Issuer: CN=GlobalSign Domain Validation CA - SHA256 - G2 O=GlobalSign nv-sa C=BE Name Hash(sha1): d1f1b576f9eec0c10f7afc7c3124a9c3625d7c61 Name Hash(md5): a51c7079a2e97f6a7f176201bb86873e Subject: CN=*.dezrez.com OU=Domain Control Validated Name Hash(sha1): f7b98ea1765999cdefbc711ee7d01159b454981c Name Hash(md5): 151bc5b66ec27b697cc97ea118671461 Cert Serial Number: 645d6f739f4a231b947331c5 dwFlags = CA_VERIFY_FLAGS_CONSOLE_TRACE (0x20000000) dwFlags = CA_VERIFY_FLAGS_DUMP_CHAIN (0x40000000) ChainFlags = CERT_CHAIN_REVOCATION_CHECK_CHAIN_EXCLUDE_ROOT (0x40000000) HCCE_LOCAL_MACHINE CERT_CHAIN_POLICY_BASE -------- CERT_CHAIN_CONTEXT -------- ChainContext.dwInfoStatus = CERT_TRUST_HAS_PREFERRED_ISSUER (0x100) ChainContext.dwRevocationFreshnessTime: 1 Days, 1 Hours, 5 Minutes, 23 Seconds SimpleChain.dwInfoStatus = CERT_TRUST_HAS_PREFERRED_ISSUER (0x100) SimpleChain.dwRevocationFreshnessTime: 1 Days, 1 Hours, 5 Minutes, 23 Seconds CertContext[0][0]: dwInfoStatus=102 dwErrorStatus=0 Issuer: CN=GlobalSign Domain Validation CA - SHA256 - G2, O=GlobalSign nv-sa, C=BE NotBefore: 11/21/2016 12:22 PM NotAfter: 1/17/2020 1:25 PM Subject: CN=*.dezrez.com, OU=Domain Control Validated Serial: 645d6f739f4a231b947331c5 SubjectAltName: DNS Name=*.dezrez.com, DNS Name=dezrez.com Cert: bdcff4608ff663730f8189c4ebc1becb3574ab2d Element.dwInfoStatus = CERT_TRUST_HAS_KEY_MATCH_ISSUER (0x2) Element.dwInfoStatus = CERT_TRUST_HAS_PREFERRED_ISSUER (0x100) CRL (null): Issuer: CN=GlobalSign Domain Validation CA - SHA256 - G2 - OCSP Responder, SERIALNUMBER=201805300010, O=GlobalSign nv-sa, C=BE ThisUpdate: 6/18/2018 9:37 AM NextUpdate: 6/22/2018 9:37 AM CRL: 56305870657ff34bbee17eddc8349f71671d2fc0 Issuance[0] = 1.3.6.1.4.1.4146.1.10 Issuance[1] = 2.23.140.1.2.1 Application[0] = 1.3.6.1.5.5.7.3.1 Server Authentication Application[1] = 1.3.6.1.5.5.7.3.2 Client Authentication CertContext[0][1]: dwInfoStatus=102 dwErrorStatus=0 Issuer: CN=GlobalSign Root CA, OU=Root CA, O=GlobalSign nv-sa, C=BE NotBefore: 2/20/2014 10:00 AM NotAfter: 2/20/2024 10:00 AM Subject: CN=GlobalSign Domain Validation CA - SHA256 - G2, O=GlobalSign nv-sa, C=BE Serial: 040000000001444ef03e20 Cert: 736a4dc679d682da321563647c60f699f0dfc268 Element.dwInfoStatus = CERT_TRUST_HAS_KEY_MATCH_ISSUER (0x2) Element.dwInfoStatus = CERT_TRUST_HAS_PREFERRED_ISSUER (0x100) CRL (null): Issuer: CN=GlobalSign OCSP for Root R1 - Signer 1.1, O=GlobalSign nv-sa, C=BE ThisUpdate: 6/18/2018 9:19 AM NextUpdate: 6/22/2018 9:19 AM CRL: 54cb3c90d58c0177665178b0ffe17c7a6006860f Application[0] = 1.3.6.1.5.5.7.3.1 Server Authentication Application[1] = 1.3.6.1.5.5.7.3.2 Client Authentication Application[2] = 1.3.6.1.5.5.7.3.3 Code Signing Application[3] = 1.3.6.1.5.5.7.3.4 Secure Email Application[4] = 1.3.6.1.5.5.7.3.8 Time Stamping Application[5] = 1.3.6.1.5.5.7.3.9 OCSP Signing Application[6] = 1.3.6.1.4.1.311.10.3.4 Encrypting File System Application[7] = 1.3.6.1.5.5.7.3.6 IP security tunnel termination Application[8] = 1.3.6.1.5.5.7.3.7 IP security user Application[9] = 1.3.6.1.5.5.8.2.2 IP security IKE intermediate CertContext[0][2]: dwInfoStatus=10c dwErrorStatus=0 Issuer: CN=GlobalSign Root CA, OU=Root CA, O=GlobalSign nv-sa, C=BE NotBefore: 9/1/1998 12:00 PM NotAfter: 1/28/2028 12:00 PM Subject: CN=GlobalSign Root CA, OU=Root CA, O=GlobalSign nv-sa, C=BE Serial: 040000000001154b5ac394 Cert: b1bc968bd4f49d622aa89a81f2150152a41d829c Element.dwInfoStatus = CERT_TRUST_HAS_NAME_MATCH_ISSUER (0x4) Element.dwInfoStatus = CERT_TRUST_IS_SELF_SIGNED (0x8) Element.dwInfoStatus = CERT_TRUST_HAS_PREFERRED_ISSUER (0x100) Application[0] = 1.3.6.1.5.5.7.3.1 Server Authentication Application[1] = 1.3.6.1.5.5.7.3.2 Client Authentication Application[2] = 1.3.6.1.5.5.7.3.3 Code Signing Application[3] = 1.3.6.1.5.5.7.3.4 Secure Email Application[4] = 1.3.6.1.5.5.7.3.8 Time Stamping Application[5] = 1.3.6.1.5.5.7.3.9 OCSP Signing Application[6] = 1.3.6.1.4.1.311.10.3.4 Encrypting File System Application[7] = 1.3.6.1.5.5.7.3.6 IP security tunnel termination Application[8] = 1.3.6.1.5.5.7.3.7 IP security user Application[9] = 1.3.6.1.5.5.8.2.2 IP security IKE intermediate EV[0] = 1.3.6.1.4.1.4146.1.1 Exclude leaf cert: Chain: f39e63ea2b36ba519c676b08c55b8837f3f60f6c Full chain: Chain: 1607c561137d3cf2a8520287d172f8af888b50cb ------------------------------------ Verified Issuance Policies: 1.3.6.1.4.1.4146.1.10 2.23.140.1.2.1 Verified Application Policies: 1.3.6.1.5.5.7.3.1 Server Authentication 1.3.6.1.5.5.7.3.2 Client Authentication Cert is an End Entity certificate ERROR: Verifying leaf certificate revocation status returned The revocation function was unable to check revocation because the revocation server was offline. 0x80092013 (-2146885613 CRYPT_E_REVOCATION_OFFLINE) CertUtil: The revocation function was unable to check revocation because the revocation server was offline. CertUtil: -verify command completed successfully.