Hi, Since I upgraded my amd64 laptop to latest snapshot, from: OpenBSD 6.0-current (GENERIC.MP) #147: Mon Jan 16 20:37:54 MST 2017 to: OpenBSD 6.0-current (GENERIC.MP) #156: Fri Jan 27 18:56:35 MST 2017
I have TLS problem with some websites when using libssl (python script, or base tools like ftp(1) or nc(1)). There are no problem with firefox (libnss3.so). obsd-156$ nc -vvc www.urssaf.fr 443 Connection to www.urssaf.fr 443 port [tcp/https] succeeded! nc: tls handshake failed (handshake failed: error:14FFF41B:SSL routines:SSL_internal:tlsv1 alert decrypt error) ## (first 8 lines are stderr output) obsd-156$ openssl s_client -connect www.urssaf.fr:443 -debug depth=2 C = US, O = GeoTrust Inc., CN = GeoTrust Global CA verify return:1 depth=1 C = US, O = GeoTrust Inc., CN = GeoTrust SSL CA - G3 verify return:1 depth=0 C = FR, ST = Haute-Garonne, L = TOULOUSE, O = CIRSO, OU = CNP, CN = *.urssaf.fr verify return:1 32969021330976:error:14FFF41B:SSL routines:SSL_internal:tlsv1 alert decrypt error:/usr/src/lib/libssl/ssl_pkt.c:1197:SSL alert number 51 32969021330976:error:14FFF0E5:SSL routines:SSL_internal:ssl handshake failure:/usr/src/lib/libssl/ssl_pkt.c:585: CONNECTED(00000003) write to 0x1dfc2da0ba80 [0x1dfc72c54003] (240 bytes => 240 (0xF0)) 0000 - 16 03 01 00 eb 01 00 00-e7 03 03 a9 e1 3c f7 b8 .............<.. 0010 - e9 e1 6f 47 27 73 64 8a-e6 51 b4 cb 1e a8 75 92 ..oG'sd..Q....u. 0020 - c5 c3 98 56 fc c3 1f 87-ff ab 06 00 00 7e cc a9 ...V.........~.. 0030 - cc a8 cc aa cc 14 cc 13-cc 15 c0 30 c0 2c c0 28 ...........0.,.( 0040 - c0 24 c0 14 c0 0a 00 a3-00 9f 00 6b 00 6a 00 39 .$.........k.j.9 0050 - 00 38 ff 85 00 c4 00 c3-00 88 00 87 00 81 00 9d .8.............. 0060 - 00 3d 00 35 00 c0 00 84-c0 2f c0 2b c0 27 c0 23 .=.5...../.+.'.# 0070 - c0 13 c0 09 00 a2 00 9e-00 67 00 40 00 33 00 32 .........g.@.3.2 0080 - 00 be 00 bd 00 45 00 44-00 9c 00 3c 00 2f 00 ba .....E.D...<./.. 0090 - 00 41 c0 11 c0 07 00 05-00 04 c0 12 c0 08 00 16 .A.............. 00a0 - 00 13 00 0a 00 15 00 12-00 09 00 ff 01 00 00 40 ...............@ 00b0 - 00 0b 00 02 01 00 00 0a-00 08 00 06 00 1d 00 17 ................ 00c0 - 00 18 00 23 00 00 00 0d-00 26 00 24 06 01 06 02 ...#.....&.$.... 00d0 - 06 03 ef ef 05 01 05 02-05 03 04 01 04 02 04 03 ................ 00e0 - ee ee ed ed 03 01 03 02-03 03 02 01 02 02 02 03 ................ read from 0x1dfc2da0ba80 [0x1dfc2e7b2003] (5 bytes => 5 (0x5)) 0000 - 16 03 03 0b .... 0005 - <SPACES/NULS> read from 0x1dfc2da0ba80 [0x1dfc2e7b2008] (2848 bytes => 1355 (0x54B)) 0000 - 02 00 00 4d 03 03 58 8c-b3 1f 5c 74 bc dd 53 d6 ...M..X...\t..S. 0010 - 2d ee dd 3e 2e 30 d4 41-91 72 4e 01 39 2f 99 06 -..>.0.A.rN.9/.. 