javax.net.ssl|DEBUG|21|https-jsse-nio-8443-exec-1|2019-11-05 16:01:44.726 GMT|HandshakeContext.java:297|Ignore unsupported cipher suite: TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384 for TLS13 javax.net.ssl|DEBUG|21|https-jsse-nio-8443-exec-1|2019-11-05 16:01:44.726 GMT|HandshakeContext.java:297|Ignore unsupported cipher suite: TLS_ECDHE_ECDSA_WITH_AES_256_GCM_SHA384 for TLS13 javax.net.ssl|DEBUG|21|https-jsse-nio-8443-exec-1|2019-11-05 16:01:44.726 GMT|HandshakeContext.java:297|Ignore unsupported cipher suite: TLS_ECDHE_RSA_WITH_AES_256_CBC_SHA384 for TLS13 javax.net.ssl|DEBUG|21|https-jsse-nio-8443-exec-1|2019-11-05 16:01:44.726 GMT|HandshakeContext.java:297|Ignore unsupported cipher suite: TLS_ECDHE_ECDSA_WITH_AES_256_CBC_SHA384 for TLS13 javax.net.ssl|DEBUG|21|https-jsse-nio-8443-exec-1|2019-11-05 16:01:44.727 GMT|HandshakeContext.java:297|Ignore unsupported cipher suite: TLS_ECDHE_RSA_WITH_AES_256_CBC_SHA for TLS13 javax.net.ssl|DEBUG|21|https-jsse-nio-8443-exec-1|2019-11-05 16:01:44.727 GMT|HandshakeContext.java:297|Ignore unsupported cipher suite: TLS_ECDHE_ECDSA_WITH_AES_256_CBC_SHA for TLS13 javax.net.ssl|ALL|21|https-jsse-nio-8443-exec-1|2019-11-05 16:01:44.727 GMT|HandshakeContext.java:348|Ignore unsupported cipher suite: TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384 javax.net.ssl|ALL|21|https-jsse-nio-8443-exec-1|2019-11-05 16:01:44.727 GMT|HandshakeContext.java:348|Ignore unsupported cipher suite: TLS_ECDHE_ECDSA_WITH_AES_256_GCM_SHA384 javax.net.ssl|ALL|21|https-jsse-nio-8443-exec-1|2019-11-05 16:01:44.727 GMT|HandshakeContext.java:348|Ignore unsupported cipher suite: TLS_ECDHE_RSA_WITH_AES_256_CBC_SHA384 javax.net.ssl|ALL|21|https-jsse-nio-8443-exec-1|2019-11-05 16:01:44.728 GMT|HandshakeContext.java:348|Ignore unsupported cipher suite: TLS_ECDHE_ECDSA_WITH_AES_256_CBC_SHA384 javax.net.ssl|ALL|21|https-jsse-nio-8443-exec-1|2019-11-05 16:01:44.728 GMT|HandshakeContext.java:348|Ignore unsupported cipher suite: TLS_ECDHE_RSA_WITH_AES_256_CBC_SHA javax.net.ssl|ALL|21|https-jsse-nio-8443-exec-1|2019-11-05 16:01:44.728 GMT|HandshakeContext.java:348|Ignore unsupported cipher suite: TLS_ECDHE_ECDSA_WITH_AES_256_CBC_SHA javax.net.ssl|ALL|21|https-jsse-nio-8443-exec-1|2019-11-05 16:01:44.728 GMT|HandshakeContext.java:348|Ignore unsupported cipher suite: TLS_DHE_DSS_WITH_AES_256_GCM_SHA384 javax.net.ssl|ALL|21|https-jsse-nio-8443-exec-1|2019-11-05 16:01:44.728 GMT|HandshakeContext.java:348|Ignore unsupported cipher suite: TLS_DHE_RSA_WITH_AES_256_GCM_SHA384 javax.net.ssl|ALL|21|https-jsse-nio-8443-exec-1|2019-11-05 16:01:44.729 GMT|HandshakeContext.java:348|Ignore unsupported cipher suite: TLS_DHE_RSA_WITH_AES_256_CBC_SHA256 javax.net.ssl|ALL|21|https-jsse-nio-8443-exec-1|2019-11-05 16:01:44.729 GMT|HandshakeContext.java:348|Ignore unsupported cipher suite: TLS_DHE_DSS_WITH_AES_256_CBC_SHA256 javax.net.ssl|ALL|21|https-jsse-nio-8443-exec-1|2019-11-05 16:01:44.729 GMT|HandshakeContext.java:348|Ignore unsupported cipher suite: TLS_DHE_RSA_WITH_AES_256_CBC_SHA javax.net.ssl|ALL|21|https-jsse-nio-8443-exec-1|2019-11-05 16:01:44.729 GMT|HandshakeContext.java:348|Ignore unsupported cipher suite: TLS_DHE_DSS_WITH_AES_256_CBC_SHA javax.net.ssl|ALL|21|https-jsse-nio-8443-exec-1|2019-11-05 16:01:44.729 GMT|HandshakeContext.java:348|Ignore unsupported cipher suite: TLS_ECDHE_ECDSA_WITH_CHACHA20_POLY1305_SHA256 javax.net.ssl|ALL|21|https-jsse-nio-8443-exec-1|2019-11-05 16:01:44.729 GMT|HandshakeContext.java:348|Ignore unsupported cipher suite: TLS_ECDHE_RSA_WITH_CHACHA20_POLY1305_SHA256 javax.net.ssl|ALL|21|https-jsse-nio-8443-exec-1|2019-11-05 16:01:44.730 GMT|HandshakeContext.java:348|Ignore unsupported cipher suite: TLS_DHE_RSA_WITH_CHACHA20_POLY1305_SHA256 javax.net.ssl|ALL|21|https-jsse-nio-8443-exec-1|2019-11-05 16:01:44.730 GMT|HandshakeContext.java:348|Ignore unsupported cipher suite: TLS_ECDH_RSA_WITH_AES_256_GCM_SHA384 javax.net.ssl|ALL|21|https-jsse-nio-8443-exec-1|2019-11-05 16:01:44.730 GMT|HandshakeContext.java:348|Ignore unsupported cipher suite: TLS_ECDH_ECDSA_WITH_AES_256_GCM_SHA384 javax.net.ssl|ALL|21|https-jsse-nio-8443-exec-1|2019-11-05 16:01:44.730 GMT|HandshakeContext.java:348|Ignore unsupported cipher suite: