14aa630 [0x14afc13] (5 bytes => 5 (0x5))
0000 - 14 03 01 00 01                                    .....
read from 0x14aa630 [0x14afc18] (1 bytes => 1 (0x1))
0000 - 01                                                .
<<< TLS 1.0 ChangeCipherSpec [length 0001]
    01
read from 0x14aa630 [0x14afc13] (5 bytes => 5 (0x5))
0000 - 16 03 01 00 28                                    ....(
read from 0x14aa630 [0x14afc18] (40 bytes => 40 (0x28))
0000 - 9e 94 bf f5 83 98 5d 43-c9 b8 f3 5a 19 ae 20 ef   ......]C...Z.. .
0010 - 4d b0 7b 86 33 33 02 b3-07 8a f3 03 fb 68 c4 11   M.{.33.......h..
0020 - d2 b3 e6 87 e2 3f 68 06-                          .....?h.
<<< TLS 1.0 Handshake [length 0010], Finished
    14 00 00 0c 02 68 2d 9e 10 f4 e4 7f 06 d2 52 d2
SSL_connect:SSLv3 read finished A
---
Certificate chain
 0 s:/O=mail.megacontractinginc.com/OU=Domain Control Validated/CN=mail.megacontractinginc.com
   i:/C=US/ST=Arizona/L=Scottsdale/O=GoDaddy.com, Inc./OU=http://certificates.godaddy.com/repository/CN=Go Daddy Secure Certification Authority/serialNumber=07969287
 1 s:/C=US/ST=Arizona/L=Scottsdale/O=GoDaddy.com, Inc./OU=http://certificates.godaddy.com/repository/CN=Go Daddy Secure Certification Authority/serialNumber=07969287
   i:/C=US/O=The Go Daddy Group, Inc./OU=Go Daddy Class 2 Certification Authority
---
Server certificate
-----BEGIN CERTIFICATE-----
MIIFkTCCBHmgAwIBAgIHSzE3j0BvuzANBgkqhkiG9w0BAQUFADCByjELMAkGA1UE
BhMCVVMxEDAOBgNVBAgTB0FyaXpvbmExEzARBgNVBAcTClNjb3R0c2RhbGUxGjAY
BgNVBAoTEUdvRGFkZHkuY29tLCBJbmMuMTMwMQYDVQQLEypodHRwOi8vY2VydGlm
aWNhdGVzLmdvZGFkZHkuY29tL3JlcG9zaXRvcnkxMDAuBgNVBAMTJ0dvIERhZGR5
IFNlY3VyZSBDZXJ0aWZpY2F0aW9uIEF1dGhvcml0eTERMA8GA1UEBRMIMDc5Njky
ODcwHhcNMTAxMTA1MDEzMjUyWhcNMTUxMTA1MDEzMjUyWjBvMSQwIgYDVQQKExtt
YWlsLm1lZ2Fjb250cmFjdGluZ2luYy5jb20xITAfBgNVBAsTGERvbWFpbiBDb250
cm9sIFZhbGlkYXRlZDEkMCIGA1UEAxMbbWFpbC5tZWdhY29udHJhY3RpbmdpbmMu
Y29tMIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEA3I3jI01roy3coxIz
qDIA+MPEpwVlYuQoG6CD8ewd7DPTcgaFb9I2+UGYvAWVEE8MUeT+ZjYztnyO4HT/
jQvuWscw/XC6DyLjU6hpDHEsGqra/XD+EFa1Tbrq82rc8szXMcu5jGKQmLS9p3ir
9Ei7+k+nG0FsbFmFlVVwuAiHzDzfPbf50wjeRj0AC1snqnO+oEKljcFrGsxFs5gG
DhKdKXmO0RElZer5qeWlX5bwvtRfkPkdSp3mBI8MdB9p6BKqwX4yusIDO8iyTyPG
3qsDRWLqV4q44OaUEB1Ulrn+ebcO6p5RV114X/yBaCXiWF0MCXbFTeuNDOtQeqc/
8eBOBwIDAQABo4IB1DCCAdAwDwYDVR0TAQH/BAUwAwEBADAdBgNVHSUEFjAUBggr
BgEFBQcDAQYIKwYBBQUHAwIwDgYDVR0PAQH/BAQDAgWgMDMGA1UdHwQsMCowKKAm
oCSGImh0dHA6Ly9jcmwuZ29kYWRkeS5jb20vZ2RzMS0yNS5jcmwwTQYDVR0gBEYw
RDBCBgtghkgBhv1tAQcXATAzMDEGCCsGAQUFBwIBFiVodHRwczovL2NlcnRzLmdv
ZGFkZHkuY29tL3JlcG9zaXRvcnkvMIGABggrBgEFBQcBAQR0MHIwJAYIKwYBBQUH
MAGGGGh0dHA6Ly9vY3NwLmdvZGFkZHkuY29tLzBKBggrBgEFBQcwAoY+aHR0cDov
L2NlcnRpZmljYXRlcy5nb2RhZGR5LmNvbS9yZXBvc2l0b3J5L2dkX2ludGVybWVk
aWF0ZS5jcnQwHwYDVR0jBBgwFoAU/axhMpNsRdbi7oVfmrrndplozOcwRwYDVR0R
BEAwPoIbbWFpbC5tZWdhY29udHJhY3RpbmdpbmMuY29tgh93d3cubWFpbC5tZWdh
Y29udHJhY3RpbmdpbmMuY29tMB0GA1UdDgQWBBQxtpS4TucLFGaeVF57ov7WBp9Z
/TANBgkqhkiG9w0BAQUFAAOCAQEAW9fXdpZNnRHZUb4sEmQd15DUYxSV0tNQlEY1
806ix8riaCyuO2NBjKZGJsio1cNNyX/skqqH814zQMYQ3hhIjmJwC6hZWi5FWuZF
k4QGdJmPWgUf1R86XWjCmNn/M5zSryD6PGtGEBJWHegrL85/x9jsJwAU3yJFf2Rc
QFmo6Df2UsnEVm4yA/JLkyWf0lmoxzppOC5MZHOqfWNxaDqe6/6PbV4uIPLPxrlV
g/cjD4WuxR9GDDxwqhVf4fPnyicqbgezSrCxSZYmz98d6tAAgzEO/4VPZlOZNy6b
WDebWfxQ3KnXdhAizCdHzY5BiASz0YXMNPgHb585mv0axzYxSQ==
-----END CERTIFICATE-----
subject=/O=mail.megacontractinginc.com/OU=Domain Control Validated/CN=mail.megacontractinginc.com
issuer=/C=US/ST=Arizona/L=Scottsdale/O=GoDaddy.com, Inc./OU=http://certificates.godaddy.com/repository/CN=Go Daddy Secure Certification Authority/serialNumber=07969287
---
No client certificate CA names sent
---
SSL handshake has read 3283 bytes and written 673 bytes
---
New, TLSv1/SSLv3, Cipher is DES-CBC3-SHA
Server public key is 2048 bit
Secure Renegotiation IS NOT supported
Compression: NONE
Expansion: NONE
SSL-Session:
    Protocol  : TLSv1
    Cipher    : DES-CBC3-SHA
    Session-ID: 6B140000E41F62E7ED5C63FB9D1ABB083A536F27D8E652D791E97899A62E3B23
    Session-ID-ctx:
    Master-Key: B697F97383F2475BA6F3477F001E43FB625345DDFAFCF47075D8E45D6D020EFE13DA550DEE54FE9453AED37450F89B3E
    Key-Arg   : None
    PSK identity: None
    PSK identity hint: None
    SRP username: None
    Start Time: 1371308443
    Timeout   : 300 (sec)
    Verify return code: 20 (unable to get local issuer certificate)
---
250 OK
214-This server supports the following commands:
214 HELO EHLO STARTTLS RCPT DATA RSET MAIL QUIT HELP AUTH TURN ETRN BDAT VRFY
write to 0x14aa630 [0x14b4166] (66 bytes => 66 (0x42))
0000 - 17 03 01 00 18 93 bc 53-15 48 09 ad 43 57 28 3c   .......S.H..CW(<
0010 - ef a1 3e 42 bb ef 20 68-d6 63 51 82 fb 17 03 01   ..>B.. h.cQ.....
0020 - 00 20 32 77 20 60 67 02-d3 b3 9c 2b d5 99 a5 00   . 2w `g....+....
0030 - 39 83 25 62 34 8b ff e4-2e 7a fc c9 ea 74 48 05   9.%b4....z...tH.
0040 - 87 d1                                             ..
read from 0x14aa630 [0x14afc13] (5 bytes => 5 (0x5))
0000 - 17 03 01 00 98                                    .....
read from 0x14aa630 [0x14afc18] (152 bytes => 152 (0x98))
0000 - 0b b9 d5 c0 0d 98 33 64-e3 df 6b 7b 97 9f 63 24   ......3d..k{..c$
0010 - 9c 1b 68 c7 20 e6 c2 dc-91 ba bd 02 fd 8d 1a 5d   ..h. ..........]
0020 - df ec fa 79 d1 73 f1 f6-a8 12 05 7f 27 2d 10 69   ...y.s......'-.i
0030 - 63 fd 2b 7b 03 63 59 8d-9d c2 f5 f6 5b 06 b7 17   c.+{.cY.....[...
0040 - 0c c2 ed 15 31 b4 7d d9-74 3b f7 92 65 7c 51 73   ....1.}.t;..e|Qs
0050 - 6a 35 ec 61 29 f0 df 99-71 2e 38 e2 57 23 87 e9   j5.a)...q.8.W#..
0060 - aa 08 a2 f4 50 0f eb 83-0c 65 ff 2f ac 4a 82 e9   ....P....e./.J..
0070 - a0 0f 07 75 7a a2 11 28-16 ae b9 b3 98 3d 29 f5   ...uz..(.....=).
0080 - 29 ec 70 15 11 02 dc 60-81 b0 76 8b 94 ac 6f 18   ).p....`..v...o.
0090 - 47 1a 6e 3c 20 21 2c 1c-                          G.n< !,.
read from 0x14aa630 [0x14afc13] (5 bytes => 5 (0x5))
0000 - 6f 6e 61 31 13                                    ona1.
write to 0x14aa630 [0x14b4163] (29 bytes => 29 (0x1D))
0000 - 15 03 01 00 18 13 a2 fd-1e 43 fb bc 92 07 f0 74   .........C.....t
0010 - bc d6 8d b3 5b 4f 6a ce-3c c7 1e 07 44            ....[Oj.<...D
>>> TLS 1.0 Alert [length 0002], fatal protocol_version
    02 46
SSL3 alert write:fatal:protocol version
140404981307048:error:1408F10B:SSL routines:SSL3_GET_RECORD:wrong version number:s3_pkt.c:337:
write to 0x14aa630 [0x14b4163] (29 bytes => 29 (0x1D))
0000 - 15 03 01 00 18 9c 1e 4a-da 25 2c df 97 7e 18 80   .......J.%,..~..
0010 - 63 6a 91 5b e4 0d 6f 28-73 bf 32 53 23            cj.[..o(s.2S#
>>> TLS 1.0 Alert [length 0002], warning close_notify
    01 00
SSL3 alert write:warning:close notify

