SSL check results of afik.ie

NEW You can also bulk check multiple servers.

Discover if the mail servers for afik.ie can be reached through a secure connection.

To establish a secure connection a mail server has to offer STARTTLS (SSL), a trustworthy SSL certificate, support for the Diffie-Hellman-Algorithm to guarantee Perfect Forward Secrecy and must not be vulnerable against the Heartbleed attack. Futhermore we recommend using end-to-end encryption with GnuPG.

Summary

Report created Sun, 19 Oct 2025 00:30:07 +0000

The mailservers of afik.ie can be reached through a secure connection.

Servers

Incoming Mails

These servers are responsible for incoming mails to @afik.ie addresses.

Hostname / IP address Priority STARTTLS Certificates Protocol
mail.afik.ie
2a01:7e00::f03c:92ff:fe19:7579
10
supported
mail.afik.ie
DANE
missing
PFS
supported
Heartbleed
not vulnerable
Weak ciphers
not found
  • TLSv1.2
  • TLSv1.1
  • TLSv1.0
  • SSLv3
3 s
mail.afik.ie
109.74.192.172
10
supported
mail.afik.ie
DANE
missing
PFS
supported
Heartbleed
not vulnerable
Weak ciphers
not found
  • TLSv1.2
  • TLSv1.1
  • TLSv1.0
  • SSLv3
3 s

Outgoing Mails

We have not received any emails from a @afik.ie address so far. Test mail delivery

Certificates

First seen at:

CN=mail.afik.ie

Certificate chain
  • mail.afik.ie
    • remaining
    • 256 bit
    • ecdsa-with-SHA384

      • E8
        • remaining
        • 384 bit
        • sha256WithRSAEncryption

          • ISRG Root X1 (Certificate is self-signed.)
            • remaining
            • 4096 bit
            • sha256WithRSAEncryption

Subject
Common Name (CN)
  • mail.afik.ie
Alternative Names
  • mail.afik.ie
Issuer
Country (C)
  • US
Organization (O)
  • Let's Encrypt
Common Name (CN)
  • E8
validity period
Not valid before
2025-10-17
Not valid after
2026-01-15
This certifcate has been verified for the following usages:
  • Digital Signature
  • TLS Web Server Authentication
  • TLS Web Client Authentication
Fingerprints
SHA256
D2:E7:46:28:D0:CC:F4:1F:13:AD:88:C1:E1:EC:E8:DD:D3:24:B3:4E:0D:38:E0:DB:F8:2E:BA:22:F8:C2:C3:F4
SHA1
05:97:2B:5F:DC:D5:A7:C8:D1:5B:6D:3D:EE:65:6D:78:FB:AD:85:3E
X509v3 extensions
subjectKeyIdentifier
  • F0:FE:6F:1C:4D:C2:8D:75:A3:E9:11:7E:D9:0C:3F:D4:2F:2A:2C:95
authorityKeyIdentifier
  • keyid:8F:0D:13:A2:F6:2E:7E:D1:50:6C:33:18:38:5D:59:8E:23:72:91:CA
authorityInfoAccess
  • CA Issuers - URI:http://e8.i.lencr.org/
certificatePolicies
  • Policy: 2.23.140.1.2.1
crlDistributionPoints
  • Full Name:
  • URI:http://e8.c.lencr.org/61.crl
ct_precert_scts
  • Signed Certificate Timestamp:
  • Version : v1 (0x0)
  • Log ID : CB:38:F7:15:89:7C:84:A1:44:5F:5B:C1:DD:FB:C9:6E:
  • F2:9A:59:CD:47:0A:69:05:85:B0:CB:14:C3:14:58:E7
  • Timestamp : Oct 17 21:32:38.218 2025 GMT
  • Extensions: none
  • Signature : ecdsa-with-SHA256
  • 30:46:02:21:00:C3:D8:09:BD:7E:14:0A:44:0C:DC:A6:
  • 84:1B:35:F3:5F:1F:37:2C:77:BE:16:3A:CE:CE:68:F1:
  • 57:22:5D:3F:5C:02:21:00:BE:6C:BB:A6:CD:78:1D:5E:
  • 63:B1:C9:32:18:0C:73:42:D4:72:69:19:72:43:D0:F2:
  • 17:D9:72:24:3D:1C:6D:8A
  • Signed Certificate Timestamp:
  • Version : v1 (0x0)
  • Log ID : 0E:57:94:BC:F3:AE:A9:3E:33:1B:2C:99:07:B3:F7:90:
  • DF:9B:C2:3D:71:32:25:DD:21:A9:25:AC:61:C5:4E:21
  • Timestamp : Oct 17 21:32:38.201 2025 GMT
  • Extensions: none
  • Signature : ecdsa-with-SHA256
  • 30:46:02:21:00:CD:8A:26:2B:E5:58:70:6D:F7:FD:DA:
  • B9:62:B4:7F:0C:CC:4F:9F:1E:FF:4D:A6:A8:B4:23:29:
  • CD:FD:6A:DF:F6:02:21:00:AA:74:91:89:C5:96:AF:1D:
  • BF:15:31:BB:93:8C:4A:BE:2C:77:7A:87:BC:51:DE:21:
  • 6F:DC:4B:05:A7:94:D6:AD