SSL check results of privatemail.dk

NEW You can also bulk check multiple servers.

Discover if the mail servers for privatemail.dk can be reached through a secure connection.

To establish a secure connection a mail server has to offer STARTTLS (SSL), a trustworthy SSL certificate, support for the Diffie-Hellman-Algorithm to guarantee Perfect Forward Secrecy and must not be vulnerable against the Heartbleed attack. Futhermore we recommend using end-to-end encryption with GnuPG.

Summary

Report created Tue, 19 Nov 2024 11:42:21 +0000

The mailservers of privatemail.dk can be reached through a secure connection.

Servers

Incoming Mails

These servers are responsible for incoming mails to @privatemail.dk addresses.

Hostname / IP address Priority STARTTLS Certificates Protocol
mx1.privatemail.dk
2a05:d016:4a1:e101:1ef3:cecd:eab0:9fa4
10
supported
mx1.privatemail.dk
DANE
valid
PFS
supported
Heartbleed
not vulnerable
Weak ciphers
not found
  • TLSv1.2
  • SSLv3
3 s
mx1.privatemail.dk
13.48.16.37
10
supported
mx1.privatemail.dk
DANE
valid
PFS
supported
Heartbleed
not vulnerable
Weak ciphers
not found
  • TLSv1.2
  • SSLv3
3 s
mx2.privatemail.dk
2a05:d016:4a1:e102:fd75:10b2:fbdb:746a
10
supported
mx2.privatemail.dk
DANE
valid
PFS
supported
Heartbleed
not vulnerable
Weak ciphers
not found
  • TLSv1.2
  • SSLv3
2 s
mx2.privatemail.dk
16.16.0.181
10
supported
mx2.privatemail.dk
DANE
valid
PFS
supported
Heartbleed
not vulnerable
Weak ciphers
not found
  • TLSv1.2
  • SSLv3
3 s

Outgoing Mails

We have not received any emails from a @privatemail.dk address so far. Test mail delivery

Certificates

First seen at:

CN=mx1.privatemail.dk

Certificate chain
  • mx1.privatemail.dk
    • remaining
    • 256 bit
    • ecdsa-with-SHA384

      • E5
        • remaining
        • 384 bit
        • sha256WithRSAEncryption

          • ISRG Root X1 (Certificate is self-signed.)
            • remaining
            • 4096 bit
            • sha256WithRSAEncryption

Subject
Common Name (CN)
  • mx1.privatemail.dk
Alternative Names
  • mx1.privatemail.dk
Issuer
Country (C)
  • US
Organization (O)
  • Let's Encrypt
Common Name (CN)
  • E5
validity period
Not valid before
2024-09-23
Not valid after
2024-12-22
This certifcate has been verified for the following usages:
  • Digital Signature
  • TLS Web Server Authentication
  • TLS Web Client Authentication
Fingerprints
SHA256
09:53:87:F0:F3:77:A8:25:20:D5:A0:64:A7:B2:55:40:95:42:C9:DA:80:4A:A1:45:CC:61:AD:A5:5B:42:71:49
SHA1
82:99:47:35:6A:C6:E7:27:E8:20:33:51:BF:EF:B6:D0:D8:DF:E4:EB
X509v3 extensions
subjectKeyIdentifier
  • 41:FA:E2:D4:E2:20:DA:23:55:ED:CB:04:50:DD:5A:B2:4D:03:58:D9
authorityKeyIdentifier
  • keyid:9F:2B:5F:CF:3C:21:4F:9D:04:B7:ED:2B:2C:C4:C6:70:8B:D2:D7:0D
authorityInfoAccess
  • OCSP - URI:http://e5.o.lencr.org
  • CA Issuers - URI:http://e5.i.lencr.org/
certificatePolicies
  • Policy: 2.23.140.1.2.1
ct_precert_scts
  • Signed Certificate Timestamp:
  • Version : v1 (0x0)
  • Log ID : 76:FF:88:3F:0A:B6:FB:95:51:C2:61:CC:F5:87:BA:34:
  • B4:A4:CD:BB:29:DC:68:42:0A:9F:E6:67:4C:5A:3A:74
  • Timestamp : Sep 23 06:18:56.346 2024 GMT
  • Extensions: none
  • Signature : ecdsa-with-SHA256
  • 30:45:02:21:00:F3:66:22:D7:0F:DB:09:81:71:D2:35:
  • D1:7C:A2:42:F4:B7:8E:39:26:FB:0B:A7:9B:90:74:20:
  • D9:25:7E:95:F9:02:20:0F:3B:A3:4D:08:E8:D7:01:A2:
  • 71:28:A3:41:8A:27:69:15:10:07:A6:24:6C:5A:8E:E3:
  • 3E:F8:E5:B0:57:D1:10
  • Signed Certificate Timestamp:
  • Version : v1 (0x0)
  • Log ID : 48:B0:E3:6B:DA:A6:47:34:0F:E5:6A:02:FA:9D:30:EB:
  • 1C:52:01:CB:56:DD:2C:81:D9:BB:BF:AB:39:D8:84:73
  • Timestamp : Sep 23 06:18:56.306 2024 GMT
  • Extensions: none
  • Signature : ecdsa-with-SHA256
  • 30:45:02:21:00:F2:F3:A6:AE:77:47:6A:AC:26:EF:53:
  • 30:65:E4:55:66:6B:7E:41:4C:27:D8:12:E1:F1:9F:39:
  • 10:FA:C2:EB:DD:02:20:39:3F:17:20:00:DA:2C:0B:B1:
  • BE:66:B7:5C:40:A4:FE:6F:12:4B:0E:30:32:7E:DA:35:
  • 99:C7:2A:9F:66:F0:8A
First seen at:

CN=mx2.privatemail.dk

Certificate chain
  • mx2.privatemail.dk
    • remaining
    • 256 bit
    • ecdsa-with-SHA384

      • E5
        • remaining
        • 384 bit
        • sha256WithRSAEncryption

          • ISRG Root X1 (Certificate is self-signed.)
            • remaining
            • 4096 bit
            • sha256WithRSAEncryption

Subject
Common Name (CN)
  • mx2.privatemail.dk
Alternative Names
  • mx2.privatemail.dk
  • smtp.moellers.dk
  • smtp.privatemail.dk
Issuer
Country (C)
  • US
Organization (O)
  • Let's Encrypt
Common Name (CN)
  • E5
validity period
Not valid before
2024-10-18
Not valid after
2025-01-16
This certifcate has been verified for the following usages:
  • Digital Signature
  • TLS Web Server Authentication
  • TLS Web Client Authentication
Fingerprints
SHA256
80:46:E4:5A:33:C2:0C:5A:DD:EE:A6:ED:60:A6:AC:42:1A:70:8C:E6:4B:74:BC:9F:64:93:C4:12:1A:C2:1C:96
SHA1
D7:B0:8D:1D:A5:E9:A8:19:64:AE:5A:90:00:C1:19:A1:BF:F0:C5:A0
X509v3 extensions
subjectKeyIdentifier
  • B3:9A:51:BB:A5:1E:15:9C:51:A0:06:49:36:4C:E5:92:96:84:ED:53
authorityKeyIdentifier
  • keyid:9F:2B:5F:CF:3C:21:4F:9D:04:B7:ED:2B:2C:C4:C6:70:8B:D2:D7:0D
authorityInfoAccess
  • OCSP - URI:http://e5.o.lencr.org
  • CA Issuers - URI:http://e5.i.lencr.org/
certificatePolicies
  • Policy: 2.23.140.1.2.1
ct_precert_scts
  • Signed Certificate Timestamp:
  • Version : v1 (0x0)
  • Log ID : E0:92:B3:FC:0C:1D:C8:E7:68:36:1F:DE:61:B9:96:4D:
  • 0A:52:78:19:8A:72:D6:72:C4:B0:4D:A5:6D:6F:54:04
  • Timestamp : Oct 18 12:59:44.583 2024 GMT
  • Extensions: none
  • Signature : ecdsa-with-SHA256
  • 30:46:02:21:00:E2:2F:E6:8B:16:F6:38:C2:5F:6F:09:
  • 0E:33:57:8B:78:C4:32:AA:D2:68:7B:51:67:76:92:2C:
  • F8:73:68:2B:A3:02:21:00:AD:9B:74:C3:E7:49:5D:BE:
  • 58:27:84:F1:A7:B8:F0:A1:46:20:72:F7:97:E9:1B:D6:
  • 0C:BB:D9:AB:7F:29:28:EF
  • Signed Certificate Timestamp:
  • Version : v1 (0x0)
  • Log ID : 7D:59:1E:12:E1:78:2A:7B:1C:61:67:7C:5E:FD:F8:D0:
  • 87:5C:14:A0:4E:95:9E:B9:03:2F:D9:0E:8C:2E:79:B8
  • Timestamp : Oct 18 12:59:44.925 2024 GMT
  • Extensions: none
  • Signature : ecdsa-with-SHA256
  • 30:45:02:20:4D:C9:94:9F:08:92:20:28:02:53:A0:2B:
  • 34:E5:E9:5E:9A:B2:3E:23:70:1F:3B:C9:02:C5:9D:D7:
  • A8:07:B6:FE:02:21:00:C9:00:BD:6F:F5:02:C1:E0:4E:
  • 39:61:D3:8B:9F:54:E2:3A:5B:56:CC:03:89:8C:A7:69:
  • 07:26:4A:72:47:38:10

