{"id":83443,"date":"2020-05-31T13:42:09","date_gmt":"2020-05-31T11:42:09","guid":{"rendered":"https:\/\/prohoster.info\/blog\/novosti-interneta\/ustarevanie-kornevogo-sertifikata-addtrust-privelo-k-sboyam-v-sistemah-s-openssl-i-gnutls"},"modified":"2020-05-31T13:42:09","modified_gmt":"2020-05-31T11:42:09","slug":"ustarevanie-kornevogo-sertifikata-addtrust-privelo-k-sboyam-v-sistemah-s-openssl-i-gnutls","status":"publish","type":"post","link":"https:\/\/prohoster.info\/en\/blog\/news\/ustarevanie-kornevogo-sertifikata-addtrust-privelo-k-sboyam-v-sistemah-s-openssl-i-gnutls","title":{"rendered":"The deprecation of the AddTrust root certificate has led to failures in systems with OpenSSL and GnuTLS.","gt_translate_keys":[{"key":"rendered","format":"text"}]},"content":{"rendered":"<p>On May 30, the 20-year validity period of the root certificate expired. <noindex><a rel=\"nofollow\" href=\"https:\/\/crt.sh\/?id=1\">AddTrust<\/a><\/noindex>, which <noindex><a rel=\"nofollow\" href=\"https:\/\/support.sectigo.com\/articles\/Knowledge\/Sectigo-AddTrust-External-CA-Root-Expiring-May-30-2020\">IRC was used<\/a><\/noindex>  for generating a cross-signature in the certificates of one of the largest certificate authorities, Sectigo (Comodo). The cross-signature allowed for compatibility with outdated devices that had not included the new root certificate USERTrust in their root certificate storage. <\/p>\n<p><center><noindex><a rel=\"nofollow\" href=\"https:\/\/support.sectigo.com\/servlet\/rtaImage?eid=ka03l000000Y6d5&#038;feoid=00N1N00000Oytzq&#038;refid=0EM3l000002YZ1C\"><img decoding=\"async\" alt=\"The deprecation of the AddTrust root certificate has led to failures in systems with OpenSSL and GnuTLS.\" src=\"\/wp-content\/uploads\/2020\/05\/f5c4251fb99f51bb8ea11e7cd0a7acf5.png\" style=\"display:block;margin: 0 auto;\" \/><\/a><\/noindex><\/center><\/p>\n<p>Theoretically, the expiration of the AddTrust root certificate should have led to only a loss of compatibility with outdated systems (Android 2.3, Windows XP, Mac OS X 10.11, iOS 9, etc.), since the second root certificate used in the cross-signature remains valid and modern browsers recognize it when checking the trust chain. In practice, <noindex><a rel=\"nofollow\" href=\"https:\/\/www.agwa.name\/blog\/post\/fixing_the_addtrust_root_expiration\">issues were discovered<\/a><\/noindex> with validating the cross-signature in non-browser TLS clients, including those based on OpenSSL 1.0.x and GnuTLS. A secure connection failed to establish, displaying an error about the certificate's obsolescence if the server uses a Sectigo certificate linked by trust chain to the AddTrust root certificate.<\/p>\n<p>While users of modern browsers did not notice the obsolescence of the AddTrust root certificate when processing cross-signed Sectigo certificates, various third-party applications and server processors began experiencing issues, leading to <noindex><a rel=\"nofollow\" href=\"https:\/\/twitter.com\/sleevi_\/status\/1266647545675210753\">issues<\/a><\/noindex> <noindex><a rel=\"nofollow\" href=\"https:\/\/twitter.com\/__agwa\/timelines\/1266777818811322368\">the operation<\/a><\/noindex> of many infrastructures using encrypted communication channels for interaction between components. <\/p>\n<p>For example, there were <noindex><a rel=\"nofollow\" href=\"https:\/\/github.com\/jitsi\/jitsi-meet\/issues\/6918\">issues<\/a><\/noindex> with