recon_08 (alt name)

View the exercise here: PentesterLab: Recon 08

OBJECTIVE

For this challenge, your goal is to access the alternative names in the certificate.

ALTERNATIVE NAMES

When accessing a TLS server, it often pays off to check the content of the certificate used. It's common for TLS servers to have certificates that are valid for more than one name (named alternative names). Looking for alternative names can be done in your client or by using openssl.

SOLUTION

In the browser, click the browser settings at the left side of the URL.

Click Connection is secure then click Certificate is valid.

Select the Details tab

Scroll the Certificate Fields list then select Certificate Subject Alternative Name

Copy the DNS Name field value


An alternative solution using curl:

Last updated

Was this helpful?