SSL_connect:before/connect initialization
CONNECTED(00000003)
read from 0x20a6630 [0x20a6760] (4096 bytes => 129 (0x81))
0000 - 32 32 30 20 6d 61 69 6c-2e 6d 65 67 61 63 6f 6e   220 mail.megacon
0010 - 74 72 61 63 74 69 6e 67-69 6e 63 2e 63 6f 6d 20   tractinginc.com
0020 - 4d 69 63 72 6f 73 6f 66-74 20 45 53 4d 54 50 20   Microsoft ESMTP
0030 - 4d 41 49 4c 20 53 65 72-76 69 63 65 2c 20 56 65   MAIL Service, Ve
0040 - 72 73 69 6f 6e 3a 20 36-2e 30 2e 33 37 39 30 2e   rsion: 6.0.3790.
0050 - 34 36 37 35 20 72 65 61-64 79 20 61 74 20 20 53   4675 ready at  S
0060 - 61 74 2c 20 31 35 20 4a-75 6e 20 32 30 31 33 20   at, 15 Jun 2013
0070 - 31 31 3a 30 31 3a 35 37-20 2d 30 34 30 30 20 0d   11:01:57 -0400 .
0080 - 0a                                                .
write to 0x20a6630 [0x20a7770] (25 bytes => 25 (0x19))
0000 - 45 48 4c 4f 20 6f 70 65-6e 73 73 6c 2e 63 6c 69   EHLO openssl.cli
0010 - 65 6e 74 2e 6e 65 74 0d-0a                        ent.net..
read from 0x20a6630 [0x20a6760] (4096 bytes => 299 (0x12B))
0000 - 32 35 30 2d 6d 61 69 6c-2e 6d 65 67 61 63 6f 6e   250-mail.megacon
0010 - 74 72 61 63 74 69 6e 67-69 6e 63 2e 63 6f 6d 20   tractinginc.com
0020 - 48 65 6c 6c 6f 20 5b 31-39 34 2e 31 37 37 2e 32   Hello [194.177.2
0030 - 31 31 2e 32 30 34 5d 0d-0a 32 35 30 2d 54 55 52   11.204]..250-TUR
0040 - 4e 0d 0a 32 35 30 2d 53-49 5a 45 0d 0a 32 35 30   N..250-SIZE..250
0050 - 2d 45 54 52 4e 0d 0a 32-35 30 2d 50 49 50 45 4c   -ETRN..250-PIPEL
0060 - 49 4e 49 4e 47 0d 0a 32-35 30 2d 44 53 4e 0d 0a   INING..250-DSN..
0070 - 32 35 30 2d 45 4e 48 41-4e 43 45 44 53 54 41 54   250-ENHANCEDSTAT
0080 - 55 53 43 4f 44 45 53 0d-0a 32 35 30 2d 38 62 69   USCODES..250-8bi
0090 - 74 6d 69 6d 65 0d 0a 32-35 30 2d 42 49 4e 41 52   tmime..250-BINAR
00a0 - 59 4d 49 4d 45 0d 0a 32-35 30 2d 43 48 55 4e 4b   YMIME..250-CHUNK
00b0 - 49 4e 47 0d 0a 32 35 30-2d 56 52 46 59 0d 0a 32   ING..250-VRFY..2
00c0 - 35 30 2d 54 4c 53 0d 0a-32 35 30 2d 53 54 41 52   50-TLS..250-STAR
00d0 - 54 54 4c 53 0d 0a 32 35-30 2d 58 2d 45 58 50 53   TTLS..250-X-EXPS
00e0 - 20 47 53 53 41 50 49 20-4e 54 4c 4d 0d 0a 32 35    GSSAPI NTLM..25
00f0 - 30 2d 41 55 54 48 20 47-53 53 41 50 49 20 4e 54   0-AUTH GSSAPI NT
0100 - 4c 4d 0d 0a 32 35 30 2d-58 2d 4c 49 4e 4b 32 53   LM..250-X-LINK2S
0110 - 54 41 54 45 0d 0a 32 35-30 2d 58 45 58 43 48 35   TATE..250-XEXCH5
0120 - 30 0d 0a 32 35 30 20 4f-4b 0d 0a                  0..250 OK..
write to 0x20a6630 [0x7fff80bc2600] (10 bytes => 10 (0xA))
0000 - 53 54 41 52 54 54 4c 53-0d 0a                     STARTTLS..
read from 0x20a6630 [0x20987d0] (8192 bytes => 29 (0x1D))
0000 - 32 32 30 20 32 2e 30 2e-30 20 53 4d 54 50 20 73   220 2.0.0 SMTP s
0010 - 65 72 76 65 72 20 72 65-61 64 79 0d 0a            erver ready..
write to 0x20a6630 [0x20a66b0] (226 bytes => 226 (0xE2))
0000 - 16 03 01 00 dd 01 00 00-d9 03 02 51 bc 81 e5 60   ...........Q...`
0010 - 7a 68 28 90 d9 27 0a 38-aa 5f c4 c3 83 fa 9d 75   zh(..'.8._.....u
0020 - b8 ce 6f 32 a1 68 6e eb-ca 02 67 00 00 66 c0 14   ..o2.hn...g..f..
0030 - c0 0a c0 22 c0 21 00 39-00 38 00 88 00 87 c0 0f   ...".!.9.8......
0040 - c0 05 00 35 00 84 c0 12-c0 08 c0 1c c0 1b 00 16   ...5............
0050 - 00 13 c0 0d c0 03 00 0a-c0 13 c0 09 c0 1f c0 1e   ................
0060 - 00 33 00 32 00 9a 00 99-00 45 00 44 c0 0e c0 04   .3.2.....E.D....
0070 - 00 2f 00 96 00 41 c0 11-c0 07 c0 0c c0 02 00 05   ./...A..........
0080 - 00 04 00 15 00 12 00 09-00 14 00 11 00 08 00 06   ................
0090 - 00 03 00 ff 02 01 00 00-49 00 0b 00 04 03 00 01   ........I.......
00a0 - 02 00 0a 00 34 00 32 00-0e 00 0d 00 19 00 0b 00   ....4.2.........
00b0 - 0c 00 18 00 09 00 0a 00-16 00 17 00 08 00 06 00   ................
00c0 - 07 00 14 00 15 00 04 00-05 00 12 00 13 00 01 00   ................
00d0 - 02 00 03 00 0f 00 10 00-11 00 23 00 00 00 0f 00   ..........#.....
00e0 - 01 01                                             ..
>>> TLS 1.1 Handshake [length 00dd], ClientHello
    01 00 00 d9 03 02 51 bc 81 e5 60 7a 68 28 90 d9
    27 0a 38 aa 5f c4 c3 83 fa 9d 75 b8 ce 6f 32 a1
    68 6e eb ca 02 67 00 00 66 c0 14 c0 0a c0 22 c0
    21 00 39 00 38 00 88 00 87 c0 0f c0 05 00 35 00
    84 c0 12 c0 08 c0 1c c0 1b 00 16 00 13 c0 0d c0
    03 00 0a c0 13 c0 09 c0 1f c0 1e 00 33 00 32 00
    9a 00 99 00 45 00 44 c0 0e c0 04 00 2f 00 96 00
    41 c0 11 c0 07 c0 0c c0 02 00 05 00 04 00 15 00
    12 00 09 00 14 00 11 00 08 00 06 00 03 00 ff 02
    01 00 00 49 00 0b 00 04 03 00 01 02 00 0a 00 34
    00 32 00 0e 00 0d 00 19 00 0b 00 0c 00 18 00 09
    00 0a 00 16 00 17 00 08 00 06 00 07 00 14 00 15
    00 04 00 05 00 12 00 13 00 01 00 02 00 03 00 0f
    00 10 00 11 00 23 00 00 00 0f 00 01 01
SSL_connect:unknown state
read from 0x20a6630 [0x20abc10] (7 bytes => 7 (0x7))
0000 - 16 03 01 0a d9 02                                 ......
0007 - <SPACES/NULS>
read from 0x20a6630 [0x20abc1a] (2775 bytes => 1381 (0x565))
0000 - 00 4d 03 01 51 bc 81 e5-a8 cd 83 1c 3e 38 48 a4   .M..Q.......>8H.
0010 - 1e 8b c8 76 c3 28 5f 66-6c 70 c2 65 e7 bb 42 bb   ...v.(_flp.e..B.
0020 - 82 a7 3d d6 20 11 1f 00-00 93 d5 05 9f ed 94 0b   ..=. ...........
0030 - 37 6c 16 ed 0a b4 6a d2-fd 23 76 f1 ab 06 bf 70   7l....j..#v....p
0040 - ea f4 fd d9 62 00 04 00-00 05 ff 01 00 01 00 0b   ....b...........
0050 - 00 0a 80 00 0a 7d 00 05-95 30 82 05 91 30 82 04   .....}...0...0..
0060 - 79 a0 03 02 01 02 02 07-4b 31 37 8f 40 6f bb 30   y.......K17.@o.0
0070 - 0d 06 09 2a 86 48 86 f7-0d 01 01 05 05 00 30 81   ...*.H........0.
0080 - ca 31 0b 30 09 06 03 55-04 06 13 02 55 53 31 10   .1.0...U....US1.
0090 - 30 0e 06 03 55 04 08 13-07 41 72 69 7a 6f 6e 61   0...U....Arizona
00a0 - 31 13 30 11 06 03 55 04-07 13 0a 53 63 6f 74 74   1.0...U....Scott
00b0 - 73 64 61 6c 65 31 1a 30-18 06 03 55 04 0a 13 11   sdale1.0...U....
00c0 - 47 6f 44 61 64 64 79 2e-63 6f 6d 2c 20 49 6e 63   GoDaddy.com, Inc
00d0 - 2e 31 33 30 31 06 03 55-04 0b 13 2a 68 74 74 70   .1301..U...*http
00e0 - 3a 2f 2f 63 65 72 74 69-66 69 63 61 74 65 73 2e   ://certificates.
00f0 - 67 6f 64 61 64 64 79 2e-63 6f 6d 2f 72 65 70 6f   godaddy.com/repo
0100 - 73 69 74 6f 72 79 31 30-30 2e 06 03 55 04 03 13   sitory100...U...
0110 - 27 47 6f 20 44 61 64 64-79 20 53 65 63 75 72 65   'Go Daddy Secure
0120 - 20 43 65 72 74 69 66 69-63 61 74 69 6f 6e 20 41    Certification A
0130 - 75 74 68 6f 72 69 74 79-31 11 30 0f 06 03 55 04   uthority1.0...U.
0140 - 05 13 08 30 37 39 36 39-32 38 37 30 1e 17 0d 31   ...079692870...1
0150 - 30 31 31 30 35 30 31 33-32 35 32 5a 17 0d 31 35   01105013252Z..15
0160 - 31 31 30 35 30 31 33 32-35 32 5a 30 6f 31 24 30   1105013252Z0o1$0
0170 - 22 06 03 55 04 0a 13 1b-6d 61 69 6c 2e 6d 65 67   "..U....mail.meg
0180 - 61 63 6f 6e 74 72 61 63-74 69 6e 67 69 6e 63 2e   acontractinginc.
0190 - 63 6f 6d 31 21 30 1f 06-03 55 04 0b 13 18 44 6f   com1!0...U....Do
