SSL check results of setupgrade.it

NEW You can also bulk check multiple servers.

Discover if the mail servers for setupgrade.it can be reached through a secure connection.

To establish a secure connection a mail server has to offer STARTTLS (SSL), a trustworthy SSL certificate, support for the Diffie-Hellman-Algorithm to guarantee Perfect Forward Secrecy and must not be vulnerable against the Heartbleed attack. Futhermore we recommend using end-to-end encryption with GnuPG.

Summary

Report created Mon, 10 Feb 2025 10:31:31 +0000

We can not guarantee a secure connection to the mailservers of setupgrade.it!

Please contact the operator of setupgrade.it and ask him or her to solve this problem. This result stays accessible under the following address:

/mailservers/setupgrade.it

Servers

Incoming Mails

These servers are responsible for incoming mails to @setupgrade.it addresses.

Hostname / IP address Priority STARTTLS Certificates Protocol
mail.setupgrade.it
144.91.118.200
10
supported
autoconfig.setupgrade.it
DANE
missing
PFS
supported
Heartbleed
not vulnerable
Weak ciphers
not found
  • TLSv1.2
  • TLSv1.1
  • TLSv1.0
  • SSLv3
4 s
mx01.emailpnl.com
185.97.217.85
Results incomplete
10
supported
not checked
DANE
missing
PFS
unsupported
Heartbleed
not vulnerable
Weak ciphers
supported
  • SSL_RSA_WITH_RC4_128_SHA
  • TLSv1.2
  • SSLv3
1 s
mx02.emailpnl.com
185.97.217.87
Results incomplete
20
supported
not checked
DANE
missing
PFS
unsupported
Heartbleed
not vulnerable
Weak ciphers
supported
  • SSL_RSA_WITH_RC4_128_SHA
  • TLSv1.2
  • SSLv3
1 s

Outgoing Mails

We have received emails from these servers with @setupgrade.it sender addresses. Test mail delivery

Host TLS Version & Cipher
server01.setupgrade.it (95.111.238.77)
TLSv1.3 TLS_AES_256_GCM_SHA384
server03.setupgrade.it (75.119.155.71)
TLSv1.3 TLS_AES_256_GCM_SHA384

Certificates

First seen at:

CN=autoconfig.setupgrade.it

Certificate chain
  • autoconfig.setupgrade.it
    • remaining
    • 384 bit
    • ecdsa-with-SHA384

      • E5
        • remaining
        • 384 bit
        • sha256WithRSAEncryption

          • ISRG Root X1 (Certificate is self-signed.)
            • remaining
            • 4096 bit
            • sha256WithRSAEncryption

Subject
Common Name (CN)
  • autoconfig.setupgrade.it
Alternative Names
  • autoconfig.setupgrade.it
  • autodiscover.setupgrade.it
  • mail.setupgrade.it
Issuer
Country (C)
  • US
Organization (O)
  • Let's Encrypt
Common Name (CN)
  • E5
validity period
Not valid before
2025-02-10
Not valid after
2025-05-11
This certifcate has been verified for the following usages:
  • Digital Signature
  • TLS Web Server Authentication
  • TLS Web Client Authentication
Fingerprints
SHA256
7D:6F:62:94:DE:84:56:2E:6F:6A:35:59:60:E3:44:05:A7:57:21:A0:61:79:86:E3:39:EB:99:8D:8E:31:35:8B
SHA1
64:2D:1D:93:BF:C6:65:1F:14:BB:0B:8B:41:76:63:27:86:68:6B:E2
X509v3 extensions
subjectKeyIdentifier
  • 0B:BE:20:4C:DE:1A:05:82:53:92:2B:FE:14:77:0E:D5:58:00:0F:47
authorityKeyIdentifier
  • keyid:9F:2B:5F:CF:3C:21:4F:9D:04:B7:ED:2B:2C:C4:C6:70:8B:D2:D7:0D
authorityInfoAccess
  • OCSP - URI:http://e5.o.lencr.org
  • CA Issuers - URI:http://e5.i.lencr.org/
certificatePolicies
  • Policy: 2.23.140.1.2.1
ct_precert_scts
  • Signed Certificate Timestamp:
  • Version : v1 (0x0)
  • Log ID : CC:FB:0F:6A:85:71:09:65:FE:95:9B:53:CE:E9:B2:7C:
  • 22:E9:85:5C:0D:97:8D:B6:A9:7E:54:C0:FE:4C:0D:B0
  • Timestamp : Feb 10 10:26:04.008 2025 GMT
  • Extensions: none
  • Signature : ecdsa-with-SHA256
  • 30:46:02:21:00:A6:16:5C:30:8F:66:0B:D2:51:73:4A:
  • 6C:B0:B9:89:42:DF:46:DF:95:CE:99:2C:7D:46:09:9F:
  • 47:CF:0F:BF:0A:02:21:00:D6:CF:73:A4:F4:8E:5F:36:
  • EE:87:A1:81:71:03:E0:6D:BB:A9:6C:1B:FA:76:3D:11:
  • 5A:C7:C6:92:C7:8A:FF:48
  • Signed Certificate Timestamp:
  • Version : v1 (0x0)
  • Log ID : A2:E3:0A:E4:45:EF:BD:AD:9B:7E:38:ED:47:67:77:53:
  • D7:82:5B:84:94:D7:2B:5E:1B:2C:C4:B9:50:A4:47:E7
  • Timestamp : Feb 10 10:26:03.996 2025 GMT
  • Extensions: none
  • Signature : ecdsa-with-SHA256
  • 30:44:02:20:7D:11:D7:95:DC:60:4B:F1:69:9B:4F:29:
  • ED:4E:0A:CA:DB:80:05:A5:7E:90:6D:2A:BC:10:F3:6B:
  • 40:CC:09:35:02:20:19:83:38:1A:4A:E0:F5:18:90:83:
  • 2D:13:B2:19:27:93:59:94:07:E9:83:8B:18:DE:5C:B0:
  • B0:5F:4E:CA:C0:B2