SSL check results of one.nl

NEW You can also bulk check multiple servers.

Discover if the mail servers for one.nl can be reached through a secure connection.

To establish a secure connection a mail server has to offer STARTTLS (SSL), a trustworthy SSL certificate, support for the Diffie-Hellman-Algorithm to guarantee Perfect Forward Secrecy and must not be vulnerable against the Heartbleed attack. Futhermore we recommend using end-to-end encryption with GnuPG.

Summary

Report created Fri, 29 Aug 2025 20:43:04 +0000

The mailservers of one.nl can be reached through a secure connection.

Servers

Incoming Mails

These servers are responsible for incoming mails to @one.nl addresses.

Hostname / IP address Priority STARTTLS Certificates Protocol
mail.one.nl
178.162.165.82
10
supported
mail.one.nl
DANE
missing
PFS
supported
Heartbleed
not vulnerable
Weak ciphers
not found
  • TLSv1.2
  • TLSv1.1
  • TLSv1.0
  • SSLv3
2 s

Outgoing Mails

We have not received any emails from a @one.nl address so far. Test mail delivery

Certificates

First seen at:

CN=mail.one.nl

Certificate chain
  • mail.one.nl
    • remaining
    • 4096 bit
    • sha256WithRSAEncryption

      • R11
        • remaining
        • 2048 bit
        • sha256WithRSAEncryption

          • ISRG Root X1 (Certificate is self-signed.)
            • remaining
            • 4096 bit
            • sha256WithRSAEncryption

Subject
Common Name (CN)
  • mail.one.nl
Alternative Names
  • mail.one.nl
Issuer
Country (C)
  • US
Organization (O)
  • Let's Encrypt
Common Name (CN)
  • R11
validity period
Not valid before
2025-07-28
Not valid after
2025-10-26
This certifcate has been verified for the following usages:
  • Digital Signature
  • Key Encipherment
  • TLS Web Server Authentication
  • TLS Web Client Authentication
Fingerprints
SHA256
A0:49:2C:38:47:BF:98:18:59:59:27:46:3A:A0:26:26:04:F5:AE:74:A7:D4:0F:DB:D3:52:B6:08:8F:35:8A:17
SHA1
1B:E5:08:2A:A4:B1:BF:38:2B:96:91:60:61:CF:25:B1:7F:E2:70:F3
X509v3 extensions
subjectKeyIdentifier
  • A5:05:27:F4:CC:B4:85:B0:9C:A2:B9:1A:54:EF:F2:79:4E:90:49:92
authorityKeyIdentifier
  • keyid:C5:CF:46:A4:EA:F4:C3:C0:7A:6C:95:C4:2D:B0:5E:92:2F:26:E3:B9
authorityInfoAccess
  • CA Issuers - URI:http://r11.i.lencr.org/
certificatePolicies
  • Policy: 2.23.140.1.2.1
crlDistributionPoints
  • Full Name:
  • URI:http://r11.c.lencr.org/21.crl
ct_precert_scts
  • Signed Certificate Timestamp:
  • Version : v1 (0x0)
  • Log ID : ED:3C:4B:D6:E8:06:C2:A4:A2:00:57:DB:CB:24:E2:38:
  • 01:DF:51:2F:ED:C4:86:C5:70:0F:20:DD:B7:3E:3F:E0
  • Timestamp : Jul 28 04:46:09.966 2025 GMT
  • Extensions: none
  • Signature : ecdsa-with-SHA256
  • 30:44:02:20:5E:2F:6D:40:85:29:BB:85:B4:B8:18:0D:
  • 97:B5:3A:FD:06:42:FE:F4:90:86:3A:3E:72:45:7D:49:
  • A9:6A:82:C5:02:20:6E:CF:59:D3:63:D2:94:9A:E7:67:
  • 55:5A:3A:0F:8E:39:12:76:87:5B:93:E3:EB:FF:6E:5E:
  • 53:59:E0:AA:E6:35
  • Signed Certificate Timestamp:
  • Version : v1 (0x0)
  • Log ID : CC:FB:0F:6A:85:71:09:65:FE:95:9B:53:CE:E9:B2:7C:
  • 22:E9:85:5C:0D:97:8D:B6:A9:7E:54:C0:FE:4C:0D:B0
  • Timestamp : Jul 28 04:46:09.979 2025 GMT
  • Extensions: none
  • Signature : ecdsa-with-SHA256
  • 30:44:02:20:16:56:A9:7F:BB:4A:43:36:22:EE:2A:43:
  • D8:AC:5D:42:6B:C1:80:AF:91:DA:31:00:1B:D0:71:63:
  • F2:19:B9:F6:02:20:5C:BC:ED:2E:56:EC:A0:9B:85:42:
  • D1:25:25:D6:4D:56:75:D4:CF:5B:55:DE:18:A9:EE:8E:
  • F0:F1:58:5F:DF:F8