Sure:
$ curl -vv -H "Pragma: akamai-x-get-cache-key, akamai-x-cache-on, akamai-x-cache-remote-on, akamai-x-get-true-cache-key, akamai-x-get-extracted-values, akamai-x-check-cacheable, akamai-x-get-request-id, akamai-x-serial-no, akamai-x-get-ssl-client-session-id, akamai-x-feo-trace" https://acme-v02.api.letsencrypt.org/directory
* Trying 23.60.203.157...
* TCP_NODELAY set
* Connected to acme-v02.api.letsencrypt.org (23.60.203.157) port 443 (#0)
* ALPN, offering h2
* ALPN, offering http/1.1
* Cipher selection: ALL:!EXPORT:!EXPORT40:!EXPORT56:!aNULL:!LOW:!RC4:@STRENGTH
* successfully set certificate verify locations:
* CAfile: /etc/ssl/certs/ca-certificates.crt
CApath: /etc/ssl/certs
* TLSv1.2 (OUT), TLS header, Certificate Status (22):
* TLSv1.2 (OUT), TLS handshake, Client hello (1):
* TLSv1.2 (IN), TLS handshake, Server hello (2):
* TLSv1.2 (IN), TLS handshake, Certificate (11):
* TLSv1.2 (IN), TLS handshake, Server key exchange (12):
* TLSv1.2 (IN), TLS handshake, Server finished (14):
* TLSv1.2 (OUT), TLS handshake, Client key exchange (16):
* TLSv1.2 (OUT), TLS change cipher, Client hello (1):
* TLSv1.2 (OUT), TLS handshake, Finished (20):
* TLSv1.2 (IN), TLS change cipher, Client hello (1):
* TLSv1.2 (IN), TLS handshake, Finished (20):
* SSL connection using TLSv1.2 / ECDHE-RSA-AES256-GCM-SHA384
* ALPN, server accepted to use http/1.1
* Server certificate:
* subject: CN=acme-v02.api.letsencrypt.org
* start date: Mar 1 04:24:29 2019 GMT
* expire date: May 30 04:24:29 2019 GMT
* subjectAltName: host "acme-v02.api.letsencrypt.org" matched cert's "acme-v02.api.letsencrypt.org"
* issuer: C=US; O=Let's Encrypt; CN=Let's Encrypt Authority X3
* SSL certificate verify ok.
> GET /directory HTTP/1.1
> Host: acme-v02.api.letsencrypt.org
> User-Agent: curl/7.52.1
> Accept: */*
> Pragma: akamai-x-get-cache-key, akamai-x-cache-on, akamai-x-cache-remote-on, akamai-x-get-true-cache-key, akamai-x-get-extracted-values, akamai-x-check-cacheable, akamai-x-get-request-id, akamai-x-serial-no, akamai-x-get-ssl-client-session-id, akamai-x-feo-trace
>
< HTTP/1.1 200 OK
< Server: nginx
< Content-Type: application/json
< Content-Length: 658
< X-Frame-Options: DENY
< Strict-Transport-Security: max-age=604800
< X-Akamai-SSL-Client-Sid: gUHiqCuA+j+FJcIqY/qZsQ==
< X-Check-Cacheable: NO
< X-Akamai-Request-ID: 33373b39.2f273b5f
< Expires: Wed, 03 Apr 2019 07:22:37 GMT
< Cache-Control: max-age=0, no-cache, no-store
< Pragma: no-cache
< Date: Wed, 03 Apr 2019 07:22:37 GMT
< X-Cache: TCP_MISS from a2-16-101-13.deploy.akamaitechnologies.com (AkamaiGHost/9.6.0-24900238) (-)
< X-Cache-Key: S/D/14990/432721/000/origin-1pei3Eexu3ol4aemo.api.letsencrypt.org/directory
< X-Cache-Key-Extended-Internal-Use-Only: S/D/14990/432721/000/origin-1pei3Eexu3ol4aemo.api.letsencrypt.org/directory vcd=10106
< X-True-Cache-Key: /D/000/origin-1pei3Eexu3ol4aemo.api.letsencrypt.org/directory vcd=10106
