ELF>@@=f=u@1fATIHH9A8HFH5Iĉ1DA\ËATAUS~1HHl fHH9t;tHH9uDff.AUATUHH|$ H$@H$HL$PL$Xt@)$`)$p)$)$)$)$)$)$H$D$Ld$HD$ H$0D$0HD$(uPHH=H51H=LHH=H51H]A\A]Ll$0LHL$|$ 9tH]A\A]fD|$ 1LH5|$ ~Ht$ H=봐AWAVAUIeATI1UHS1HHLI1ML|IEHIIŅH$L~C$GET $POSTLH51~1H[]A\A]A^A_D1ҾiH LH$L~$GET a$L$< fDH$&fDH$fDH$fDH$HfDH$HfDDŽ$HDŽ$4H$ vfDH$(^fDH$FfDH$.fDH$fDHD$fHD$HDŽ$DŽ$DŽ$DŽ$DDŽ$H$HD$H$HNH=1E11H5D$D$pEH$HAH=HD$@11LH5E11H$HD$L5HDŽ$HD$HD$PHD$ HD$HHD$(HD$hD$kHD$pHE11HD$1L5HDŽ$HD$PHD$ HD$HHD$(HD$hHD$@D$HD$H$H}I@HD$HH D$H$H$H|$@wHD$hH#1$$H$HD$@HHIHHHHS1ɺHH6HL$@vHHLvH11ҾeHHl$@HH51E1SHLE11HD$1L5HDŽ$HD$PHD$ HD$HHD$(HD$@D$)H=H51E1H$IHD$xHuH$IH|$@wHD$hHP1$H|$H$HrHHH5H=1HHHHD$@H$HHrH=H5E11HD$HDŽ$HD$P1L5HD$ HD$HHD$(D$H$HDŽ$} HD$(H$E111D$L5HD$HD$HD$PHD$ HD$HHD$(HH|$@t3$H57H51H$L5H $HD$PH $L$8H$HD$HfH|$@H\$(HH{H$@H$H9Cpu-H$H9uH$HH9C uH$@H9Ct]H51H$1HHtH[ HH$H51$HT$@H$H$HDŽ$H$HD$H $z H$HH$HHHHDH$HD$PH H$Ht#1H$L\H$E111L HD$HHHt$PH|$1HL$L$x$tHt$H|$h1H$Ht:wHHHH=HT$HHH|$(H$H|$HDŽ$$H$H$pH$H$xHH$$LU11H$X$HDŽ$`H$htk<11HcH$`H$(DŽ$H$P@$H|$H111H$PIIH$(HIH1E1H8DH11LHLHILAHA9|HE11ɺ$hL$xLH$hA^A_$$9$LHt$H$XIHLD$ 1HH$xH$Hl$x1(HH$HIHH9|L$H$pLH$H$XD$EYH$X1HLH$hH$`H$XL$MfoƄ$HHTTP/1.0H 200 OK H$@H Content)$`foH$HH-type: a)$pfoH$PH$X)$1HH$@L1H=HL11Ҿ LH$Ht8wHIH H=HHLHAŅ$M $t$LH|$HDŽ$HHDŽ$%DH$ M111H$ f1)$@)$P)$`IHAHsH$8H=ILL$XL$@L$@HD$(LHxH$8H$@HHAHуq@~ MHcпMEH51?ƒ  LI HH9 0uL$0M@LE11ɾL$0!H=H5E11H$HD$HD$.H=1E11H51L5H$D$HD$HD$HD$PHD$HHD$(HD$`H|$(Hl$(1foH 200 OK L$HH$HHHTTP/1.0H-type: a)$`foH$@H Content)$pfoH$PH$XƄ$)$MY11=1"H51tH$E111HD$L5HD$HD$PHD$HD$oE1H$E111HD$L5HD$HD$PHD$HHD$(D$H=H5HE111H=H5D$HDŽ$HDŽ$HDŽ$HD$HDŽ$HD$PHD$ HD$HHD$(HD$hHD$@fE1H|$@2@HD$L$8151L$8H$HD$$H$4H$ H$(HD$HK$0JH$t+H$1H$LHHH$ HD$HtHHL|$H$HH$L&Ht$pH2LHH=H51H=DŽ$ H$H|$L$H$H|$8H|$0tH$L=Hl$hL%L$Dt$H$H$@LH$8dHc$ LHH1H5HH$8HLHH$@t*H5HH$@HLH$ uR$(tHcH5HH1H5HH$0HLHAH|$0A9 H|$0DH|$8DHD$H5HH1H$(H$ HPH$HPHt$(L$HL$@ZYuH5HafDA$yH$E111D$L5HD$HD$HD$PHD$HgH$XH1H=H511L$8H$HD$D$L$HD$H$D$1L$8L$HD$HD$L$8H$11D$HD$L$HD$HD$L$8HD$oH5Hcп1\H=H5L$8rHD$11L$8D$L$HcH51LAHH5H8H5H1E11D$Ht$XHH=yH51L$8H=LH$L$$ E1D$H=H51DŽ$ H=H51E1D$1qH5HH51LH51HD$L$811D$>L$811-H=11H5L$8D$HD$HD$(H51E1D$%.*s%s: %sGET HTTP/1.POST Error parsing OCSP requestError creating connect BIO Error creating SSL context. Error connecting BIO Can't get connection fd Timeout on connect hostHostUnexpected retry condition Timeout on request Select error (core dumped)/%s: Use -help for summary. apps/ocsp.c%s Error parsing URL issuer certificatecertificateError Creating OCSP request Error reading OCSP request Error setting up accept BIOError starting acceptresponder certificateCA certificateresponder other certificatesresponder private keychild PID arrayfatal: waitpid(): %sfatal: RAND_poll() failedterminating on signal: %dindex file changed, reloadingsigner certificatesigner certificatessigner private keyError signing OCSP request assertion failed: bn00parameter error "%s" Error reading OCSP response Responder Error: %s (%d) validator certificateError parsing