TLS_ECDH_RSA_WITH_AES_256_CBC_SHA384 javax.net.ssl|ALL|21|https-jsse-nio-8443-exec-1|2019-11-05 16:01:44.730 GMT|HandshakeContext.java:348|Ignore unsupported cipher suite: TLS_ECDH_ECDSA_WITH_AES_256_CBC_SHA384 javax.net.ssl|ALL|21|https-jsse-nio-8443-exec-1|2019-11-05 16:01:44.731 GMT|HandshakeContext.java:348|Ignore unsupported cipher suite: TLS_ECDH_RSA_WITH_AES_256_CBC_SHA javax.net.ssl|ALL|21|https-jsse-nio-8443-exec-1|2019-11-05 16:01:44.731 GMT|HandshakeContext.java:348|Ignore unsupported cipher suite: TLS_ECDH_ECDSA_WITH_AES_256_CBC_SHA javax.net.ssl|ALL|21|https-jsse-nio-8443-exec-1|2019-11-05 16:01:44.731 GMT|HandshakeContext.java:348|Ignore unsupported cipher suite: TLS_ECDHE_RSA_WITH_AES_128_GCM_SHA256 javax.net.ssl|ALL|21|https-jsse-nio-8443-exec-1|2019-11-05 16:01:44.731 GMT|HandshakeContext.java:348|Ignore unsupported cipher suite: TLS_ECDHE_ECDSA_WITH_AES_128_GCM_SHA256 javax.net.ssl|ALL|21|https-jsse-nio-8443-exec-1|2019-11-05 16:01:44.731 GMT|HandshakeContext.java:348|Ignore unsupported cipher suite: TLS_ECDHE_RSA_WITH_AES_128_CBC_SHA256 javax.net.ssl|ALL|21|https-jsse-nio-8443-exec-1|2019-11-05 16:01:44.731 GMT|HandshakeContext.java:348|Ignore unsupported cipher suite: TLS_ECDHE_ECDSA_WITH_AES_128_CBC_SHA256 javax.net.ssl|ALL|21|https-jsse-nio-8443-exec-1|2019-11-05 16:01:44.732 GMT|HandshakeContext.java:348|Ignore unsupported cipher suite: TLS_ECDHE_RSA_WITH_AES_128_CBC_SHA javax.net.ssl|ALL|21|https-jsse-nio-8443-exec-1|2019-11-05 16:01:44.732 GMT|HandshakeContext.java:348|Ignore unsupported cipher suite: TLS_ECDHE_ECDSA_WITH_AES_128_CBC_SHA javax.net.ssl|ALL|21|https-jsse-nio-8443-exec-1|2019-11-05 16:01:44.732 GMT|HandshakeContext.java:348|Ignore unsupported cipher suite: TLS_DHE_DSS_WITH_AES_128_GCM_SHA256 javax.net.ssl|ALL|21|https-jsse-nio-8443-exec-1|2019-11-05 16:01:44.732 GMT|HandshakeContext.java:348|Ignore unsupported cipher suite: TLS_DHE_RSA_WITH_AES_128_GCM_SHA256 javax.net.ssl|ALL|21|https-jsse-nio-8443-exec-1|2019-11-05 16:01:44.732 GMT|HandshakeContext.java:348|Ignore unsupported cipher suite: TLS_DHE_RSA_WITH_AES_128_CBC_SHA256 javax.net.ssl|ALL|21|https-jsse-nio-8443-exec-1|2019-11-05 16:01:44.733 GMT|HandshakeContext.java:348|Ignore unsupported cipher suite: TLS_DHE_DSS_WITH_AES_128_CBC_SHA256 javax.net.ssl|ALL|21|https-jsse-nio-8443-exec-1|2019-11-05 16:01:44.733 GMT|HandshakeContext.java:348|Ignore unsupported cipher suite: TLS_DHE_RSA_WITH_AES_128_CBC_SHA javax.net.ssl|ALL|21|https-jsse-nio-8443-exec-1|2019-11-05 16:01:44.733 GMT|HandshakeContext.java:348|Ignore unsupported cipher suite: TLS_DHE_DSS_WITH_AES_128_CBC_SHA javax.net.ssl|ALL|21|https-jsse-nio-8443-exec-1|2019-11-05 16:01:44.733 GMT|HandshakeContext.java:348|Ignore unsupported cipher suite: TLS_ECDH_RSA_WITH_AES_128_GCM_SHA256 javax.net.ssl|ALL|21|https-jsse-nio-8443-exec-1|2019-11-05 16:01:44.733 GMT|HandshakeContext.java:348|Ignore unsupported cipher suite: TLS_ECDH_ECDSA_WITH_AES_128_GCM_SHA256 javax.net.ssl|ALL|21|https-jsse-nio-8443-exec-1|2019-11-05 16:01:44.733 GMT|HandshakeContext.java:348|Ignore unsupported cipher suite: TLS_ECDH_RSA_WITH_AES_128_CBC_SHA256 javax.net.ssl|ALL|21|https-jsse-nio-8443-exec-1|2019-11-05 16:01:44.734 GMT|HandshakeContext.java:348|Ignore unsupported cipher suite: TLS_ECDH_ECDSA_WITH_AES_128_CBC_SHA256 javax.net.ssl|ALL|21|https-jsse-nio-8443-exec-1|2019-11-05 16:01:44.734 GMT|HandshakeContext.java:348|Ignore unsupported cipher suite: TLS_ECDH_RSA_WITH_AES_128_CBC_SHA javax.net.ssl|ALL|21|https-jsse-nio-8443-exec-1|2019-11-05 16:01:44.734 GMT|HandshakeContext.java:348|Ignore unsupported cipher suite: TLS_ECDH_ECDSA_WITH_AES_128_CBC_SHA javax.net.ssl|DEBUG|21|https-jsse-nio-8443-exec-1|2019-11-05 16:01:44.755 GMT|SSLExtensions.java:132|Ignore unknown or unsupported extension ( "unknown extension (23)": { } ) javax.net.ssl|DEBUG|21|https-jsse-nio-8443-exec-1|2019-11-05 16:01:44.756 GMT|SSLExtensions.java:132|Ignore unknown or unsupported extension ( "unknown extension (65,281)": { 0000: 00 . } ) javax.net.ssl|DEBUG|21|https-jsse-nio-8443-exec-1|2019-11-05 16:01:44.756 GMT|SSLExtensions.java:132|Ignore unknown or unsupported extension ( "unknown extension (11)": { 0000: 01 00 .. } ) javax.net.ssl|DEBUG|21|https-jsse-nio-8443-exec-1|2019-11-05 16:01:44.757 GMT|SSLExtensions.java:132|Ignore unknown or unsupported extension ( "unknown extension (35)": { } ) javax.net.ssl|DEBUG|21|https-jsse-nio-8443-exec-1|2019-11-05 16:01:44.757 GMT|SSLExtensions.java:132|Ignore unknown or unsupported extension ( "unknown extension (28)": { 0000: 40 01 @. } ) javax.net.ssl|DEBUG|21|https-jsse-nio-8443-exec-1|2019-11-05 16:01:44.759 GMT|SSLExtensions.java:132|Ignore unknown or unsupported extension ( "unknown extension (21)": { 0000: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................ 