Verify Certificates using OpenSSL

For some installations it is not possible to verify the certificate installation using external scanners. Instead you can use OpenSSL commands to return all the certificates present on your domain and verify installation.

To show all certificates being returned for your domain simply run the following command

openssl s_client -showcerts -connect
This will return the end-entity certificates and any intermediates. You can then check the intermediates match those for your certificate.