0020 - e9 72 fe 8e 27 08 20 bc-bb 6d dd cf bc 28 4b 6f .r..'. ..m...(Ko 0030 - 3f 52 9e 8f 19 7a 7f 5d-fd 4e 62 dd c2 6a 36 47 ?R...z.].Nb..j6G 0040 - da 52 db f8 9c ee 75 00-35 00 00 05 ff 01 00 01 .R....u.5....... 0050 - 00 0b 00 0a c7 00 0a c4-00 06 6b 30 82 06 67 30 ..........k0..g0 0060 - 82 05 4f a0 03 02 01 02-02 10 5e 61 39 c2 ce ae ..O.......^a9... 0070 - f9 c3 12 c2 6d 57 ff 65-4d 42 30 0d 06 09 2a 86 ....mW.eMB0...*. 0080 - 48 86 f7 0d 01 01 0b 05-00 30 44 31 0b 30 09 06 H........0D1.0.. 0090 - 03 55 04 06 13 02 55 53-31 16 30 14 06 03 55 04 .U....US1.0...U. 00a0 - 0a 13 0d 47 65 6f 54 72-75 73 74 20 49 6e 63 2e ...GeoTrust Inc. 00b0 - 31 1d 30 1b 06 03 55 04-03 13 14 47 65 6f 54 72 1.0...U....GeoTr 00c0 - 75 73 74 20 53 53 4c 20-43 41 20 2d 20 47 33 30 ust SSL CA - G30 00d0 - 1e 17 0d 31 36 31 30 32-38 30 30 30 30 30 30 5a ...161028000000Z 00e0 - 17 0d 31 39 30 31 32 37-32 33 35 39 35 39 5a 30 ..190127235959Z0 00f0 - 6c 31 0b 30 09 06 03 55-04 06 13 02 46 52 31 16 l1.0...U....FR1. 0100 - 30 14 06 03 55 04 08 0c-0d 48 61 75 74 65 2d 47 0...U....Haute-G 0110 - 61 72 6f 6e 6e 65 31 11-30 0f 06 03 55 04 07 0c aronne1.0...U... 0120 - 08 54 4f 55 4c 4f 55 53-45 31 0e 30 0c 06 03 55 .TOULOUSE1.0...U 0130 - 04 0a 0c 05 43 49 52 53-4f 31 0c 30 0a 06 03 55 ....CIRSO1.0...U 0140 - 04 0b 0c 03 43 4e 50 31-14 30 12 06 03 55 04 03 ....CNP1.0...U.. 0150 - 0c 0b 2a 2e 75 72 73 73-61 66 2e 66 72 30 82 01 ..*.urssaf.fr0.. 0160 - 22 30 0d 06 09 2a 86 48-86 f7 0d 01 01 01 05 00 "0...*.H........ 0170 - 03 82 01 0f 00 30 82 01-0a 02 82 01 01 00 dd 02 .....0.......... 0180 - 91 08 a7 ad 64 bf b5 83-f5 9f 92 ed 88 07 d8 c2 ....d........... 0190 - 85 4c 91 29 1d bc bf 24-c8 36 ef ad ab 7e 29 75 .L.)...$.6...~)u 01a0 - 62 da 3f 0d 2a 74 43 24-94 cc a8 dd d4 b4 1c 4c b.?.*tC$.......L 01b0 - 4d c1 3c a1 2d 33 35 71-50 08 2d a1 c8 67 43 04 M.<.-35qP.-..gC. 01c0 - 3b 52 6a d1 b5 52 a6 ee-a1 21 c0 f1 60 f7 cf 3f ;Rj..R...!..`..? 01d0 - 21 70 14 e8 ca df 29 3f-b3 92 68 a7 da 6f ef d5 !p....)?..h..o.. 01e0 - 5a b8 1d 1f 6a 13 64 ce-02 1f 7f 57 3f fc 0b 2e Z...j.d....W?... 01f0 - a3 04 80 6c e5 1f 9f d0-25 c9 47 13 5c 91 56 fd ...l....%.G.\.V. 0200 - d6 81 45 19 4a d2 97 73-25 e1 2b 83 ce c0 e3 53 ..E.J..s%.+....S 0210 - 34 d4 03 bb ea e6 95 1a-9a c7 e7 9e c0 a1 8f 42 4..............B 0220 - de 17 04 ad 08 0d 93 02-fb 3d 9f b5 6c 86 f8 ed .........=..l... 0230 - dd 90 e1 51 96 b7 1f 6a-f7 ab c4 5a 33 45 2c 06 ...Q...j...Z3E,. 0240 - 99 a6 ef 0e 9d c7 a2 cf-f3 3b 3d d3 90 b2 58 4e .........;=...XN 0250 - fb a1 b0 b1 c9 01 95 01-c9 4b c4 50 03 90 dd 2f .........K.P.../ 0260 - ba 53 e2 b6 ad 81 40 2b-9d d2 1d 8d c3 3e 2a f4 .S....@+.....>*. 0270 - cf 49 66 95 77 b0 5b 55-f2 a4 e9 1b 0d fd 02 03 .If.w.