PHP Curl SSL bundle outdated? certificate has expired

janton

Verified User
Joined
Sep 17, 2009
Messages
145
Dear All,

Yesterday i noticed one of my scripts stopt working, after some research i found out that the SSL certificated from that site was outdated (or my system thinks so) and Curl didn't work anymore (unless i added the parameter to allow outdated SSL/not trusted SSL).

curl https://www.somedomain.com
curl: (60) SSL certificate problem: certificate has expired
More details here: http://curl.haxx.se/docs/sslcerts.html

curl performs SSL certificate verification by default, using a "bundle"
of Certificate Authority (CA) public keys (CA certs). If the default
bundle file isn't adequate, you can specify an alternate file
using the --cacert option.
If this HTTPS server uses a certificate signed by a CA represented in
the bundle, the certificate verification probably failed due to a
problem with the certificate (it might be expired, or the name might
not match the domain name in the URL).
If you'd like to turn off curl's verification of the certificate, use
the -k (or --insecure) option.


I checked the website in my browser, and there it's ok, i contacted the website owner and they told me i need to update my CURL for php. Aldo i recently updated my php curl version in directadmin... i'm not sure how to update my ssl bundel for curl, any idea? I have a CentOS 5 server with directadmin and custombuild php.
 
When you updated curl in custombuild, did you remember to run "./build php n" afterwards? If not do that.

What version of curl do you have, please do "./build versions" and it should say this:

Code:
Latest version of curl: 7.34.0
Installed version of curl: 7.34.0

If it says your version is older, then do this to upgrade:

Code:
cd /usr/local/directadmin/custombuild
./build update
./build curl
./build php n

(Also maybe you should double check that your server date/time still is correct? Just run "date" to check it.)

Edit: Also make sure you have "curl=yes" in /usr/local/directadmin/custombuild/options.conf
 
Last edited:
@ditto

I checked the system:

Latest version of curl: 7.34.0
Installed version of curl: 7.34.0

Wed Jan 29 14:33:03 CET 2014


So all seems to be correct also curl=yes is in the options.conf
 
Ok. And you did remember to recompile PHP after you upgraded Curl? If not, you should do that. If it still does not work, it would seem that maybe the developer script on external server is not compatible with newest curl version. By the way, curl 7.35 was released today, and it should be available in custombuild soon.
 