DANE

DNS-based Authentication of Named Entities (DANE) is a protocol to allow X.509 certificates to be bound to DNS using TLSA records and DNSSEC.

Name Options DNSSEC Matches
_25._tcp.mx1.privatemail.dk
  • DANE-TA: Trust Anchor Assertion
  • Use subject public key
  • SHA-256 Hash
valid
_25._tcp.mx1.privatemail.dk
  • DANE-TA: Trust Anchor Assertion
  • Use subject public key
  • SHA-256 Hash
valid
_25._tcp.mx1.privatemail.dk
  • DANE-TA: Trust Anchor Assertion
  • Use subject public key
  • SHA-256 Hash
valid
_25._tcp.mx1.privatemail.dk
  • DANE-TA: Trust Anchor Assertion
  • Use subject public key
  • SHA-256 Hash
valid
_25._tcp.mx1.privatemail.dk
  • DANE-TA: Trust Anchor Assertion
  • Use subject public key
  • SHA-256 Hash
valid
_25._tcp.mx1.privatemail.dk
  • DANE-TA: Trust Anchor Assertion
  • Use subject public key
  • SHA-256 Hash
valid
_25._tcp.mx1.privatemail.dk
  • DANE-TA: Trust Anchor Assertion
  • Use subject public key
  • SHA-256 Hash
valid
valid
_25._tcp.mx1.privatemail.dk
  • DANE-TA: Trust Anchor Assertion
  • Use subject public key
  • SHA-256 Hash
valid
_25._tcp.mx1.privatemail.dk
  • DANE-TA: Trust Anchor Assertion
  • Use subject public key
  • SHA-256 Hash
valid
_25._tcp.mx1.privatemail.dk
  • DANE-TA: Trust Anchor Assertion
  • Use subject public key
  • SHA-256 Hash
valid
_25._tcp.mx2.privatemail.dk
  • DANE-TA: Trust Anchor Assertion
  • Use subject public key
  • SHA-256 Hash
valid
_25._tcp.mx2.privatemail.dk
  • DANE-TA: Trust Anchor Assertion
  • Use subject public key
  • SHA-256 Hash
valid
_25._tcp.mx2.privatemail.dk
  • DANE-TA: Trust Anchor Assertion
  • Use subject public key
  • SHA-256 Hash
valid
_25._tcp.mx2.privatemail.dk
  • DANE-TA: Trust Anchor Assertion
  • Use subject public key
  • SHA-256 Hash
valid
_25._tcp.mx2.privatemail.dk
  • DANE-TA: Trust Anchor Assertion
  • Use subject public key
  • SHA-256 Hash
valid
_25._tcp.mx2.privatemail.dk
  • DANE-TA: Trust Anchor Assertion
  • Use subject public key
  • SHA-256 Hash
valid
_25._tcp.mx2.privatemail.dk
  • DANE-TA: Trust Anchor Assertion
  • Use subject public key
  • SHA-256 Hash
valid
valid
_25._tcp.mx2.privatemail.dk
  • DANE-TA: Trust Anchor Assertion
  • Use subject public key
  • SHA-256 Hash
valid
_25._tcp.mx2.privatemail.dk
  • DANE-TA: Trust Anchor Assertion
  • Use subject public key
  • SHA-256 Hash
valid
_25._tcp.mx2.privatemail.dk
  • DANE-TA: Trust Anchor Assertion
  • Use subject public key
  • SHA-256 Hash
valid