SSL check results of mail.carfren.com

NEW You can also bulk check multiple servers.

Discover if the mail servers for mail.carfren.com can be reached through a secure connection.

To establish a secure connection a mail server has to offer STARTTLS (SSL), a trustworthy SSL certificate, support for the Diffie-Hellman-Algorithm to guarantee Perfect Forward Secrecy and must not be vulnerable against the Heartbleed attack. Futhermore we recommend using end-to-end encryption with GnuPG.

Summary

Report created Sun, 28 Apr 2024 03:23:06 +0000

We can not guarantee a secure connection to the mailservers of mail.carfren.com!

Please contact the operator of mail.carfren.com and ask him or her to solve this problem. This result stays accessible under the following address:

/mailservers/mail.carfren.com

Servers

Incoming Mails

These servers are responsible for incoming mails to @mail.carfren.com addresses.

Hostname / IP address Priority STARTTLS Certificates Protocol
mail.carfren.com
5.161.75.91
-
supported
mail.carfren.com
DANE
missing
PFS
supported
Heartbleed
not vulnerable
Weak ciphers
not found
  • TLSv1.2
  • SSLv3
9 s
mail.carfren.com
2a01:4ff:f0:c1e0::2
Results incomplete
-
unsupported
not checked
DANE
missing
PFS
not checked
Heartbleed
not checked
Weak ciphers
not checked
1 s

Outgoing Mails

We have not received any emails from a @mail.carfren.com address so far. Test mail delivery

Certificates

First seen at:

CN=mail.carfren.com

Certificate chain
  • mail.carfren.com
    • remaining
    • 256 bit
    • sha256WithRSAEncryption
    • Unknown Authority

      R3
Subject
Common Name (CN)
  • mail.carfren.com
Alternative Names
  • mail.carfren.com
Issuer
Country (C)
  • US
Organization (O)
  • Let's Encrypt
Common Name (CN)
  • R3
validity period
Not valid before
2024-04-26
Not valid after
2024-07-25
This certifcate has been verified for the following usages:
  • Digital Signature
  • TLS Web Server Authentication
  • TLS Web Client Authentication
Fingerprints
SHA256
49:8A:6D:33:42:C9:EF:70:0B:84:1F:4C:58:E6:4F:03:7B:EC:50:72:3B:AD:09:CA:F1:47:C1:03:0C:28:C7:72
SHA1
6B:00:9F:D5:8B:F9:36:DA:70:9A:13:00:BA:61:F6:71:0C:B8:9E:A2
X509v3 extensions
subjectKeyIdentifier
  • EE:9C:F7:6A:F9:06:29:5E:96:D9:A5:97:96:09:E9:3E:AF:DD:2C:45
authorityKeyIdentifier
  • keyid:14:2E:B3:17:B7:58:56:CB:AE:50:09:40:E6:1F:AF:9D:8B:14:C2:C6
authorityInfoAccess
  • OCSP - URI:http://r3.o.lencr.org
  • CA Issuers - URI:http://r3.i.lencr.org/
certificatePolicies
  • Policy: 2.23.140.1.2.1
ct_precert_scts
  • Signed Certificate Timestamp:
  • Version : v1 (0x0)
  • Log ID : 48:B0:E3:6B:DA:A6:47:34:0F:E5:6A:02:FA:9D:30:EB:
  • 1C:52:01:CB:56:DD:2C:81:D9:BB:BF:AB:39:D8:84:73
  • Timestamp : Apr 26 01:43:13.419 2024 GMT
  • Extensions: none
  • Signature : ecdsa-with-SHA256
  • 30:46:02:21:00:CD:B4:88:55:1A:C1:1B:55:3F:CC:13:
  • 8B:11:2F:AD:89:01:FD:84:57:25:4D:A8:0D:51:54:63:
  • 18:60:F1:96:F4:02:21:00:B2:B6:B7:9A:D6:B6:54:8F:
  • 62:74:24:D5:27:E2:F4:7C:A8:37:0D:2F:F8:85:4E:EE:
  • 2D:D0:6B:92:C6:28:94:6E
  • Signed Certificate Timestamp:
  • Version : v1 (0x0)
  • Log ID : DF:E1:56:EB:AA:05:AF:B5:9C:0F:86:71:8D:A8:C0:32:
  • 4E:AE:56:D9:6E:A7:F5:A5:6A:01:D1:C1:3B:BE:52:5C
  • Timestamp : Apr 26 01:43:13.610 2024 GMT
  • Extensions: none
  • Signature : ecdsa-with-SHA256
  • 30:45:02:21:00:D0:F8:F5:CA:7B:27:FD:38:F9:AE:66:
  • DB:37:49:A1:D9:F4:6B:D8:A0:65:9E:65:5E:64:35:8E:
  • D3:8F:78:67:73:02:20:6F:AF:22:FD:6C:EC:AF:14:04:
  • C8:35:5B:88:68:76:94:8D:36:26:B5:E6:E0:2C:F3:B5:
  • 7A:06:5E:C5:8F:65:D9