$ curl --verbose https://tfs.corilus.be/tfs/Corilus/_git/CareConnect * STATE: INIT => CONNECT handle 0x6000578f0; line 1413 (connection #-5000) * Added connection 0. The cache now contains 1 members * Trying 172.30.11.20... * TCP_NODELAY set * STATE: CONNECT => WAITCONNECT handle 0x6000578f0; line 1466 (connection #0) * Connected to tfs.corilus.be (172.30.11.20) port 443 (#0) * STATE: WAITCONNECT => SENDPROTOCONNECT handle 0x6000578f0; line 1583 (connection #0) * Marked for [keep alive]: HTTP default * ALPN, offering h2 * ALPN, offering http/1.1 * Cipher selection: ALL:!EXPORT:!EXPORT40:!EXPORT56:!aNULL:!LOW:!RC4:@STRENGTH * successfully set certificate verify locations: * CAfile: /etc/pki/tls/certs/ca-bundle.crt CApath: none * TLSv1.2 (OUT), TLS header, Certificate Status (22): * TLSv1.2 (OUT), TLS handshake, Client hello (1): * STATE: SENDPROTOCONNECT => PROTOCONNECT handle 0x6000578f0; line 1597 (connection #0) * TLSv1.2 (IN), TLS handshake, Server hello (2): * TLSv1.2 (IN), TLS handshake, Certificate (11): * TLSv1.2 (IN), TLS handshake, Server key exchange (12): * TLSv1.2 (IN), TLS handshake, Server finished (14): * TLSv1.2 (OUT), TLS handshake, Client key exchange (16): * TLSv1.2 (OUT), TLS change cipher, Client hello (1): * TLSv1.2 (OUT), TLS handshake, Finished (20): * TLSv1.2 (IN), TLS change cipher, Client hello (1): * TLSv1.2 (IN), TLS handshake, Finished (20): * SSL connection using TLSv1.2 / ECDHE-RSA-AES256-SHA384 * ALPN, server did not agree to a protocol * Server certificate: * subject: C=BE; ST=Namur; L=Gembloux; O=Corilus; OU=IT; CN=*.corilus.be * start date: Jul 7 00:00:00 2016 GMT * expire date: Sep 5 12:00:00 2019 GMT * subjectAltName: host "tfs.corilus.be" matched cert's "*.corilus.be" * issuer: C=US; O=DigiCert Inc; CN=DigiCert SHA2 Secure Server CA * SSL certificate verify ok. * STATE: PROTOCONNECT => DO handle 0x6000578f0; line 1618 (connection #0) > GET /tfs/Corilus/_git/CareConnect HTTP/1.1 > Host: tfs.corilus.be > User-Agent: curl/7.54.0 > Accept: */* > * STATE: DO => DO_DONE handle 0x6000578f0; line 1680 (connection #0) * STATE: DO_DONE => WAITPERFORM handle 0x6000578f0; line 1807 (connection #0) * STATE: WAITPERFORM => PERFORM handle 0x6000578f0; line 1817 (connection #0) * HTTP 1.1 or later with persistent connection, pipelining supported < HTTP/1.1 401 Unauthorized < Content-Type: text/html; charset=utf-8 * Server Microsoft-IIS/8.5 is not blacklisted < Server: Microsoft-IIS/8.5 < X-TFS-ProcessId: a3b37369-f93a-4457-b50f-79da8a3b7287 < X-FRAME-OPTIONS: SAMEORIGIN < X-TFS-SoapException: %3c%3fxml+version%3d%221.0%22+encoding%3d%22utf-8%22%3f%3e%3csoap%3aEnvelope+xmlns%3asoap%3d%22http%3a%2f%2fwww.w3.org%2f2003%2f05%2fsoap-envelope%22%3e%3csoap%3aBody%3e%3csoap%3aFault%3e%3csoap%3aCode%3e%3csoap%3aValue%3esoap%3aReceiver%3c%2fsoap%3aValue%3e%3csoap%3aSubcode%3e%3csoap%3aValue%3eUnauthorizedRequestException%3c%2fsoap%3aValue%3e%3c%2fsoap%3aSubcode%3e%3c%2fsoap%3aCode%3e%3csoap%3aReason%3e%3csoap%3aText+xml%3alang%3d%22en%22%3eTF400813%3a+Resource+not+available+for+anonymous+access.+Client+authentication+required.%3c%2fsoap%3aText%3e%3c%2fsoap%3aReason%3e%3c%2fsoap%3aFault%3e%3c%2fsoap%3aBody%3e%3c%2fsoap%3aEnvelope%3e < X-TFS-ServiceError: TF400813%3a+Resource+not+available+for+anonymous+access.+Client+authentication+required. < WWW-Authenticate: Bearer < WWW-Authenticate: Basic realm="https://tfs.corilus.be/tfs" < WWW-Authenticate: Negotiate < WWW-Authenticate: NTLM < X-Powered-By: ASP.NET < P3P: CP="CAO DSP COR ADMa DEV CONo TELo CUR PSA PSD TAI IVDo OUR SAMi BUS DEM NAV STA UNI COM INT PHY ONL FIN PUR LOC CNT" < Lfs-Authenticate: NTLM < X-Content-Type-Options: nosniff < Date: Tue, 06 Jun 2017 10:59:00 GMT < Content-Length: 19485 <