[U........ 0280 - 01 00 01 a3 82 03 2b 30-82 03 27 30 21 06 03 55 ......+0..'0!..U 0290 - 1d 11 04 1a 30 18 82 0b-2a 2e 75 72 73 73 61 66 ....0...*.urssaf 02a0 - 2e 66 72 82 09 75 72 73-73 61 66 2e 66 72 30 09 .fr..urssaf.fr0. 02b0 - 06 03 55 1d 13 04 02 30-00 30 0e 06 03 55 1d 0f ..U....0.0...U.. 02c0 - 01 01 ff 04 04 03 02 05-a0 30 2b 06 03 55 1d 1f .........0+..U.. 02d0 - 04 24 30 22 30 20 a0 1e-a0 1c 86 1a 68 74 74 70 .$0"0 ......http 02e0 - 3a 2f 2f 67 6e 2e 73 79-6d 63 62 2e 63 6f 6d 2f ://gn.symcb.com/ 02f0 - 67 6e 2e 63 72 6c 30 81-9d 06 03 55 1d 20 04 81 gn.crl0....U. .. 0300 - 95 30 81 92 30 81 8f 06-06 67 81 0c 01 02 02 30 .0..0....g.....0 0310 - 81 84 30 3f 06 08 2b 06-01 05 05 07 02 01 16 33 ..0?..+........3 0320 - 68 74 74 70 73 3a 2f 2f-77 77 77 2e 67 65 6f 74 https://www.geot 0330 - 72 75 73 74 2e 63 6f 6d-2f 72 65 73 6f 75 72 63 rust.com/resourc 0340 - 65 73 2f 72 65 70 6f 73-69 74 6f 72 79 2f 6c 65 es/repository/le 0350 - 67 61 6c 30 41 06 08 2b-06 01 05 05 07 02 02 30 gal0A..+.......0 0360 - 35 0c 33 68 74 74 70 73-3a 2f 2f 77 77 77 2e 67 5.3https://www.g 0370 - 65 6f 74 72 75 73 74 2e-63 6f 6d 2f 72 65 73 6f eotrust.com/reso 0380 - 75 72 63 65 73 2f 72 65-70 6f 73 69 74 6f 72 79 urces/repository 0390 - 2f 6c 65 67 61 6c 30 1d-06 03 55 1d 25 04 16 30 /legal0...U.%..0 03a0 - 14 06 08 2b 06 01 05 05-07 03 01 06 08 2b 06 01 ...+.........+.. 03b0 - 05 05 07 03 02 30 1f 06-03 55 1d 23 04 18 30 16 .....0...U.#..0. 03c0 - 80 14 d2 6f f7 96 f4 85-3f 72 3c 30 7d 23 da 85 ...o....?r<0}#.. 03d0 - 78 9b a3 7c 5a 7c 30 57-06 08 2b 06 01 05 05 07 x..|Z|0W..+..... 03e0 - 01 01 04 4b 30 49 30 1f-06 08 2b 06 01 05 05 07 ...K0I0...+..... 03f0 - 30 01 86 13 68 74 74 70-3a 2f 2f 67 6e 2e 73 79 0...http://gn.sy 0400 - 6d 63 64 2e 63 6f 6d 30-26 06 08 2b 06 01 05 05 mcd.com0&..+.... 0410 - 07 30 02 86 1a 68 74 74-70 3a 2f 2f 67 6e 2e 73 .0...http://gn.s 0420 - 79 6d 63 62 2e 63 6f 6d-2f 67 6e 2e 63 72 74 30 ymcb.com/gn.crt0 0430 - 82 01 7f 06 0a 2b 06 01-04 01 d6 79 02 04 02 04 .....+.....y.... 0440 - 82 01 6f 04 82 01 6b 01-69 00 75 00 dd eb 1d 2b ..o...k.i.u....+ 0450 - 7a 0d 4f a6 20 8b 81 ad-81 68 70 7e 2e 8e 9d 01 z.O. ....hp~.... 0460 - d5 5c 88 8d 3d 11 c4 cd-b6 ec be cc 00 00 01 58 .\..=..........X 0470 - 0a 76 b5 8f 00 00 04 03-00 46 30 44 02 20 4f 13 .v.......F0D. O. 0480 - 11 81 9e c1 5f 1b 7d 6c-7a 31 b2 2a bf 83 9e 15 ...._.}lz1.*.... 0490 - d8 8a d2 e3 6d 62 cb 02-b0 0a 11 ef 9e ff 02 20 ....mb......... 04a0 - 27 df 6b ae ec 11 36 a3-a7 c6 88 54 2d fb f4 07 '.k...6....T-... 04b0 - 9d d9 a4 b5 1b 5d 4d 8b-47 d3 5d 11 f9 60 7f f8 .....]M.G.]..`.. 04c0 - 00 77 00 68 f6 98 f8 1f-64 82 be 3a 8c ee b9 28 .w.h....d..:...