0010: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................ 0020: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................ 0030: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................ 0040: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................ 0050: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................ 0060: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................ 0070: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................ 0080: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................ 0090: 00 00 00 00 00 ..... } ) javax.net.ssl|DEBUG|21|https-jsse-nio-8443-exec-1|2019-11-05 16:01:44.774 GMT|ClientHello.java:808|Consuming ClientHello handshake message ( "ClientHello": { "client version" : "TLSv1.2", "random" : "3F 4E 17 86 BB 66 D7 8F C5 4A DA F2 24 90 53 33 4E 47 21 A7 1D 5C 05 07 B9 31 B8 B3 90 F1 0A B6", "session id" : "99 E7 FE 84 3F A5 7C 0B D0 1A F4 E6 0A 9A ED 20 6E B5 D6 7D 9A F6 FB 02 BB EC A4 57 E7 D8 E2 98", "cipher suites" : "[TLS_AES_128_GCM_SHA256(0x1301), TLS_CHACHA20_POLY1305_SHA256(0x1303), TLS_AES_256_GCM_SHA384(0x1302), TLS_ECDHE_ECDSA_WITH_AES_128_GCM_SHA256(0xC02B), TLS_ECDHE_RSA_WITH_AES_128_GCM_SHA256(0xC02F), TLS_ECDHE_ECDSA_WITH_CHACHA20_POLY1305_SHA256(0xCCA9), TLS_ECDHE_RSA_WITH_CHACHA20_POLY1305_SHA256(0xCCA8), TLS_ECDHE_ECDSA_WITH_AES_256_GCM_SHA384(0xC02C), TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384(0xC030), TLS_ECDHE_ECDSA_WITH_AES_256_CBC_SHA(0xC00A), TLS_ECDHE_ECDSA_WITH_AES_128_CBC_SHA(0xC009), TLS_ECDHE_RSA_WITH_AES_128_CBC_SHA(0xC013), TLS_ECDHE_RSA_WITH_AES_256_CBC_SHA(0xC014), TLS_DHE_RSA_WITH_AES_128_CBC_SHA(0x0033), TLS_DHE_RSA_WITH_AES_256_CBC_SHA(0x0039), TLS_RSA_WITH_AES_128_CBC_SHA(0x002F), TLS_RSA_WITH_AES_256_CBC_SHA(0x0035), SSL_RSA_WITH_3DES_EDE_CBC_SHA(0x000A)]", "compression methods" : "00", "extensions" : [ "server_name (0)": { type=host_name (0), value=localhost }, "extended_master_secret (23)": { }, "renegotiation_info (65,281)": { "renegotiated connection": [] }, "supported_groups (10)": { "versions": [x25519, secp256r1, secp384r1, secp521r1, ffdhe2048, ffdhe3072] }, "ec_point_formats (11)": { "formats": [uncompressed] }, "session_ticket (35)": { }, "application_layer_protocol_negotiation (16)": { [h2, http/1.1] }, "status_request (5)": { "certificate status type": ocsp "OCSP status request": { "responder_id": "request extensions": { } } }, "key_share (51)": { "client_shares": [ { "named group": x25519 "key_exchange": { 0000: 7F FA A5 45 78 64 9F 7B 49 35 E1 D0 B9 1D A3 D4 ...Exd..I5...... 0010: 7D 98 2A 88 17 8B BE 13 08 BF 1B 5B 91 14 DE 7D ..*........[.... } }, { "named group": secp256r1 "key_exchange": { 0000: 04 C9 C2 09 72 F0 31 2A 82 A5 EA DF 1F FE 3D AD ....r.1*......=. 0010: DF 0C D3 B9 3B EB AE 5E C1 D4 B6 EF 04 C4 BC 0B ....;..^........ 0020: 90 43 EF 33 A3 B9 B7 90 A5 C7 5F FA B3 E5 94 61 .C.3......_....a 0030: 62 76 98 17 0A 3B A6 6E D5 F5 D6 F7 A1 6D 8F 25 bv...;.n.....m.% 0040: 9F } }, ] }, "supported_versions (43)": { "versions": [TLSv1.3, TLSv1.2, TLSv1.1, TLSv1] }, "signature_algorithms (13)": { "signature schemes": [ecdsa_secp256r1_sha256, ecdsa_secp384r1_sha384, ecdsa_secp521r1_sha512, rsa_pss_rsae_sha256, rsa_pss_rsae_sha384, rsa_pss_rsae_sha512, rsa_pkcs1_sha256, rsa_pkcs1_sha384, rsa_pkcs1_sha512, ecdsa_sha1, rsa_pkcs1_sha1] }, "psk_key_exchange_modes (45)": { "ke_modes": [psk_dhe_ke] }, "unknown extension (28)": { 0000: 40 01 @. }, "unknown extension (21)": { 0000: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................ 0010: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................ 