access to some package repositories in Debian and Ubuntu (apt started returning certificate verification errors), script calls using the utilities 'curl' and 'wget' began to fail, and errors are observed when using Git. <noindex><a rel=\"nofollow\" href=\"https:\/\/support.roku.com\/en-gb\/article\/360049417393\">the operation of<\/a><\/noindex> the Roku streaming platform was disrupted, handlers stopped being called, <noindex><a rel=\"nofollow\" href=\"https:\/\/twitter.com\/stripestatus\/status\/1266756286734938116\">Stripe<\/a><\/noindex> and <noindex><a rel=\"nofollow\" href=\"https:\/\/status.datadoghq.com\/incidents\/6bqpd511nj4h\">DataDog<\/a><\/noindex>crashes began <noindex><a rel=\"nofollow\" href=\"https:\/\/status.heroku.com\/incidents\/2034\">to occur in Heroku applications,<\/a><\/noindex> clients could not connect to OpenLDAP, problems were fixed with sending emails to SMTPS and SMTP servers with STARTTLS. Additionally, issues were observed in various Ruby, PHP, and Python scripts that use the HTTP client module. Among browsers, the problem affected <noindex><a rel=\"nofollow\" href=\"https:\/\/www.cmu.edu\/iso\/service\/cert-auth\/addtrust.html\">Epiphany, which stopped loading ad-blocking lists.<\/a><\/noindex> Programs written in Go are not affected by this issue, as Go offers <noindex><a rel=\"nofollow\" href=\"https:\/\/gitlab.com\/gnutls\/gnutls\/-\/issues\/1008\">affects<\/a><\/noindex> TLS.<\/p>\n<p>It was anticipated <noindex><a rel=\"nofollow\" href=\"https:\/\/golang.org\/pkg\/crypto\/tls\/\">a proprietary implementation<\/a><\/noindex> and ignored the warning.<\/p>\n<p><noindex><a rel=\"nofollow\" href=\"https:\/\/www.reddit.com\/r\/linux\/comments\/gshh70\/sectigo_root_ca_expiring_may_not_be_handled_well\/\">This led to complications in various services.<\/a><\/noindex>, which affects older releases of distributions (including Debian 9, Ubuntu 16.04, <noindex><a rel=\"nofollow\" href=\"https:\/\/bugzilla.redhat.com\/show_bug.cgi?id=1842174\">RHEL 6\/7<\/a><\/noindex>) that use problematic OpenSSL branches, but the issue <noindex><a rel=\"nofollow\" href=\"https:\/\/github.com\/jitsi\/jitsi-meet\/issues\/6918\">also manifested<\/a><\/noindex> when using the APT package manager in the current releases of Debian 10 and Ubuntu 18.04\/20.04, as APT relies on the GnuTLS library. The crux of the problem is that many TLS\/SSL libraries parse the certificate as a linear chain, while according to RFC 4158, a certificate can represent a directed distributed cyclic graph with multiple anchors of trust that need to be considered. This shortcoming in OpenSSL and GnuTLS <noindex><a rel=\"nofollow\" href=\"https:\/\/rt.openssl.org\/Ticket\/Display.html?user=guest&#038;pass=guest&#038;id=3359\">it was<\/a><\/noindex> <noindex><a rel=\"nofollow\" href=\"https:\/\/bugs.launchpad.net\/ubuntu\/+source\/openssl\/+bug\/101464\">it is known<\/a><\/noindex> <noindex><a rel=\"nofollow\" href=\"https:\/\/bugzilla.redhat.com\/show_bug.cgi?id=1142137\">has been around for many years<\/a><\/noindex>. In OpenSSL, the issue was resolved in version 1.1.1, while in <noindex><a rel=\"nofollow\" href=\"https:\/\/www.gnutls.org\/\">GnuTLS<\/a><\/noindex> remains  <noindex><a rel=\"nofollow\" href=\"https:\/\/gitlab.com\/gnutls\/gnutls\/-\/issues\/1008\">it remains unaddressed<\/a><\/noindex>.