01a0 - 6d 61 69 6e 20 43 6f 6e-74 72 6f 6c 20 56 61 6c   main Control Val
01b0 - 69 64 61 74 65 64 31 24-30 22 06 03 55 04 03 13   idated1$0"..U...
01c0 - 1b 6d 61 69 6c 2e 6d 65-67 61 63 6f 6e 74 72 61   .mail.megacontra
01d0 - 63 74 69 6e 67 69 6e 63-2e 63 6f 6d 30 82 01 22   ctinginc.com0.."
01e0 - 30 0d 06 09 2a 86 48 86-f7 0d 01 01 01 05 00 03   0...*.H.........
01f0 - 82 01 0f 00 30 82 01 0a-02 82 01 01 00 dc 8d e3   ....0...........
0200 - 23 4d 6b a3 2d dc a3 12-33 a8 32 00 f8 c3 c4 a7   #Mk.-...3.2.....
0210 - 05 65 62 e4 28 1b a0 83-f1 ec 1d ec 33 d3 72 06   .eb.(.......3.r.
0220 - 85 6f d2 36 f9 41 98 bc-05 95 10 4f 0c 51 e4 fe   .o.6.A.....O.Q..
0230 - 66 36 33 b6 7c 8e e0 74-ff 8d 0b ee 5a c7 30 fd   f63.|..t....Z.0.
0240 - 70 ba 0f 22 e3 53 a8 69-0c 71 2c 1a aa da fd 70   p..".S.i.q,....p
0250 - fe 10 56 b5 4d ba ea f3-6a dc f2 cc d7 31 cb b9   ..V.M...j....1..
0260 - 8c 62 90 98 b4 bd a7 78-ab f4 48 bb fa 4f a7 1b   .b.....x..H..O..
0270 - 41 6c 6c 59 85 95 55 70-b8 08 87 cc 3c df 3d b7   AllY..Up....<.=.
0280 - f9 d3 08 de 46 3d 00 0b-5b 27 aa 73 be a0 42 a5   ....F=..['.s..B.
0290 - 8d c1 6b 1a cc 45 b3 98-06 0e 12 9d 29 79 8e d1   ..k..E......)y..
02a0 - 11 25 65 ea f9 a9 e5 a5-5f 96 f0 be d4 5f 90 f9   .%e....._...._..
02b0 - 1d 4a 9d e6 04 8f 0c 74-1f 69 e8 12 aa c1 7e 32   .J.....t.i....~2
02c0 - ba c2 03 3b c8 b2 4f 23-c6 de ab 03 45 62 ea 57   ...;..O#....Eb.W
02d0 - 8a b8 e0 e6 94 10 1d 54-96 b9 fe 79 b7 0e ea 9e   .......T...y....
02e0 - 51 57 5d 78 5f fc 81 68-25 e2 58 5d 0c 09 76 c5   QW]x_..h%.X]..v.
02f0 - 4d eb 8d 0c eb 50 7a a7-3f f1 e0 4e 07 02 03 01   M....Pz.?..N....
0300 - 00 01 a3 82 01 d4 30 82-01 d0 30 0f 06 03 55 1d   ......0...0...U.
0310 - 13 01 01 ff 04 05 30 03-01 01 00 30 1d 06 03 55   ......0....0...U
0320 - 1d 25 04 16 30 14 06 08-2b 06 01 05 05 07 03 01   .%..0...+.......
0330 - 06 08 2b 06 01 05 05 07-03 02 30 0e 06 03 55 1d   ..+.......0...U.
0340 - 0f 01 01 ff 04 04 03 02-05 a0 30 33 06 03 55 1d   ..........03..U.
0350 - 1f 04 2c 30 2a 30 28 a0-26 a0 24 86 22 68 74 74   ..,0*0(.&.$."htt
0360 - 70 3a 2f 2f 63 72 6c 2e-67 6f 64 61 64 64 79 2e   p://crl.godaddy.
0370 - 63 6f 6d 2f 67 64 73 31-2d 32 35 2e 63 72 6c 30   com/gds1-25.crl0
0380 - 4d 06 03 55 1d 20 04 46-30 44 30 42 06 0b 60 86   M..U. .F0D0B..`.
0390 - 48 01 86 fd 6d 01 07 17-01 30 33 30 31 06 08 2b   H...m....0301..+
03a0 - 06 01 05 05 07 02 01 16-25 68 74 74 70 73 3a 2f   ........%https:/
03b0 - 2f 63 65 72 74 73 2e 67-6f 64 61 64 64 79 2e 63   /certs.godaddy.c
03c0 - 6f 6d 2f 72 65 70 6f 73-69 74 6f 72 79 2f 30 81   om/repository/0.
03d0 - 80 06 08 2b 06 01 05 05-07 01 01 04 74 30 72 30   ...+........t0r0
03e0 - 24 06 08 2b 06 01 05 05-07 30 01 86 18 68 74 74   $..+.....0...htt
03f0 - 70 3a 2f 2f 6f 63 73 70-2e 67 6f 64 61 64 64 79   p://ocsp.godaddy
0400 - 2e 63 6f 6d 2f 30 4a 06-08 2b 06 01 05 05 07 30   .com/0J..+.....0
0410 - 02 86 3e 68 74 74 70 3a-2f 2f 63 65 72 74 69 66   ..>http://certif
0420 - 69 63 61 74 65 73 2e 67-6f 64 61 64 64 79 2e 63   icates.godaddy.c
0430 - 6f 6d 2f 72 65 70 6f 73-69 74 6f 72 79 2f 67 64   om/repository/gd
0440 - 5f 69 6e 74 65 72 6d 65-64 69 61 74 65 2e 63 72   _intermediate.cr
0450 - 74 30 1f 06 03 55 1d 23-04 18 30 16 80 14 fd ac   t0...U.#..0.....
0460 - 61 32 93 6c 45 d6 e2 ee-85 5f 9a ba e7 76 99 68   a2.lE...._...v.h
0470 - cc e7 30 47 06 03 55 1d-11 04 40 30 3e 82 1b 6d   ..0G..U...@0>..m
0480 - 61 69 6c 2e 6d 65 67 61-63 6f 6e 74 72 61 63 74   ail.megacontract
0490 - 69 6e 67 69 6e 63 2e 63-6f 6d 82 1f 77 77 77 2e   inginc.com..www.
04a0 - 6d 61 69 6c 2e 6d 65 67-61 63 6f 6e 74 72 61 63   mail.megacontrac
04b0 - 74 69 6e 67 69 6e 63 2e-63 6f 6d 30 1d 06 03 55   tinginc.com0...U
04c0 - 1d 0e 04 16 04 14 31 b6-94 b8 4e e7 0b 14 66 9e   ......1...N...f.
04d0 - 54 5e 7b a2 fe d6 06 9f-59 fd 30 0d 06 09 2a 86   T^{.....Y.0...*.
04e0 - 48 86 f7 0d 01 01 05 05-00 03 82 01 01 00 5b d7   H.............[.
04f0 - d7 76 96 4d 9d 11 d9 51-be 2c 12 64 1d d7 90 d4   .v.M...Q.,.d....
0500 - 63 14 95 d2 d3 50 94 46-35 f3 4e a2 c7 ca e2 68   c....P.F5.N....h
0510 - 2c ae 3b 63 41 8c a6 46-26 c8 a8 d5 c3 4d c9 7f   ,.;cA..F&....M..
0520 - ec 92 aa 87 f3 5e 33 40-c6 10 de 18 48 8e 62 70   .....^3@....H.bp
0530 - 0b a8 59 5a 2e 45 5a e6-45 93 84 06 74 99 8f 5a   ..YZ.EZ.E...t..Z
0540 - 05 1f d5 1f 3a 5d 68 c2-98 d9 ff 33 9c d2 af 20   ....:]h....3...
0550 - fa 3c 6b 46 10 12 56 1d-e8 2b 2f ce 7f c7 d8 ec   .<kF..V..+/.....
0560 - 27 00 14 df 22                                    '..."
read from 0x20a6630 [0x20ac17f] (1394 bytes => 1394 (0x572))
0000 - 45 7f 64 5c 40 59 a8 e8-37 f6 52 c9 c4 56 6e 32   E.d\@Y..7.R..Vn2
0010 - 03 f2 4b 93 25 9f d2 59-a8 c7 3a 69 38 2e 4c 64   ..K.%..Y..:i8.Ld
0020 - 73 aa 7d 63 71 68 3a 9e-eb fe 8f 6d 5e 2e 20 f2   s.}cqh:....m^. .
0030 - cf c6 b9 55 83 f7 23 0f-85 ae c5 1f 46 0c 3c 70   ...U..#.....F.<p
0040 - aa 15 5f e1 f3 e7 ca 27-2a 6e 07 b3 4a b0 b1 49   .._....'*n..J..I
0050 - 96 26 cf df 1d ea d0 00-83 31 0e ff 85 4f 66 53   .&.......1...OfS
0060 - 99 37 2e 9b 58 37 9b 59-fc 50 dc a9 d7 76 10 22   .7..X7.Y.P...v."
0070 - cc 27 47 cd 8e 41 88 04-b3 d1 85 cc 34 f8 07 6f   .'G..A......4..o
0080 - 9f 39 9a fd 1a c7 36 31-49 00 04 e2 30 82 04 de   .9....61I...0...
0090 - 30 82 03 c6 a0 03 02 01-02 02 02 03 01 30 0d 06   0............0..
00a0 - 09 2a 86 48 86 f7 0d 01-01 05 05 00 30 63 31 0b   .*.H........0c1.
00b0 - 30 09 06 03 55 04 06 13-02 55 53 31 21 30 1f 06   0...U....US1!0..
00c0 - 03 55 04 0a 13 18 54 68-65 20 47 6f 20 44 61 64   .U....The Go Dad
00d0 - 64 79 20 47 72 6f 75 70-2c 20 49 6e 63 2e 31 31   dy Group, Inc.11
00e0 - 30 2f 06 03 55 04 0b 13-28 47 6f 20 44 61 64 64   0/..U...(Go Dadd
00f0 - 79 20 43 6c 61 73 73 20-32 20 43 65 72 74 69 66   y Class 2 Certif
0100 - 69 63 61 74 69 6f 6e 20-41 75 74 68 6f 72 69 74   ication Authorit
0110 - 79 30 1e 17 0d 30 36 31-31 31 36 30 31 35 34 33   y0...06111601543
0120 - 37 5a 17 0d 32 36 31 31-31 36 30 31 35 34 33 37   7Z..261116015437
0130 - 5a 30 81 ca 31 0b 30 09-06 03 55 04 06 13 02 55   Z0..1.0...U....U
0140 - 53 31 10 30 0e 06 03 55-04 08 13 07 41 72 69 7a   S1.0...U....Ariz
0150 - 6f 6e 61 31 13 30 11 06-03 55 04 07 13 0a 53 63   ona1.0...U....Sc
0160 - 6f 74 74 73 64 61 6c 65-31 1a 30 18 06 03 55 04   ottsdale1.0...U.
0170 - 0a 13 11 47 6f 44 61 64-64 79 2e 63 6f 6d 2c 20   ...GoDaddy.com,
0180 - 49 6e 63 2e 31 33 30 31-06 03 55 04 0b 13 2a 68   Inc.1301..U...*h
0190 - 74 74 70 3a 2f 2f 63 65-72 74 69 66 69 63 61 74   ttp://certificat
01a0 - 65 73 2e 67 6f 64 61 64-64 79 2e 63 6f 6d 2f 72   es.godaddy.com/r
01b0 - 65 70 6f 73 69 74 6f 72-79 31 30 30 2e 06 03 55   epository100...U
01c0 - 04 03 13 27 47 6f 20 44-61 64 64 79 20 53 65 63   ...'Go Daddy Sec
01d0 - 75 72 65 20 43 65 72 74-69 66 69 63 61 74 69 6f   ure Certificatio
01e0 - 6e 20 41 75 74 68 6f 72-69 74 79 31 11 30 0f 06   n Authority1.0..