0020: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................ 0030: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................ 0040: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................ 0050: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................ 0060: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................ 0070: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................ 0080: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................ 0090: 00 00 00 00 00 ..... } ] } ) javax.net.ssl|DEBUG|21|https-jsse-nio-8443-exec-1|2019-11-05 16:01:44.774 GMT|SSLExtensions.java:189|Consumed extension: supported_versions javax.net.ssl|DEBUG|21|https-jsse-nio-8443-exec-1|2019-11-05 16:01:44.775 GMT|ClientHello.java:838|Negotiated protocol version: TLSv1.3 javax.net.ssl|DEBUG|21|https-jsse-nio-8443-exec-1|2019-11-05 16:01:44.775 GMT|SSLExtensions.java:189|Consumed extension: psk_key_exchange_modes javax.net.ssl|DEBUG|21|https-jsse-nio-8443-exec-1|2019-11-05 16:01:44.775 GMT|PreSharedKeyExtension.java:840|Handling pre_shared_key absence. javax.net.ssl|DEBUG|21|https-jsse-nio-8443-exec-1|2019-11-05 16:01:44.776 GMT|ServerNameExtension.java:327|no server name matchers, ignore server name indication javax.net.ssl|DEBUG|21|https-jsse-nio-8443-exec-1|2019-11-05 16:01:44.776 GMT|SSLExtensions.java:189|Consumed extension: server_name javax.net.ssl|DEBUG|21|https-jsse-nio-8443-exec-1|2019-11-05 16:01:44.776 GMT|SSLExtensions.java:170|Ignore unavailable extension: max_fragment_length javax.net.ssl|DEBUG|21|https-jsse-nio-8443-exec-1|2019-11-05 16:01:44.776 GMT|SSLExtensions.java:189|Consumed extension: status_request javax.net.ssl|DEBUG|21|https-jsse-nio-8443-exec-1|2019-11-05 16:01:44.776 GMT|SSLExtensions.java:189|Consumed extension: supported_groups javax.net.ssl|DEBUG|21|https-jsse-nio-8443-exec-1|2019-11-05 16:01:44.776 GMT|SSLExtensions.java:189|Consumed extension: signature_algorithms javax.net.ssl|DEBUG|21|https-jsse-nio-8443-exec-1|2019-11-05 16:01:44.776 GMT|SSLExtensions.java:170|Ignore unavailable extension: signature_algorithms_cert javax.net.ssl|DEBUG|21|https-jsse-nio-8443-exec-1|2019-11-05 16:01:44.777 GMT|AlpnExtension.java:277|Ignore server unenabled extension: application_layer_protocol_negotiation javax.net.ssl|DEBUG|21|https-jsse-nio-8443-exec-1|2019-11-05 16:01:44.777 GMT|SSLExtensions.java:189|Consumed extension: application_layer_protocol_negotiation javax.net.ssl|DEBUG|21|https-jsse-nio-8443-exec-1|2019-11-05 16:01:44.777 GMT|SSLExtensions.java:170|Ignore unavailable extension: cookie javax.net.ssl|DEBUG|21|https-jsse-nio-8443-exec-1|2019-11-05 16:01:44.781 GMT|SSLExtensions.java:189|Consumed extension: key_share javax.net.ssl|ALL|21|https-jsse-nio-8443-exec-1|2019-11-05 16:01:44.782 GMT|SignatureScheme.java:364|Ignore inactive signature scheme: dsa_sha256 javax.net.ssl|ALL|21|https-jsse-nio-8443-exec-1|2019-11-05 16:01:44.782 GMT|SignatureScheme.java:364|Ignore inactive signature scheme: ecdsa_sha224 javax.net.ssl|ALL|21|https-jsse-nio-8443-exec-1|2019-11-05 16:01:44.782 GMT|SignatureScheme.java:364|Ignore inactive signature scheme: rsa_sha224 javax.net.ssl|ALL|21|https-jsse-nio-8443-exec-1|2019-11-05 16:01:44.782 GMT|SignatureScheme.java:364|Ignore inactive signature scheme: dsa_sha224 javax.net.ssl|ALL|21|https-jsse-nio-8443-exec-1|2019-11-05 16:01:44.782 GMT|SignatureScheme.java:364|Ignore inactive signature scheme: dsa_sha1 javax.net.ssl|ALL|21|https-jsse-nio-8443-exec-1|2019-11-05 16:01:44.782 GMT|SignatureScheme.java:364|Ignore inactive signature scheme: rsa_md5 javax.net.ssl|WARNING|21|https-jsse-nio-8443-exec-1|2019-11-05 16:01:44.783 GMT|SSLExtensions.java:212|Ignore impact of unsupported extension: server_name javax.net.ssl|DEBUG|21|https-jsse-nio-8443-exec-1|2019-11-05 16:01:44.783 GMT|SSLExtensions.java:204|Ignore unavailable extension: max_fragment_length javax.net.ssl|WARNING|21|https-jsse-nio-8443-exec-1|2019-11-05 16:01:44.783 GMT|SSLExtensions.java:212|Ignore impact of unsupported extension: status_request javax.net.ssl|WARNING|21|https-jsse-nio-8443-exec-1|2019-11-05 16:01:44.783 GMT|SSLExtensions.java:212|Ignore impact of unsupported