( 04d0 - 1d 4c fc 71 51 5d 67 93-d4 44 d1 0a 67 ac bb 4f .L.qQ]g..D..g..O 04e0 - 4f fb c4 00 00 01 58 0a-76 b5 b3 00 00 04 03 00 O.....X.v....... 04f0 - 48 30 46 02 21 00 8e f9-84 f5 16 cd 68 25 8c 53 H0F.!.......h%.S 0500 - f8 6d 8b 8a 04 f3 8b 88-44 32 ca 8b 3c 99 c1 cd .m......D2..<... 0510 - 98 84 ce 54 1a 54 02 21-00 cc 92 3d ae a5 62 27 ...T.T.!...=..b' 0520 - 16 d0 33 ae 1f 60 10 74-5e 80 bd 5b 94 38 83 d6 ..3..`.t^..[.8.. 0530 - 19 4a b5 ab 81 af e5 a6-10 00 77 00 ee 4b bd b7 .J........w..K.. 0540 - 75 ce 60 ba e1 42 69 1f-ab e1 9e u.`..Bi.... read from 0x1dfc2da0ba80 [0x1dfc2e7b2553] (1493 bytes => 1360 (0x550)) 0000 - 66 a3 0f 7e 5f b0 72 d8-83 00 c4 7b 89 7a a8 fd f..~_.r....{.z.. 0010 - cb 00 00 01 58 0a 76 b5-d2 00 00 04 03 00 48 30 ....X.v.......H0 0020 - 46 02 21 00 d7 ca 70 c3-89 48 f5 5f 31 1c 58 5e F.!...p..H._1.X^ 0030 - 5b 6f 77 52 cd 82 b1 17-81 91 13 d5 12 82 7a e3 [owR..........z. 0040 - c4 6b d1 26 02 21 00 cf-e0 f9 e8 f1 4d da 31 07 .k.&.!......M.1. 0050 - d5 6e c4 c8 bb 0e 45 b2-08 d3 d6 59 3f 3a 75 86 .n....E....Y?:u. 0060 - 8e 68 14 46 85 50 42 30-0d 06 09 2a 86 48 86 f7 .h.F.PB0...*.H.. 0070 - 0d 01 01 0b 05 00 03 82-01 01 00 e2 74 59 5b c4 ............tY[. 0080 - bc 85 c8 e3 0b 53 77 78-46 58 07 cb 47 15 97 10 .....SwxFX..G... 0090 - c1 d7 44 dd ce ea 76 aa-7d ab d6 24 7c 31 da 2f ..D...v.}..$|1./ 00a0 - 1f 4a 03 c4 4e bb ed 34-ca 91 01 f7 71 d7 30 a8 .J..N..4....q.0. 00b0 - fc d2 7e 45 db 6e 9a 67-ae 8c 18 5f ac 4b 12 e0 ..~E.n.g..._.K.. 00c0 - c2 eb 2f c6 07 ea e4 96-50 18 2d ba 4c ac 6c 1f ../.....P.-.L.l. 00d0 - 24 7f 21 66 ee bd 59 33-4f 13 0e 30 fe 37 41 2d $.!f..Y3O..0.7A- 00e0 - eb ae cc 27 a7 72 9a 8c-d1 c9 61 58 ac 7d 2e 77 ...'.r....aX.}.w 00f0 - e2 08 b4 cf 23 33 de 9f-03 ce e2 aa e6 40 46 d1 ....#3.......@F. 0100 - 0d 7c 0a 54 f4 44 3c a3-f3 33 a9 cb de 03 15 ff .|.T.D<..3...... 0110 - e7 ee e7 67 74 18 2c e1-30 d9 a1 66 ad d8 ab b1 ...gt.,.0..f.... 0120 - 6a d8 0f 4c 82 5b f3 6a-46 b9 2f 55 84 ad fe 36 j..L.[.jF./U...6 0130 - 93 1f 76 94 44 d0 d6 55-74 7b 46 7f 19 08 71 b7 ..v.D..Ut{F...q. 0140 - 5c f8 ad ec 91 33 f4 43-76 3f 08 18 31 33 a7 98 \....3.Cv?..13.. 0150 - 36 c3 0b 19 50 85 df c2-d9 ca 03 5f 01 c4 5d 01 6...P......_..]. 0160 - c0 1f 31 80 66 5d ce f1-e3 3b 93 73 ae 24 2c 1e ..1.f]...;.s.$,. 0170 - 59 77 0d 18 04 93 79 9c-43 92 26 00 04 53 30 82 Yw....y.C.&..S0. 0180 - 04 4f 30 82 03 37 a0 03-02 01 02 02 03 02 3a 6f .O0..7........:o 0190 - 30 0d 06 09 2a 86 48 86-f7 0d 01 01 0b 05 00 30 0...*.H........0 01a0 - 42 31 0b 30 09 06 03 55-04 06 13 02 55 53 31 16 B1.0...U....US1. 