< X-Akamai-Session-Info: name=AKA_PM_BASEDIR; value=
< X-Akamai-Session-Info: name=AKA_PM_CACHEABLE_OBJECT; value=false
< X-Akamai-Session-Info: name=AKA_PM_FWD_URL; value=/directory
< X-Akamai-Session-Info: name=AKA_PM_NETSTORAGE_ROOT; value=
< X-Akamai-Session-Info: name=AKA_PM_PREFETCH_ON; value=true
< X-Akamai-Session-Info: name=AKA_PM_RUM_ENABLED; value=off
< X-Akamai-Session-Info: name=AKA_PM_SR_ENABLED; value=false
< X-Akamai-Session-Info: name=AKA_PM_TD_ENABLED; value=false
< X-Akamai-Session-Info: name=AKA_PM_TD_MAP_PREFIX; value=ch2
< X-Akamai-Session-Info: name=ANS_PEARL_VERSION; value=0.9.0
< X-Akamai-Session-Info: name=ENABLE_SD_POC; value=yes
< X-Akamai-Session-Info: name=FASTTCP_RENO_FALLBACK_DISABLE_OPTOUT; value=on
< X-Akamai-Session-Info: name=HEADER_NAMES; value=Host%3aUser-Agent%3aAccept%3aPragma; full_location_id=
< X-Akamai-Session-Info: name=OVERRIDE_HTTPS_IE_CACHE_BUST; value=all
< X-Akamai-Session-Info: name=PMUSER_IP_HASH; value=134
< X-Akamai-Session-Info: name=SEC_CLIENT_IP_ASNUM_MASK_SIZE; value=64
< X-Akamai-Session-Info: name=SEC_XFF_ASNUM_MASK_SIZE; value=64
< X-Akamai-Session-Info: name=TAP_GUID; value=
< X-Akamai-Session-Info: name=TAP_KEY_ID; value=
< X-Akamai-Session-Info: name=TCP_OPT_APPLIED; value=medium
< X-Serial: 14990
< X-Akamai-SSL-Client-Sid: z2vErG3ky6A4yfOupzaNsg==
< Connection: keep-alive
< X-Cache-Remote: TCP_MISS from a2-16-218-45.deploy.akamaitechnologies.com (AkamaiGHost/9.6.2.0.1-25325260) (-)
<
{
"179BYtRYg2o": "https://community.letsencrypt.org/t/adding-random-entries-to-the-directory/33417",
"keyChange": "https://acme-v02.api.letsencrypt.org/acme/key-change",
"meta": {
"caaIdentities": [
"letsencrypt.org"
],
"termsOfService": "https://letsencrypt.org/documents/LE-SA-v1.2-November-15-2017.pdf",
"website": "https://letsencrypt.org"
},
"newAccount": "https://acme-v02.api.letsencrypt.org/acme/new-acct",
"newNonce": "https://acme-v02.api.letsencrypt.org/acme/new-nonce",
"newOrder": "https://acme-v02.api.letsencrypt.org/acme/new-order",
"revokeCert": "https://acme-v02.api.letsencrypt.org/acme/revoke-cert"
* Curl_http_done: called premature == 0
* Connection #0 to host acme-v02.api.letsencrypt.org left intact
$ curl -4 -vv -H "Pragma: akamai-x-get-cache-key, akamai-x-cache-on, akamai-x-cache-remote-on, akamai-x-get-true-cache-key, akamai-x-get-extracted-values, akamai-x-check-cacheable, akamai-x-get-request-id, akamai-x-serial-no, akamai-x-get-ssl-client-session-id, akamai-x-feo-trace" http://ocsp.int-x3.letsencrypt.org/MFMwUTBPME0wSzAJBgUrDgMCGgUABBR+5mrncpqz/PiiIGRsFqEtYHEIXQQUqEpqYwR93brm0Tm3pkVl7/Oo7KECEgPYg2OnU8zW/5sZNqzzGwN4Ow== > temp.rsp; openssl ocsp -noverify -text -respin temp.rsp
% Total % Received % Xferd Average Speed Time Time Time Current
Dload Upload Total Spent Left Speed
0 0 0 0 0 0 0 0 --:--:-- --:--:-- --:--:-- 0* Trying 95.101.90.129...
