Dump cert chain

$ openssl s_client -showcerts -servername <hostname> -connect <hostname>:443