SSL check results of pobox.com

NEW You can also bulk check multiple servers.

Discover if the mail servers for pobox.com can be reached through a secure connection.

To establish a secure connection a mail server has to offer STARTTLS (SSL), a trustworthy SSL certificate, support for the Diffie-Hellman-Algorithm to guarantee Perfect Forward Secrecy and must not be vulnerable against the Heartbleed attack. Futhermore we recommend using end-to-end encryption with GnuPG.

Summary

Report created Sat, 16 Sep 2023 00:40:24 +0000

The mailservers of pobox.com can be reached through a secure connection.

Servers

Incoming Mails

These servers are responsible for incoming mails to @pobox.com addresses.

Hostname / IP address Priority STARTTLS Certificates Protocol
pb-mx9.pobox.com
64.147.108.50
10
supported
*.pobox.com
DANE
missing
PFS
supported
Heartbleed
not vulnerable
Weak ciphers
not found
  • TLSv1.2
  • TLSv1.1
  • TLSv1.0
  • SSLv3
15 s
pb-mx14.pobox.com
64.147.108.55
10
supported
*.pobox.com
DANE
missing
PFS
supported
Heartbleed
not vulnerable
Weak ciphers
not found
  • TLSv1.2
  • TLSv1.1
  • TLSv1.0
  • SSLv3
15 s
pb-mx10.pobox.com
64.147.108.51
10
supported
*.pobox.com
DANE
missing
PFS
supported
Heartbleed
not vulnerable
Weak ciphers
not found
  • TLSv1.2
  • TLSv1.1
  • TLSv1.0
  • SSLv3
16 s
pb-mx11.pobox.com
64.147.108.52
10
supported
*.pobox.com
DANE
missing
PFS
supported
Heartbleed
not vulnerable
Weak ciphers
not found
  • TLSv1.2
  • TLSv1.1
  • TLSv1.0
  • SSLv3
16 s
pb-mx22.pobox.com
173.228.157.41
10
supported
*.pobox.com
DANE
missing
PFS
supported
Heartbleed
not vulnerable
Weak ciphers
not found
  • TLSv1.2
  • TLSv1.1
  • TLSv1.0
  • SSLv3
20 s
pb-mx20.pobox.com
173.228.157.39
10
supported
*.pobox.com
DANE
missing
PFS
supported
Heartbleed
not vulnerable
Weak ciphers
not found
  • TLSv1.2
  • TLSv1.1
  • TLSv1.0
  • SSLv3
19 s
pb-mx21.pobox.com
173.228.157.40
10
supported
*.pobox.com
DANE
missing
PFS
supported
Heartbleed
not vulnerable
Weak ciphers
not found
  • TLSv1.2
  • TLSv1.1
  • TLSv1.0
  • SSLv3
19 s
pb-mx23.pobox.com
173.228.157.42
10
supported
*.pobox.com
DANE
missing
PFS
supported
Heartbleed
not vulnerable
Weak ciphers
not found
  • TLSv1.2
  • TLSv1.1
  • TLSv1.0
  • SSLv3
18 s

Outgoing Mails

We have not received any emails from a @pobox.com address so far. Test mail delivery

Certificates

First seen at:

CN=*.pobox.com,O=FastMail Pty Ltd,L=Melbourne,ST=Victoria,C=AU

Certificate chain
Subject
Country (C)
  • AU
State (ST)
  • Victoria
Locality (L)
  • Melbourne
Organization (O)
  • FastMail Pty Ltd
Common Name (CN)
  • *.pobox.com
Alternative Names
  • *.pobox.com
  • pobox.com
Issuer
Country (C)
  • US
Organization (O)
  • DigiCert Inc
Common Name (CN)
  • DigiCert Global G2 TLS RSA SHA256 2020 CA1
validity period
Not valid before
2023-08-17
Not valid after
2024-09-16
This certifcate has been verified for the following usages:
  • Digital Signature
  • Key Encipherment
  • TLS Web Server Authentication
  • TLS Web Client Authentication
Fingerprints
SHA256
99:3A:96:04:00:F1:9C:97:E2:BB:E8:C9:4D:86:A5:C8:13:EA:E8:32:DF:EF:FE:4B:48:35:50:52:08:37:FF:80
SHA1
C4:5F:A5:0B:1E:9C:CA:27:C4:83:1A:3A:BE:7C:D5:C5:FC:91:4A:99
X509v3 extensions
authorityKeyIdentifier
  • keyid:74:85:80:C0:66:C7:DF:37:DE:CF:BD:29:37:AA:03:1D:BE:ED:CD:17
subjectKeyIdentifier
  • 5C:69:DB:E7:93:7A:59:71:40:42:1F:CF:D3:5E:87:F0:2A:C7:F3:C4
crlDistributionPoints
  • Full Name:
  • URI:http://crl3.digicert.com/DigiCertGlobalG2TLSRSASHA2562020CA1-1.crl
  • Full Name:
  • URI:http://crl4.digicert.com/DigiCertGlobalG2TLSRSASHA2562020CA1-1.crl
certificatePolicies
  • Policy: 2.23.140.1.2.2
  • CPS: http://www.digicert.com/CPS
authorityInfoAccess
  • OCSP - URI:http://ocsp.digicert.com
  • CA Issuers - URI:http://cacerts.digicert.com/DigiCertGlobalG2TLSRSASHA2562020CA1-1.crt
ct_precert_scts
  • Signed Certificate Timestamp:
  • Version : v1 (0x0)
  • Log ID : EE:CD:D0:64:D5:DB:1A:CE:C5:5C:B7:9D:B4:CD:13:A2:
  • 32:87:46:7C:BC:EC:DE:C3:51:48:59:46:71:1F:B5:9B
  • Timestamp : Aug 17 17:04:58.937 2023 GMT
  • Extensions: none
  • Signature : ecdsa-with-SHA256
  • 30:45:02:20:30:0B:AA:04:85:03:E0:77:FB:9E:11:04:
  • DF:4C:A1:26:40:8F:76:97:E2:AD:69:2F:4B:6D:02:65:
  • AB:40:59:45:02:21:00:A8:99:5E:D4:AA:6C:BE:7C:4C:
  • 9C:80:C8:2E:61:21:1D:A8:07:A5:0F:8A:D8:CB:77:65:
  • EE:A6:B9:3A:70:FF:16
  • Signed Certificate Timestamp:
  • Version : v1 (0x0)
  • Log ID : 48:B0:E3:6B:DA:A6:47:34:0F:E5:6A:02:FA:9D:30:EB:
  • 1C:52:01:CB:56:DD:2C:81:D9:BB:BF:AB:39:D8:84:73
  • Timestamp : Aug 17 17:04:58.920 2023 GMT
  • Extensions: none
  • Signature : ecdsa-with-SHA256
  • 30:45:02:21:00:A4:B6:13:0A:4C:A8:31:9E:93:64:90:
  • 2A:0A:57:ED:C4:75:9D:BB:31:85:41:2B:A7:32:E1:38:
  • B3:5B:33:93:FE:02:20:79:8E:AA:64:4D:D4:62:F8:02:
  • 54:BA:DD:A1:E9:A7:23:F0:2D:EB:42:0A:E9:79:9D:41:
  • 2B:E7:14:11:B0:E9:90
  • Signed Certificate Timestamp:
  • Version : v1 (0x0)
  • Log ID : DA:B6:BF:6B:3F:B5:B6:22:9F:9B:C2:BB:5C:6B:E8:70:
  • 91:71:6C:BB:51:84:85:34:BD:A4:3D:30:48:D7:FB:AB
  • Timestamp : Aug 17 17:04:58.866 2023 GMT
  • Extensions: none
  • Signature : ecdsa-with-SHA256
  • 30:45:02:21:00:9A:DD:DB:02:4B:41:2C:C1:9C:97:FE:
  • 70:3E:5C:3A:75:3C:FB:F6:BA:89:85:8F:68:7C:88:44:
  • 0F:4A:AE:34:BB:02:20:39:B5:06:8C:2A:82:49:D9:75:
  • C8:BC:7D:7A:36:DA:CD:55:02:0C:C7:4F:2C:E6:EA:3F:
  • 65:7A:0E:67:33:31:EB