response Nonce Verify error Response Verify Failure Response verify OK ERROR: No Status found. %s This Update: Next Update: Reason: %s Revocation Time: helpDisplay this summaryoutOutput filenametimeouturlResponder URLportPort to run responder onignore_errnoverifyDon't verify response at allnonceAdd OCSP nonce to requestno_nonceresp_no_certsresp_key_idmultino_certsno_signature_verifyno_cert_verifyno_chainDon't chain verify responseno_cert_checksno_explicittrust_otherno_internbadsigtextreq_textPrint text form of requestresp_textPrint text form of responsereqinrespinsignerVAfileValidator certificates filesign_otherverify_otherCAfileTrusted certificates fileCApathno-CAfileno-CApathvalidity_periodstatus_ageMaximum status age in secondssignkeyreqoutrespoutpathPath to use in OCSP requestissuerIssuer certificatecertCertificate to checkserialSerial number to checkindexCertificate status index fileCAnminnrequestndaysrsignerrkeyrotherrmdrsigoptheaderkey=value header to addpolicypurposecertificate chain purposeverify_nameverification policy nameverify_depthchain depth limitauth_levelattimeverification epoch timeverify_hostnameexpected peer hostnameverify_emailexpected peer emailverify_ipexpected peer IP addressignore_criticalissuer_checks(deprecated)crl_checkcrl_check_allcheck full chain revocationpolicy_checkperform rfc5280 policy checksexplicit_policyinhibit_anyinhibit_mapx509_strictextended_crlenable extended CRL featuresuse_deltasuse delta CRLspolicy_printcheck_ss_sigcheck root CA self-signaturestrusted_firstsuiteB_128_onlySuite B 128-bit-only modesuiteB_128suiteB_192Suite B 192-bit-only modepartial_chainno_alt_chainsno_check_timeallow_proxy_certsInvalid request -- bad URL: %sInvalid request -- bad HTTP version: %sInvalid request -- bad URL encoding: %sCould not allocate base64 bio: %sInvalid request -- bad HTTP verb: %sError querying OCSP responder No issuer certificate specified Error converting serial number %s Missing = in header key=value %s: Digest must be before -cert or -serial Error loading responder certificate Responder mode requires certificate, key, and CA. fatal: error detaching from parent process group: %sfatal: internal error: no matching child slot for pid: %ldchild process: %ld, exit status: %dchild process: %ld, term signal %d%swaiting for OCSP client connections...error reloading updated index: %sNeed an OCSP request for this operation! Error loading signer certificate WARNING: no nonce in response WARNING: Status times invalid. fatal: internal error: no free child slotsConnection timeout (in seconds) to the OCSP responderTCP/IP hostname:port to connect toIgnore error on OCSP request or response and continue runningDon't add OCSP nonce to requestDon't include any certificates in responseIdentify response by signing certificate key IDrun multiple responder processesDon't include any certificates in signed requestDon't check signature on responseDon't check signing certificateDon't do