SSL check results of keithws.net

NEW You can also bulk check multiple servers.

Discover if the mail servers for keithws.net can be reached through a secure connection.

To establish a secure connection a mail server has to offer STARTTLS (SSL), a trustworthy SSL certificate, support for the Diffie-Hellman-Algorithm to guarantee Perfect Forward Secrecy and must not be vulnerable against the Heartbleed attack. Futhermore we recommend using end-to-end encryption with GnuPG.

Summary

Report created Fri, 01 Aug 2025 00:31:30 +0000

The mailservers of keithws.net can be reached through a secure connection.

Servers

Incoming Mails

These servers are responsible for incoming mails to @keithws.net addresses.

Hostname / IP address Priority STARTTLS Certificates Protocol
mail.keithws.net
2600:3c00::f03c:91ff:fe2c:60e2
10
supported
mail.keithws.net
DANE
missing
PFS
supported
Heartbleed
not vulnerable
Weak ciphers
not found
  • TLSv1.2
  • SSLv3
43 s
mail.keithws.net
69.164.197.209
10
supported
mail.keithws.net
DANE
missing
PFS
supported
Heartbleed
not vulnerable
Weak ciphers
not found
  • TLSv1.2
  • SSLv3
41 s

Outgoing Mails

We have not received any emails from a @keithws.net address so far. Test mail delivery

Certificates

First seen at:

CN=mail.keithws.net

Certificate chain
  • mail.keithws.net
    • remaining
    • 256 bit
    • ecdsa-with-SHA384

      • E6
        • remaining
        • 384 bit
        • sha256WithRSAEncryption

          • ISRG Root X1 (Certificate is self-signed.)
            • remaining
            • 4096 bit
            • sha256WithRSAEncryption

Subject
Common Name (CN)
  • mail.keithws.net
Alternative Names
  • mail.keithws.net
Issuer
Country (C)
  • US
Organization (O)
  • Let's Encrypt
Common Name (CN)
  • E6
validity period
Not valid before
2025-06-07
Not valid after
2025-09-05
This certifcate has been verified for the following usages:
  • Digital Signature
  • TLS Web Server Authentication
  • TLS Web Client Authentication
Fingerprints
SHA256
74:7F:2B:DC:46:A0:6B:D9:E7:3A:DF:27:62:95:50:0A:0C:9A:AD:4B:1F:EA:F1:60:E1:FC:66:5A:A8:51:E6:89
SHA1
4D:90:43:73:B5:BD:2B:61:FA:70:F7:58:58:7F:58:09:E4:41:4C:99
X509v3 extensions
subjectKeyIdentifier
  • 3C:56:15:9F:7E:4A:AC:F9:56:78:D6:B6:57:27:7B:DA:68:B6:2C:89
authorityKeyIdentifier
  • keyid:93:27:46:98:03:A9:51:68:8E:98:D6:C4:42:48:DB:23:BF:58:94:D2
authorityInfoAccess
  • CA Issuers - URI:http://e6.i.lencr.org/
certificatePolicies
  • Policy: 2.23.140.1.2.1
crlDistributionPoints
  • Full Name:
  • URI:http://e6.c.lencr.org/15.crl
ct_precert_scts
  • Signed Certificate Timestamp:
  • Version : v1 (0x0)
  • Log ID : CC:FB:0F:6A:85:71:09:65:FE:95:9B:53:CE:E9:B2:7C:
  • 22:E9:85:5C:0D:97:8D:B6:A9:7E:54:C0:FE:4C:0D:B0
  • Timestamp : Jun 8 00:20:22.014 2025 GMT
  • Extensions: none
  • Signature : ecdsa-with-SHA256
  • 30:44:02:20:60:45:0A:75:2D:E7:6A:D7:AD:BA:E3:2F:
  • 83:73:50:2E:97:91:BD:EA:F4:DA:D5:4F:5B:29:F4:C8:
  • F1:8D:4B:3E:02:20:06:77:04:83:63:0A:13:B7:C7:85:
  • 93:98:33:1A:1C:B5:DA:78:0F:A7:D0:7B:4A:53:D6:29:
  • 04:D9:53:F1:A4:68
  • Signed Certificate Timestamp:
  • Version : v1 (0x0)
  • Log ID : 0D:E1:F2:30:2B:D3:0D:C1:40:62:12:09:EA:55:2E:FC:
  • 47:74:7C:B1:D7:E9:30:EF:0E:42:1E:B4:7E:4E:AA:34
  • Timestamp : Jun 8 00:20:24.003 2025 GMT
  • Extensions: none
  • Signature : ecdsa-with-SHA256
  • 30:45:02:20:0C:5D:BB:B0:FE:59:50:9F:D7:2E:E4:8C:
  • FC:F0:5A:AB:41:F3:57:20:5B:44:76:40:2E:6C:D5:DD:
  • 01:66:23:5E:02:21:00:8C:FF:1D:74:7C:11:87:35:48:
  • 4E:FA:CB:CF:5D:03:67:42:CD:CB:46:A8:CC:3F:BD:C1:
  • 3F:6E:7A:1D:D8:EB:5C