SSL check results of gries.nrw

NEW You can also bulk check multiple servers.

Discover if the mail servers for gries.nrw can be reached through a secure connection.

To establish a secure connection a mail server has to offer STARTTLS (SSL), a trustworthy SSL certificate, support for the Diffie-Hellman-Algorithm to guarantee Perfect Forward Secrecy and must not be vulnerable against the Heartbleed attack. Futhermore we recommend using end-to-end encryption with GnuPG.

Summary

Report created Sat, 30 Sep 2023 14:55:01 +0000

The mailservers of gries.nrw can be reached through a secure connection.

Servers

Incoming Mails

These servers are responsible for incoming mails to @gries.nrw addresses.

Hostname / IP address Priority STARTTLS Certificates Protocol
mail.gries.nrw
178.18.250.115
1
supported
*.gries.nrw
DANE
missing
PFS
supported
Heartbleed
not vulnerable
Weak ciphers
not found
  • TLSv1.2
  • TLSv1.1
  • TLSv1.0
  • SSLv3
11 s

Outgoing Mails

We have not received any emails from a @gries.nrw address so far. Test mail delivery

Certificates

First seen at:

CN=*.gries.nrw

Certificate chain
  • *.gries.nrw
    • remaining
    • 384 bit
    • sha256WithRSAEncryption

      • R3
        • remaining
        • 2048 bit
        • sha256WithRSAEncryption

          • ISRG Root X1 (Certificate is self-signed.)
            • remaining
            • 4096 bit
            • sha256WithRSAEncryption

Subject
Common Name (CN)
  • *.gries.nrw
Alternative Names
  • *.gries.nrw
  • gries.nrw
Issuer
Country (C)
  • US
Organization (O)
  • Let's Encrypt
Common Name (CN)
  • R3
validity period
Not valid before
2023-09-30
Not valid after
2023-12-29
This certifcate has been verified for the following usages:
  • Digital Signature
  • TLS Web Server Authentication
  • TLS Web Client Authentication
Fingerprints
SHA256
2E:3C:B4:63:B9:C8:26:5B:1E:AE:43:37:AB:AD:2E:26:82:8D:A9:0F:73:42:8B:4C:E8:34:E1:05:CC:65:3A:0B
SHA1
8A:58:64:F0:F6:83:35:AE:0D:04:19:BD:10:E6:67:44:BF:4F:50:CD
X509v3 extensions
subjectKeyIdentifier
  • 58:83:B9:BA:9E:D3:1A:3E:C3:04:24:B0:7D:1C:A8:A0:6F:5C:23:12
authorityKeyIdentifier
  • keyid:14:2E:B3:17:B7:58:56:CB:AE:50:09:40:E6:1F:AF:9D:8B:14:C2:C6
authorityInfoAccess
  • OCSP - URI:http://r3.o.lencr.org
  • CA Issuers - URI:http://r3.i.lencr.org/
certificatePolicies
  • Policy: 2.23.140.1.2.1
ct_precert_scts
  • Signed Certificate Timestamp:
  • Version : v1 (0x0)
  • Log ID : 7A:32:8C:54:D8:B7:2D:B6:20:EA:38:E0:52:1E:E9:84:
  • 16:70:32:13:85:4D:3B:D2:2B:C1:3A:57:A3:52:EB:52
  • Timestamp : Sep 30 13:28:58.339 2023 GMT
  • Extensions: none
  • Signature : ecdsa-with-SHA256
  • 30:44:02:20:44:87:09:BE:34:A5:91:BD:CB:F4:56:4C:
  • 88:64:38:19:16:BC:3E:1C:BF:E3:2F:EA:84:0F:B8:69:
  • 51:47:21:73:02:20:10:6C:7B:CE:79:44:0A:47:83:B0:
  • E3:4E:E7:FF:4D:7F:67:88:1A:CB:58:15:6B:B2:3C:E6:
  • A8:CC:90:D9:93:61
  • Signed Certificate Timestamp:
  • Version : v1 (0x0)
  • Log ID : B7:3E:FB:24:DF:9C:4D:BA:75:F2:39:C5:BA:58:F4:6C:
  • 5D:FC:42:CF:7A:9F:35:C4:9E:1D:09:81:25:ED:B4:99
  • Timestamp : Sep 30 13:28:58.330 2023 GMT
  • Extensions: none
  • Signature : ecdsa-with-SHA256
  • 30:45:02:20:00:BF:79:C8:75:5F:CF:5B:6E:9C:5A:61:
  • 9B:74:13:68:EA:93:96:93:1E:7A:6D:00:B6:A3:66:26:
  • F9:3D:30:3E:02:21:00:9A:75:38:5F:E7:EA:39:65:D1:
  • AB:C8:4C:7B:D8:78:08:FF:74:FD:36:66:77:B4:21:3B:
  • 47:CE:E7:69:75:A8:7D