01b0 - 30 14 06 03 55 04 0a 13-0d 47 65 6f 54 72 75 73 0...U....GeoTrus 01c0 - 74 20 49 6e 63 2e 31 1b-30 19 06 03 55 04 03 13 t Inc.1.0...U... 01d0 - 12 47 65 6f 54 72 75 73-74 20 47 6c 6f 62 61 6c .GeoTrust Global 01e0 - 20 43 41 30 1e 17 0d 31-33 31 31 30 35 32 31 33 CA0...131105213 01f0 - 36 35 30 5a 17 0d 32 32-30 35 32 30 32 31 33 36 650Z..2205202136 0200 - 35 30 5a 30 44 31 0b 30-09 06 03 55 04 06 13 02 50Z0D1.0...U.... 0210 - 55 53 31 16 30 14 06 03-55 04 0a 13 0d 47 65 6f US1.0...U....Geo 0220 - 54 72 75 73 74 20 49 6e-63 2e 31 1d 30 1b 06 03 Trust Inc.1.0... 0230 - 55 04 03 13 14 47 65 6f-54 72 75 73 74 20 53 53 U....GeoTrust SS 0240 - 4c 20 43 41 20 2d 20 47-33 30 82 01 22 30 0d 06 L CA - G30.."0.. 0250 - 09 2a 86 48 86 f7 0d 01-01 01 05 00 03 82 01 0f .*.H............ 0260 - 00 30 82 01 0a 02 82 01-01 00 e3 be 7e 0a 86 a3 .0..........~... 0270 - cf 6b 6d 3d 2b a1 97 ad-49 24 4d d7 77 b9 34 79 .km=+...I$M.w.4y 0280 - 08 a5 9e a2 9e de 47 12-92 3d 7e ea 19 86 b1 e8 ......G..=~..... 0290 - 4f 3d 5f f7 d0 a7 77 9a-5b 1f 0a 03 b5 19 53 db O=_...w.[.....S. 02a0 - a5 21 94 69 63 9d 6a 4c-91 0c 10 47 be 11 fa 6c .!.ic.jL...G...l 02b0 - 86 25 b7 ab 04 68 42 38-09 65 f0 14 da 19 9e fa .%...hB8.e...... 02c0 - 6b 0b ab 62 ef 8d a7 ef-63 70 23 a8 af 81 f3 d1 k..b....cp#..... 02d0 - 6e 88 67 53 ec 12 a4 29-75 8a a7 f2 57 3d a2 83 n.gS...)u...W=.. 02e0 - 98 97 f2 0a 7d d4 e7 43-6e 30 78 62 22 59 59 b8 ....}..Cn0xb"YY. 02f0 - 71 27 45 aa 0f 66 c6 55-3f fa 32 17 2b 31 8f 46 q'E..f.U?.2.+1.F 0300 - a0 fa 69 14 7c 9d 9f 5a-e2 eb 33 4e 10 a6 b3 ed ..i.|..Z..3N.... 0310 - 77 63 d8 c3 9e f4 dd df-79 9a 7a d4 ee de dd 9a wc......y.z..... 0320 - cc c3 b7 a9 5d cc 11 3a-07 bb 6f 97 a4 01 23 47 ....]..:..o...#G 0330 - 95 1f a3 77 fa 58 92 c6-c7 d0 bd cf 93 18 42 b7 ...w.X........B. 0340 - 7e f7 9e 65 ea d5 3b ca-ed ac c5 70 a1 fe d4 10 ~..e..;....p.... 0350 - 9a f0 12 04 44 ac 1a 5b-78 50 45 57 4c 6f bd 80 ....D..[xPEWLo.. 0360 - cb 81 5c 2d b3 bc 76 a1-1e 65 02 03 01 00 01 a3 ..\-..v..e...... 0370 - 82 01 4a 30 82 01 46 30-1f 06 03 55 1d 23 04 18 ..J0..F0...U.#.. 0380 - 30 16 80 14 c0 7a 98 68-8d 89 fb ab 05 64 0c 11 0....z.h.....d.. 0390 - 7d aa 7d 65 b8 ca cc 4e-30 1d 06 03 55 1d 0e 04 }.}e...N0...U... 03a0 - 16 04 14 d2 6f f7 96 f4-85 3f 72 3c 30 7d 23 da ....o....?r<0}#. 03b0 - 85 78 9b a3 7c 5a 7c 30-12 06 03 55 1d 13 01 01 .x..|Z|0...U.... 03c0 - ff 04 08 30 06 01 01 ff-02 01 00 30 0e 06 03 55 ...0.......0...U 03d0 - 1d 0f 01 01 ff 04 04 03-02 01 06 30 36 06 03 55 ...........06..U 03e0 - 1d 1f 04 2f 30 2d 30 2b-a0 29 a0 27 86 25 68 74 .../0-0+.).'.%ht 03f0 - 74 70 3a 2f 2f 67 31 2e-73 79 6d 63 62 2e 63 6f tp://g1.symcb.co 0400 - 6d 2f 63 72 6c 73 2f 67-74 67 6c 6f 62 61 6c 2e m/crls/gtglobal. 0410 - 63 72 6c 30 2f 06 08 2b-06 01 05 05 07 01 01 04 crl0/..