SSL check results of 7codex.com

NEW You can also bulk check multiple servers.

Discover if the mail servers for 7codex.com can be reached through a secure connection.

To establish a secure connection a mail server has to offer STARTTLS (SSL), a trustworthy SSL certificate, support for the Diffie-Hellman-Algorithm to guarantee Perfect Forward Secrecy and must not be vulnerable against the Heartbleed attack. Futhermore we recommend using end-to-end encryption with GnuPG.

Summary

Report created Wed, 19 Feb 2025 22:21:12 +0000

We can not guarantee a secure connection to the mailservers of 7codex.com!

Please contact the operator of 7codex.com and ask him or her to solve this problem. This result stays accessible under the following address:

/mailservers/7codex.com

Servers

Incoming Mails

These servers are responsible for incoming mails to @7codex.com addresses.

Hostname / IP address Priority STARTTLS Certificates Protocol
pobox.mx.7codex.com
79.237.159.215
13
supported
*.7codex.com
DANE
missing
PFS
supported
Heartbleed
not vulnerable
Weak ciphers
not found
  • TLSv1.2
  • SSLv3
2 s
route2.mx.cloudflare.net
2606:4700:f5::f
Results incomplete
18
unsupported
not checked
DANE
errors
PFS
not checked
Heartbleed
not checked
Weak ciphers
not checked
1 s
route2.mx.cloudflare.net
2606:4700:f5::e
Results incomplete
18
unsupported
not checked
DANE
errors
PFS
not checked
Heartbleed
not checked
Weak ciphers
not checked
1 s
route2.mx.cloudflare.net
2606:4700:f5::10
Results incomplete
18
unsupported
not checked
DANE
errors
PFS
not checked
Heartbleed
not checked
Weak ciphers
not checked
1 s
route2.mx.cloudflare.net
162.159.205.19
18
supported
*.mx.cloudflare.net
DANE
valid
PFS
supported
Heartbleed
not vulnerable
Weak ciphers
not found
  • TLSv1.2
  • TLSv1.1
  • TLSv1.0
  • SSLv3
2 s
route2.mx.cloudflare.net
162.159.205.18
18
supported
*.mx.cloudflare.net
DANE
valid
PFS
supported
Heartbleed
not vulnerable
Weak ciphers
not found
  • TLSv1.2
  • TLSv1.1
  • TLSv1.0
  • SSLv3
2 s
route2.mx.cloudflare.net
162.159.205.17
18
supported
*.mx.cloudflare.net
DANE
valid
PFS
supported
Heartbleed
not vulnerable
Weak ciphers
not found
  • TLSv1.2
  • TLSv1.1
  • TLSv1.0
  • SSLv3
2 s
route1.mx.cloudflare.net
2606:4700:f5::b
Results incomplete
40
unsupported
not checked
DANE
errors
PFS
not checked
Heartbleed
not checked
Weak ciphers
not checked
1 s
route1.mx.cloudflare.net
2606:4700:f5::d
Results incomplete
40
unsupported
not checked
DANE
errors
PFS
not checked
Heartbleed
not checked
Weak ciphers
not checked
1 s
route1.mx.cloudflare.net
2606:4700:f5::c
Results incomplete
40
unsupported
not checked
DANE
errors
PFS
not checked
Heartbleed
not checked
Weak ciphers
not checked
1 s
route1.mx.cloudflare.net
162.159.205.13
40
supported
*.mx.cloudflare.net
DANE
valid
PFS
supported
Heartbleed
not vulnerable
Weak ciphers
not found
  • TLSv1.2
  • TLSv1.1
  • TLSv1.0
  • SSLv3
2 s
route1.mx.cloudflare.net
162.159.205.11
40
supported
*.mx.cloudflare.net
DANE
valid
PFS
supported
Heartbleed
not vulnerable
Weak ciphers
not found
  • TLSv1.2
  • TLSv1.1
  • TLSv1.0
  • SSLv3
2 s
route1.mx.cloudflare.net
162.159.205.12
40
supported
*.mx.cloudflare.net
DANE
valid
PFS
supported
Heartbleed
not vulnerable
Weak ciphers
not found
  • TLSv1.2
  • TLSv1.1
  • TLSv1.0
  • SSLv3
2 s

Outgoing Mails

We have not received any emails from a @7codex.com address so far. Test mail delivery

Certificates

First seen at:

