Discover if the mail servers for enmore.de can be reached through a secure connection.
To establish a secure connection a mail server has to offer STARTTLS (SSL), a trustworthy SSL certificate, support for the Diffie-Hellman-Algorithm to guarantee Perfect Forward Secrecy and must not be vulnerable against the Heartbleed attack. Futhermore we recommend using end-to-end encryption with GnuPG.
Report created Wed, 27 May 2020 00:35:44 +0000
However, we found problems that may affect the security.
These servers are responsible for incoming mails to @enmore.de addresses.
Hostname / IP address | Priority | STARTTLS | Certificates | Protocol | ||
---|---|---|---|---|---|---|
mx01.enmore-gruppe.de
2003:4a:23:1::60
|
10 |
supported
|
SRVMXS01.enmore.de |
|
2 s
|
|
mx01.enmore-gruppe.de
62.157.103.74
|
10 |
supported
|
SRVMXS01.enmore.de |
|
2 s
|
|
mx03.enmore-gruppe.de
130.180.81.60
|
20 |
supported
|
SRVMXS01.enmore.de |
|
3 s
|
We have received emails from these servers with @enmore.de sender addresses. Test mail delivery
Host | TLS Version & Cipher | |
---|---|---|
mail-am6eur05on20626.outbound.protection.outlook.com (IPv6:2a01:111:f400:7e1b::626) |
TLSv1.2
ECDHE-RSA-AES256-GCM-SHA384
|
|
mail.enmore-gruppe.de (212.185.126.214) |
TLSv1.2
ECDHE-RSA-AES256-SHA384
|
Certificate is self-signed.
DNS-based Authentication of Named Entities (DANE) is a protocol to allow X.509 certificates to be bound to DNS using TLSA records and DNSSEC.
Name | Options | DNSSEC | Matches |
---|---|---|---|
_25._tcp.mx01.enmore-gruppe.de |
|
valid
|
valid
|
_25._tcp.mx03.enmore-gruppe.de |
|
valid
|
valid
|