01f0 - 03 55 04 05 13 08 30 37-39 36 39 32 38 37 30 82   .U....079692870.
0200 - 01 22 30 0d 06 09 2a 86-48 86 f7 0d 01 01 01 05   ."0...*.H.......
0210 - 00 03 82 01 0f 00 30 82-01 0a 02 82 01 01 00 c4   ......0.........
0220 - 2d d5 15 8c 9c 26 4c ec-32 35 eb 5f b8 59 01 5a   -....&L.25._.Y.Z
0230 - a6 61 81 59 3b 70 63 ab-e3 dc 3d c7 2a b8 c9 33   .a.Y;pc...=.*..3
0240 - d3 79 e4 3a ed 3c 30 23-84 8e b3 30 14 b6 b2 87   .y.:.<0#...0....
0250 - c3 3d 95 54 04 9e df 99-dd 0b 25 1e 21 de 65 29   .=.T......%.!.e)
0260 - 7e 35 a8 a9 54 eb f6 f7-32 39 d4 26 55 95 ad ef   ~5..T...29.&U...
0270 - fb fe 58 86 d7 9e f4 00-8d 8c 2a 0c bd 42 04 ce   ..X.......*..B..
0280 - a7 3f 04 f6 ee 80 f2 aa-ef 52 a1 69 66 da be 1a   .?.......R.if...
0290 - ad 5d da 2c 66 ea 1a 6b-bb e5 1a 51 4a 00 2f 48   .].,f..k...QJ./H
02a0 - c7 98 75 d8 b9 29 c8 ee-f8 66 6d 0a 9c b3 f3 fc   ..u..)...fm.....
02b0 - 78 7c a2 f8 a3 f2 b5 c3-f3 b9 7a 91 c1 a7 e6 25   x|........z....%
02c0 - 2e 9c a8 ed 12 65 6e 6a-f6 12 44 53 70 30 95 c3   .....enj..DSp0..
02d0 - 9c 2b 58 2b 3d 08 74 4a-f2 be 51 b0 bf 87 d0 4c   .+X+=.tJ..Q....L
02e0 - 27 58 6b b5 35 c5 9d af-17 31 f8 0b 8f ee ad 81   'Xk.5....1......
02f0 - 36 05 89 08 98 cf 3a af-25 87 c0 49 ea a7 fd 67   6.....:.%..I...g
0300 - f7 45 8e 97 cc 14 39 e2-36 85 b5 7e 1a 37 fd 16   .E....9.6..~.7..
0310 - f6 71 11 9a 74 30 16 fe-13 94 a3 3f 84 0d 4f 02   .q..t0.....?..O.
0320 - 03 01 00 01 a3 82 01 32-30 82 01 2e 30 1d 06 03   .......20...0...
0330 - 55 1d 0e 04 16 04 14 fd-ac 61 32 93 6c 45 d6 e2   U........a2.lE..
0340 - ee 85 5f 9a ba e7 76 99-68 cc e7 30 1f 06 03 55   .._...v.h..0...U
0350 - 1d 23 04 18 30 16 80 14-d2 c4 b0 d2 91 d4 4c 11   .#..0.........L.
0360 - 71 b3 61 cb 3d a1 fe dd-a8 6a d4 e3 30 12 06 03   q.a.=....j..0...
0370 - 55 1d 13 01 01 ff 04 08-30 06 01 01 ff 02 01 00   U.......0.......
0380 - 30 33 06 08 2b 06 01 05-05 07 01 01 04 27 30 25   03..+........'0%
0390 - 30 23 06 08 2b 06 01 05-05 07 30 01 86 17 68 74   0#..+.....0...ht
03a0 - 74 70 3a 2f 2f 6f 63 73-70 2e 67 6f 64 61 64 64   tp://ocsp.godadd
03b0 - 79 2e 63 6f 6d 30 46 06-03 55 1d 1f 04 3f 30 3d   y.com0F..U...?0=
03c0 - 30 3b a0 39 a0 37 86 35-68 74 74 70 3a 2f 2f 63   0;.9.7.5http://c
03d0 - 65 72 74 69 66 69 63 61-74 65 73 2e 67 6f 64 61   ertificates.goda
03e0 - 64 64 79 2e 63 6f 6d 2f-72 65 70 6f 73 69 74 6f   ddy.com/reposito
03f0 - 72 79 2f 67 64 72 6f 6f-74 2e 63 72 6c 30 4b 06   ry/gdroot.crl0K.
0400 - 03 55 1d 20 04 44 30 42-30 40 06 04 55 1d 20 00   .U. .D0B0@..U. .
0410 - 30 38 30 36 06 08 2b 06-01 05 05 07 02 01 16 2a   0806..+........*
0420 - 68 74 74 70 3a 2f 2f 63-65 72 74 69 66 69 63 61   http://certifica
0430 - 74 65 73 2e 67 6f 64 61-64 64 79 2e 63 6f 6d 2f   tes.godaddy.com/
0440 - 72 65 70 6f 73 69 74 6f-72 79 30 0e 06 03 55 1d   repository0...U.
0450 - 0f 01 01 ff 04 04 03 02-01 06 30 0d 06 09 2a 86   ..........0...*.
0460 - 48 86 f7 0d 01 01 05 05-00 03 82 01 01 00 d2 86   H...............
0470 - c0 ec bd f9 a1 b6 67 ee-66 0b a2 06 3a 04 50 8e   ......g.f...:.P.
0480 - 15 72 ac 4a 74 95 53 cb-37 cb 44 49 ef 07 90 6b   .r.Jt.S.7.DI...k
0490 - 33 d9 96 f0 94 56 a5 13-30 05 3c 85 32 21 7b c9   3....V..0.<.2!{.
04a0 - c7 0a a8 24 a4 90 de 46-d3 25 23 14 03 67 c2 10   ...$...F.%#..g..
04b0 - d6 6f 0f 5d 7b 7a cc 9f-c5 58 2a c1 c4 9e 21 a8   .o.]{z...X*...!.
04c0 - 5a f3 ac a4 46 f3 9e e4-63 cb 2f 90 a4 29 29 01   Z...F...c./..)).
04d0 - d9 72 2c 29 df 37 01 27-bc 4f ee 68 d3 21 8f c0   .r,).7.'.O.h.!..
04e0 - b3 e4 f5 09 ed d2 10 aa-53 b4 be f0 cc 59 0b d6   ........S....Y..
04f0 - 3b 96 1c 95 24 49 df ce-ec fd a7 48 91 14 45 0e   ;...$I.....H..E.
0500 - 3a 36 6f da 45 b3 45 a2-41 c9 d4 d7 44 4e 3e b9   :6o.E.E.A...DN>.
0510 - 74 76 d5 a2 13 55 2c c6-87 a3 b5 99 ac 06 84 87   tv...U,.........
0520 - 7f 75 06 fc bf 14 4c 0e-cc 6e c4 df 3d b7 12 71   .u....L..n..=..q
0530 - f4 e8 f1 51 40 22 28 49-e0 1d 4b 87 a8 34 cc 06   ...Q@"(I..K..4..
0540 - a2 dd 12 5a d1 86 36 64-03 35 6f 6f 77 6e eb f2   ...Z..6d.5oown..
0550 - 85 50 98 5e ab 03 53 ad-91 23 63 1f 16 9c cd b9   .P.^..S..#c.....
0560 - b2 05 63 3a e1 f4 68 1b-17 05 35 95 53 ee 0e      ..c:..h...5.S..
0572 - <SPACES/NULS>
<<< TLS 1.0 Handshake [length 0051], ServerHello
    02 00 00 4d 03 01 51 bc 81 e5 a8 cd 83 1c 3e 38
    48 a4 1e 8b c8 76 c3 28 5f 66 6c 70 c2 65 e7 bb
    42 bb 82 a7 3d d6 20 11 1f 00 00 93 d5 05 9f ed
    94 0b 37 6c 16 ed 0a b4 6a d2 fd 23 76 f1 ab 06
    bf 70 ea f4 fd d9 62 00 04 00 00 05 ff 01 00 01
    00
SSL_connect:SSLv3 read server hello A
<<< TLS 1.0 Handshake [length 0a84], Certificate
    0b 00 0a 80 00 0a 7d 00 05 95 30 82 05 91 30 82
    04 79 a0 03 02 01 02 02 07 4b 31 37 8f 40 6f bb
    30 0d 06 09 2a 86 48 86 f7 0d 01 01 05 05 00 30
    81 ca 31 0b 30 09 06 03 55 04 06 13 02 55 53 31
    10 30 0e 06 03 55 04 08 13 07 41 72 69 7a 6f 6e
    61 31 13 30 11 06 03 55 04 07 13 0a 53 63 6f 74
    74 73 64 61 6c 65 31 1a 30 18 06 03 55 04 0a 13
    11 47 6f 44 61 64 64 79 2e 63 6f 6d 2c 20 49 6e
    63 2e 31 33 30 31 06 03 55 04 0b 13 2a 68 74 74
    70 3a 2f 2f 63 65 72 74 69 66 69 63 61 74 65 73
    2e 67 6f 64 61 64 64 79 2e 63 6f 6d 2f 72 65 70
    6f 73 69 74 6f 72 79 31 30 30 2e 06 03 55 04 03
    13 27 47 6f 20 44 61 64 64 79 20 53 65 63 75 72
    65 20 43 65 72 74 69 66 69 63 61 74 69 6f 6e 20
    41 75 74 68 6f 72 69 74 79 31 11 30 0f 06 03 55
    04 05 13 08 30 37 39 36 39 32 38 37 30 1e 17 0d
    31 30 31 31 30 35 30 31 33 32 35 32 5a 17 0d 31
    35 31 31 30 35 30 31 33 32 35 32 5a 30 6f 31 24
    30 22 06 03 55 04 0a 13 1b 6d 61 69 6c 2e 6d 65
    67 61 63 6f 6e 74 72 61 63 74 69 6e 67 69 6e 63
    2e 63 6f 6d 31 21 30 1f 06 03 55 04 0b 13 18 44
    6f 6d 61 69 6e 20 43 6f 6e 74 72 6f 6c 20 56 61
    6c 69 64 61 74 65 64 31 24 30 22 06 03 55 04 03
    13 1b 6d 61 69 6c 2e 6d 65 67 61 63 6f 6e 74 72
    61 63 74 69 6e 67 69 6e 63 2e 63 6f 6d 30 82 01
    22 30 0d 06 09 2a 86 48 86 f7 0d 01 01 01 05 00
    03 82 01 0f 00 30 82 01 0a 02 82 01 01 00 dc 8d
    e3 23 4d 6b a3 2d dc a3 12 33 a8 32 00 f8 c3 c4
    a7 05 65 62 e4 28 1b a0 83 f1 ec 1d ec 33 d3 72
    06 85 6f d2 36 f9 41 98 bc 05 95 10 4f 0c 51 e4
    fe 66 36 33 b6 7c 8e e0 74 ff 8d 0b ee 5a c7 30
    fd 70 ba 0f 22 e3 53 a8 69 0c 71 2c 1a aa da fd
    70 fe 10 56 b5 4d ba ea f3 6a dc f2 cc d7 31 cb
    b9 8c 62 90 98 b4 bd a7 78 ab f4 48 bb fa 4f a7
    1b 41 6c 6c 59 85 95 55 70 b8 08 87 cc 3c df 3d
    b7 f9 d3 08 de 46 3d 00 0b 5b 27 aa 73 be a0 42
    a5 8d c1 6b 1a cc 45 b3 98 06 0e 12 9d 29 79 8e
    d1 11 25 65 ea f9 a9 e5 a5 5f 96 f0 be d4 5f 90
    f9 1d 4a 9d e6 04 8f 0c 74 1f 69 e8 12 aa c1 7e
    32 ba c2 03 3b c8 b2 4f 23 c6 de ab 03 45 62 ea
    57 8a b8 e0 e6 94 10 1d 54 96 b9 fe 79 b7 0e ea
    9e 51 57 5d 78 5f fc 81 68 25 e2 58 5d 0c 09 76
    c5 4d eb 8d 0c eb 50 7a a7 3f f1 e0 4e 07 02 03
    01 00 01 a3 82 01 d4 30 82 01 d0 30 0f 06 03 55