CN=*.mx.cloudflare.net,O=Cloudflare\, Inc.,L=San Francisco,ST=California,C=US

Certificate chain
Subject
Country (C)
  • US
State (ST)
  • California
Locality (L)
  • San Francisco
Organization (O)
  • Cloudflare, Inc.
Common Name (CN)
  • *.mx.cloudflare.net
Alternative Names
  • *.mx.cloudflare.net
  • mx.cloudflare.net
Issuer
Country (C)
  • US
Organization (O)
  • DigiCert Inc
Common Name (CN)
  • DigiCert Global G2 TLS RSA SHA256 2020 CA1
validity period
Not valid before
2025-01-13
Not valid after
2026-01-14
This certifcate has been verified for the following usages:
  • Digital Signature
  • Key Encipherment
  • TLS Web Server Authentication
  • TLS Web Client Authentication
Fingerprints
SHA256
A2:FE:A3:B2:A8:65:BC:CA:14:BC:AF:96:47:F2:A0:EF:64:E7:FC:AA:DC:23:AD:42:E6:11:44:8F:2E:D3:7B:09
SHA1
E4:69:0D:37:2F:98:39:FF:34:75:F7:0D:41:C8:71:8C:54:19:05:EC
X509v3 extensions
authorityKeyIdentifier
  • keyid:74:85:80:C0:66:C7:DF:37:DE:CF:BD:29:37:AA:03:1D:BE:ED:CD:17
subjectKeyIdentifier
  • 81:6C:A3:B8:D3:FD:29:CD:C7:F2:04:FE:A2:31:07:28:B0:35:35:29
certificatePolicies
  • Policy: 2.23.140.1.2.2
  • CPS: http://www.digicert.com/CPS
crlDistributionPoints
  • Full Name:
  • URI:http://crl3.digicert.com/DigiCertGlobalG2TLSRSASHA2562020CA1-1.crl
  • Full Name:
  • URI:http://crl4.digicert.com/DigiCertGlobalG2TLSRSASHA2562020CA1-1.crl
authorityInfoAccess
  • OCSP - URI:http://ocsp.digicert.com
  • CA Issuers - URI:http://cacerts.digicert.com/DigiCertGlobalG2TLSRSASHA2562020CA1-1.crt
ct_precert_scts
  • Signed Certificate Timestamp:
  • Version : v1 (0x0)
  • Log ID : 0E:57:94:BC:F3:AE:A9:3E:33:1B:2C:99:07:B3:F7:90:
  • DF:9B:C2:3D:71:32:25:DD:21:A9:25:AC:61:C5:4E:21
  • Timestamp : Jan 13 01:05:35.445 2025 GMT
  • Extensions: none
  • Signature : ecdsa-with-SHA256
  • 30:45:02:20:66:E8:D1:C3:7A:ED:E5:5B:89:1E:77:77:
  • 66:9D:0B:39:B3:69:FA:70:82:DA:EB:93:7C:B3:70:62:
  • 48:5E:C1:8F:02:21:00:89:B1:DC:CC:95:20:91:9B:6D:
  • F7:C9:AE:73:0D:DD:F4:78:44:82:69:19:78:C8:1C:A5:
  • 53:44:76:59:61:FB:F3
  • Signed Certificate Timestamp:
  • Version : v1 (0x0)
  • Log ID : 64:11:C4:6C:A4:12:EC:A7:89:1C:A2:02:2E:00:BC:AB:
  • 4F:28:07:D4:1E:35:27:AB:EA:FE:D5:03:C9:7D:CD:F0
  • Timestamp : Jan 13 01:05:35.423 2025 GMT
  • Extensions: none
  • Signature : ecdsa-with-SHA256
  • 30:45:02:21:00:98:03:BE:5A:0A:59:4F:70:CA:1C:82:
  • 80:62:4E:32:A6:09:2E:94:0C:6B:16:6C:F3:79:DF:59:
  • 44:21:6D:AB:F4:02:20:67:BA:5F:9F:7C:06:0C:1C:D2:
  • D2:DF:EA:6D:63:A3:F0:BD:E2:6B:83:79:E2:5F:E6:67:
  • 61:59:24:2B:7A:F3:C3
  • Signed Certificate Timestamp:
  • Version : v1 (0x0)
  • Log ID : 49:9C:9B:69:DE:1D:7C:EC:FC:36:DE:CD:87:64:A6:B8:
  • 5B:AF:0A:87:80:19:D1:55:52:FB:E9:EB:29:DD:F8:C3
  • Timestamp : Jan 13 01:05:35.473 2025 GMT
  • Extensions: none
  • Signature : ecdsa-with-SHA256
  • 30:44:02:20:2A:15:EA:B0:1D:47:14:73:B9:A5:3A:40:
  • 51:A5:DE:C7:3E:1C:9A:54:A2:11:FE:E5:B3:7E:6E:C6:
  • 6F:39:45:4D:02:20:71:C7:75:B1:4D:46:B6:29:75:8F:
  • A2:F4:22:93:CF:0E:AC:79:47:77:64:39:12:E1:8E:5F:
  • D3:DD:F3:18:D9:51
First seen at:

CN=*.7codex.com

Certificate chain
  • *.7codex.com
    • remaining
    • 384 bit
    • ecdsa-with-SHA384
    • Hostname Mismatch
    • Unknown Authority

      E5
Subject
Common Name (CN)
  • *.7codex.com
Alternative Names
  • *.7codex.com
Issuer
Country (C)
  • US
Organization (O)
  • Let's Encrypt
Common Name (CN)
  • E5
validity period
Not valid before
2025-02-11
Not valid after
2025-05-12
This certifcate has been verified for the following usages:
  • Digital Signature
  • TLS Web Server Authentication
  • TLS Web Client Authentication
Fingerprints
SHA256
B3:DD:87:CF:4B:77:09:46:96:BB:EC:82:BD:ED:DD:5B:9A:D8:4C:EF:DA:4D:43:86:DA:E1:1F:F3:7C:3A:0D:7B
SHA1
C7:90:4C:19:87:2B:7F:7C:11:57:87:CC:A9:D8:68:A5:00:D5:A7:7D
X509v3 extensions
subjectKeyIdentifier
  • 42:EB:CD:D1:26:5F:05:5E:47:43:8F:33:D1:B3:6B:F2:F0:21:78:6C
authorityKeyIdentifier
  • keyid:9F:2B:5F:CF:3C:21:4F:9D:04:B7:ED:2B:2C:C4:C6:70:8B:D2:D7:0D
authorityInfoAccess
  • OCSP - URI:http://e5.o.lencr.org
  • CA Issuers - URI:http://e5.i.lencr.org/
certificatePolicies
  • Policy: 2.23.140.1.2.1
ct_precert_scts
  • Signed Certificate Timestamp:
  • Version : v1 (0x0)
  • Log ID : A2:E3:0A:E4:45:EF:BD:AD:9B:7E:38:ED:47:67:77:53:
  • D7:82:5B:84:94:D7:2B:5E:1B:2C:C4:B9:50:A4:47:E7
  • Timestamp : Feb 11 11:59:21.276 2025 GMT
  • Extensions: none
  • Signature : ecdsa-with-SHA256
  • 30:45:02:20:35:15:DA:3B:FC:1D:E8:1B:D4:02:B1:02:
  • A3:4A:47:47:9D:B0:D4:06:A2:BB:86:BF:C2:9A:2F:5F:
  • B5:F5:1C:8C:02:21:00:F4:13:E1:9C:AC:87:6C:3A:5B:
  • D0:1F:18:10:36:BA:7F:22:8C:EE:C0:84:AB:19:CB:C7:
  • B9:67:2D:74:9E:BA:4C
  • Signed Certificate Timestamp:
  • Version : v1 (0x0)
  • Log ID : CC:FB:0F:6A:85:71:09:65:FE:95:9B:53:CE:E9:B2:7C:
  • 22:E9:85:5C:0D:97:8D:B6:A9:7E:54:C0:FE:4C:0D:B0
  • Timestamp : Feb 11 11:59:21.288 2025 GMT
  • Extensions: none
  • Signature : ecdsa-with-SHA256
  • 30:44:02:20:23:D9:6F:B4:66:DC:02:13:C1:68:0C:3C:
  • B8:CF:94:AF:31:3C:21:AF:FD:45:40:E8:5C:6D:27:8A:
  • AB:EF:59:06:02:20:15:BD:3F:E8:D3:51:79:B4:93:8D:
  • 0B:37:1E:F6:2F:CD:73:D3:0D:C2:A5:64:52:45:A6:53:
  • DC:0D:17:C9:CD:3E

DANE

DNS-based Authentication of Named Entities (DANE) is a protocol to allow X.509 certificates to be bound to DNS using TLSA records and DNSSEC.

Name Options DNSSEC Matches
_25._tcp.route1.mx.cloudflare.net
  • DANE-EE: Domain Issued Certificate
  • Use subject public key
  • SHA-256 Hash
valid
valid
_25._tcp.route1.mx.cloudflare.net
  • DANE-TA: Trust Anchor Assertion
  • Use subject public key
  • SHA-256 Hash
valid
valid
_25._tcp.route2.mx.cloudflare.net
  • DANE-TA: Trust Anchor Assertion
  • Use subject public key
  • SHA-256 Hash
valid
valid
_25._tcp.route2.mx.cloudflare.net
  • DANE-EE: Domain Issued Certificate
  • Use subject public key
  • SHA-256 Hash
valid
valid