SSL check results of lrz.de

NEW You can also bulk check multiple servers.

Discover if the mail servers for lrz.de can be reached through a secure connection.

To establish a secure connection a mail server has to offer STARTTLS (SSL), a trustworthy SSL certificate, support for the Diffie-Hellman-Algorithm to guarantee Perfect Forward Secrecy and must not be vulnerable against the Heartbleed attack. Futhermore we recommend using end-to-end encryption with GnuPG.

Summary

Report created Thu, 07 Sep 2023 07:11:45 +0000

No connection to the mailservers of lrz.de could be established.

Servers

Incoming Mails

These servers are responsible for incoming mails to @lrz.de addresses.

Hostname / IP address Priority STARTTLS Certificates Protocol
postrelay1.lrz.de
2001:4ca0::103:0:25:1:1
Results incomplete
100
supported
not checked
DANE
errors
PFS
supported
Heartbleed
not vulnerable
Weak ciphers
not found
  • TLSv1.2
  • SSLv3
6 s
postrelay1.lrz.de
2001:4ca0:0:103::81bb:ffa0
Results incomplete
100
supported
not checked
DANE
errors
PFS
supported
Heartbleed
not vulnerable
Weak ciphers
not found
  • TLSv1.2
  • SSLv3
6 s
postrelay1.lrz.de
129.187.254.158
Results incomplete
100
supported
not checked
DANE
errors
PFS
supported
Heartbleed
not vulnerable
Weak ciphers
not found
  • TLSv1.2
  • SSLv3
6 s
postrelay1.lrz.de
129.187.255.160
Results incomplete
100
supported
not checked
DANE
errors
PFS
supported
Heartbleed
not vulnerable
Weak ciphers
not found
  • TLSv1.2
  • SSLv3
6 s
postrelay2.lrz.de
2001:4ca0:0:103::81bb:ffa1
Results incomplete
100
supported
not checked
DANE
errors
PFS
supported
Heartbleed
not vulnerable
Weak ciphers
not found
  • TLSv1.2
  • SSLv3
6 s
postrelay2.lrz.de
2001:4ca0::103:0:25:1:2
Results incomplete
100
supported
not checked
DANE
errors
PFS
supported
Heartbleed
not vulnerable
Weak ciphers
not found
  • TLSv1.2
  • SSLv3
6 s
postrelay2.lrz.de
129.187.255.161
Results incomplete
100
supported
not checked
DANE
errors
PFS
supported
Heartbleed
not vulnerable
Weak ciphers
not found
  • TLSv1.2
  • SSLv3
6 s
postrelay2.lrz.de
129.187.254.159
Results incomplete
100
supported
not checked
DANE
errors
PFS
supported
Heartbleed
not vulnerable
Weak ciphers
not found
  • TLSv1.2
  • SSLv3
6 s

Outgoing Mails

We have not received any emails from a @lrz.de address so far. Test mail delivery

Certificates

No Certificates found

DANE

DNS-based Authentication of Named Entities (DANE) is a protocol to allow X.509 certificates to be bound to DNS using TLSA records and DNSSEC.

Name Options DNSSEC Matches
_25._tcp.postrelay1.lrz.de
  • DANE-EE: Domain Issued Certificate
  • Use subject public key
  • SHA-256 Hash
valid
_25._tcp.postrelay2.lrz.de
  • DANE-EE: Domain Issued Certificate
  • Use subject public key
  • SHA-256 Hash
valid