extension: supported_groups javax.net.ssl|DEBUG|21|https-jsse-nio-8443-exec-1|2019-11-05 16:01:44.784 GMT|SSLExtensions.java:221|Populated with extension: signature_algorithms javax.net.ssl|DEBUG|21|https-jsse-nio-8443-exec-1|2019-11-05 16:01:44.784 GMT|SSLExtensions.java:204|Ignore unavailable extension: signature_algorithms_cert javax.net.ssl|WARNING|21|https-jsse-nio-8443-exec-1|2019-11-05 16:01:44.784 GMT|SSLExtensions.java:212|Ignore impact of unsupported extension: application_layer_protocol_negotiation javax.net.ssl|WARNING|21|https-jsse-nio-8443-exec-1|2019-11-05 16:01:44.785 GMT|SSLExtensions.java:212|Ignore impact of unsupported extension: supported_versions javax.net.ssl|DEBUG|21|https-jsse-nio-8443-exec-1|2019-11-05 16:01:44.785 GMT|SSLExtensions.java:204|Ignore unavailable extension: cookie javax.net.ssl|WARNING|21|https-jsse-nio-8443-exec-1|2019-11-05 16:01:44.785 GMT|SSLExtensions.java:212|Ignore impact of unsupported extension: psk_key_exchange_modes javax.net.ssl|WARNING|21|https-jsse-nio-8443-exec-1|2019-11-05 16:01:44.785 GMT|SSLExtensions.java:212|Ignore impact of unsupported extension: key_share javax.net.ssl|DEBUG|21|https-jsse-nio-8443-exec-1|2019-11-05 16:01:44.785 GMT|SSLExtensions.java:204|Ignore unavailable extension: pre_shared_key javax.net.ssl|DEBUG|21|https-jsse-nio-8443-exec-1|2019-11-05 16:01:44.786 GMT|ServerHello.java:733|use cipher suite TLS_AES_128_GCM_SHA256 javax.net.ssl|DEBUG|21|https-jsse-nio-8443-exec-1|2019-11-05 16:01:44.798 GMT|SSLExtensions.java:257|Ignore, context unavailable extension: pre_shared_key javax.net.ssl|DEBUG|21|https-jsse-nio-8443-exec-1|2019-11-05 16:01:44.799 GMT|ServerHello.java:587|Produced ServerHello handshake message ( "ServerHello": { "server version" : "TLSv1.2", "random" : "30 7B 65 36 70 3B 67 E9 4D 63 D9 32 8B 05 08 C0 12 EC 39 FA 71 D7 64 E4 AB CE 32 B2 43 AE 32 8D", "session id" : "99 E7 FE 84 3F A5 7C 0B D0 1A F4 E6 0A 9A ED 20 6E B5 D6 7D 9A F6 FB 02 BB EC A4 57 E7 D8 E2 98", "cipher suite" : "TLS_AES_128_GCM_SHA256(0x1301)", "compression methods" : "00", "extensions" : [ "supported_versions (43)": { "selected version": [TLSv1.3] }, "key_share (51)": { "server_share": { "named group": x25519 "key_exchange": { 0000: CA F0 FD 8D 9A 4A E1 C1 B9 B3 4E CD 67 9A FB 18 .....J....N.g... 0010: 5A 75 3F 24 6B 0B D8 C5 B9 E8 00 93 38 BC AC 20 Zu?$k.......8.. } }, } ] } ) javax.net.ssl|DEBUG|21|https-jsse-nio-8443-exec-1|2019-11-05 16:01:44.805 GMT|SSLCipher.java:1867|KeyLimit read side: algorithm = AES/GCM/NOPADDING:KEYUPDATE countdown value = 137438953472 javax.net.ssl|DEBUG|21|https-jsse-nio-8443-exec-1|2019-11-05 16:01:44.806 GMT|SSLCipher.java:2021|KeyLimit write side: algorithm = AES/GCM/NOPADDING:KEYUPDATE countdown value = 137438953472 javax.net.ssl|ALL|21|https-jsse-nio-8443-exec-1|2019-11-05 16:01:44.806 GMT|ServerNameExtension.java:537|No expected server name indication response javax.net.ssl|DEBUG|21|https-jsse-nio-8443-exec-1|2019-11-05 16:01:44.806 GMT|SSLExtensions.java:257|Ignore, context unavailable extension: server_name javax.net.ssl|ALL|21|https-jsse-nio-8443-exec-1|2019-11-05 16:01:44.807 GMT|MaxFragExtension.java:469|Ignore unavailable max_fragment_length extension javax.net.ssl|DEBUG|21|https-jsse-nio-8443-exec-1|2019-11-05 16:01:44.807 GMT|SSLExtensions.java:257|Ignore, context unavailable extension: max_fragment_length javax.net.ssl|DEBUG|21|https-jsse-nio-8443-exec-1|2019-11-05 16:01:44.807 GMT|AlpnExtension.java:365|Ignore unavailable extension: application_layer_protocol_negotiation javax.net.ssl|DEBUG|21|https-jsse-nio-8443-exec-1|2019-11-05 16:01:44.808 GMT|SSLExtensions.java:257|Ignore, context unavailable extension: application_layer_protocol_negotiation javax.net.ssl|DEBUG|21|https-jsse-nio-8443-exec-1|2019-11-05 16:01:44.808 GMT|EncryptedExtensions.java:137|Produced EncryptedExtensions message ( "EncryptedExtensions": [ "supported_groups (10)": { "versions": [x25519, secp256r1, secp384r1, secp521r1, x448, ffdhe2048, ffdhe3072, ffdhe4096, ffdhe6144, ffdhe8192] } ] ) javax.net.ssl|ALL|21|https-jsse-nio-8443-exec-1|2019-11-05 16:01:44.808 GMT|SignatureScheme.java:364|Ignore inactive signature scheme: dsa_sha256 javax.net.ssl|ALL|21|https-jsse-nio-8443-exec-1|2019-11-05 