SSL check results of albw.de

NEW You can also bulk check multiple servers.

Discover if the mail servers for albw.de can be reached through a secure connection.

To establish a secure connection a mail server has to offer STARTTLS (SSL), a trustworthy SSL certificate, support for the Diffie-Hellman-Algorithm to guarantee Perfect Forward Secrecy and must not be vulnerable against the Heartbleed attack. Futhermore we recommend using end-to-end encryption with GnuPG.

Summary

Report created Mon, 01 Apr 2024 12:10:22 +0000

The mailservers of albw.de can be reached through a secure connection.

Servers

Incoming Mails

These servers are responsible for incoming mails to @albw.de addresses.

Hostname / IP address Priority STARTTLS Certificates Protocol
mail.albw.de
80.154.120.242
10
supported
exchange2016.albw.de
DANE
missing
PFS
supported
Heartbleed
not vulnerable
Weak ciphers
not found
  • TLSv1.2
  • TLSv1.1
  • TLSv1.0
  • SSLv3
8 s
mailbackup.albw.de
5.100.133.31
20
supported
exchange2016.albw.de
DANE
missing
PFS
supported
Heartbleed
not vulnerable
Weak ciphers
not found
  • TLSv1.2
  • TLSv1.1
  • TLSv1.0
  • SSLv3
8 s

Outgoing Mails

We have received emails from these servers with @albw.de sender addresses. Test mail delivery

Host TLS Version & Cipher
mail.albw.de (80.154.120.242)
TLSv1.2 ECDHE-RSA-AES128-SHA256

Certificates

First seen at:

CN=exchange2016.albw.de

Certificate chain
  • exchange2016.albw.de
    • remaining
    • 2048 bit
    • sha256WithRSAEncryption

      • R3
        • remaining
        • 2048 bit
        • sha256WithRSAEncryption

          • ISRG Root X1 (Certificate is self-signed.)
            • remaining
            • 4096 bit
            • sha256WithRSAEncryption

Subject
Common Name (CN)
  • exchange2016.albw.de
Alternative Names
  • autodiscover.albw.de
  • autodiscover.org.albw.de
  • exchange2016.albw.de
  • exchange2016.org.albw.de
  • mail.albw.de
  • mailbackup.albw.de
  • owa.albw.de
Issuer
Country (C)
  • US
Organization (O)
  • Let's Encrypt
Common Name (CN)
  • R3
validity period
Not valid before
2024-04-01
Not valid after
2024-06-30
This certifcate has been verified for the following usages:
  • Digital Signature
  • Key Encipherment
  • TLS Web Server Authentication
  • TLS Web Client Authentication
Fingerprints
SHA256
63:53:A5:77:86:97:16:EF:6C:F2:EA:F0:26:B6:FF:2D:DD:0C:A6:EF:70:57:0E:0F:C8:19:EA:FF:9B:72:66:B7
SHA1
A1:B9:32:1B:64:C0:81:47:92:1B:E2:72:01:5C:90:30:70:31:B3:A0
X509v3 extensions
subjectKeyIdentifier
  • BF:1B:54:2A:16:95:9B:91:2D:95:38:6D:55:BE:F1:B7:DD:49:D9:C7
authorityKeyIdentifier
  • keyid:14:2E:B3:17:B7:58:56:CB:AE:50:09:40:E6:1F:AF:9D:8B:14:C2:C6
authorityInfoAccess
  • OCSP - URI:http://r3.o.lencr.org
  • CA Issuers - URI:http://r3.i.lencr.org/
certificatePolicies
  • Policy: 2.23.140.1.2.1
ct_precert_scts
  • Signed Certificate Timestamp:
  • Version : v1 (0x0)
  • Log ID : 3B:53:77:75:3E:2D:B9:80:4E:8B:30:5B:06:FE:40:3B:
  • 67:D8:4F:C3:F4:C7:BD:00:0D:2D:72:6F:E1:FA:D4:17
  • Timestamp : Apr 1 12:08:10.703 2024 GMT
  • Extensions: none
  • Signature : ecdsa-with-SHA256
  • 30:46:02:21:00:C9:73:30:7C:D6:C2:73:C7:32:DE:30:
  • A2:09:64:C0:0B:F1:53:03:8E:1E:72:49:2B:E5:DE:ED:
  • 75:96:14:58:56:02:21:00:B0:C2:68:AB:B8:B6:4C:69:
  • FD:A4:C8:BC:27:6A:6A:C5:49:98:0D:E8:E3:17:88:0E:
  • F8:6C:B6:BA:08:D0:FE:CA
  • Signed Certificate Timestamp:
  • Version : v1 (0x0)
  • Log ID : 76:FF:88:3F:0A:B6:FB:95:51:C2:61:CC:F5:87:BA:34:
  • B4:A4:CD:BB:29:DC:68:42:0A:9F:E6:67:4C:5A:3A:74
  • Timestamp : Apr 1 12:08:10.766 2024 GMT
  • Extensions: none
  • Signature : ecdsa-with-SHA256
  • 30:44:02:20:6D:A1:31:39:61:74:6C:55:3B:54:6D:0B:
  • F4:E3:83:C2:84:C8:E9:D7:F0:79:2B:CB:F3:24:65:F4:
  • 51:C5:10:3F:02:20:53:E6:EB:AB:6F:32:34:00:4B:39:
  • CD:9B:4F:0F:26:2A:45:25:7F:DF:D8:C7:A5:6A:12:43:
  • FF:2D:EC:78:B5:A1