    1d 13 01 01 ff 04 05 30 03 01 01 00 30 1d 06 03
    55 1d 25 04 16 30 14 06 08 2b 06 01 05 05 07 03
    01 06 08 2b 06 01 05 05 07 03 02 30 0e 06 03 55
    1d 0f 01 01 ff 04 04 03 02 05 a0 30 33 06 03 55
    1d 1f 04 2c 30 2a 30 28 a0 26 a0 24 86 22 68 74
    74 70 3a 2f 2f 63 72 6c 2e 67 6f 64 61 64 64 79
    2e 63 6f 6d 2f 67 64 73 31 2d 32 35 2e 63 72 6c
    30 4d 06 03 55 1d 20 04 46 30 44 30 42 06 0b 60
    86 48 01 86 fd 6d 01 07 17 01 30 33 30 31 06 08
    2b 06 01 05 05 07 02 01 16 25 68 74 74 70 73 3a
    2f 2f 63 65 72 74 73 2e 67 6f 64 61 64 64 79 2e
    63 6f 6d 2f 72 65 70 6f 73 69 74 6f 72 79 2f 30
    81 80 06 08 2b 06 01 05 05 07 01 01 04 74 30 72
    30 24 06 08 2b 06 01 05 05 07 30 01 86 18 68 74
    74 70 3a 2f 2f 6f 63 73 70 2e 67 6f 64 61 64 64
    79 2e 63 6f 6d 2f 30 4a 06 08 2b 06 01 05 05 07
    30 02 86 3e 68 74 74 70 3a 2f 2f 63 65 72 74 69
    66 69 63 61 74 65 73 2e 67 6f 64 61 64 64 79 2e
    63 6f 6d 2f 72 65 70 6f 73 69 74 6f 72 79 2f 67
    64 5f 69 6e 74 65 72 6d 65 64 69 61 74 65 2e 63
    72 74 30 1f 06 03 55 1d 23 04 18 30 16 80 14 fd
    ac 61 32 93 6c 45 d6 e2 ee 85 5f 9a ba e7 76 99
    68 cc e7 30 47 06 03 55 1d 11 04 40 30 3e 82 1b
    6d 61 69 6c 2e 6d 65 67 61 63 6f 6e 74 72 61 63
    74 69 6e 67 69 6e 63 2e 63 6f 6d 82 1f 77 77 77
    2e 6d 61 69 6c 2e 6d 65 67 61 63 6f 6e 74 72 61
    63 74 69 6e 67 69 6e 63 2e 63 6f 6d 30 1d 06 03
    55 1d 0e 04 16 04 14 31 b6 94 b8 4e e7 0b 14 66
    9e 54 5e 7b a2 fe d6 06 9f 59 fd 30 0d 06 09 2a
    86 48 86 f7 0d 01 01 05 05 00 03 82 01 01 00 5b
    d7 d7 76 96 4d 9d 11 d9 51 be 2c 12 64 1d d7 90
    d4 63 14 95 d2 d3 50 94 46 35 f3 4e a2 c7 ca e2
    68 2c ae 3b 63 41 8c a6 46 26 c8 a8 d5 c3 4d c9
    7f ec 92 aa 87 f3 5e 33 40 c6 10 de 18 48 8e 62
    70 0b a8 59 5a 2e 45 5a e6 45 93 84 06 74 99 8f
    5a 05 1f d5 1f 3a 5d 68 c2 98 d9 ff 33 9c d2 af
    20 fa 3c 6b 46 10 12 56 1d e8 2b 2f ce 7f c7 d8
    ec 27 00 14 df 22 45 7f 64 5c 40 59 a8 e8 37 f6
    52 c9 c4 56 6e 32 03 f2 4b 93 25 9f d2 59 a8 c7
    3a 69 38 2e 4c 64 73 aa 7d 63 71 68 3a 9e eb fe
    8f 6d 5e 2e 20 f2 cf c6 b9 55 83 f7 23 0f 85 ae
    c5 1f 46 0c 3c 70 aa 15 5f e1 f3 e7 ca 27 2a 6e
    07 b3 4a b0 b1 49 96 26 cf df 1d ea d0 00 83 31
    0e ff 85 4f 66 53 99 37 2e 9b 58 37 9b 59 fc 50
    dc a9 d7 76 10 22 cc 27 47 cd 8e 41 88 04 b3 d1
    85 cc 34 f8 07 6f 9f 39 9a fd 1a c7 36 31 49 00
    04 e2 30 82 04 de 30 82 03 c6 a0 03 02 01 02 02
    02 03 01 30 0d 06 09 2a 86 48 86 f7 0d 01 01 05
    05 00 30 63 31 0b 30 09 06 03 55 04 06 13 02 55
    53 31 21 30 1f 06 03 55 04 0a 13 18 54 68 65 20
    47 6f 20 44 61 64 64 79 20 47 72 6f 75 70 2c 20
    49 6e 63 2e 31 31 30 2f 06 03 55 04 0b 13 28 47
    6f 20 44 61 64 64 79 20 43 6c 61 73 73 20 32 20
    43 65 72 74 69 66 69 63 61 74 69 6f 6e 20 41 75
    74 68 6f 72 69 74 79 30 1e 17 0d 30 36 31 31 31
    36 30 31 35 34 33 37 5a 17 0d 32 36 31 31 31 36
    30 31 35 34 33 37 5a 30 81 ca 31 0b 30 09 06 03
    55 04 06 13 02 55 53 31 10 30 0e 06 03 55 04 08
    13 07 41 72 69 7a 6f 6e 61 31 13 30 11 06 03 55
    04 07 13 0a 53 63 6f 74 74 73 64 61 6c 65 31 1a
    30 18 06 03 55 04 0a 13 11 47 6f 44 61 64 64 79
    2e 63 6f 6d 2c 20 49 6e 63 2e 31 33 30 31 06 03
    55 04 0b 13 2a 68 74 74 70 3a 2f 2f 63 65 72 74
    69 66 69 63 61 74 65 73 2e 67 6f 64 61 64 64 79
    2e 63 6f 6d 2f 72 65 70 6f 73 69 74 6f 72 79 31
    30 30 2e 06 03 55 04 03 13 27 47 6f 20 44 61 64
    64 79 20 53 65 63 75 72 65 20 43 65 72 74 69 66
    69 63 61 74 69 6f 6e 20 41 75 74 68 6f 72 69 74
    79 31 11 30 0f 06 03 55 04 05 13 08 30 37 39 36
    39 32 38 37 30 82 01 22 30 0d 06 09 2a 86 48 86
    f7 0d 01 01 01 05 00 03 82 01 0f 00 30 82 01 0a
    02 82 01 01 00 c4 2d d5 15 8c 9c 26 4c ec 32 35
    eb 5f b8 59 01 5a a6 61 81 59 3b 70 63 ab e3 dc
    3d c7 2a b8 c9 33 d3 79 e4 3a ed 3c 30 23 84 8e
    b3 30 14 b6 b2 87 c3 3d 95 54 04 9e df 99 dd 0b
    25 1e 21 de 65 29 7e 35 a8 a9 54 eb f6 f7 32 39
    d4 26 55 95 ad ef fb fe 58 86 d7 9e f4 00 8d 8c
    2a 0c bd 42 04 ce a7 3f 04 f6 ee 80 f2 aa ef 52
    a1 69 66 da be 1a ad 5d da 2c 66 ea 1a 6b bb e5
    1a 51 4a 00 2f 48 c7 98 75 d8 b9 29 c8 ee f8 66
    6d 0a 9c b3 f3 fc 78 7c a2 f8 a3 f2 b5 c3 f3 b9
    7a 91 c1 a7 e6 25 2e 9c a8 ed 12 65 6e 6a f6 12
    44 53 70 30 95 c3 9c 2b 58 2b 3d 08 74 4a f2 be
    51 b0 bf 87 d0 4c 27 58 6b b5 35 c5 9d af 17 31
    f8 0b 8f ee ad 81 36 05 89 08 98 cf 3a af 25 87
    c0 49 ea a7 fd 67 f7 45 8e 97 cc 14 39 e2 36 85
    b5 7e 1a 37 fd 16 f6 71 11 9a 74 30 16 fe 13 94
    a3 3f 84 0d 4f 02 03 01 00 01 a3 82 01 32 30 82
    01 2e 30 1d 06 03 55 1d 0e 04 16 04 14 fd ac 61
    32 93 6c 45 d6 e2 ee 85 5f 9a ba e7 76 99 68 cc
    e7 30 1f 06 03 55 1d 23 04 18 30 16 80 14 d2 c4
    b0 d2 91 d4 4c 11 71 b3 61 cb 3d a1 fe dd a8 6a
    d4 e3 30 12 06 03 55 1d 13 01 01 ff 04 08 30 06
    01 01 ff 02 01 00 30 33 06 08 2b 06 01 05 05 07
    01 01 04 27 30 25 30 23 06 08 2b 06 01 05 05 07
    30 01 86 17 68 74 74 70 3a 2f 2f 6f 63 73 70 2e
    67 6f 64 61 64 64 79 2e 63 6f 6d 30 46 06 03 55
    1d 1f 04 3f 30 3d 30 3b a0 39 a0 37 86 35 68 74
    74 70 3a 2f 2f 63 65 72 74 69 66 69 63 61 74 65
    73 2e 67 6f 64 61 64 64 79 2e 63 6f 6d 2f 72 65
    70 6f 73 69 74 6f 72 79 2f 67 64 72 6f 6f 74 2e
    63 72 6c 30 4b 06 03 55 1d 20 04 44 30 42 30 40
    06 04 55 1d 20 00 30 38 30 36 06 08 2b 06 01 05
    05 07 02 01 16 2a 68 74 74 70 3a 2f 2f 63 65 72
    74 69 66 69 63 61 74 65 73 2e 67 6f 64 61 64 64
    79 2e 63 6f 6d 2f 72 65 70 6f 73 69 74 6f 72 79
    30 0e 06 03 55 1d 0f 01 01 ff 04 04 03 02 01 06
    30 0d 06 09 2a 86 48 86 f7 0d 01 01 05 05 00 03
    82 01 01 00 d2 86 c0 ec bd f9 a1 b6 67 ee 66 0b
    a2 06 3a 04 50 8e 15 72 ac 4a 74 95 53 cb 37 cb
    44 49 ef 07 90 6b 33 d9 96 f0 94 56 a5 13 30 05
    3c 85 32 21 7b c9 c7 0a a8 24 a4 90 de 46 d3 25
    23 14 03 67 c2 10 d6 6f 0f 5d 7b 7a cc 9f c5 58
    2a c1 c4 9e 21 a8 5a f3 ac a4 46 f3 9e e4 63 cb
    2f 90 a4 29 29 01 d9 72 2c 29 df 37 01 27 bc 4f
    ee 68 d3 21 8f c0 b3 e4 f5 09 ed d2 10 aa 53 b4
    be f0 cc 59 0b d6 3b 96 1c 95 24 49 df ce ec fd
    a7 48 91 14 45 0e 3a 36 6f da 45 b3 45 a2 41 c9
    d4 d7 44 4e 3e b9 74 76 d5 a2 13 55 2c c6 87 a3
    b5 99 ac 06 84 87 7f 75 06 fc bf 14 4c 0e cc 6e
    c4 df 3d b7 12 71 f4 e8 f1 51 40 22 28 49 e0 1d
    4b 87 a8 34 cc 06 a2 dd 12 5a d1 86 36 64 03 35
    6f 6f 77 6e eb f2 85 50 98 5e ab 03 53 ad 91 23
    63 1f 16 9c cd b9 b2 05 63 3a e1 f4 68 1b 17 05
    35 95 53 ee
depth=1 C = US, ST = Arizona, L = Scottsdale, O = "GoDaddy.com, Inc.", OU = http://certificates.godaddy.com/repository, CN = Go Daddy Secure Certification Authority, serialNumber = 07969287
verify error:num=20:unable to get local issuer certificate
verify return:0
SSL_connect:SSLv3 read server certificate A
<<< TLS 1.0 Handshake [length 0004], ServerHelloDone
    0e 00 00 00
SSL_connect:SSLv3 read server done A