even with openssl i see this error: notAfter=Jan 28 12:00:00 2014 GMT

openssl s_client -showcerts -connect www.targetpay.com:443


CONNECTED(00000003)
depth=3 /C=BE/O=GlobalSign nv-sa/OU=Root CA/CN=GlobalSign Root CA
verify error:num=10:certificate has expired
notAfter=Jan 28 12:00:00 2014 GMT
verify return:0
---
Certificate chain
0 s:/2.5.4.15=Private Organization/serialNumber=32061492/1.3.6.1.4.1.311.60.2.1.3=NL/C=NL/ST=Noord-Holland/L=Huizen/streetAddress=Huizermaatweg 550A/O=TargetMedia B.V./CN=www.targetpay.com
i:/C=BE/O=GlobalSign nv-sa/CN=GlobalSign Extended Validation CA - G2
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
1 s:/C=BE/O=GlobalSign nv-sa/CN=GlobalSign Extended Validation CA - G2
i:/OU=GlobalSign Root CA - R2/O=GlobalSign/CN=GlobalSign
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
2 s:/OU=GlobalSign Root CA - R2/O=GlobalSign/CN=GlobalSign
i:/C=BE/O=GlobalSign nv-sa/OU=Root CA/CN=GlobalSign Root CA
-----BEGIN CERTIFICATE-----
MIIETDCCAzSgAwIBAgILBAAAAAABL07hSVIwDQYJKoZIhvcNAQEFBQAwVzELMAkG
A1UEBhMCQkUxGTAXBgNVBAoTEEdsb2JhbFNpZ24gbnYtc2ExEDAOBgNVBAsTB1Jv
b3QgQ0ExGzAZBgNVBAMTEkdsb2JhbFNpZ24gUm9vdCBDQTAeFw0wNjEyMTUwODAw
MDBaFw0yODAxMjgxMjAwMDBaMEwxIDAeBgNVBAsTF0dsb2JhbFNpZ24gUm9vdCBD
QSAtIFIyMRMwEQYDVQQKEwpHbG9iYWxTaWduMRMwEQYDVQQDEwpHbG9iYWxTaWdu
MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAps8kDr4ubyiZRULEqz4h
VJsL03+EcPoSs8u/h1/Gf4bTsjBc1v2t8Xvc5fhglgmSEPXQU977e35ziKxSiHtK
pspJpl6op4xaEbx6guu+jOmzrJYlB5dKmSoHL7Qed7+KD7UCfBuWuMW5Oiy81hK5
61l94tAGhl9eSWq1OV6INOy8eAwImIRsqM1LtKB9DHlN8LgtyyHK1WxbfeGgKYSh
+dOUScskYpEgvN0L1dnM+eonCitzkcadG6zIy+jgoPQvkItN+7A2G/YZeoXgbfJh
E4hcn+CTClGXilrOr6vV96oJqmC93Nlf33KpYBNeAAHJSvo/pOoHAyECjoLKA8Kb
jwIDAQABo4IBIjCCAR4wDgYDVR0PAQH/BAQDAgEGMA8GA1UdEwEB/wQFMAMBAf8w
HQYDVR0OBBYEFJviB1dnHB7AagbeWbSaLd/cGYYuMEcGA1UdIARAMD4wPAYEVR0g
ADA0MDIGCCsGAQUFBwIBFiZodHRwczovL3d3dy5nbG9iYWxzaWduLmNvbS9yZXBv
c2l0b3J5LzAzBgNVHR8ELDAqMCigJqAkhiJodHRwOi8vY3JsLmdsb2JhbHNpZ24u
bmV0L3Jvb3QuY3JsMD0GCCsGAQUFBwEBBDEwLzAtBggrBgEFBQcwAYYhaHR0cDov
L29jc3AuZ2xvYmFsc2lnbi5jb20vcm9vdHIxMB8GA1UdIwQYMBaAFGB7ZhpFDZfK
iVAvfQTNNKj//P1LMA0GCSqGSIb3DQEBBQUAA4IBAQCZIivuijLTDAd+3RsgK1Bq
lpEG2r5u13KWrVM/fvWPQufQ62SlZfLz4z0/WzEMfHmEOpeMDx+uwbzy67ig70H9
vDGp/MlC5kS+HlbKdYuySTGZ/urpcWSGeo/l1WERQ+hAuzEM4tsYi5l0OGGrJICM
+ag710nWZooYc8y8BjmLEDIODdOx9+9mExBZSMjPAcqZzJBymNs67cunu+JscI6m
nmhj7Y+3LQWJztlU9k6rHkbbMEk/9mrgAfC8zYTUOfdVjgMVcdOdNO2dxtHIqsWE
OTsN/SknUh6Dq0gjhVhQs5XGC7Mm4xYtqDDcA1BtXNEMzSqhR5rPIBvbQ4gfwvzg
-----END CERTIFICATE-----
---
Server certificate
subject=/2.5.4.15=Private Organization/serialNumber=32061492/1.3.6.1.4.1.311.60.2.1.3=NL/C=NL/ST=Noord-Holland/L=Huizen/streetAddress=Huizermaatweg 550A/O=TargetMedia B.V./CN=www.targetpay.com
issuer=/C=BE/O=GlobalSign nv-sa/CN=GlobalSign Extended Validation CA - G2
---
No client certificate CA names sent
---
SSL handshake has read 3809 bytes and written 435 bytes
---
New, TLSv1/SSLv3, Cipher is RC4-SHA
Server public key is 2048 bit
Secure Renegotiation IS NOT supported
Compression: NONE
Expansion: NONE
SSL-Session:
Protocol : TLSv1
Cipher : RC4-SHA
Session-ID: 7235D4263D852AAC11CAF3B133F2F3E903AD33F97F4833657CF18C43635A214C
Session-ID-ctx:
Master-Key: 1C2B479CF8E2FEEB3F934C23F6AABDFCD3CB46E116208D9AA800E4F3D2ADC2D501FDD1021EC2402222CC1D8FD2D758C8
Key-Arg : None
Krb5 Principal: None
Start Time: 1391003466
Timeout : 300 (sec)
Verify return code: 10 (certificate has expired)
---
 