additional checks on signing certificateDo not explicitly check the chain, just verify the rootDon't verify additional certificatesDon't search certificates contained in response for signerCorrupt last byte of loaded OSCP response signature (for test)Print text form of request and responseFile with the DER-encoded requestFile with the DER-encoded responseCertificate to sign OCSP request withAdditional certificates to include in signed requestAdditional certificates to search for signerTrusted certificates directoryDo not load the default certificates fileDo not load certificates from the default certificates directoryMaximum validity discrepancy in secondsPrivate key to sign OCSP request withOutput file for the DER-encoded requestOutput file for the DER-encoded responseNumber of minutes before next updateNumber of requests to accept (default unlimited)Number of days before next updateResponder certificate to sign responses withResponder key to sign responses withOther certificates to include in responseDigest Algorithm to use in signature of OCSP responseOCSP response signature parameter in n:v formAny supported digest algorithm (sha1,sha256, ... )adds policy to the acceptable policy setchain authentication security levelpermit unhandled critical extensionscheck leaf certificate revocationset policy variable require-explicit-policyset policy variable inhibit-any-policyset policy variable inhibit-policy-mappingdisable certificate compatibility work-aroundsprint policy processing diagnosticssearch trust store first (default)Suite B 128-bit mode allowing 192-bit algorithmsaccept chains anchored by intermediate trust-store CAsignore certificate validity timeallow the use of proxy certificates->pssp-- - - - -p ------------ss<<<<< <!-"-#u$p%s&s's(s)<*<+s,<-<.p/p0p1<2<3<4s5s6s-sssnnMsss---------------------pplication/ocsp-response Content-Length: %d GCC: (Debian 11.2.0-16) 11.2.0zRx 0D0Gh`THDA @oBBA J   ABBA t  ABBG HBBB J(F0D8K  8A0A(B BBBF LBBE E(A0D8J` 8D0A(B BBBF `,BIB B(D0C8G 8A0A(B BBBF QZBOnDHlByOYBI[A&+008`T@FoRW0puz   p#Hw>Z0 4!s'P-3e9R?qEKQW]ciou{   L0<f(X p#P)/5|;DAGYM/SY1bg mu(9FScpx0%4;DVbo{@ , (!8HVju !,8@HSZaiz+@PYer'@Tfr} $ 9 I X j           ( < U m           ) = S ] v     ocsp.cnotetermtermsigsock_timeoutacfdprint_syslogkillallmultilog_messageprogdo_responder.constprop.0.LC0.LC1.LC2.LC3.LC11.LC6.LC5.LC7.LC9.LC12.LC8.LC18.LC17.LC19.LC16.LC15.LC23.LC13.LC22.LC21.LC14.LC20.LC26.LC28.LC40.LC42.LC43.LC44.LC47.LC24.LC25.LC53.LC36.LC27.LC31.LC30.LC33.LC34.LC39.LC32.LC37.LC54.LC55.LC56.LC58.LC60.LC61.LC82.LC83.LC84.LC64.LC57.LC65.LC67.LC50.LC41.LC45.LC38.LC35.LC29.LC68.LC72.LC76.LC77.LC78.LC79.LC80.LC74.LC59.LC49.LC62.LC48.LC75.LC46.LC70.LC63.LC73.LC69.LC51.LC81.LC52.LC66.LC71shutdownkillsleepbio_errBIO_printfBIO_vprintfvsnprintfERR_print_errors_cbBIO_ctrlBIO_popBIO_ptr_ctrlBIO_getsalarmstrncmp__ctype_b_locOPENSSL_hexchar2int_GLOBAL_OFFSET_TABLE_OCSP_REQUEST_newd2i_OCSP_REQUESTASN1_d2i_bioBIO_free_allBIO_new_mem_bufBIO_f_base64BIO_newBIO_set_flagsBIO_pushprocess_responderBIO_new_connectOCSP_sendreq_newOCSP_REQ_CTX_add1_headerOPENSSL_sk_numOPENSSL_sk_valuestrcasecmpOCSP_REQ_CTX_freeSSL_CTX_freeBIO_test_flagsselectBIO_putsTLS_client_methodSSL_CTX_newSSL_CTX_ctrlBIO_new_sslOCSP_REQ_CTX_set1_reqOCSP_sendreq_nbioocsp_mainOPENSSL_sk_new_nullX509_VERIFY_PARAM_newocsp_optionsopt_initopt_nextERR_print_errorsX509_freeX509_STORE_freeX509_VERIFY_PARAM_freeOPENSSL_sk_freeEVP_PKEY_freeOPENSSL_sk_pop_freefree_indexOCSP_REQUEST_freeOCSP_RESPONSE_freeOCSP_BASICRESP_freeX509V3_conf_freeCRYPTO_freeopt_argstrtolopt_verifyopt_num_restbio_open_defaultload_certload_certsload_keyload_indexindex_indexopenlogsetpgidapp_mallocmemsetsignalwaitpid__errno_locationOCSP_parse_urlopt_helpstrchrX509V3_add_valueOPENSSL_sk_pushopt_mdopt_intX509_get_subject_nameX509_get0_pubkey_bitstrs2i_ASN1_INTEGEROCSP_cert_id_newASN1_INTEGER_freeOCSP_request_add0_idOCSP_cert_to_idopt_longopt_unknownBIO_f_bufferBIO_s_acceptBIO_freeEVP_sha1statOCSP_request_signOCSP_REQUEST_printi2d_OCSP_REQUESTASN1_i2d_bioOCSP_request_onereq_countOCSP_BASICRESP_newX509_gmtime_adjX509_time_adj_exOCSP_request_onereq_get0OCSP_onereq_get0_idOCSP_id_get0_infoOBJ_obj2nidOBJ_nid2snEVP_get_digestbynameOCSP_id_issuer_cmpOCSP_CERTID_freeOCSP_basic_add1_statusOCSP_copy_nonceEVP_MD_CTX_newEVP_DigestSignInitpkey_ctrl_stringOCSP_basic_sign_ctxOCSP_response_createEVP_MD_CTX_freeASN1_TIME_freei2d_OCSP_RESPONSEOCSP_response_statusASN1_INTEGER_to_BNBN_is_zeroCRYPTO_strdupBN_freeTXT_DB_get_by_indexunpack_revinfoOCSP_SINGLERESP_add1_ext_i2dASN1_OBJECT_freeASN1_GENERALIZEDTIME_freeBN_bn2hexOCSP_RESPONSE_printOCSP_response_status_strOCSP_request_add1_nonceOCSP_RESPONSE_newd2i_OCSP_RESPONSEfork_exitsetup_verifyOCSP_response_get1_basicOCSP_check_nonceOCSP_basic_verifyOCSP_check_validityOCSP_cert_status_strASN1_GENERALIZEDTIME_printOCSP_crl_reason_strOCSP_resp_find_statusRAND_pollOCSP_resp_get0_signaturecorrupt_signaturestrerrorX509_STORE_set1_paramOPENSSL_dieERR_clear_errorJVfbghiAszjkjljkm f)n`ovpqrs*2o9sNrtu>vLvrs*x*yz{P|]}e~z*y*xz[ooo&8IZu{ooopj ' ; f   # E V ^ r jy   j !  j " k j # k j $  j %  j & k* j1 '6 E (# 6 I ^ r w  c)j )3=GQX*er{{{* 4I 6g*+,-AWf./0*?L]h1tfj2kj3k)3)H]rw 1AQq!0AQaq.;^q41?L5)9IY !xj6kj'71kI))xv~~oo4oEoZ8q{y)j9k %I*y*xzj:k ) )  ;!)g!!<!f!!!!=">""?""@".#R#q##*###j# $$M$$$$$$$$$ %%%%_%%%%%%&.&N&Y&f&s&&&A&B&C'/'k6'*A'R'oq''*''''{'(2(](q((D((((Z)))))))>*jK*EX*k*6+Q+FX+k_+jd+p++++G+k+,*,*1,*;,zF,l,,-H -f-h-'-@---j-I-k-j-J-)-kJ.`.h.A.B.C///&/0/h X _(0 i@H sX@` p x h            60 <8 ZH P ]`h bx  kH  qp  y  ~    0    ( 8` @ P X h p       ( / G W n {   ( 0 @ H X ` p x     < @  L p  X   d   p  }    0 8 H P ` h x  $ H  /  :  T   b   p   ~  4H0d`00d@ .symtab.strtab.shstrtab.rela.text.data.bss.rodata.str1.1.rodata.str1.8.rela.rodata.rela.data.rel.ro.local.rodata.cst16.comment.note.GNU-stack.rela.eh_frame @28@3&t8,x812x8 @2C T PO@@aQ( \@P  t0Y00`Y YY@p[e Ht 0