>>> TLS 1.0 Handshake [length 0106], ClientKeyExchange
    10 00 01 02 01 00 38 9e 8c 3e 62 f8 8e 88 fe e4
    27 55 c8 e6 8d d9 51 a3 65 35 19 cc 3e fb 5a 46
    5c a6 66 d0 be a2 e9 a9 bd 0c 20 6a 8e 4d 68 01
    94 d8 69 85 f9 fc 04 04 51 a5 ab e1 61 65 0b 5a
    43 63 22 2f 87 a0 f6 c8 bd 1f 69 d9 a7 c3 98 5e
    3d bc 3b 9a 13 e1 50 bd 53 1b f8 f3 90 30 98 2b
    c8 41 33 03 a3 52 c2 41 46 33 1a 90 a5 b4 4b 48
    a5 29 c1 14 7e b2 a7 4e 09 bc b7 04 5c 34 b0 97
    d8 a6 a9 e2 a9 6d 65 04 54 a0 35 a2 94 02 5e 5f
    a3 17 ad e2 02 bb d3 68 26 96 d2 c7 04 6e 39 4f
    d7 b8 6e 50 38 cf e5 39 9b 9d 66 c1 ef 05 42 e1
    d8 e4 93 24 7f ef 6d 1f f7 a8 fd 64 36 8a a0 fc
    3a 0c 3b 37 b2 95 f7 08 7f a5 f3 cf 65 e1 9f f3
    7a 74 88 80 6c a2 2f 4c db c0 70 70 24 57 8e 6a
    99 6e 19 06 d9 eb 03 6f 41 8f 89 41 cd c0 d7 a1
    13 a8 26 2e 82 8d ad 80 01 d1 f2 4d f9 62 92 56
    db bf 6e 92 0b 13
SSL_connect:SSLv3 write client key exchange A
write to 0x20a6630 [0x20b59a0] (267 bytes => 267 (0x10B))
0000 - 16 03 01 01 06 10 00 01-02 01 00 38 9e 8c 3e 62   ...........8..>b
0010 - f8 8e 88 fe e4 27 55 c8-e6 8d d9 51 a3 65 35 19   .....'U....Q.e5.
0020 - cc 3e fb 5a 46 5c a6 66-d0 be a2 e9 a9 bd 0c 20   .>.ZF\.f.......
0030 - 6a 8e 4d 68 01 94 d8 69-85 f9 fc 04 04 51 a5 ab   j.Mh...i.....Q..
0040 - e1 61 65 0b 5a 43 63 22-2f 87 a0 f6 c8 bd 1f 69   .ae.ZCc"/......i
0050 - d9 a7 c3 98 5e 3d bc 3b-9a 13 e1 50 bd 53 1b f8   ....^=.;...P.S..
0060 - f3 90 30 98 2b c8 41 33-03 a3 52 c2 41 46 33 1a   ..0.+.A3..R.AF3.
0070 - 90 a5 b4 4b 48 a5 29 c1-14 7e b2 a7 4e 09 bc b7   ...KH.)..~..N...
0080 - 04 5c 34 b0 97 d8 a6 a9-e2 a9 6d 65 04 54 a0 35   .\4.......me.T.5
0090 - a2 94 02 5e 5f a3 17 ad-e2 02 bb d3 68 26 96 d2   ...^_.......h&..
00a0 - c7 04 6e 39 4f d7 b8 6e-50 38 cf e5 39 9b 9d 66   ..n9O..nP8..9..f
00b0 - c1 ef 05 42 e1 d8 e4 93-24 7f ef 6d 1f f7 a8 fd   ...B....$..m....
00c0 - 64 36 8a a0 fc 3a 0c 3b-37 b2 95 f7 08 7f a5 f3   d6...:.;7.......
00d0 - cf 65 e1 9f f3 7a 74 88-80 6c a2 2f 4c db c0 70   .e...zt..l./L..p
00e0 - 70 24 57 8e 6a 99 6e 19-06 d9 eb 03 6f 41 8f 89   p$W.j.n.....oA..
00f0 - 41 cd c0 d7 a1 13 a8 26-2e 82 8d ad 80 01 d1 f2   A......&........
0100 - 4d f9 62 92 56 db bf 6e-92 0b 13                  M.b.V..n...
>>> TLS 1.0 ChangeCipherSpec [length 0001]
    01
SSL_connect:SSLv3 write change cipher spec A
write to 0x20a6630 [0x20b59a0] (6 bytes => 6 (0x6))
0000 - 14 03 01 00 01 01                                 ......
>>> TLS 1.0 Handshake [length 0010], Finished
    14 00 00 0c f2 ee 56 9c 07 c7 8e 5d f7 14 e8 34
SSL_connect:SSLv3 write finished A
SSL_connect:SSLv3 flush data
write to 0x20a6630 [0x20b59a0] (37 bytes => 37 (0x25))
0000 - 16 03 01 00 20 6a 75 84-01 65 40 a6 1d 84 d4 d2   .... ju..e@.....
0010 - dc c5 e0 61 5b 46 ab 5c-b1 c9 aa be 3b 54 91 05   ...a[F.\....;T..
0020 - 10 d6 8b 1a 88                                    .....
read from 0x20a6630 [0x20abc13] (5 bytes => 5 (0x5))
0000 - 14 03 01 00 01                                    .....
read from 0x20a6630 [0x20abc18] (1 bytes => 1 (0x1))
0000 - 01                                                .
<<< TLS 1.0 ChangeCipherSpec [length 0001]
    01
read from 0x20a6630 [0x20abc13] (5 bytes => 5 (0x5))
0000 - 16 03 01                                          ...
0005 - <SPACES/NULS>
read from 0x20a6630 [0x20abc18] (32 bytes => 32 (0x20))
0000 - 9b 78 45 4a cb d0 e8 38-f5 69 ce 4b 7f 98 45 61   .xEJ...8.i.K..Ea
0010 - 8d ec 9f 33 5d 76 83 7b-7b 93 99 9e 27 60 75 97   ...3]v.{{...'`u.
<<< TLS 1.0 Handshake [length 0010], Finished
    14 00 00 0c d2 16 9b 24 58 22 db dd 1e 02 3a 18
SSL_connect:SSLv3 read finished A
---
Certificate chain
 0 s:/O=mail.megacontractinginc.com/OU=Domain Control Validated/CN=mail.megacontractinginc.com
   i:/C=US/ST=Arizona/L=Scottsdale/O=GoDaddy.com, Inc./OU=http://certificates.godaddy.com/repository/CN=Go Daddy Secure Certification Authority/serialNumber=07969287
 1 s:/C=US/ST=Arizona/L=Scottsdale/O=GoDaddy.com, Inc./OU=http://certificates.godaddy.com/repository/CN=Go Daddy Secure Certification Authority/serialNumber=07969287
   i:/C=US/O=The Go Daddy Group, Inc./OU=Go Daddy Class 2 Certification Authority
---
Server certificate
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
subject=/O=mail.megacontractinginc.com/OU=Domain Control Validated/CN=mail.megacontractinginc.com
issuer=/C=US/ST=Arizona/L=Scottsdale/O=GoDaddy.com, Inc./OU=http://certificates.godaddy.com/repository/CN=Go Daddy Secure Certification Authority/serialNumber=07969287
---
No client certificate CA names sent
---
SSL handshake has read 3282 bytes and written 571 bytes
---
New, TLSv1/SSLv3, Cipher is RC4-MD5
Server public key is 2048 bit
Secure Renegotiation IS supported
Compression: NONE
Expansion: NONE
SSL-Session:
    Protocol  : TLSv1
    Cipher    : RC4-MD5
    Session-ID: 111F000093D5059FED940B376C16ED0AB46AD2FD2376F1AB06BF70EAF4FDD962
    Session-ID-ctx:
    Master-Key: 1690432EB6BE93F22D7A7A01887E48E202366D6ABA49FEE25DE5EE913BC5D5984887E17848EDCF09C59E7DBB36CC6114
    Key-Arg   : None
    PSK identity: None
    PSK identity hint: None
    SRP username: None
    Start Time: 1371308517
    Timeout   : 300 (sec)
    Verify return code: 20 (unable to get local issuer certificate)
---
250 OK
214-This server supports the following commands:
214 HELO EHLO STARTTLS RCPT DATA RSET MAIL QUIT HELP AUTH TURN ETRN BDAT VRFY
DONE
write to 0x20a6630 [0x20b0163] (27 bytes => 27 (0x1B))
0000 - 17 03 01 00 16 c3 3b ec-ed 22 42 bf b5 43 9f 14   ......;.."B..C..
0010 - 77 85 96 55 ae ee e8 43-fb a1 6e                  w..U...C..n
read from 0x20a6630 [0x20abc13] (5 bytes => 5 (0x5))
0000 - 17 03 01 00 91                                    .....
read from 0x20a6630 [0x20abc18] (145 bytes => 145 (0x91))
0000 - a7 e5 a4 4c 31 3d 36 61-3c 04 9c cc 8f 81 ce 43   ...L1=6a<......C
0010 - 9f 52 0c 1f 8e 8e 50 73-0c 38 e6 dc 25 8c 34 ac   .R....Ps.8..%.4.
0020 - 85 9a 58 3b 33 6d bb 35-99 b7 1b 0e c6 75 a3 71   ..X;3m.5.....u.q
0030 - 74 d5 53 d3 db 0a 9b 83-99 9f cd a4 8d a0 0e c0   t.S.............
0040 - e2 fd ce 4f dd 44 66 ef-f5 1b 01 df 49 2e 3a 3f   ...O.Df.....I.:?
0050 - b7 06 fc a3 8e 8e ec 4a-7a 64 21 c4 f8 b1 be e8   .......Jzd!.....
0060 - bd 72 ae 5a ed ae b7 8d-0a 0e 92 a7 ef f7 4b 6e   .r.Z..........Kn
0070 - a4 6a c8 ad 54 29 d4 b0-3b 36 b3 ea 20 bc ad 88   .j..T)..;6.. ...
0080 - 56 0f b4 1e 2a 23 cd 4f-63 cf bb 1c 82 ab 5b 74   V...*#.Oc.....[t
0090 - 0f                                                .
write to 0x20a6630 [0x20b0163] (23 bytes => 23 (0x17))
0000 - 15 03 01 00 12 8b c7 89-c1 68 1c 18 e5 b8 d3 8f   .........h......
0010 - 43 cb 66 52 ea f8 30                              C.fR..0
>>> TLS 1.0 Alert [length 0002], warning close_notify
    01 00
SSL3 alert write:warning:close notify
Reply | Threaded
Open this post in threaded view
|