16:01:44.808 GMT|SignatureScheme.java:364|Ignore inactive signature scheme: ecdsa_sha224 javax.net.ssl|ALL|21|https-jsse-nio-8443-exec-1|2019-11-05 16:01:44.809 GMT|SignatureScheme.java:364|Ignore inactive signature scheme: rsa_sha224 javax.net.ssl|ALL|21|https-jsse-nio-8443-exec-1|2019-11-05 16:01:44.809 GMT|SignatureScheme.java:364|Ignore inactive signature scheme: dsa_sha224 javax.net.ssl|ALL|21|https-jsse-nio-8443-exec-1|2019-11-05 16:01:44.809 GMT|SignatureScheme.java:364|Ignore inactive signature scheme: dsa_sha1 javax.net.ssl|ALL|21|https-jsse-nio-8443-exec-1|2019-11-05 16:01:44.809 GMT|SignatureScheme.java:364|Ignore inactive signature scheme: rsa_md5 javax.net.ssl|ALL|21|https-jsse-nio-8443-exec-1|2019-11-05 16:01:44.809 GMT|SignatureScheme.java:364|Ignore inactive signature scheme: dsa_sha256 javax.net.ssl|ALL|21|https-jsse-nio-8443-exec-1|2019-11-05 16:01:44.809 GMT|SignatureScheme.java:364|Ignore inactive signature scheme: ecdsa_sha224 javax.net.ssl|ALL|21|https-jsse-nio-8443-exec-1|2019-11-05 16:01:44.810 GMT|SignatureScheme.java:364|Ignore inactive signature scheme: rsa_sha224 javax.net.ssl|ALL|21|https-jsse-nio-8443-exec-1|2019-11-05 16:01:44.810 GMT|SignatureScheme.java:364|Ignore inactive signature scheme: dsa_sha224 javax.net.ssl|ALL|21|https-jsse-nio-8443-exec-1|2019-11-05 16:01:44.810 GMT|SignatureScheme.java:364|Ignore inactive signature scheme: dsa_sha1 javax.net.ssl|ALL|21|https-jsse-nio-8443-exec-1|2019-11-05 16:01:44.810 GMT|SignatureScheme.java:364|Ignore inactive signature scheme: rsa_md5 javax.net.ssl|DEBUG|21|https-jsse-nio-8443-exec-1|2019-11-05 16:01:44.810 GMT|CertificateRequest.java:882|Produced CertificateRequest message ( "CertificateRequest": { "certificate_request_context": "", "extensions": [ "signature_algorithms (13)": { "signature schemes": [ecdsa_secp256r1_sha256, ecdsa_secp384r1_sha384, ecdsa_secp521r1_sha512, rsa_pss_rsae_sha256, rsa_pss_rsae_sha384, rsa_pss_rsae_sha512, rsa_pss_pss_sha256, rsa_pss_pss_sha384, rsa_pss_pss_sha512, rsa_pkcs1_sha256, rsa_pkcs1_sha384, rsa_pkcs1_sha512, ecdsa_sha1, rsa_pkcs1_sha1] }, "signature_algorithms_cert (50)": { "signature schemes": [ecdsa_secp256r1_sha256, ecdsa_secp384r1_sha384, ecdsa_secp521r1_sha512, rsa_pss_rsae_sha256, rsa_pss_rsae_sha384, rsa_pss_rsae_sha512, rsa_pss_pss_sha256, rsa_pss_pss_sha384, rsa_pss_pss_sha512, rsa_pkcs1_sha256, rsa_pkcs1_sha384, rsa_pkcs1_sha512, ecdsa_sha1, rsa_pkcs1_sha1] } ] } ) javax.net.ssl|ALL|21|https-jsse-nio-8443-exec-1|2019-11-05 16:01:44.811 GMT|X509Authentication.java:295|No X.509 cert selected for EC javax.net.ssl|WARNING|21|https-jsse-nio-8443-exec-1|2019-11-05 16:01:44.811 GMT|CertificateMessage.java:1062|Unavailable authentication scheme: ecdsa_secp256r1_sha256 javax.net.ssl|ALL|21|https-jsse-nio-8443-exec-1|2019-11-05 16:01:44.811 GMT|X509Authentication.java:295|No X.509 cert selected for EC javax.net.ssl|WARNING|21|https-jsse-nio-8443-exec-1|2019-11-05 16:01:44.811 GMT|CertificateMessage.java:1062|Unavailable authentication scheme: ecdsa_secp384r1_sha384 javax.net.ssl|ALL|21|https-jsse-nio-8443-exec-1|2019-11-05 16:01:44.811 GMT|X509Authentication.java:295|No X.509 cert selected for EC javax.net.ssl|WARNING|21|https-jsse-nio-8443-exec-1|2019-11-05 16:01:44.811 GMT|CertificateMessage.java:1062|Unavailable authentication scheme: ecdsa_secp521r1_sha512 javax.net.ssl|DEBUG|21|https-jsse-nio-8443-exec-1|2019-11-05 16:01:44.812 GMT|StatusResponseManager.java:763|Staping disabled or is a resumed session javax.net.ssl|ALL|21|https-jsse-nio-8443-exec-1|2019-11-05 16:01:44.812 GMT|CertStatusExtension.java:1115|Stapling is disabled for this connection javax.net.ssl|DEBUG|21|https-jsse-nio-8443-exec-1|2019-11-05 16:01:44.812 GMT|SSLExtensions.java:257|Ignore, context unavailable extension: status_request javax.net.ssl|ALL|21|https-jsse-nio-8443-exec-1|2019-11-05 16:01:44.812 GMT|CertStatusExtension.java:1115|Stapling is disabled for this connection javax.net.ssl|DEBUG|21|https-jsse-nio-8443-exec-1|2019-11-05 16:01:44.813 GMT|SSLExtensions.java:257|Ignore, context unavailable extension: status_request javax.net.ssl|DEBUG|21|https-jsse-nio-8443-exec-1|2019-11-05 16:01:44.820 GMT|CertificateMessage.java:1001|Produced