+........ 0420 - 23 30 21 30 1f 06 08 2b-06 01 05 05 07 30 01 86 #0!0...+.....0.. 0430 - 13 68 74 74 70 3a 2f 2f-67 32 2e 73 79 6d 63 62 .http://g2.symcb 0440 - 2e 63 6f 6d 30 4c 06 03-55 1d 20 04 45 30 43 30 .com0L..U. .E0C0 0450 - 41 06 0a 60 86 48 01 86-f8 45 01 07 36 30 33 30 A..`.H...E..6030 0460 - 31 06 08 2b 06 01 05 05-07 02 01 16 25 68 74 74 1..+........%htt 0470 - 70 3a 2f 2f 77 77 77 2e-67 65 6f 74 72 75 73 74 p://www.geotrust 0480 - 2e 63 6f 6d 2f 72 65 73-6f 75 72 63 65 73 2f 63 .com/resources/c 0490 - 70 73 30 29 06 03 55 1d-11 04 22 30 20 a4 1e 30 ps0)..U..."0 ..0 04a0 - 1c 31 1a 30 18 06 03 55-04 03 13 11 53 79 6d 61 .1.0...U....Syma 04b0 - 6e 74 65 63 50 4b 49 2d-31 2d 35 33 39 30 0d 06 ntecPKI-1-5390.. 04c0 - 09 2a 86 48 86 f7 0d 01-01 0b 05 00 03 82 01 01 .*.H............ 04d0 - 00 a0 d4 f7 2c fb 74 0b-7f 64 f1 cd 43 6a 9f 62 ....,.t..d..Cj.b 04e0 - 53 1c 02 7c 98 90 a2 ee-4f 68 d4 20 1a 73 12 3e S..|....Oh. .s.> 04f0 - 77 b3 50 eb 72 bc ee 88-be 7f 17 ea 77 8f 83 61 w.P.r.......w..a 0500 - 95 4f 84 a1 cb 32 4f 6c-21 be d2 69 96 7d 63 bd .O...2Ol!..i.}c. 0510 - dc 2b a8 1f d0 13 84 70-fe f6 35 95 89 f9 a6 77 .+.....p..5....w 0520 - b0 46 c8 bb b7 13 f5 c9-60 69 d6 4c fe d2 8e ef .F......`i.L.... 0530 - d3 60 c1 80 80 e1 e7 fb-8b 6f 21 79 4a e0 dc a9 .`.......o!yJ... 0540 - 1b c1 b7 fb c3 49 59 5c-b5 77 07 44 d4 97 fc 49 .....IY\.w.D...I read from 0x1dfc2da0ba80 [0x1dfc2e7b2aa3] (133 bytes => 133 (0x85)) 0000 - 00 89 6f 06 4e 01 70 19-ac 2f 11 c0 e2 e6 0f 2f ..o.N.p../...../ 0010 - 86 4b 8d 7b c3 b9 a7 2e-f4 f1 ac 16 3e 39 49 51 .K.{........>9IQ 0020 - 9e 17 4b 4f 10 3a 5b a5-a8 92 6f fd fa d6 0b 03 ..KO.:[...o..... 0030 - 4d 47 56 57 19 f3 cb 6b-f5 f3 d6 cf b0 f5 f5 a3 MGVW...k........ 0040 - 11 d2 20 53 13 34 37 05-2c 43 5a 63 df 8d 40 d6 .. S.47.,CZc..@. 0050 - 85 1e 51 e9 51 17 1e 03-56 c9 f1 30 ad e7 9b 11 ..Q.Q...V..0.... 0060 - a2 b9 d0 31 81 9b 68 b1-d9 e8 f3 e6 94 7e c7 ae ...1..h......~.. 0070 - 13 2f 87 ed d0 25 b0 68-f9 de 08 5a f3 29 cc d4 ./...%.h...Z.).. 0080 - 92 0e .. 0085 - <SPACES/NULS> write to 0x1dfc2da0ba80 [0x1dfc6a1d6000] (267 bytes => 267 (0x10B)) 0000 - 16 03 03 01 06 10 00 01-02 01 00 91 99 33 b9 61 .............3.a 0010 - 0e b0 1a 4a 61 ad 67 05-9a 4a c0 86 0b d6 22 19 ...Ja.g..J....". 0020 - 47 ea 73 c4 37 c9 e3 17-d6 e2 bb 11 af de de 93 G.s.7........... 0030 - 62 37 4d 41 4c 93 0a ed-3e 61 b4 50 34 94 44 3c b7MAL...>a.P4.D< 0040 - 4e 5b 8b 76 40 b8 30 37-40 b2 e9 df 3b b3 a2 ab N[.v@.07@...;... 0050 - fc bc ef 80 35 98 b9 dc-52 c2 bf c0 ec ad 86 ac ....5...R....... 0060 - 9c 1a ef d8 dc 52 1e e6-18 c8 94 28 e2 ca 2c 84 .....R.....(..,. 