* TCP_NODELAY set
* Connected to ocsp.int-x3.letsencrypt.org (95.101.90.129) port 80 (#0)
> GET /MFMwUTBPME0wSzAJBgUrDgMCGgUABBR+5mrncpqz/PiiIGRsFqEtYHEIXQQUqEpqYwR93brm0Tm3pkVl7/Oo7KECEgPYg2OnU8zW/5sZNqzzGwN4Ow== HTTP/1.1
> Host: ocsp.int-x3.letsencrypt.org
> User-Agent: curl/7.52.1
> Accept: */*
> Pragma: akamai-x-get-cache-key, akamai-x-cache-on, akamai-x-cache-remote-on, akamai-x-get-true-cache-key, akamai-x-get-extracted-values, akamai-x-check-cacheable, akamai-x-get-request-id, akamai-x-serial-no, akamai-x-get-ssl-client-session-id, akamai-x-feo-trace
>
< HTTP/1.1 200 OK
< Server: nginx
< Content-Type: application/ocsp-response
< Content-Length: 546
< ETag: "77C13CDA86BF5ECF1D503E47E077741FF26C1DFF3598FFCE72024FBFED567B4C"
< Last-Modified: Thu, 23 Mar 2017 21:00:00 UTC
< X-Akamai-Request-ID: ed65f2.95cd075
< Cache-Control: public, no-transform, must-revalidate, max-age=0
< Expires: Wed, 03 Apr 2019 07:24:46 GMT
< Date: Wed, 03 Apr 2019 07:24:46 GMT
< X-Cache: TCP_MISS from a95-101-90-125.deploy.akamaitechnologies.com (AkamaiGHost/9.6.0-24900238) (-)
< X-Cache-Key: /L/771/395065/12h/ocsp.int-x3.letsencrypt.org/MFMwUTBPME0wSzAJBgUrDgMCGgUABBR+5mrncpqz/PiiIGRsFqEtYHEIXQQUqEpqYwR93brm0Tm3pkVl7/Oo7KECEgPYg2OnU8zW/5sZNqzzGwN4Ow==
< X-Cache-Key-Extended-Internal-Use-Only: /L/771/395065/12h/ocsp.int-x3.letsencrypt.org/MFMwUTBPME0wSzAJBgUrDgMCGgUABBR+5mrncpqz/PiiIGRsFqEtYHEIXQQUqEpqYwR93brm0Tm3pkVl7/Oo7KECEgPYg2OnU8zW/5sZNqzzGwN4Ow== vcd=10106
< X-True-Cache-Key: /L/ocsp.int-x3.letsencrypt.org/MFMwUTBPME0wSzAJBgUrDgMCGgUABBR+5mrncpqz/PiiIGRsFqEtYHEIXQQUqEpqYwR93brm0Tm3pkVl7/Oo7KECEgPYg2OnU8zW/5sZNqzzGwN4Ow== vcd=10106
< X-Akamai-Session-Info: name=AKA_PM_BASEDIR; value=
< X-Akamai-Session-Info: name=AKA_PM_BYPASS_MODIFY_PATH; value=true
< X-Akamai-Session-Info: name=AKA_PM_CACHEABLE_OBJECT; value=true
< X-Akamai-Session-Info: name=AKA_PM_NETSTORAGE_ROOT; value=
< X-Akamai-Session-Info: name=AKA_PM_PREFETCH_ON; value=true
< X-Akamai-Session-Info: name=AKA_PM_RUM_ENABLED; value=off
< X-Akamai-Session-Info: name=AKA_PM_SR_ENABLED; value=false
< X-Akamai-Session-Info: name=AKA_PM_TD_ENABLED; value=false
< X-Akamai-Session-Info: name=AKA_PM_TD_MAP_PREFIX; value=ch2
< X-Akamai-Session-Info: name=ANS_PEARL_VERSION; value=0.9.0
< X-Akamai-Session-Info: name=ENABLE_SD_POC; value=yes
