File ssl-google-cert-catalog
Script types:
portrule
Categories:
safe, discovery, external
Download: http://nmap.org/svn/scripts/ssl-google-cert-catalog.nse
User Summary
Queries Google's Certificate Catalog for the SSL certificates retrieved from target hosts.
The Certificate Catalog provides information about how recently and for how long Google has seen the given certificate. If a certificate doesn't appear in the database, despite being correctly signed by a well-known CA and having a matching domain name, it may be suspicious.
Script Arguments
smbdomain, smbhash, smbnoguest, smbpassword, smbtype, smbusername
See the documentation for the smbauth library.Example Usage
nmap -p 443 --script ssl-cert,ssl-google-cert-catalog <host>
Script Output
PORT STATE SERVICE 443/tcp open https | ssl-google-cert-catalog: | First/last date seen: 19 Aug 2011 / 10 Sep 2011 |_ Days in between: 20
Requires
Author: Vasiliy Kulikov
License: Same as Nmap--See http://nmap.org/book/man-legal.html




