SSL check results of 25mail.st

NEW You can also bulk check multiple servers.

Discover if the mail servers for 25mail.st can be reached through a secure connection.

To establish a secure connection a mail server has to offer STARTTLS (SSL), a trustworthy SSL certificate, support for the Diffie-Hellman-Algorithm to guarantee Perfect Forward Secrecy and must not be vulnerable against the Heartbleed attack. Futhermore we recommend using end-to-end encryption with GnuPG.

Summary

Report created Mon, 13 Apr 2026 00:30:47 +0000

The mailservers of 25mail.st can be reached through a secure connection.

Servers

Incoming Mails

These servers are responsible for incoming mails to @25mail.st addresses.

Hostname / IP address Priority STARTTLS Certificates Protocol
mail-20028113.25mail.st
103.16.181.16
0
supported
mail-20028113.25mail.st
DANE
missing
PFS
supported
Heartbleed
not vulnerable
Weak ciphers
not found
  • TLSv1.2
  • SSLv3
13 s

Outgoing Mails

We have not received any emails from a @25mail.st address so far. Test mail delivery

Certificates

First seen at:

CN=mail-20028113.25mail.st

Certificate chain
  • mail-20028113.25mail.st
    • remaining
    • 256 bit
    • ecdsa-with-SHA384

      • E8
        • remaining
        • 384 bit
        • sha256WithRSAEncryption

          • ISRG Root X1 (Certificate is self-signed.)
            • remaining
            • 4096 bit
            • sha256WithRSAEncryption

Subject
Common Name (CN)
  • mail-20028113.25mail.st
Alternative Names
  • autoconfig.mail-20028113.25mail.st
  • mail-20028113.25mail.st
Issuer
Country (C)
  • US
Organization (O)
  • Let's Encrypt
Common Name (CN)
  • E8
validity period
Not valid before
2026-03-02
Not valid after
2026-05-31
This certifcate has been verified for the following usages:
  • Digital Signature
  • TLS Web Server Authentication
Fingerprints
SHA256
B3:3E:4B:DD:8B:91:7B:B8:6A:B8:BB:FD:3F:5A:D8:EB:F0:3E:1B:E5:97:49:19:46:59:D4:B2:AF:C4:F1:F4:DE
SHA1
7C:D1:5B:7A:4C:06:10:86:7B:10:54:5C:F0:39:E0:1E:D0:4B:E3:20
X509v3 extensions
subjectKeyIdentifier
  • 70:59:48:C4:2F:13:C1:06:80:28:7F:56:B7:11:E0:C7:66:E8:87:70
authorityKeyIdentifier
  • keyid:8F:0D:13:A2:F6:2E:7E:D1:50:6C:33:18:38:5D:59:8E:23:72:91:CA
authorityInfoAccess
  • CA Issuers - URI:http://e8.i.lencr.org/
certificatePolicies
  • Policy: 2.23.140.1.2.1
crlDistributionPoints
  • Full Name:
  • URI:http://e8.c.lencr.org/109.crl
ct_precert_scts
  • Signed Certificate Timestamp:
  • Version : v1 (0x0)
  • Log ID : 49:9C:9B:69:DE:1D:7C:EC:FC:36:DE:CD:87:64:A6:B8:
  • 5B:AF:0A:87:80:19:D1:55:52:FB:E9:EB:29:DD:F8:C3
  • Timestamp : Mar 2 21:16:03.224 2026 GMT
  • Extensions: none
  • Signature : ecdsa-with-SHA256
  • 30:46:02:21:00:A8:AB:5C:11:1F:47:D4:5D:4E:D9:0A:
  • CC:A9:AC:C1:4A:EE:C3:37:D4:45:C3:4B:BB:8D:07:1C:
  • 2A:EE:48:D7:42:02:21:00:E8:07:4F:5D:D1:74:EB:7C:
  • 83:E7:0B:D7:C6:B0:C9:69:B9:B5:A1:06:3F:06:B0:EE:
  • E0:E4:B8:AC:B5:56:3C:82
  • Signed Certificate Timestamp:
  • Version : v1 (0x0)
  • Log ID : A5:C9:78:92:5D:57:46:17:82:87:0D:D8:89:66:0B:5C:
  • 55:64:8B:7D:00:40:F2:EC:07:68:51:D1:88:69:19:F7
  • Timestamp : Mar 2 21:16:03.285 2026 GMT
  • Extensions: 00:00:05:00:33:F9:7F:34
  • Signature : ecdsa-with-SHA256
  • 30:45:02:20:6A:FE:6C:B8:5A:58:24:08:22:EE:E4:A6:
  • 27:28:0A:DF:33:80:8C:1C:1E:44:54:99:C0:19:28:9D:
  • 91:EC:0A:9B:02:21:00:A8:C5:9F:67:FE:07:59:C9:23:
  • 49:92:2E:5F:11:F1:F7:00:E3:96:59:9D:FB:3A:55:25:
  • B5:05:7A:69:8B:10:02