SSL check results of smtp-mx.blocklist.de

NEW You can also bulk check multiple servers.

Discover if the mail servers for smtp-mx.blocklist.de can be reached through a secure connection.

To establish a secure connection a mail server has to offer STARTTLS (SSL), a trustworthy SSL certificate, support for the Diffie-Hellman-Algorithm to guarantee Perfect Forward Secrecy and must not be vulnerable against the Heartbleed attack. Futhermore we recommend using end-to-end encryption with GnuPG.

Summary

Report created Wed, 27 May 2020 00:35:10 +0000

The mailservers of smtp-mx.blocklist.de can be reached through an encrypted connection.

However, we found problems that may affect the security.

Servers

Incoming Mails

These servers are responsible for incoming mails to @smtp-mx.blocklist.de addresses.

Hostname / IP address Priority STARTTLS Certificates Protocol
smtp-mx.blocklist.de
93.180.154.80
-
supported
*.blocklist.de
DANE
missing
PFS
supported
Heartbleed
not vulnerable
Weak ciphers
not found
  • TLSv1.2
  • TLSv1.1
  • TLSv1.0
  • SSLv3
12 s
smtp-mx.blocklist.de
2a00:1158:2:5500::2
-
supported
*.blocklist.de
DANE
missing
PFS
supported
Heartbleed
not vulnerable
Weak ciphers
not found
  • TLSv1.2
  • TLSv1.1
  • TLSv1.0
  • SSLv3
12 s

Outgoing Mails

We have not received any emails from a @smtp-mx.blocklist.de address so far. Test mail delivery

Certificates

First seen at:

CN=*.blocklist.de,OU=Domain Control Validated

Certificate chain
Subject
Organizational Unit (OU)
  • Domain Control Validated
Common Name (CN)
  • *.blocklist.de
Alternative Names
  • *.blocklist.de
  • blocklist.de
Issuer
Country (C)
  • BE
Organization (O)
  • GlobalSign nv-sa
Common Name (CN)
  • AlphaSSL CA - SHA256 - G2
validity period
Not valid before
2017-12-17
Not valid after
2019-01-17
This certifcate has been verified for the following usages:
  • Digital Signature
  • Key Encipherment
  • TLS Web Server Authentication
  • TLS Web Client Authentication
Fingerprints
SHA256
DC:F3:7B:11:6A:79:28:0C:F4:39:E7:89:DC:65:2E:1C:7D:4D:7A:CF:FC:14:EF:2D:7B:7A:A5:8F:F3:15:47:CC
SHA1
C7:C0:8F:FF:C5:4B:62:4A:B8:B1:C0:E0:CE:5B:7F:6B:D9:8F:64:28
X509v3 extensions
authorityInfoAccess
  • CA Issuers - URI:http://secure2.alphassl.com/cacert/gsalphasha2g2r1.crt
  • OCSP - URI:http://ocsp2.globalsign.com/gsalphasha2g2
certificatePolicies
  • Policy: 1.3.6.1.4.1.4146.1.10.10
  • CPS: https://www.globalsign.com/repository/
  • Policy: 2.23.140.1.2.1
crlDistributionPoints
  • Full Name:
  • URI:http://crl2.alphassl.com/gs/gsalphasha2g2.crl
subjectKeyIdentifier
  • 1F:84:7A:76:05:4B:0E:DD:55:DB:33:DD:01:30:5B:A7:68:63:E0:FD
authorityKeyIdentifier
  • keyid:F5:CD:D5:3C:08:50:F9:6A:4F:3A:B7:97:DA:56:83:E6:69:D2:68:F7
ct_precert_scts
  • Signed Certificate Timestamp:
  • Version : v1 (0x0)
  • Log ID : DD:EB:1D:2B:7A:0D:4F:A6:20:8B:81:AD:81:68:70:7E:
  • 2E:8E:9D:01:D5:5C:88:8D:3D:11:C4:CD:B6:EC:BE:CC
  • Timestamp : Dec 17 20:58:43.514 2017 GMT
  • Extensions: none
  • Signature : ecdsa-with-SHA256
  • 30:45:02:20:31:BD:24:B0:40:05:C0:A0:0F:3C:96:A4:
  • 21:E1:31:34:CA:C5:1B:3A:91:52:7D:C5:C6:FD:DB:E7:
  • D4:8E:48:41:02:21:00:ED:88:07:DB:A1:87:BE:0D:21:
  • 40:44:4D:FC:CD:D6:21:D9:68:C5:5D:D3:07:C4:F5:8D:
  • 76:A6:3F:EF:70:BB:5B
  • Signed Certificate Timestamp:
  • Version : v1 (0x0)
  • Log ID : 56:14:06:9A:2F:D7:C2:EC:D3:F5:E1:BD:44:B2:3E:C7:
  • 46:76:B9:BC:99:11:5C:C0:EF:94:98:55:D6:89:D0:DD
  • Timestamp : Dec 17 20:58:43.637 2017 GMT
  • Extensions: none
  • Signature : ecdsa-with-SHA256
  • 30:44:02:20:0F:DF:F1:BB:D9:A7:55:BF:66:87:42:91:
  • 91:D3:50:CE:F6:04:D4:84:5D:63:77:DF:63:F9:22:4E:
  • E4:28:A7:4F:02:20:62:4F:38:32:37:19:85:D0:59:E2:
  • 07:C8:0F:96:CB:24:BC:49:E4:1F:37:D2:1C:A2:6A:2D:
  • 2D:F1:6B:D1:2B:EE
  • Signed Certificate Timestamp:
  • Version : v1 (0x0)
  • Log ID : A4:B9:09:90:B4:18:58:14:87:BB:13:A2:CC:67:70:0A:
  • 3C:35:98:04:F9:1B:DF:B8:E3:77:CD:0E:C8:0D:DC:10
  • Timestamp : Dec 17 20:58:44.225 2017 GMT
  • Extensions: none
  • Signature : ecdsa-with-SHA256
  • 30:44:02:20:11:8C:B1:59:C9:BB:1A:17:7F:04:C7:5E:
  • C1:DC:3E:FC:DC:FD:0F:87:C4:8E:E5:8E:A7:FA:0F:13:
  • 05:72:41:F9:02:20:65:04:75:BF:CC:D7:01:3E:B4:84:
  • 38:60:07:1D:2F:94:C8:A2:96:FA:B9:D1:A6:EB:80:E8:
  • 31:B6:A0:BB:28:15
  • Signed Certificate Timestamp:
  • Version : v1 (0x0)
  • Log ID : BB:D9:DF:BC:1F:8A:71:B5:93:94:23:97:AA:92:7B:47:
  • 38:57:95:0A:AB:52:E8:1A:90:96:64:36:8E:1E:D1:85
  • Timestamp : Dec 17 20:58:44.421 2017 GMT
  • Extensions: none
  • Signature : ecdsa-with-SHA256
  • 30:46:02:21:00:BB:95:FD:56:3E:58:DB:E1:24:09:C0:
  • 2D:C2:0C:9E:51:F3:C4:B9:E4:81:73:14:62:B5:C5:60:
  • E9:43:31:82:5D:02:21:00:C4:E5:B4:E2:28:9E:A9:04:
  • A4:EE:F6:87:C7:08:AE:04:08:3F:37:04:7A:34:EC:0F:
  • BA:F6:66:AC:E8:C4:5F:9B