SSL check results of dronet.de

NEW You can also bulk check multiple servers.

Discover if the mail servers for dronet.de can be reached through a secure connection.

To establish a secure connection a mail server has to offer STARTTLS (SSL), a trustworthy SSL certificate, support for the Diffie-Hellman-Algorithm to guarantee Perfect Forward Secrecy and must not be vulnerable against the Heartbleed attack. Futhermore we recommend using end-to-end encryption with GnuPG.

Summary

Report created Wed, 15 Nov 2023 20:07:44 +0000

We can not guarantee a secure connection to the mailservers of dronet.de!

Please contact the operator of dronet.de and ask him or her to solve this problem. This result stays accessible under the following address:

/mailservers/dronet.de

Servers

Incoming Mails

These servers are responsible for incoming mails to @dronet.de addresses.

Hostname / IP address Priority STARTTLS Certificates Protocol
localmail.dronet.de
89.233.74.238
Results incomplete
10
unsupported
not checked
DANE
missing
PFS
not checked
Heartbleed
not checked
Weak ciphers
not checked
1 s
jonas-droste.selfhost.eu
93.132.166.96
Results incomplete
40 not checked
DANE
missing
PFS
not checked
Heartbleed
not checked
Weak ciphers
not checked
11 s
localmail.dronet.de
89.233.74.238
Results incomplete
50
unsupported
not checked
DANE
missing
PFS
not checked
Heartbleed
not checked
Weak ciphers
not checked
1 s
mailin.selfhost.de
95.143.172.46
60
supported
*.selfhost.de
DANE
missing
PFS
supported
Heartbleed
not vulnerable
Weak ciphers
not found
  • TLSv1.0
  • SSLv3
1 s
mailin.selfhost.de
95.143.172.45
60
supported
*.selfhost.de
DANE
missing
PFS
supported
Heartbleed
not vulnerable
Weak ciphers
not found
  • TLSv1.0
  • SSLv3
2 s

Outgoing Mails

We have not received any emails from a @dronet.de address so far. Test mail delivery

Certificates

First seen at:

CN=*.selfhost.de

Certificate chain
Subject
Common Name (CN)
  • *.selfhost.de
Alternative Names
  • *.selfhost.de
  • selfhost.de
Issuer
Country (C)
  • BE
Organization (O)
  • GlobalSign nv-sa
Common Name (CN)
  • AlphaSSL CA - SHA256 - G4
validity period
Not valid before
2023-06-19
Not valid after
2024-07-20
This certifcate has been verified for the following usages:
  • Digital Signature
  • Key Encipherment
  • TLS Web Server Authentication
  • TLS Web Client Authentication
Fingerprints
SHA256
A9:81:17:EB:38:95:E8:22:38:1F:1D:BD:D5:06:26:30:DA:F6:6B:A9:6D:21:2C:85:24:BA:09:5D:C3:B2:88:F7
SHA1
D0:23:AD:A8:3A:04:28:1D:42:F0:65:32:68:65:69:C5:49:38:57:A5
X509v3 extensions
authorityInfoAccess
  • CA Issuers - URI:http://secure.globalsign.com/cacert/alphasslcasha256g4.crt
  • OCSP - URI:http://ocsp.globalsign.com/alphasslcasha256g4
certificatePolicies
  • Policy: 2.23.140.1.2.1
  • Policy: 1.3.6.1.4.1.4146.10.1.3
  • CPS: https://www.globalsign.com/repository/
crlDistributionPoints
  • Full Name:
  • URI:http://crl.globalsign.com/alphasslcasha256g4.crl
authorityKeyIdentifier
  • keyid:4F:CB:AC:A8:C2:EF:AB:DD:83:6F:6B:BF:CE:98:3D:5C:58:25:76:15
subjectKeyIdentifier
  • CB:27:54:4A:6C:3C:56:6B:52:E0:86:BE:68:CC:51:81:E5:E8:BC:03
ct_precert_scts
  • Signed Certificate Timestamp:
  • Version : v1 (0x0)
  • Log ID : EE:CD:D0:64:D5:DB:1A:CE:C5:5C:B7:9D:B4:CD:13:A2:
  • 32:87:46:7C:BC:EC:DE:C3:51:48:59:46:71:1F:B5:9B
  • Timestamp : Jun 19 14:50:28.688 2023 GMT
  • Extensions: none
  • Signature : ecdsa-with-SHA256
  • 30:45:02:20:2B:58:DA:6A:D7:57:6B:F2:F6:40:85:D0:
  • 7D:7A:BC:81:2A:87:7C:C8:A9:A8:D2:9F:81:9D:B1:2C:
  • 8B:FA:FD:80:02:21:00:A1:C8:CE:48:D2:1A:49:AC:3A:
  • C2:24:4B:EF:92:BE:4E:8C:E8:58:E9:66:40:F9:47:4D:
  • 5B:08:7D:9F:65:44:13
  • Signed Certificate Timestamp:
  • Version : v1 (0x0)
  • Log ID : 48:B0:E3:6B:DA:A6:47:34:0F:E5:6A:02:FA:9D:30:EB:
  • 1C:52:01:CB:56:DD:2C:81:D9:BB:BF:AB:39:D8:84:73
  • Timestamp : Jun 19 14:50:28.379 2023 GMT
  • Extensions: none
  • Signature : ecdsa-with-SHA256
  • 30:45:02:21:00:FF:83:8B:44:37:DC:16:33:60:4D:1E:
  • 04:6B:EC:BD:07:44:88:79:F8:EF:E7:43:C6:78:E9:43:
  • 85:84:A6:EB:E0:02:20:43:E3:22:FC:35:B0:62:45:7E:
  • B4:3A:5C:42:6E:5D:FC:18:B3:2E:DC:21:4D:D8:A2:15:
  • 56:BA:95:70:A1:2D:04
  • Signed Certificate Timestamp:
  • Version : v1 (0x0)
  • Log ID : DA:B6:BF:6B:3F:B5:B6:22:9F:9B:C2:BB:5C:6B:E8:70:
  • 91:71:6C:BB:51:84:85:34:BD:A4:3D:30:48:D7:FB:AB
  • Timestamp : Jun 19 14:50:28.613 2023 GMT
  • Extensions: none
  • Signature : ecdsa-with-SHA256
  • 30:45:02:21:00:87:E4:00:88:C5:CD:51:46:22:A0:0E:
  • DF:DE:D9:CF:EA:7B:94:D6:CF:71:39:45:94:C7:C4:5E:
  • BC:9B:4A:D0:13:02:20:71:CA:A4:92:DF:EF:2D:95:1D:
  • FB:1B:C9:AD:60:C2:C1:FC:A6:A7:12:4E:CC:E3:47:70:
  • F2:1F:E1:60:1D:DA:DC