server Certificate message ( "Certificate": { "certificate_request_context": "", "certificate_list": [ { "certificate" : { "version" : "v3", "serial number" : "10 06", "signature algorithm": "SHA256withRSA", "issuer" : "CN=Apache Tomcat Test CA, OU=Apache Tomcat PMC, O=The Apache Software Foundation, L=Wakefield, ST=MA, C=US", "not before" : "2019-08-07 21:30:28.000 BST", "not after" : "2021-08-06 21:30:28.000 BST", "subject" : "CN=localhost, OU=Apache Tomcat PMC, O=The Apache Software Foundation, L=Wakefield, ST=MA, C=US", "subject public key" : "RSA", "extensions" : [ { ObjectId: 2.16.840.1.113730.1.13 Criticality=false }, { ObjectId: 1.3.6.1.5.5.7.1.1 Criticality=false AuthorityInfoAccess [ [ accessMethod: ocsp accessLocation: URIName: http://127.0.0.1:8888 ] ] }, { ObjectId: 2.5.29.35 Criticality=false AuthorityKeyIdentifier [ KeyIdentifier [ 0000: 00 F2 98 4D 21 2C 00 3C 40 9B 84 F4 DE 2A F0 26 ...M!,.<@....*.& 0010: EE 32 0E 9F .2.. ] ] }, { ObjectId: 2.5.29.19 Criticality=false BasicConstraints:[ CA:false PathLen: undefined ] }, { ObjectId: 2.5.29.17 Criticality=false SubjectAlternativeName [ DNSName: localhost IPAddress: 127.0.0.1 ] }, { ObjectId: 2.5.29.14 Criticality=false SubjectKeyIdentifier [ KeyIdentifier [ 0000: 0D 86 88 1D 07 59 CE 14 B4 89 81 58 C6 0B FF 4C .....Y.....X...L 0010: CA 25 52 80 .%R. ] ] } ]} "extensions": { } }, { "certificate" : { "version" : "v3", "serial number" : "00 BE 75 C6 EE 84 65 6E B6", "signature algorithm": "SHA256withRSA", "issuer" : "CN=Apache Tomcat Test CA, OU=Apache Tomcat PMC, O=The Apache Software Foundation, L=Wakefield, ST=MA, C=US", "not before" : "2017-08-08 11:36:36.000 BST", "not after" : "2027-08-06 11:36:36.000 BST", "subject" : "CN=Apache Tomcat Test CA, OU=Apache Tomcat PMC, O=The Apache Software Foundation, L=Wakefield, ST=MA, C=US", "subject public key" : "RSA", "extensions" : [ { ObjectId: 2.5.29.35 Criticality=false AuthorityKeyIdentifier [ KeyIdentifier [ 0000: 00 F2 98 4D 21 2C 00 3C 40 9B 84 F4 DE 2A F0 26 ...M!,.<@....*.& 0010: EE 32 0E 9F .2.. ] [CN=Apache Tomcat Test CA, OU=Apache Tomcat PMC, O=The Apache Software Foundation, L=Wakefield, ST=MA, C=US] SerialNumber: [ be75c6ee 84656eb6] ] }, { ObjectId: 2.5.29.19 Criticality=false BasicConstraints:[ CA:true PathLen:2147483647 ] }, { ObjectId: 2.5.29.14 Criticality=false SubjectKeyIdentifier [ KeyIdentifier [ 0000: 00 F2 98 4D 21 2C 00 3C 40 9B 84 F4 DE 2A F0 26 ...M!,.<@....*.& 0010: EE 32 0E 9F .2.. ] ] } ]} "extensions": { } }, ] } ) javax.net.ssl|DEBUG|21|https-jsse-nio-8443-exec-1|2019-11-05 16:01:44.854 GMT|CertificateVerify.java:1080|Produced server CertificateVerify handshake message ( "CertificateVerify": { "signature algorithm": rsa_pss_rsae_sha256 "signature": { 0000: AB A2 85 32 1C E4 C2 87 14 F5 B9 B4 27 F0 B1 C9 ...2........'... 0010: 4C E0 19 2D AB 98 D4 B1 C8 49 72 71 E8 B9 98 54 L..-.....Irq...T 0020: 9A 68 FF DE E6 5D B5 6E 1A 5D 5F 0F B2 96 2B B5 .h...].n.]_...+. 0030: 4C BA A8 86 0B D7 6C A1 DB D1 3A 8E 40 5F 10 5C L.....l...:.@_.\ 0040: 77 52 F3 2B 19 E8 3B F5 F3 0C C4 4B B1 1D 48 70 wR.+..;....K..Hp 0050: 29 74 00 7A 7A B9 B9 79 D9 B6 DD 39 EF E5 DD 56 )t.zz..y...9...V 0060: 9D B7 C1 DC 04 52 AE 0B D0 DF 8D C5 4F 44 8C AD .....R......OD.. 0070: 1A 04 BE 07 AD 42 E6 3A 89 7E FC B1 F6 EE 45 9F .....B.:......E. 0080: D7 75 B4 F4 7E 70 AB 1E BE 28 65 D6 B6 13 63 B5 .u...p...(e...c. 0090: 02 10 F4 B0 26 01 53 3B A8 CE 9B EA AF FA 62 C4 ....&.S;......b. 00A0: 5B 3B F5 C0 2F 63 70 87 56 37 C5 77 6C C3 74 B8 [;../cp.V7.wl.t. 00B0: 4E 1C 08 11 06 26 D2 21 47 0D 54 50 3B 76 0F 01 N....&.!G.TP;v.. 00C0: FE C7 53 E9 87 4D C2 11 75 04 E8 92 B3 43 0F FF ..S..M..u....C.. 00D0: AD 53 86 70 E7 A0 5D 5D 8F 08 32 DB 69 CF C6 5C .S.p..]]..2.i..\ 00E0: CF AC 7B 71 8E 48 E1 16 21 47 47 65 0D 11 8C D1 ...q.H..!GGe.... 00F0: 4E 8F AF 2E 4A CB 3E 77 17 63 44 AB C0 0C E8 44 N...J.>w.cD....D } } ) javax.net.ssl|DEBUG|21|https-jsse-nio-8443-exec-1|2019-11-05 16:01:44.856 GMT|Finished.java:767|Produced server Finished handshake message ( "Finished": { "verify data": { 0000: 12 F3 D7 3C 35 D6 F0 DC 6A AD 44 72 9F BC 42 52 ...<5...j.Dr..BR 0010: A1 78 84 0C F2 B5 2D B0 38 EB CE C3 4D FD 72 32 .x....