0070 - 1a 48 8c 93 2d 04 fd e8-63 2a b5 a7 45 1d 8f d4 .H..-...c*..E... 0080 - ac 54 13 58 15 03 58 d1-3f 29 77 9d 85 fa 49 05 .T.X..X.?)w...I. 0090 - 4f fa 3a ca 93 63 ae 89-e3 4f 3d 6c 71 5b 8d f4 O.:..c...O=lq[.. 00a0 - a1 1b e1 f8 35 3b 05 95-01 0b fa a4 ab 63 9a b1 ....5;.......c.. 00b0 - 4f f8 2f ba 21 b9 1d 8b-88 fe 74 10 0f ec 16 c9 O./.!.....t..... 00c0 - 0f d6 9e 47 ca 3b 4a db-93 ef eb d4 e1 d3 bc 89 ...G.;J......... 00d0 - d2 a8 83 35 07 7a f9 3f-7c 2a f4 6f f2 b0 0f 45 ...5.z.?|*.o...E 00e0 - 91 b0 30 ce 26 34 ae 32-56 51 ca 7a 79 1b 39 2a ..0.&4.2VQ.zy.9* 00f0 - 00 9a 37 10 97 73 e4 b9-3e 51 35 07 d4 fb 6a bd ..7..s..>Q5...j. 0100 - 47 ef ff 61 b4 24 47 49-49 8c bd G..a.$GII.. write to 0x1dfc2da0ba80 [0x1dfc6a1d6000] (6 bytes => 6 (0x6)) 0000 - 14 03 03 00 01 01 ...... write to 0x1dfc2da0ba80 [0x1dfc6a1d6000] (69 bytes => 69 (0x45)) 0000 - 16 03 03 00 40 93 57 bc-1e 59 4a 14 dd 76 ff 66 ....@.W..YJ..v.f 0010 - 45 70 89 2b 54 be 85 ed-23 4a 1a 38 3c 13 2f 55 Ep.+T...#J.8<./U 0020 - 0f d5 33 19 c7 87 bf 95-78 ba cc e2 e3 b3 17 e3 ..3.....x....... 0030 - a1 3b 38 56 2b 93 68 d3-47 0f 7d ed a3 1f f3 ef .;8V+.h.G.}..... 0040 - db 72 e2 45 71 .r.Eq read from 0x1dfc2da0ba80 [0x1dfc2e7b2003] (5 bytes => 5 (0x5)) 0000 - 15 03 03 00 02 ..... read from 0x1dfc2da0ba80 [0x1dfc2e7b2008] (2 bytes => 2 (0x2)) 0000 - 02 33 .3 --- Certificate chain 0 s:/C=FR/ST=Haute-Garonne/L=TOULOUSE/O=CIRSO/OU=CNP/CN=*.urssaf.fr i:/C=US/O=GeoTrust Inc./CN=GeoTrust SSL CA - G3 1 s:/C=US/O=GeoTrust Inc./CN=GeoTrust SSL CA - G3 i:/C=US/O=GeoTrust Inc./CN=GeoTrust Global CA --- Server certificate -----BEGIN CERTIFICATE----- MIIGZzCCBU+gAwIBAgIQXmE5ws6u+cMSwm1X/2VNQjANBgkqhkiG9w0BAQsFADBE MQswCQYDVQQGEwJVUzEWMBQGA1UEChMNR2VvVHJ1c3QgSW5jLjEdMBsGA1UEAxMU R2VvVHJ1c3QgU1NMIENBIC0gRzMwHhcNMTYxMDI4MDAwMDAwWhcNMTkwMTI3MjM1 OTU5WjBsMQswCQYDVQQGEwJGUjEWMBQGA1UECAwNSGF1dGUtR2Fyb25uZTERMA8G A1UEBwwIVE9VTE9VU0UxDjAMBgNVBAoMBUNJUlNPMQwwCgYDVQQLDANDTlAxFDAS BgNVBAMMCyoudXJzc2FmLmZyMIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKC AQEA3QKRCKetZL+1g/Wfku2IB9jChUyRKR28vyTINu+tq34pdWLaPw0qdEMklMyo 3dS0HExNwTyhLTM1cVAILaHIZ0MEO1Jq0bVSpu6hIcDxYPfPPyFwFOjK3yk/s5Jo p9pv79VauB0fahNkzgIff1c//AsuowSAbOUfn9AlyUcTXJFW/daBRRlK0pdzJeEr g87A41M01AO76uaVGprH557AoY9C3hcErQgNkwL7PZ+1bIb47d2Q4VGWtx9q96vE WjNFLAaZpu8Onceiz/M7PdOQslhO+6GwsckBlQHJS8RQA5DdL7pT4ratgUArndId jcM+KvTPSWaVd7BbVfKk6RsN/QIDAQABo4IDKzCCAycwIQYDVR0RBBowGIILKi51 cnNzYWYuZnKCCXVyc3NhZi5mcjAJBgNVHRMEAjAAMA4GA1UdDwEB/wQEAwIFoDAr BgNVHR8EJDAiMCCgHqAchhpodHRwOi8vZ24uc3ltY2IuY29tL2duLmNybDCBnQYD VR0gBIGVMIGSMIGPBgZngQwBAgIwgYQwPwYIKwYBBQUHAgEWM2h0dHBzOi8vd3d3 Lmdlb3RydXN0LmNvbS9yZXNvdXJjZXMvcmVwb3NpdG9yeS9sZWdhbDBBBggrBgEF