RE: [openssl.org #3072] Strange behaviour when talking to microsoft exchange

Dave Thompson-5
> From: [hidden email] On Behalf Of Kurt Roeckx via RT
> Sent: Saturday, 15 June, 2013 11:08

> On Fri, Jun 14, 2013 at 08:09:56PM -0400, Dave Thompson wrote:
> > > From: [hidden email] On Behalf Of Kurt Roeckx
> > > Sent: Thursday, 13 June, 2013 03:13
> >
> > > > When talking to an exchange server I get some weird behaviour when
> > > > using the 1.0.1e version.  I get a TLS 1.0 connection, but the
> > > > problems go away when using -no_tls1_2
<snip>
> > > > 140527452698280:error:1408F10B:SSL
> > > routines:SSL3_GET_RECORD:wrong version number:s3_pkt.c:337:
> > > >
> > That's really weird, unless the server isn't actually doing starttls
> > correctly (in spite of offering it). If you can get this to recur,
> > try with -state -debug to see exactly where/what is happening.
>
It's apparently first read after (good) handshake; see below.

> I can reproduce this with several servers.
<snip>

> > > One thing I've noticed is that -no_tls1_2 has as effect that the
> > > cipher gets changed from DES-CBC3-SHA to RC4-MD5.
> > >
> > I don't see why that would result; -no_tls1_2 excludes the 1.2-only
> > suites (SHA2 and GCM) from ClientHello, but it still has akRSA-DES3CBC
> > preferred over akRSA-RC4 (and akRSA-RC4-SHA over akRSA-RC4-MD5!).
> > Are you sure there's nothing else different? Can you get a wire trace,
> > or -msg or -debug?
>
> I've attached 2 log files:
> openssl s_client -connect mail.megacontractinginc.com:25
> -starttls smtp -crlf -state -msg -debug &> state_debug.log
> openssl s_client -connect mail.megacontractinginc.com:25
> -starttls smtp -crlf -state -msg -debug -no_tls1_2 &>
> state_debug_no_tls1_2.log
>
> One other thing I've learned so far is that with openssl 0.9.8 it
> also negiotaties RC4-MD5 and not DES-CBC3-SHA.
>
Since 0.9.8 only offers upto 1.0 that is somewhat consistent.
If you can and care to try 1.0.0, I'd expect it to be like 0.9.8.

Looking at your state_debug.log (which tries 1.2) I see:
read/write preliminary SMTP as normal
write ClientHello: offer 1.2
read ServerHello: agree 1.0 DES-CBC3-SHA
rest of handshake normal

Aside: I notice your build (here and in no-1.2) doesn't offer IDEA,
so I'll guess it was built by longtime anti-patent person.

Then we have:
> 250 OK
> 214-This server supports the following commands:
> 214 HELO EHLO STARTTLS RCPT DATA RSET MAIL QUIT HELP AUTH TURN ETRN BDAT
VRFY
These appear to be leftover (in mbuf) from the preliminary phase.

Then we write 2 encrypted app records, length x18 and x20. The first
is presumably the empty-fragment "fix" for CBC<=1.0, and the latter
some SMTP command you input of length 4 to 11.

Then we read valid header for encrypted app record with length 0x98 and
that much apparent ciphertext, which presumably didn't decrypt to a good
complete app record because we don't display anything but intsead read
for another header and get:
> 0000 - 6f 6e 61 31 13                                    ona1.
which is not a correct or even plausible header, so we alert.

It would be nice to see what the (partial?) decrypt looks like, but
rather a nuisance to write the code to do so. Maybe later.

It still is odd for the server to choose (RSA)DES3-SHA for 1.2
but (RSA)RC4-MD5 for 1.1 and 1.0, when DES3-SHA is still offered
earlier in the list. Maybe somehow the 1.2 negotiation confused the
server into selecting DES3-SHA but not implementing it correctly??

Looking something up, I was reminded DES3-SHA was MUST-implement
for 1.1 -- but DHEDSS-DES3-SHA was for 1.0, and that's the same
after premaster&keys are negotiated, so if anything that's a reason
for it to work correctly.

I suggest trying the default=1.2 with -cipher RC4-MD5; if that works
try RC4-SHA with default=1.2 and also -no_tls1_2 and/or exact -tls1.
Conversely try -no_tls1_2 and/or -tls1 with -cipher DES-CBC-SHA .


______________________________________________________________________
OpenSSL Project                                 http://www.openssl.org
Development Mailing List                       [hidden email]
Automated List Manager                           [hidden email]
Reply | Threaded
Open this post in threaded view
|

Re: [openssl.org #3072] Strange behaviour when talking to microsoft exchange

Rich Salz via RT
On Tue, Jun 18, 2013 at 12:30:58AM -0400, Dave Thompson wrote:
>
> Looking at your state_debug.log (which tries 1.2) I see:
> read/write preliminary SMTP as normal
> write ClientHello: offer 1.2
> read ServerHello: agree 1.0 DES-CBC3-SHA
> rest of handshake normal
>
> Aside: I notice your build (here and in no-1.2) doesn't offer IDEA,
> so I'll guess it was built by longtime anti-patent person.

This is tested on Debian where it was disabled many years ago and
never re-enabled.  I see no reason to enable it anymore.

> Then we have:
> > 250 OK
> > 214-This server supports the following commands:
> > 214 HELO EHLO STARTTLS RCPT DATA RSET MAIL QUIT HELP AUTH TURN ETRN BDAT
> VRFY
> These appear to be leftover (in mbuf) from the preliminary phase.

No, this is most likely a logging problem.  
What happens is that I get:
250 OK

I send: "HELP\r\n"

I get as reply:
214-This server supports the following commands:
214 HELO EHLO STARTTLS RCPT DATA RSET MAIL QUIT HELP AUTH TURN ETRN BDAT VRFY

And after that the connection breaks.

> I suggest trying the default=1.2 with -cipher RC4-MD5; if that works
> try RC4-SHA with default=1.2 and also -no_tls1_2 and/or exact -tls1.
> Conversely try -no_tls1_2 and/or -tls1 with -cipher DES-CBC-SHA .

Using "-cipher RC4-MD5" or "-cipher RC4-SHA" I get that as cipher
and have connection that stays working.

Using "-no_tls1_2 -cipher DES-CBC-SHA" I get the broken connection
after the HELP.

My conclussions:
- One of the 2 sides doesn't implement DES-CBC-SHA/DES-CBC3-SHA properly
- The server seems to act weird in changing between RC4-MD5 and
  DES-CBC3-SHA.


