SSL check results of 10international.com

NEW You can also bulk check multiple servers.

Discover if the mail servers for 10international.com can be reached through a secure connection.

To establish a secure connection a mail server has to offer STARTTLS (SSL), a trustworthy SSL certificate, support for the Diffie-Hellman-Algorithm to guarantee Perfect Forward Secrecy and must not be vulnerable against the Heartbleed attack. Futhermore we recommend using end-to-end encryption with GnuPG.

Summary

Report created Thu, 11 Jun 2020 04:10:44 +0000

The mailservers of 10international.com can be reached through a secure connection.

Servers

Incoming Mails

These servers are responsible for incoming mails to @10international.com addresses.

Hostname / IP address Priority STARTTLS Certificates Protocol
mx1.active24.com
2a02:4a8:ac24:101::97:4
10
supported
*.active24.com
DANE
valid
PFS
supported
Heartbleed
not vulnerable
Weak ciphers
not found
  • TLSv1.2
  • TLSv1.1
  • TLSv1.0
  • SSLv3
4 s
mx1.active24.com
2a02:4a8:ac24:101::97:102
10
supported
*.active24.com
DANE
valid
PFS
supported
Heartbleed
not vulnerable
Weak ciphers
not found
  • TLSv1.2
  • TLSv1.1
  • TLSv1.0
  • SSLv3
3 s
mx1.active24.com
2a02:4a8:ac24:101::97:111
10
supported
*.active24.com
DANE
valid
PFS
supported
Heartbleed
not vulnerable
Weak ciphers
not found
  • TLSv1.2
  • TLSv1.1
  • TLSv1.0
  • SSLv3
4 s
mx1.active24.com
2a02:4a8:ac24:101::97:116
10
supported
*.active24.com
DANE
valid
PFS
supported
Heartbleed
not vulnerable
Weak ciphers
not found
  • TLSv1.2
  • TLSv1.1
  • TLSv1.0
  • SSLv3
4 s
mx1.active24.com
81.95.97.4
10
supported
*.active24.com
DANE
valid
PFS
supported
Heartbleed
not vulnerable
Weak ciphers
not found
  • TLSv1.2
  • TLSv1.1
  • TLSv1.0
  • SSLv3
4 s
mx1.active24.com
81.95.97.102
10
supported
*.active24.com
DANE
valid
PFS
supported
Heartbleed
not vulnerable
Weak ciphers
not found
  • TLSv1.2
  • TLSv1.1
  • TLSv1.0
  • SSLv3
4 s
mx1.active24.com
81.95.97.111
10
supported
*.active24.com
DANE
valid
PFS
supported
Heartbleed
not vulnerable
Weak ciphers
not found
  • TLSv1.2
  • TLSv1.1
  • TLSv1.0
  • SSLv3
3 s
mx1.active24.com
81.95.97.116
10
supported
*.active24.com
DANE
valid
PFS
supported
Heartbleed
not vulnerable
Weak ciphers
not found
  • TLSv1.2
  • TLSv1.1
  • TLSv1.0
  • SSLv3
3 s
mx2.active24.com
81.0.238.28
20
supported
*.active24.com
DANE
valid
PFS
supported
Heartbleed
not vulnerable
Weak ciphers
not found
  • TLSv1.2
  • TLSv1.1
  • TLSv1.0
  • SSLv3
3 s

Outgoing Mails

We have received emails from these servers with @10international.com sender addresses. Test mail delivery

Host TLS Version & Cipher
unknown (149.255.243.78)
Insecure - not encrypted!
unknown (195.29.155.98)
Insecure - not encrypted!
unknown (177.126.123.82)
Insecure - not encrypted!
unknown (31.147.227.19)
Insecure - not encrypted!
unknown (112.222.61.180)
Insecure - not encrypted!
unknown (95.77.104.79)
Insecure - not encrypted!
unknown (203.99.123.25)
Insecure - not encrypted!
unknown (103.236.114.38)
Insecure - not encrypted!
unknown (170.238.182.30)
Insecure - not encrypted!
unknown (12.218.209.130)
Insecure - not encrypted!
unknown (41.180.98.70)
Insecure - not encrypted!

