> openssl s_client -connect
in.hes.trendmicro.eu:25 -state -debug -crlf -starttls smtp
> see also the man page for info.
>
This is the output, but I am not really sure how this is comparable as
the dhparams.pem file is only in the /etc/mail/ folder and sendmail is
configured for this.
01c0 - e9 d4 fc df 15 09 ab 9d-0c 82 b6 f0 1a cd 99 3f ...............?
01d0 - c3 e3 c6 bd 0b 1d 5d 2f-f3 4c e2 44 40 1d 58 54 ......]/.L.D@.XT
01e0 - 7b f5 cd 31 aa 93 5f 09-31 ac d1 b3 09 4e e0 15 {..1.._.1....N..
01f0 - 83 a9 5c b2 c9 07 98 0e-a4 0a 6f 9c c7 45 63 05 ..\.......o..Ec.
0200 - d3 7c 07 70 fd 83 70 60-6b 28 d7 b6 03 05 b4 .|.p..p`k(.....
write to 0x560e17932310 [0x560e17a1b480] (7 bytes => 7 (0x7))
0000 - 15 03 03 00 02 02 28 ......(
---
Certificate chain
0 s:C = US, ST = California, L = Cupertino, OU = BU, O = TREND MICRO
INCORPORATED, CN = *.
hes.trendmicro.eu
i:C = BE, O = GlobalSign nv-sa, CN = GlobalSign RSA OV SSL CA 2018
a:PKEY: rsaEncryption, 2048 (bit); sigalg: RSA-SHA256
v:NotBefore: Jan 6 12:59:48 2022 GMT; NotAfter: Feb 7 12:59:48
2023 GMT
1 s:C = BE, O = GlobalSign nv-sa, CN = GlobalSign RSA OV SSL CA 2018
i:OU = GlobalSign Root CA - R3, O = GlobalSign, CN = GlobalSign
a:PKEY: rsaEncryption, 2048 (bit); sigalg: RSA-SHA256
v:NotBefore: Nov 21 00:00:00 2018 GMT; NotAfter: Nov 21 00:00:00
2028 GMT
2 s:OU = GlobalSign Root CA - R3, O = GlobalSign, CN = GlobalSign
i:OU = GlobalSign Root CA - R3, O = GlobalSign, CN = GlobalSign
a:PKEY: rsaEncryption, 2048 (bit); sigalg: RSA-SHA256
v:NotBefore: Mar 18 10:00:00 2009 GMT; NotAfter: Mar 18 10:00:00
2029 GMT
---
Server certificate
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
subject=C = US, ST = California, L = Cupertino, OU = BU, O = TREND MICRO
INCORPORATED, CN = *.
hes.trendmicro.eu
issuer=C = BE, O = GlobalSign nv-sa, CN = GlobalSign RSA OV SSL CA 2018
---
No client certificate CA names sent
---
SSL handshake has read 4727 bytes and written 364 bytes
Verification: OK
---
New, (NONE), Cipher is (NONE)
Server public key is 2048 bit
Secure Renegotiation IS supported
Compression: NONE
Expansion: NONE
No ALPN negotiated
SSL-Session:
Protocol : TLSv1.2
Cipher : 0000
Session-ID:
Session-ID-ctx:
Master-Key:
PSK identity: None
PSK identity hint: None
SRP username: None
Start Time: 1667996876
Timeout : 7200 (sec)
Verify return code: 0 (ok)
Extended master secret: no
---
read from 0x560e17932310 [0x560e17891260] (8192 bytes => 9 (0x9))
0000 - 16 03 03 00 04 0e 00 00-00 .........
read from 0x560e17932310 [0x560e17891260] (8192 bytes => 0)