BQcCAjA1DDNodHRwczovL3d3dy5nZW90cnVzdC5jb20vcmVzb3VyY2VzL3JlcG9z aXRvcnkvbGVnYWwwHQYDVR0lBBYwFAYIKwYBBQUHAwEGCCsGAQUFBwMCMB8GA1Ud IwQYMBaAFNJv95b0hT9yPDB9I9qFeJujfFp8MFcGCCsGAQUFBwEBBEswSTAfBggr BgEFBQcwAYYTaHR0cDovL2duLnN5bWNkLmNvbTAmBggrBgEFBQcwAoYaaHR0cDov L2duLnN5bWNiLmNvbS9nbi5jcnQwggF/BgorBgEEAdZ5AgQCBIIBbwSCAWsBaQB1 AN3rHSt6DU+mIIuBrYFocH4ujp0B1VyIjT0RxM227L7MAAABWAp2tY8AAAQDAEYw RAIgTxMRgZ7BXxt9bHoxsiq/g54V2IrS421iywKwChHvnv8CICffa67sETajp8aI VC379Aed2aS1G11Ni0fTXRH5YH/4AHcAaPaY+B9kgr46jO65KB1M/HFRXWeT1ETR Cmesu09P+8QAAAFYCna1swAABAMASDBGAiEAjvmE9RbNaCWMU/hti4oE84uIRDLK izyZwc2YhM5UGlQCIQDMkj2upWInFtAzrh9gEHRegL1blDiD1hlKtauBr+WmEAB3 AO5Lvbd1zmC64UJpH6vhnmajD35fsHLYgwDEe4l6qP3LAAABWAp2tdIAAAQDAEgw RgIhANfKcMOJSPVfMRxYXltvd1LNgrEXgZET1RKCeuPEa9EmAiEAz+D56PFN2jEH 1W7EyLsORbII09ZZPzp1ho5oFEaFUEIwDQYJKoZIhvcNAQELBQADggEBAOJ0WVvE vIXI4wtTd3hGWAfLRxWXEMHXRN3O6naqfavWJHwx2i8fSgPETrvtNMqRAfdx1zCo /NJ+RdtummeujBhfrEsS4MLrL8YH6uSWUBgtukysbB8kfyFm7r1ZM08TDjD+N0Et 667MJ6dymozRyWFYrH0ud+IItM8jM96fA87iquZARtENfApU9EQ8o/MzqcveAxX/ 5+7nZ3QYLOEw2aFmrdirsWrYD0yCW/NqRrkvVYSt/jaTH3aURNDWVXR7Rn8ZCHG3 XPit7JEz9EN2PwgYMTOnmDbDCxlQhd/C2coDXwHEXQHAHzGAZl3O8eM7k3OuJCwe WXcNGASTeZxDkiY= -----END CERTIFICATE----- subject=/C=FR/ST=Haute-Garonne/L=TOULOUSE/O=CIRSO/OU=CNP/CN=*.urssaf.fr issuer=/C=US/O=GeoTrust Inc./CN=GeoTrust SSL CA - G3 --- No client certificate CA names sent --- SSL handshake has read 2860 bytes and written 342 bytes --- New, TLSv1/SSLv3, Cipher is AES256-SHA Server public key is 2048 bit Secure Renegotiation IS supported Compression: NONE Expansion: NONE No ALPN negotiated SSL-Session: Protocol : TLSv1.2 Cipher : AES256-SHA Session-ID: BCBB6DDDCFBC284B6F3F529E8F197A7F5DFD4E62DDC26A3647DA52DBF89CEE75 Session-ID-ctx: Master-Key: F4C44007715FF1E5A773E1CABAA1F1EB166F919FEC804AF352A1CE49BEDF06BD6A2ECDD8413104F2D6A7B186B7259470 Start Time: 1485615903 Timeout : 7200 (sec) Verify return code: 0 (ok) --- When using another amd64 host (OpenBSD 6.0-current (GENERIC.MP) #150: Tue Jan 17 17:41:15 MST 2017), nc(1) output is ok: obsd-150$ nc -vvc www.urssaf.fr 443 Connection to www.urssaf.fr 443 port [tcp/https] succeeded! TLS handshake negotiated TLSv1.2/ECDHE-RSA-AES256-GCM-SHA384 with host www.urssaf.fr Peer name: www.urssaf.fr Subject: /C=FR/ST=Haute-Garonne/L=TOULOUSE/O=CIRSO/OU=CNP/CN=*.urssaf.fr Issuer: /C=US/O=GeoTrust Inc./CN=GeoTrust SSL CA - G3 Valid From: Fri Oct 28 02:00:00 2016 Valid Until: Mon Jan 28 00:59:59 2019 Cert Hash: SHA256:93ab9a59d787c3bb391c7a941bab798103d193194ad00b0be17887b4da6c9350 OCSP URL: http://gn.symcd.com ^C Some regression ? or does www.urssaf.fr has some SSL problems catched by new libssl version ? Thanks. -- Sebastien Marie