There is no errors when I try it:

Code:
[root@server ~]# openssl s_client -showcerts -connect [url]www.targetpay.com:443[/url]
CONNECTED(00000003)
depth=3 C = BE, O = GlobalSign nv-sa, OU = Root CA, CN = GlobalSign Root CA
verify return:1
depth=2 OU = GlobalSign Root CA - R2, O = GlobalSign, CN = GlobalSign
verify return:1
depth=1 C = BE, O = GlobalSign nv-sa, CN = GlobalSign Extended Validation CA - G2
verify return:1
depth=0 businessCategory = Private Organization, serialNumber = 32061492, 1.3.6.1.4.1.311.60.2.1.3 = NL, C = NL, ST = Noord-Holland, L = Huizen, street = Huizermaatweg 550A, O = TargetMedia B.V., CN = [url]www.targetpay.com[/url]
verify return:1
---
Certificate chain
 0 s:/businessCategory=Private Organization/serialNumber=32061492/1.3.6.1.4.1.311.60.2.1.3=NL/C=NL/ST=Noord-Holland/L=Huizen/street=Huizermaatweg 550A/O=TargetMedia B.V./CN=www.targetpay.com
   i:/C=BE/O=GlobalSign nv-sa/CN=GlobalSign Extended Validation CA - G2
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
 1 s:/C=BE/O=GlobalSign nv-sa/CN=GlobalSign Extended Validation CA - G2
   i:/OU=GlobalSign Root CA - R2/O=GlobalSign/CN=GlobalSign
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
 2 s:/OU=GlobalSign Root CA - R2/O=GlobalSign/CN=GlobalSign
   i:/C=BE/O=GlobalSign nv-sa/OU=Root CA/CN=GlobalSign Root CA
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
---
Server certificate
subject=/businessCategory=Private Organization/serialNumber=32061492/1.3.6.1.4.1.311.60.2.1.3=NL/C=NL/ST=Noord-Holland/L=Huizen/street=Huizermaatweg 550A/O=TargetMedia B.V./CN=www.targetpay.com
issuer=/C=BE/O=GlobalSign nv-sa/CN=GlobalSign Extended Validation CA - G2
---
No client certificate CA names sent
---
SSL handshake has read 3809 bytes and written 577 bytes
---
New, TLSv1/SSLv3, Cipher is RC4-SHA
Server public key is 2048 bit
Secure Renegotiation IS NOT supported
Compression: NONE
Expansion: NONE
SSL-Session:
    Protocol  : TLSv1
    Cipher    : RC4-SHA
    Session-ID: 53F25F1BB0A13975E87C3DBD91BB58C8B3AD5DD43A1622847FC8731BF61CD581
    Session-ID-ctx:
    Master-Key: FDECBE9F84693271703BD0D98EA2498A2731AFABD39E4DC8FDA2782339FCEF67E87DBDFFC5CBB89EB0798A49B725095A
    Key-Arg   : None
    Krb5 Principal: None
    PSK identity: None
    PSK identity hint: None
    Start Time: 1391020185
    Timeout   : 300 (sec)
    Verify return code: 0 (ok)
---
 
Back
Top