< X-Akamai-Session-Info: name=FASTTCP_RENO_FALLBACK_DISABLE_OPTOUT; value=on
< X-Akamai-Session-Info: name=HEADER_NAMES; value=Host%3aUser-Agent%3aAccept%3aPragma; full_location_id=
< X-Akamai-Session-Info: name=OVERRIDE_HTTPS_IE_CACHE_BUST; value=all
< X-Akamai-Session-Info: name=SEC_CLIENT_IP_ASNUM_MASK_SIZE; value=64
< X-Akamai-Session-Info: name=SEC_XFF_ASNUM_MASK_SIZE; value=64
< X-Akamai-Session-Info: name=TAP_GUID; value=
< X-Akamai-Session-Info: name=TAP_KEY_ID; value=
< X-Akamai-Session-Info: name=TCP_OPT_APPLIED; value=medium
< X-Serial: 771
< Connection: keep-alive
< X-Cache-Remote: TCP_MISS from a2-16-217-126.deploy.akamaitechnologies.com (AkamaiGHost/9.6.0-24900238) (-)
< X-Check-Cacheable: YES
<
{ [546 bytes data]
* Curl_http_done: called premature == 0
100 546 100 546 0 0 2429 0 --:--:-- --:--:-- --:--:-- 2437
* Connection #0 to host ocsp.int-x3.letsencrypt.org left intact
OCSP Response Data:
OCSP Response Status: successful (0x0)
Response Type: Basic OCSP Response
Version: 1 (0x0)
Responder Id: C = US, O = Let's Encrypt, CN = Let's Encrypt Authority X3
Produced At: Mar 23 21:14:00 2017 GMT
Responses:
Certificate ID:
Hash Algorithm: sha1
Issuer Name Hash: 7EE66AE7729AB3FCF8A220646C16A12D6071085D
Issuer Key Hash: A84A6A63047DDDBAE6D139B7A64565EFF3A8ECA1
Serial Number: 03D88363A753CCD6FF9B1936ACF31B03783B
Cert Status: revoked
Revocation Time: Dec 22 22:07:11 2016 GMT
This Update: Mar 23 21:00:00 2017 GMT
Next Update: Mar 30 21:00:00 2017 GMT
Signature Algorithm: sha256WithRSAEncryption
37:5e:bc:6e:c4:92:da:93:51:90:f7:d6:39:6c:87:3d:6b:aa:
d1:4c:ac:bd:69:bd:d6:d5:b2:32:60:89:23:b1:16:38:70:9b:
78:65:5c:83:be:65:52:33:4b:9c:a6:8a:ff:b5:24:58:a7:5c:
cc:22:f6:a1:c1:a3:3e:6f:40:70:7c:cb:df:59:0b:ce:85:51:
9f:1f:a7:40:0d:ad:bd:3a:bb:d1:3a:f0:35:f4:2f:93:bd:ca:
d3:09:89:eb:f2:f1:e0:c9:6d:3c:d9:9b:fd:4f:71:1b:6e:61:
81:b6:05:66:68:df:b0:c6:a3:c0:16:63:27:03:64:bc:bf:03:
b1:85:35:d9:d0:56:01:9c:ec:05:6d:da:42:c6:a3:a2:fe:d8:
64:d4:f5:fc:b4:33:80:0b:db:03:dd:a3:17:f8:02:c7:f4:d3:
92:8c:9c:2f:54:1b:9f:c3:26:61:bb:ff:96:83:0e:c0:e8:64:
22:85:b1:fe:7a:af:94:3a:bc:7e:ac:16:b8:55:88:3d:4e:a9:
f2:16:5a:53:24:85:38:89:5b:d5:ad:f4:ad:e1:4a:72:94:c2:
bf:ab:c3:85:61:a0:5f:27:de:c5:ca:5b:92:23:2e:72:25:c8:
61:06:9e:3c:ca:9b:21:7d:74:2f:a6:38:bf:f4:77:b6:dc:ca:
b5:a6:e1:a4