Kurt


______________________________________________________________________
OpenSSL Project                                 http://www.openssl.org
Development Mailing List                       [hidden email]
Automated List Manager                           [hidden email]
Reply | Threaded
Open this post in threaded view
|

RE: [openssl.org #3072] Strange behaviour when talking to microsoft exchange

Dave Thompson-5
> From: [hidden email] On Behalf Of Kurt Roeckx via RT
> Sent: Tuesday, 18 June, 2013 12:30

> On Tue, Jun 18, 2013 at 12:30:58AM -0400, Dave Thompson wrote:
> >
> > Looking at your state_debug.log (which tries 1.2) I see:
> > read/write preliminary SMTP as normal
> > write ClientHello: offer 1.2
> > read ServerHello: agree 1.0 DES-CBC3-SHA
> > rest of handshake normal
> >
> > Aside: I notice your build (here and in no-1.2) doesn't offer IDEA,
> > so I'll guess it was built by longtime anti-patent person.
>
> This is tested on Debian where it was disabled many years ago and
> never re-enabled.  I see no reason to enable it anymore.
>
Okay. A little unusual, but okay.

> > Then we have:
> > > 250 OK
> > > 214-This server supports the following commands:
> > > 214 HELO EHLO STARTTLS RCPT DATA RSET MAIL QUIT HELP AUTH
> TURN ETRN BDAT
> > VRFY
> > These appear to be leftover (in mbuf) from the preliminary phase.
>
> No, this is most likely a logging problem.  
> What happens is that I get:
> 250 OK
>
> I send: "HELP\r\n"
>
> I get as reply:
> 214-This server supports the following commands:
> 214 HELO EHLO STARTTLS RCPT DATA RSET MAIL QUIT HELP AUTH
> TURN ETRN BDAT VRFY
>
But this appeared before the -debug display of the outgoing
(1+1) messages or any incoming messages? I agree that looks
like a logging problem, which worries me because then I can't
be entirely certain of the other stuff in the log.

> And after that the connection breaks.
>
> > I suggest trying the default=1.2 with -cipher RC4-MD5; if
> that works
> > try RC4-SHA with default=1.2 and also -no_tls1_2 and/or exact -tls1.
> > Conversely try -no_tls1_2 and/or -tls1 with -cipher DES-CBC-SHA .
>
Oops! I meant DES-CBC3-SHA; never use any single-DES mode.
(Openssl probably should have named them 3DES-CBC or even
3DES-EDE-CBC like other folks did, it makes more sense to have the
encryption primitive all in one place. Oh well, too late now.)
 
> Using "-cipher RC4-MD5" or "-cipher RC4-SHA" I get that as cipher
> and have connection that stays working.
>
> Using "-no_tls1_2 -cipher DES-CBC-SHA" I get the broken connection
> after the HELP.
>
So if RC4 works regardless after any handshake and DES-CBC3 fails ditto ...
 
> My conclussions:
> - One of the 2 sides doesn't implement
> DES-CBC-SHA/DES-CBC3-SHA properly

... I think you're right and I suspect the other side because
openssl interoperates with lots of folks -- unless there's
something badly off in your build of openssl. Can you
connect with DES-CBC3-SHA to usual suspects like google?
I think commandline nowadays picks up engines from openssl.cnf
even if you don't explicitly ask -- do you have any configured?
If you didn't build from source, can you try that?

> - The server seems to act weird in changing between RC4-MD5 and
>   DES-CBC3-SHA.
>
That is kinda weird, though not in itself improper. It it
(correctly!) implements both, and the client offers both
(and openssl s_client by default offers nearly everything)
it is allowed to choose between them.


______________________________________________________________________
OpenSSL Project                                 http://www.openssl.org
Development Mailing List                       [hidden email]
Automated List Manager                           [hidden email]
Reply | Threaded
Open this post in threaded view
|

Re: [openssl.org #3072] Strange behaviour when talking to microsoft exchange

Kurt Roeckx
On Tue, Jun 18, 2013 at 05:25:06PM -0400, Dave Thompson wrote:
> > My conclussions:
> > - One of the 2 sides doesn't implement
> > DES-CBC-SHA/DES-CBC3-SHA properly
>
> ... I think you're right and I suspect the other side because
> openssl interoperates with lots of folks -- unless there's
> something badly off in your build of openssl. Can you
> connect with DES-CBC3-SHA to usual suspects like google?

With google I get:
    Protocol  : TLSv1.2
    Cipher    : DES-CBC3-SHA

(Or by default)
    Protocol  : TLSv1.2
    Cipher    : ECDHE-RSA-AES128-GCM-SHA256

Both of course work as expected.

> I think commandline nowadays picks up engines from openssl.cnf
> even if you don't explicitly ask -- do you have any configured?

There are no engines configured.

> If you didn't build from source, can you try that?

Enable engines?  Which ones?

PS: Are you unable to reproduce this?  I can reproduce this with
various sites including things like smtp.live.com.


Kurt

______________________________________________________________________
OpenSSL Project                                 http://www.openssl.org
Development Mailing List                       [hidden email]
Automated List Manager                           [hidden email]
Reply | Threaded
Open this post in threaded view
|

RE: [openssl.org #3072] Strange behaviour when talking to microsoft exchange

Dave Thompson-5
> From: [hidden email] On Behalf Of Kurt Roeckx
> Sent: Tuesday, 18 June, 2013 18:50

> On Tue, Jun 18, 2013 at 05:25:06PM -0400, Dave Thompson wrote:
> > > My conclussions:
> > > - One of the 2 sides doesn't implement
> > > DES-CBC-SHA/DES-CBC3-SHA properly
> >
> > ... I think you're right and I suspect the other side because
> > openssl interoperates with lots of folks -- unless there's
> > something badly off in your build of openssl. Can you
> > connect with DES-CBC3-SHA to usual suspects like google?
>
> With google I get:
>     Protocol  : TLSv1.2
>     Cipher    : DES-CBC3-SHA
>
> (Or by default)
>     Protocol  : TLSv1.2
>     Cipher    : ECDHE-RSA-AES128-GCM-SHA256
>
> Both of course work as expected.
>
And is able to send and receive data? I forgot to ask that.
For an https server send "GET / HTTP/1.0\r\n\r\n" (I feed
from a file or echo| since it's hard to type that in) and
look for HTTP headers (followed by something HTMLish).
If so, your openssl is doing DES-CBC3 right; see below.

> > I think commandline nowadays picks up engines from openssl.cnf
> > even if you don't explicitly ask -- do you have any configured?
>
> There are no engines configured.
>
(That was just in case you got the cipher implementation
from someplace other than openssl itself.)

> > If you didn't build from source, can you try that?
>
> Enable engines?  Which ones?
>
I didn't mean engines, I meant build from source, to be sure
you're running as-distributed code for the affected cipher.
But if you can communicate with e.g. google that's enough.

> PS: Are you unable to reproduce this?  I can reproduce this with
> various sites including things like smtp.live.com.
>
I can't reproduce any starttls smtp; I suspecvt our provider
has done something to port 25 probably on the theory they're
fighting spam. I get banner which is clearly masked and
EHLO/250 response which is clearly altered, and STARTTLS
is rejected with various 5xx. If you have a server that
handles clear+STARTTLS on a different port I can try it.

I can do *https* 443 DES-CBC3 fine in 1.0.1e, and others.

One logical but unpleasant theory is that s_client starttls
code clobbers something that screws up DES-CBC3 but not RC4.
That would be quite a pain to debug. It's a little work, but
what I would try first is a simplified replacement for s_client,
without the bells and whistles especially nonblocking, like:
  // add error checking to taste
  ctx=SSL_CTX_new()
  // set verify_locations, ciphers, etc, as desired
  ssl=SSL_new(ctx)
  ipaddr=gethostaddr("whatever")
  s=socket()
  connect(s,iapddr_and_port)
  bio=push bufferBIO on socketBIO for s // easier to manage
  BIO_gets for 220
  BIO_puts "EHLO...\r\n"
  BIO_gets until 250-no-hyphen looking for STARTTLS
  BIO_puts "STARTTLS\r\n"
  BIO_gets for 220
  SSL_set_bio(ssl,bio,bio)
  SSL_connect
  SSL_write "AUTH...\r\n" // or whatever
  SSL_read and look for valid lines
  // continue until done

If that works, the problem is pretty definitely s_client.
If that fails, and on more than one or a few servers,
I don't know what to think.


______________________________________________________________________
OpenSSL Project                                 http://www.openssl.org
Development Mailing List                       [hidden email]
Automated List Manager                           [hidden email]
Reply | Threaded
Open this post in threaded view
|

Re: [openssl.org #3072] Strange behaviour when talking to microsoft exchange

Kurt Roeckx
On Wed, Jun 19, 2013 at 01:30:51AM -0400, Dave Thompson wrote:

> >
> > With google I get:
> >     Protocol  : TLSv1.2
> >     Cipher    : DES-CBC3-SHA
> >
> > (Or by default)
> >     Protocol  : TLSv1.2
> >     Cipher    : ECDHE-RSA-AES128-GCM-SHA256
> >
> > Both of course work as expected.
> >
> And is able to send and receive data? I forgot to ask that.
> For an https server send "GET / HTTP/1.0\r\n\r\n" (I feed
> from a file or echo| since it's hard to type that in) and
> look for HTTP headers (followed by something HTMLish).
> If so, your openssl is doing DES-CBC3 right; see below.

Yes, that works as expected.

> I didn't mean engines, I meant build from source, to be sure
> you're running as-distributed code for the affected cipher.
> But if you can communicate with e.g. google that's enough.

So I tried with:
gnutls-cli --priority 'NORMAL:%COMPAT:-ARCFOUR-128' --crlf -s smtp.live.com -p 25

And end up with:
- Version: TLS1.0
- Key Exchange: RSA
- Cipher: 3DES-CBC
- MAC: SHA1
[...]
214-This server supports the following commands:
214 HELO EHLO STARTTLS RCPT DATA RSET MAIL QUIT HELP AUTH TURN ETRN BDAT VRFY
*** Fatal error: A record packet with illegal version was received.
*** Server has terminated the connection abnormally.

So I'm going to say that Microsoft's implementation of
DES-CBC(3) is broken.


Kurt

______________________________________________________________________
OpenSSL Project                                 http://www.openssl.org
Development Mailing List                       [hidden email]
Automated List Manager                           [hidden email]
Reply | Threaded
Open this post in threaded view
|

Re: [openssl.org #3072] Strange behaviour when talking to microsoft exchange

Rich Salz via RT
In reply to this post by Rich Salz via RT
So this seems to be:
http://www.ietf.org/mail-archive/web/tls/current/msg10471.html


Kurt


______________________________________________________________________
OpenSSL Project                                 http://www.openssl.org
Development Mailing List                       [hidden email]
Automated List Manager                           [hidden email]