moimoin
...eben das habe ich mir auch gedacht.
Folgendes wird ausgegeben:
pvesubscription get
checktime: 1671610494
key: XXX
level: c
nextduedate: 2023-12-20
productname: Proxmox VE Community Subscription 1 CPU/year
regdate: 2022-12-20 00:00:00
serverid: XXX
sockets: 1
status: active
url:
https://www.proxmox.com/proxmox-ve/pricing
curl -v https://shop.proxmox.com/modules/servers/licensing/verify.php
* Trying 79.133.36.249:443...
* Connected to shop.proxmox.com (79.133.36.249) port 443 (#0)
* ALPN, offering h2
* ALPN, offering http/1.1
* successfully set certificate verify locations:
* CAfile: /etc/ssl/certs/ca-certificates.crt
* CApath: /etc/ssl/certs
* TLSv1.3 (OUT), TLS handshake, Client hello (1):
* TLSv1.3 (IN), TLS handshake, Server hello (2):
* TLSv1.3 (IN), TLS handshake, Encrypted Extensions (8):
* TLSv1.3 (IN), TLS handshake, Certificate (11):
* TLSv1.3 (IN), TLS handshake, CERT verify (15):
* TLSv1.3 (IN), TLS handshake, Finished (20):
* TLSv1.3 (OUT), TLS change cipher, Change cipher spec (1):
* TLSv1.3 (OUT), TLS handshake, Finished (20):
* SSL connection using TLSv1.3 / TLS_AES_256_GCM_SHA384
* ALPN, server accepted to use http/1.1
* Server certificate:
* subject: CN=shop.proxmox.com
* start date: Nov 20 22:00:07 2022 GMT
* expire date: Feb 18 22:00:06 2023 GMT
* subjectAltName: host "shop.proxmox.com" matched cert's "shop.proxmox.com"
* issuer: C=US; O=Let's Encrypt; CN=R3
* SSL certificate verify ok.
> GET /modules/servers/licensing/verify.php HTTP/1.1
> Host: shop.proxmox.com
> User-Agent: curl/7.74.0
> Accept: */*>
* TLSv1.3 (IN), TLS handshake, Newsession Ticket (4):
* TLSv1.3 (IN), TLS handshake, Newsession Ticket (4):
* old SSL session ID is stale, removing
* Mark bundle as not supporting multiuse
< HTTP/1.1 200 OK
< Date: Wed, 21 Dec 2022 08:47:46 GMT
< Server: Apache
< X-Frame-Options: SAMEORIGIN
< Content-Security-Policy: frame-ancestors 'self'
< Set-Cookie: WHMCSvVl9CFfEzwuY=cj7bthpqm5uee1s23neau6c0fo; path=/; secure; HttpOnly
< Expires: Thu, 19 Nov 1981 08:52:00 GMT
< Cache-Control: no-store, no-cache, must-revalidate
< Pragma: no-cache
< Content-Length: 24
< Content-Type: text/html; charset=utf-8<
* Connection #0 to host shop.proxmox.com left intact
<status>Invalid</status>root@HU6-SRV:~#
openssl s_client -connect shop.proxmox.com:443
CONNECTED(00000003)
depth=2 C = US, O = Internet Security Research Group, CN = ISRG Root X1
verify return:1
depth=1 C = US, O = Let's Encrypt, CN = R3
verify return:1
depth=0 CN = shop.proxmox.com
verify return:1
--
Certificate chain
0 s:CN = shop.proxmox.com
i:C = US, O = Let's Encrypt, CN = R3
1 s:C = US, O = Let's Encrypt, CN = R3
i:C = US, O = Internet Security Research Group, CN = ISRG Root X1
2 s:C = US, O = Internet Security Research Group, CN = ISRG Root X1
i:O = Digital Signature Trust Co., CN = DST Root CA X3
---
Server certificate
-----BEGIN CERTIFICATE-----
-----END CERTIFICATE-----
subject=CN = shop.proxmox.com
issuer=C = US, O = Let's Encrypt, CN = R3
---No client certificate CA names sent
Peer signing digest: SHA256
Peer signature type: RSA-PSS
Server Temp Key: X25519, 253 bits
---SSL handshake has read 4579 bytes and written 388 bytes
Verification: OK---
New, TLSv1.3, Cipher is TLS_AES_256_GCM_SHA384
Server public key is 2048 bit
Secure Renegotiation IS NOT supported
Compression: NONE
Expansion: NONE
No ALPN negotiated
Early data was not sent
Verify return code: 0 (ok)--
---
Post-Handshake New Session Ticket arrived:
SSL-Session:
Protocol : TLSv1.3
Cipher : TLS_AES_256_GCM_SHA384
Session-ID: 71965D20C4FED4C2CBC22FF1C5C6EA6F0E6B4EAEE6B7CC4D3D4EE376827EF90C
Session-ID-ctx:
Resumption PSK: D9E94354F5FB8A43D7052F702353EBA9833232A8BF2F14F6B3B6FD3BAD3CBA38DABD108342C227EEFE5C5AB0D7CB72AC
PSK identity: None
PSK identity hint: None
SRP username: None
TLS session ticket lifetime hint: 300 (seconds)
TLS session ticket:
Start Time: 1671612646
Timeout : 7200 (sec)
Verify return code: 0 (ok)
Extended master secret: no
Max Early Data: 0
---
read R BLOCK
---
Post-Handshake New Session Ticket arrived:
SSL-Session:
Protocol : TLSv1.3
Cipher : TLS_AES_256_GCM_SHA384
Session-ID: 193639DD485687A569D3FFA1D4E433C1F0AB61A67DAF32C45A530903244B7F15
Session-ID-ctx:
Resumption PSK: 41A38828E0BE7D2D5058CC637D5F52590E76099A5AE09623D9A7C9A97ADC139FA5B94D5EC9E348FB1CCD8C3A3D875C57
PSK identity: None
PSK identity hint: None
SRP username: None
TLS session ticket lifetime hint: 300 (seconds)
TLS session ticket:
Start Time: 1671612646
Timeout : 7200 (sec)
Verify return code: 0 (ok)
Extended master secret: no
Max Early Data: 0---
read R BLOCK
HTTP/1.1 400 Bad Request
Date: Wed, 21 Dec 2022 08:50:50 GMT
Server: Apache
X-Frame-Options: SAMEORIGIN
Content-Security-Policy: frame-ancestors 'self'
Content-Length: 226
Connection: close
Content-Type: text/html; charset=iso-8859-1
<!DOCTYPE HTML PUBLIC "-//IETF//DTD HTML 2.0//EN">
<html><head>
<title>400 Bad Request</title>
</head><body>
<h1>Bad Request</h1>
<p>Your browser sent a request that this server could not understand.<br />
</p>
</body></html>
closed
...sieht normal aus oder?