Certificates

First seen at:

CN=*.active24.com,O=ACTIVE 24\, s.r.o.,L=Karlin,C=CZ

Certificate chain
Subject
Country (C)
  • CZ
Locality (L)
  • Karlin
Organization (O)
  • ACTIVE 24, s.r.o.
Common Name (CN)
  • *.active24.com
Alternative Names
  • *.active24.com
  • active24.com
Issuer
Country (C)
  • US
Organization (O)
  • DigiCert Inc
Organizational Unit (OU)
  • www.digicert.com
Common Name (CN)
  • Thawte RSA CA 2018
validity period
Not valid before
2020-01-17
Not valid after
2021-01-23
This certifcate has been verified for the following usages:
  • Digital Signature
  • Key Encipherment
  • TLS Web Server Authentication
  • TLS Web Client Authentication
Fingerprints
SHA256
CF:60:B5:55:99:D8:C1:3D:79:2D:3E:EC:8C:B0:AE:5C:FF:4B:D0:24:9C:B8:F8:BE:E5:10:F0:FA:5A:68:5B:0F
SHA1
E2:D6:63:0B:AE:7C:10:20:6B:0A:23:73:31:19:28:42:A0:D4:4C:6E
X509v3 extensions
authorityKeyIdentifier
  • keyid:A3:C8:5E:65:54:E5:30:78:C1:05:EA:07:0A:6A:59:CC:B9:FE:DE:5A
subjectKeyIdentifier
  • BD:1E:9D:C6:DC:49:29:33:BD:7B:01:1F:AA:89:CE:36:90:53:DF:63
crlDistributionPoints
  • Full Name:
  • URI:http://cdp.thawte.com/ThawteRSACA2018.crl
certificatePolicies
  • Policy: 2.16.840.1.114412.1.1
  • CPS: https://www.digicert.com/CPS
  • Policy: 2.23.140.1.2.2
authorityInfoAccess
  • OCSP - URI:http://status.thawte.com
  • CA Issuers - URI:http://cacerts.thawte.com/ThawteRSACA2018.crt
ct_precert_scts
  • Signed Certificate Timestamp:
  • Version : v1 (0x0)
  • Log ID : BB:D9:DF:BC:1F:8A:71:B5:93:94:23:97:AA:92:7B:47:
  • 38:57:95:0A:AB:52:E8:1A:90:96:64:36:8E:1E:D1:85
  • Timestamp : Jan 17 15:03:18.744 2020 GMT
  • Extensions: none
  • Signature : ecdsa-with-SHA256
  • 30:44:02:20:31:1F:9A:B1:7B:F0:7C:AD:8D:BF:E4:51:
  • 2E:4A:72:19:F0:2A:F5:9C:54:B1:99:B4:A2:88:F5:AE:
  • DD:E4:4B:E6:02:20:5E:F4:6C:13:65:49:B9:F7:34:78:
  • D9:A4:F7:18:EA:1F:20:65:60:54:54:CA:49:8C:73:FA:
  • B1:BA:81:CD:D8:D6
  • Signed Certificate Timestamp:
  • Version : v1 (0x0)
  • Log ID : 44:94:65:2E:B0:EE:CE:AF:C4:40:07:D8:A8:FE:28:C0:
  • DA:E6:82:BE:D8:CB:31:B5:3F:D3:33:96:B5:B6:81:A8
  • Timestamp : Jan 17 15:03:18.660 2020 GMT
  • Extensions: none
  • Signature : ecdsa-with-SHA256
  • 30:45:02:21:00:F6:07:9D:A1:40:08:5C:DE:AA:5E:7E:
  • 13:73:F2:4D:4F:DE:20:A9:20:C8:4D:E4:B8:BA:38:8C:
  • 3E:78:7C:80:3B:02:20:36:44:87:6A:4C:39:1B:14:4D:
  • AD:71:4C:BA:87:3C:AD:56:08:CA:3E:75:4B:EA:EA:95:
  • EA:0F:66:34:99:FA:AD

DANE

DNS-based Authentication of Named Entities (DANE) is a protocol to allow X.509 certificates to be bound to DNS using TLSA records and DNSSEC.

Name Options DNSSEC Matches
_25._tcp.mx1.active24.com
  • DANE-EE: Domain Issued Certificate
  • Use subject public key
  • SHA-256 Hash
valid
valid
_25._tcp.mx1.active24.com
  • DANE-EE: Domain Issued Certificate
  • Use subject public key
  • SHA-256 Hash
valid
_25._tcp.mx2.active24.com
  • DANE-EE: Domain Issued Certificate
  • Use subject public key
  • SHA-256 Hash
valid
valid
_25._tcp.mx2.active24.com
  • DANE-EE: Domain Issued Certificate
  • Use subject public key
  • SHA-256 Hash
valid