[ ~]$ openssl s_client -showcerts -connect 10.X.X.11:443 CONNECTED(00000003) Can't use SSL_get_servername depth=0 C = US, ST = California, L = Sunnyvale, O = Fortinet, OU = FortiAP, CN = FP423ETF18000248, emailAddress = support@fortinet.com verify error:num=20:unable to get local issuer certificate verify return:1 depth=0 C = US, ST = California, L = Sunnyvale, O = Fortinet, OU = FortiAP, CN = FP423ETF18000248, emailAddress = support@fortinet.com verify error:num=21:unable to verify the first certificate verify return:1 140485208864576:error:14094438:SSL routines:ssl3_read_bytes:tlsv1 alert internal error:ssl/record/rec_layer_s3.c:1543:SSL alert number 80 --- Certificate chain 0 s:C = US, ST = California, L = Sunnyvale, O = Fortinet, OU = FortiAP, CN = FP423ETF18000248, emailAddress = support@fortinet.com i:C = US, ST = California, L = Sunnyvale, O = Fortinet, OU = Certificate Authority, CN = support, emailAddress = support@fortinet.com -----BEGIN CERTIFICATE----- MIIDxzCCAq+gAwIBAgIDEXzgMA0GCSqGSIb3DQEBCwUAMIGgMQswCQYDVQQGEwJV UzETMBEGA1UECBMKQ2FsaWZvcm5pYTESMBAGA1UEBxMJU3Vubnl2YWxlMREwDwYD VQQKEwhGb3J0aW5ldDEeMBwGA1UECxMVQ2VydGlmaWNhdGUgQXV0aG9yaXR5MRAw DgYDVQQDEwdzdXBwb3J0MSMwIQYJKoZIhvcNAQkBFhRzdXBwb3J0QGZvcnRpbmV0 LmNvbTAeFw0xODA2MTIwNzU1MDdaFw0zODAxMTkwMzE0MDdaMIGbMQswCQYDVQQG EwJVUzETMBEGA1UECBMKQ2FsaWZvcm5pYTESMBAGA1UEBxMJU3Vubnl2YWxlMREw DwYDVQQKEwhGb3J0aW5ldDEQMA4GA1UECxMHRm9ydGlBUDEZMBcGA1UEAxMQRlA0 MjNFVEYxODAwMDI0ODEjMCEGCSqGSIb3DQEJARYUc3VwcG9ydEBmb3J0aW5ldC5j b20wggEiMA0GCSqGSIb3DQEBAQUAA4IBDwAwggEKAoIBAQCv78WaSCqENCXO3oaR OF5JCb+AKMqbg8dsIMtGnbZH9PhyAAQm2pfHQR3RsL14WuDI++MGlWPcVTKJDWeL mOaN8BLnjqYpqWOsebUtw++ZNxPC3kDyfU0GvOpqNDCLtaw4t+oE4e889/PjdleV ZqmAw5zsivi6yxpaV8Qr4acn5MLYrrx8rd94P0ITRNZsiHqs7snvClHv/JR0hlZr orWPbauFXYqYfuFbpTV6RRbhxsTyAavPzfl+95jfrzv686rL+HNjDxGaKKK9b5hy bCyJIprYU0V1L6SA6D4KuqYg6r568OR9ng4jadkqbya5oYYBJL82yoTW9BR5vMJg wwrlAgMBAAGjDTALMAkGA1UdEwQCMAAwDQYJKoZIhvcNAQELBQADggEBAJTkf1RL RCib0XZpzf31xOP26FqiS0JoXXhKgPlnCeUA8rlc6JD116nBmkMd8dLHqIYe0Cfi zQ5qI9kYFyhdd5Y4okakyWAl3CAz3JYl1O28Lc4kT2OdhgTl3TC383e+WGoeNqlH 7xcKrskcyoP9J+sm801NYBKPKgzKJr413oOBwr5n2aXcYr2ah7oiP13tYbLT0GEh YTUjMAZTmLeM6aGrF+2uvzkSLw1q0FlBsP5V+44x1Wo2jAx59Xk1y56+SiSq4oFV DU2mjAX4hBN/jidiOZ+dgO4WccxsmqkGtQ/D54WkxT9ATSa0gbmCTFQv0TJ26gA7 zHutMJ7QPePHKjI= -----END CERTIFICATE----- --- Server certificate subject=C = US, ST = California, L = Sunnyvale, O = Fortinet, OU = FortiAP, CN = FP423ETF18000248, emailAddress = support@fortinet.com issuer=C = US, ST = California, L = Sunnyvale, O = Fortinet, OU = Certificate Authority, CN = support, emailAddress = support@fortinet.com --- No client certificate CA names sent --- SSL handshake has read 1059 bytes and written 293 bytes Verification error: unable to verify the first certificate --- New, (NONE), Cipher is (NONE) Server public key is 2048 bit Secure Renegotiation IS supported Compression: NONE Expansion: NONE No ALPN negotiated SSL-Session: Protocol : TLSv1.2 Cipher : 0000 Session-ID: Session-ID-ctx: Master-Key: PSK identity: None PSK identity hint: None SRP username: None Start Time: 1608465143 Timeout : 7200 (sec) Verify return code: 21 (unable to verify the first certificate) Extended master secret: no ---