<\/p>\n<p>As a workaround to eliminate the failure, it is suggested to remove the 'AddTrust External CA Root' certificate from the system store (for example, remove it from \/etc\/ca-certificates.conf and \/etc\/ssl\/certs, and then run 'update-ca-certificates -f -v'), after which OpenSSL will start to properly handle cross-signed certificates involving it. When using the APT package manager, you can disable certificate verification for individual requests at your own risk (for example, 'apt-get update -o Acquire::https::download.jitsi.org::Verify-Peer=false'). <\/p>\n<p>To block the problem in <noindex><a rel=\"nofollow\" href=\"https:\/\/bugzilla.redhat.com\/show_bug.cgi?id=1842178\">Alpine<\/a><\/noindex> and <noindex><a rel=\"nofollow\" href=\"https:\/\/bugzilla.redhat.com\/show_bug.cgi?id=1842174\">SUSE\/openSUSE<\/a><\/noindex> , it is recommended to blacklist the AddTrust certificate:<\/p>\n<p>   trust dump --filter 'pkcs11:id=;type=cert' \\<br \/>\n      &gt; \/etc\/pki\/ca-trust\/source\/blacklist\/addtrust-external-root.p11-kit<br \/>\n   update-ca-trust extract<\/p>\n<p>However, this method <noindex><a rel=\"nofollow\" href=\"https:\/\/twitter.com\/ChristianHeimes\/status\/1266800555978039296\">doesn't work<\/a><\/noindex> for GnuTLS (for instance, the certificate verification error continues to be issued when running wget).<\/p>\n<p>On the server side, it is possible to <noindex><a rel=\"nofollow\" href=\"https:\/\/www.cmu.edu\/iso\/service\/cert-auth\/addtrust.html\">change<\/a><\/noindex> <noindex><a rel=\"nofollow\" href=\"https:\/\/ohdear.app\/blog\/resolving-the-addtrust-external-ca-root-certificate-expiration\">the order<\/a><\/noindex> of certificate listings in the chain of trust sent by the server to the client (if the certificate associated with 'AddTrust External CA Root' is removed from the list, the verification by the client will succeed). For checking and generating a new chain of trust, you can use the service <noindex><a rel=\"nofollow\" href=\"https:\/\/whatsmychaincert.com\/\">whatsmychaincert.com<\/a><\/noindex>. Sectigo has also <noindex><a rel=\"nofollow\" href=\"https:\/\/support.sectigo.com\/articles\/Knowledge\/Sectigo-AddTrust-External-CA-Root-Expiring-May-30-2020\">provided<\/a><\/noindex> an alternative cross-signed intermediate certificate '<noindex><a rel=\"nofollow\" href=\"https:\/\/crt.sh\/?id=331986\">AAA Certificate Services<\/a><\/noindex>' that will be valid until 2028 and will maintain compatibility with older OS versions.<\/p>\n<p>Addition: The issue also <noindex><a rel=\"nofollow\" href=\"https:\/\/github.com\/libressl-portable\/portable\/issues\/595\">manifests<\/a><\/noindex> exists in LibreSSL.<\/p>\n<p><noindex><a rel=\"nofollow\" name=\"link\"><\/a><\/noindex><\/p>\n<p>Source: <a \ncontent=\"nofollow\" rel=\"nofollow\" href=\"https:\/\/www.opennet.ru\/opennews\/art.shtml?num=53061\">opennet.ru<\/a><\/p>","protected":false,"gt_translate_keys":[{"key":"rendered","format":"html"}]},"excerpt":{"rendered":"<p>30 \u043c\u0430\u044f \u0438\u0441\u0442\u0451\u043a 20-\u043b\u0435\u0442\u043d\u0438\u0439 \u0441\u0440\u043e\u043a \u0434\u0435\u0439\u0441\u0442\u0432\u0438\u044f \u043a\u043e\u0440\u043d\u0435\u0432\u043e\u0433\u043e \u0441\u0435\u0440\u0442\u0438\u0444\u0438\u043a\u0430\u0442\u0430 AddTrust, \u043a\u043e\u0442\u043e\u0440\u044b\u0439 \u043f\u0440\u0438\u043c\u0435\u043d\u044f\u043b\u0441\u044f \u0434\u043b\u044f \u0444\u043e\u0440\u043c\u0438\u0440\u043e\u0432\u0430\u043d\u0438\u044f \u043f\u0435\u0440\u0435\u043a\u0440\u0451\u0441\u0442\u043d\u043e\u0439 \u043f\u043e\u0434\u043f\u0438\u0441\u0438 (cross-signed) \u0432 \u0441\u0435\u0440\u0442\u0438\u0444\u0438\u043a\u0430\u0442\u0430\u0445 \u043e\u0434\u043d\u043e\u0433\u043e \u0438\u0437 \u043a\u0440\u0443\u043f\u043d\u0435\u0439\u0448\u0438\u0445 \u0443\u0434\u043e\u0441\u0442\u043e\u0432\u0435\u0440\u044f\u044e\u0449\u0438\u0445 \u0446\u0435\u043d\u0442\u0440\u043e\u0432 Sectigo (Comodo). \u041f\u0435\u0440\u0435\u043a\u0440\u0451\u0441\u0442\u043d\u0430\u044f \u043f\u043e\u0434\u043f\u0438\u0441\u044c \u043f\u043e\u0437\u0432\u043e\u043b\u044f\u043b\u0430 \u043e\u0431\u0435\u0441\u043f\u0435\u0447\u0438\u0442\u044c \u0441\u043e\u0432\u043c\u0435\u0441\u0442\u0438\u043c\u043e\u0441\u0442\u044c \u0441 \u0443\u0441\u0442\u0430\u0440\u0435\u0432\u0448\u0438\u043c\u0438 \u0443\u0441\u0442\u0440\u043e\u0439\u0441\u0442\u0432\u0430\u043c\u0438, \u0432 \u0445\u0440\u0430\u043d\u0438\u043b\u0438\u0449\u0435 \u043a\u043e\u0440\u043d\u0435\u0432\u044b\u0445 \u0441\u0435\u0440\u0442\u0438\u0444\u0438\u043a\u0430\u0442\u043e\u0432 \u043a\u043e\u0442\u043e\u0440\u044b\u0445 \u043d\u0435 \u0431\u044b\u043b \u0434\u043e\u0431\u0430\u0432\u043b\u0435\u043d \u043d\u043e\u0432\u044b\u0439 \u043a\u043e\u0440\u043d\u0435\u0432\u043e\u0439 \u0441\u0435\u0440\u0442\u0438\u0444\u0438\u043a\u0430\u0442 USERTRust. \u0422\u0435\u043e\u0440\u0435\u0442\u0438\u0447\u0435\u0441\u043a\u0438 \u043f\u0440\u0435\u043a\u0440\u0430\u0449\u0435\u043d\u0438\u0435 \u0434\u0435\u0439\u0441\u0442\u0432\u0438\u044f \u043a\u043e\u0440\u043d\u0435\u0432\u043e\u0433\u043e \u0441\u0435\u0440\u0442\u0438\u0444\u0438\u043a\u0430\u0442\u0430 AddTrust \u0434\u043e\u043b\u0436\u043d\u043e \u0431\u044b\u043b\u043e \u043f\u0440\u0438\u0432\u0435\u0441\u0442\u0438 \u043b\u0438\u0448\u044c [&hellip;]<\/p>\n","protected":false,"gt_translate_keys":[{"key":"rendered","format":"html"}]},"author":1,"featured_media":83444,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[702],"tags":[],"class_list":["post-83443","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-news"],"aioseo_notices":[],"aioseo_head":"\n\t\t<!-- All in One SEO 5.0.2 - aioseo.com -->\n\t<meta name=\"description\" content=\"30 \u043c\u0430\u044f \u0438\u0441\u0442\u0451\u043a 20-\u043b\u0435\u0442\u043d\u0438\u0439 \u0441\u0440\u043e\u043a \u0434\u0435\u0439\u0441\u0442\u0432\u0438\u044f \u043a\u043e\u0440\u043d\u0435\u0432\u043e\u0433\u043e \u0441\u0435\u0440\u0442\u0438\u0444\u0438\u043a\u0430\u0442\u0430 AddTrust, \u043a\u043e\u0442\u043e\u0440\u044b\u0439\" \/>\n\t<meta name=\"robots\" content=\"max-image-preview:large\" \/>\n\t<meta name=\"author\" content=\"Yuri Gagarin\"\/>\n\t<link rel=\"canonical\" href=\"https:\/\/prohoster.info\/en\/blog\/news\/ustarevanie-kornevogo-sertifikata-addtrust-privelo-k-sboyam-v-sistemah-s-openssl-i-gnutls\" \/>\n\t<meta name=\"generator\" content=\"All in One SEO (AIOSEO) 5.0.2\" \/>\n\t\t<meta property=\"og:locale\" content=\"en_US\" \/>\n\t\t<meta property=\"og:site_name\" content=\"ProHoster | \u041a\u0443\u043f\u0438\u0442\u044c \u043d\u0430\u0434\u0435\u0436\u043d\u044b\u0439 \u0445\u043e\u0441\u0442\u0438\u043d\u0433 \u0434\u043b\u044f \u0441\u0430\u0439\u0442\u043e\u0432 \u0441 \u0437\u0430\u0449\u0438\u0442\u043e\u0439 \u043e\u0442 DDoS, VPS VDS \u0441\u0435\u0440\u0432\u0435\u0440\u044b\" \/>\n\t\t<meta property=\"og:type\" content=\"article\" \/>\n\t\t<meta property=\"og:title\" content=\"\ud83e\udd47\u0423\u0441\u0442\u0430\u0440\u0435\u0432\u0430\u043d\u0438\u0435 \u043a\u043e\u0440\u043d\u0435\u0432\u043e\u0433\u043e \u0441\u0435\u0440\u0442\u0438\u0444\u0438\u043a\u0430\u0442\u0430 AddTrust \u043f\u0440\u0438\u0432\u0435\u043b\u043e \u043a \u0441\u0431\u043e\u044f\u043c \u0432 \u0441\u0438\u0441\u0442\u0435\u043c\u0430\u0445 \u0441 OpenSSL \u0438 GnuTLS | ProHoster\" \/>\n\t\t<meta property=\"og:description\" content=\"30 \u043c\u0430\u044f \u0438\u0441\u0442\u0451\u043a 20-\u043b\u0435\u0442\u043d\u0438\u0439 \u0441\u0440\u043e\u043a \u0434\u0435\u0439\u0441\u0442\u0432\u0438\u044f \u043a\u043e\u0440\u043d\u0435\u0432\u043e\u0433\u043e \u0441\u0435\u0440\u0442\u0438\u0444\u0438\u043a\u0430\u0442\u0430 AddTrust, \u043a\u043e\u0442\u043e\u0440\u044b\u0439\" \/>\n\t\t<meta property=\"og:url\" content=\"https:\/\/prohoster.info\/en\/blog\/news\/ustarevanie-kornevogo-sertifikata-addtrust-privelo-k-sboyam-v-sistemah-s-openssl-i-gnutls\" \/>\n\t\t<meta property=\"og:image\" content=\"https:\/\/prohoster.info\/wp-content\/uploads\/2021\/11\/logo-350.jpg\" \/>\n\t\t<meta property=\"og:image:secure_url\" content=\"https:\/\/prohoster.info\/wp-content\/uploads\/2021\/11\/logo-350.jpg\" \/>\n\t\t<meta property=\"og:image:width\" content=\"350\" \/>\n\t\t<meta property=\"og:image:height\" content=\"350\" \/>\n\t\t<meta property=\"article:published_time\" content=\"2020-05-31T11:42:09+00:00\" \/>\n\t\t<meta property=\"article:modified_time\" content=\"2020-05-31T11:42:09+00:00\" \/>\n\t\t<meta property=\"article:publisher\" content=\"https:\/\/www.facebook.com\/prohoster\" \/>\n\t\t<meta property=\"article:author\" content=\"https:\/\/www.facebook.com\/prohoster\" \/>\n\t\t<!-- All in One SEO -->\n\n","aioseo_head_json":{"title":"\ud83e\udd47The obsolescence of the AddTrust root certificate led to failures in systems with OpenSSL and GnuTLS | ProHoster","description":"On May 30, the 20-year term of the AddTrust root certificate expired, which","canonical_url":"https:\/\/prohoster.info\/en\/blog\/news\/ustarevanie-kornevogo-sertifikata-addtrust-privelo-k-sboyam-v-sistemah-s-openssl-i-gnutls","robots":"max-image-preview:large","keywords":"","webmasterTools":{"miscellaneous":""},"schema":null,"og:locale":"en_US","og:site_name":"ProHoster | \u041a\u0443\u043f\u0438\u0442\u044c \u043d\u0430\u0434\u0435\u0436\u043d\u044b\u0439 \u0445\u043e\u0441\u0442\u0438\u043d\u0433 \u0434\u043b\u044f \u0441\u0430\u0439\u0442\u043e\u0432 \u0441 \u0437\u0430\u0449\u0438\u0442\u043e\u0439 \u043e\u0442 DDoS, VPS VDS \u0441\u0435\u0440\u0432\u0435\u0440\u044b","og:type":"article","og:title":"\ud83e\udd47\u0423\u0441\u0442\u0430\u0440\u0435\u0432\u0430\u043d\u0438\u0435 \u043a\u043e\u0440\u043d\u0435\u0432\u043e\u0433\u043e \u0441\u0435\u0440\u0442\u0438\u0444\u0438\u043a\u0430\u0442\u0430 AddTrust \u043f\u0440\u0438\u0432\u0435\u043b\u043e \u043a \u0441\u0431\u043e\u044f\u043c \u0432 \u0441\u0438\u0441\u0442\u0435\u043c\u0430\u0445 \u0441 OpenSSL \u0438 GnuTLS | ProHoster","og:description":"30 \u043c\u0430\u044f \u0438\u0441\u0442\u0451\u043a 20-\u043b\u0435\u0442\u043d\u0438\u0439 \u0441\u0440\u043e\u043a \u0434\u0435\u0439\u0441\u0442\u0432\u0438\u044f \u043a\u043e\u0440\u043d\u0435\u0432\u043e\u0433\u043e \u0441\u0435\u0440\u0442\u0438\u0444\u0438\u043a\u0430\u0442\u0430 AddTrust, \u043a\u043e\u0442\u043e\u0440\u044b\u0439","og:url":"https:\/\/prohoster.info\/en\/blog\/news\/ustarevanie-kornevogo-sertifikata-addtrust-privelo-k-sboyam-v-sistemah-s-openssl-i-gnutls","og:image":"https:\/\/prohoster.info\/wp-content\/uploads\/2021\/11\/logo-350.jpg","og:image:secure_url":"https:\/\/prohoster.info\/wp-content\/uploads\/2021\/11\/logo-350.jpg","og:image:width":350,"og:image:height":350,"article:published_time":"2020-05-31T11:42:09+00:00","article:modified_time":"2020-05-31T11:42:09+00:00","article:publisher":"https:\/\/www.facebook.com\/prohoster","article:author":"https:\/\/www.facebook.com\/prohoster"},"aioseo_meta_data":{"post_id":"83443","title":null,"description":null,"keywords":null,"keyphrases":null,"primary_term":null,"canonical_url":null,"og_title":null,"og_description":null,"og_object_type":"default","og_image_type":"default","og_image_url":null,"og_image_width":null,"og_image_height":null,"og_image_custom_url":null,"og_image_custom_fields":null,"og_video":null,"og_custom_url":null,"og_article_section":null,"og_article_tags":null,"twitter_use_og":false,"twitter_card":"default","twitter_image_type":"default","twitter_image_url":null,"twitter_image_custom_url":null,"twitter_image_custom_fields":null,"twitter_title":null,"twitter_description":null,"schema":{"blockGraphs":[],"customGraphs":[],"default":{"data":{"Article":[],"Course":[],"Dataset":[],"FAQPage":[],"Movie":[],"Person":[],"Product":[],"ProductReview":[],"Car":[],"Recipe":[],"Service":[],"SoftwareApplication":[],"WebPage":[]},"graphName":"","isEnabled":true},"graphs":[]},"schema_type":null,"schema_type_options":null,"pillar_content":false,"robots_default":true,"robots_noindex":false,"robots_noarchive":false,"robots_nosnippet":false,"robots_nofollow":false,"robots_noimageindex":false,"robots_noodp":false,"robots_notranslate":false,"robots_max_snippet":null,"robots_max_videopreview":null,"robots_max_imagepreview":"large","priority":null,"frequency":null,"local_seo":null,"seo_analyzer_scan_date":null,"breadcrumb_settings":null,"limit_modified_date":false,"reviewed_by":null,"ai":null,"created":"2021-02-28 15:17:29","updated":"2022-09-28 18:33:53","focus_keyword":null,"additional_keywords":null,"truseo_locale":null},"gt_translate_keys":[{"key":"link","format":"url"}],"_links":{"self":[{"href":"https:\/\/prohoster.info\/en\/wp-json\/wp\/v2\/posts\/83443","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/prohoster.info\/en\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/prohoster.info\/en\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/prohoster.info\/en\/wp-json\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/prohoster.info\/en\/wp-json\/wp\/v2\/comments?post=83443"}],"version-history":[{"count":0,"href":"https:\/\/prohoster.info\/en\/wp-json\/wp\/v2\/posts\/83443\/revisions"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/prohoster.info\/en\/wp-json\/wp\/v2\/media\/83444"}],"wp:attachment":[{"href":"https:\/\/prohoster.info\/en\/wp-json\/wp\/v2\/media?parent=83443"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/prohoster.info\/en\/wp-json\/wp\/v2\/categories?post=83443"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/prohoster.info\/en\/wp-json\/wp\/v2\/tags?post=83443"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}