-.8...M.r2 }'} ) javax.net.ssl|DEBUG|21|https-jsse-nio-8443-exec-1|2019-11-05 16:01:44.856 GMT|SSLCipher.java:2021|KeyLimit write side: algorithm = AES/GCM/NOPADDING:KEYUPDATE countdown value = 137438953472 javax.net.ssl|DEBUG|24|https-jsse-nio-8443-exec-4|2019-11-05 16:01:49.613 GMT|ChangeCipherSpec.java:246|Consuming ChangeCipherSpec message javax.net.ssl|DEBUG|24|https-jsse-nio-8443-exec-4|2019-11-05 16:01:49.619 GMT|CertificateMessage.java:1156|Consuming client Certificate handshake message ( "Certificate": { "certificate_request_context": "", "certificate_list": [ { "certificate" : { "version" : "v3", "serial number" : "10 07", "signature algorithm": "SHA256withRSA", "issuer" : "CN=Apache Tomcat Test CA, OU=Apache Tomcat PMC, O=The Apache Software Foundation, L=Wakefield, ST=MA, C=US", "not before" : "2019-08-07 21:35:46.000 BST", "not after" : "2021-08-06 21:35:46.000 BST", "subject" : "CN=user1, OU=Apache Tomcat PMC, O=The Apache Software Foundation, L=Wakefield, ST=MA, C=US", "subject public key" : "RSA", "extensions" : [ { ObjectId: 2.16.840.1.113730.1.13 Criticality=false }, { ObjectId: 1.3.6.1.5.5.7.1.1 Criticality=false AuthorityInfoAccess [ [ accessMethod: ocsp accessLocation: URIName: http://127.0.0.1:8888 ] ] }, { ObjectId: 2.5.29.35 Criticality=false AuthorityKeyIdentifier [ KeyIdentifier [ 0000: 00 F2 98 4D 21 2C 00 3C 40 9B 84 F4 DE 2A F0 26 ...M!,.<@....*.& 0010: EE 32 0E 9F .2.. ] ] }, { ObjectId: 2.5.29.19 Criticality=false BasicConstraints:[ CA:false PathLen: undefined ] }, { ObjectId: 2.5.29.15 Criticality=false KeyUsage [ DigitalSignature Non_repudiation Key_Encipherment ] }, { ObjectId: 2.5.29.14 Criticality=false SubjectKeyIdentifier [ KeyIdentifier [ 0000: E0 41 6D 80 B4 21 1E 91 1D 0C 95 04 CF 78 B5 2B .Am..!.......x.+ 0010: 88 9A 7A 8A ..z. ] ] } ]} "extensions": { } }, ] } ) javax.net.ssl|DEBUG|24|https-jsse-nio-8443-exec-4|2019-11-05 16:01:49.640 GMT|CertificateVerify.java:1128|Consuming CertificateVerify handshake message ( "CertificateVerify": { "signature algorithm": rsa_pss_rsae_sha256 "signature": { 0000: 28 CF 77 6D 7F C8 F1 25 3C B5 D3 EB 01 44 3E E8 (.wm...%<....D>. 0010: 01 76 EC D5 90 5C 25 A7 CB F8 D6 9D 71 9C 3D 9E .v...\%.....q.=. 0020: 6D 77 9C 83 FF A1 EE 09 C0 63 06 5D 14 EF A4 B2 mw.......c.].... 0030: 6A 2B 1B B8 A1 E5 FA 35 8A 4B AA F7 8A D6 FA 28 j+.....5.K.....( 0040: 7F 0F 69 55 40 2F AD 3C DB FD 53 C6 69 FA F5 78 ..iU@/.<..S.i..x 0050: 3E DF B2 75 7E 52 63 5D 52 C5 17 64 D8 64 CA 69 >..u.Rc]R..d.d.i 0060: AB 4A 8D E7 70 6D 44 15 2A 05 68 15 7F D0 E5 73 .J..pmD.*.h....s 0070: F3 30 CD B7 10 9F CF C4 F9 DE 90 DF ED 04 18 61 .0.............a 0080: CB 23 E2 D3 29 04 9B A0 1B AC BE 59 4E 94 72 CE .#..)......YN.r. 0090: 82 66 61 71 9B 42 CE 8B 01 5D E4 A3 85 72 2C DE .faq.B...]...r,. 00A0: 9C D9 DE 8F 75 81 6F 7F 03 47 1E CC 62 49 1F 34 ....u.o..G..bI.4 00B0: 81 B6 63 B0 40 21 3D C1 77 14 17 6F D5 C4 6B E8 ..c.@!=.w..o..k. 00C0: 92 4B 28 D7 80 53 30 23 81 FC C7 D2 4B 49 78 19 .K(..S0#....KIx. 00D0: BF 8E AB A5 78 77 97 01 C4 62 19 ED 92 61 56 77 ....xw...b...aVw 00E0: 48 B6 ED C9 CF BC 12 A3 13 8F 62 68 54 F9 5B CA H.........bhT.[. 00F0: 65 ED AE E9 5B 79 79 62 0D 41 6F B8 9B 10 71 D2 e...[yyb.Ao...q. } } ) javax.net.ssl|DEBUG|24|https-jsse-nio-8443-exec-4|2019-11-05 16:01:49.641 GMT|Finished.java:1010|Consuming client Finished handshake message ( "Finished": { "verify data": { 0000: 14 EC B0 1D 84 94 79 15 36 AD D2 5A 90 FD 03 71 ......y.6..Z...q 0010: B8 61 48 BD B5 9C 24 99 6E AA FA 56 D9 C0 FA 48 .aH...$.n..V...H }'} ) javax.net.ssl|DEBUG|24|https-jsse-nio-8443-exec-4|2019-11-05 16:01:49.642 GMT|SSLCipher.java:1867|KeyLimit read side: algorithm = AES/GCM/NOPADDING:KEYUPDATE countdown value = 137438953472 javax.net.ssl|DEBUG|24|https-jsse-nio-8443-exec-4|2019-11-05 16:01:49.642 GMT|Finished.java:1110|Sending new session ticket javax.net.ssl|DEBUG|24|https-jsse-nio-8443-exec-4|2019-11-05 16:01:49.643 GMT|NewSessionTicket.java:412|Produced NewSessionTicket handshake message ( "NewSessionTicket": { "ticket_lifetime" : "86,400", "ticket_age_add" : "", "ticket_nonce" : "01", "ticket" : { 0000: 68 ED 23 22 68 40 33 2F 51 F0 EB 4E C2 D7 2B E5 h.#"h@3/Q..N..+. 0010: E4 71 62 C1 D1 D7 5E 86 25 5C 36 44 C3 05 70 93 .qb...^.%\6D..p. } "extensions" : [ ] } )