SSL check results of adriandylanwulf.de

NEW You can also bulk check multiple servers.

Discover if the mail servers for adriandylanwulf.de can be reached through a secure connection.

To establish a secure connection a mail server has to offer STARTTLS (SSL), a trustworthy SSL certificate, support for the Diffie-Hellman-Algorithm to guarantee Perfect Forward Secrecy and must not be vulnerable against the Heartbleed attack. Futhermore we recommend using end-to-end encryption with GnuPG.

Summary

Report created Sun, 08 Sep 2024 05:18:04 +0000

The mailservers of adriandylanwulf.de can be reached through a secure connection.

Servers

Incoming Mails

These servers are responsible for incoming mails to @adriandylanwulf.de addresses.

Hostname / IP address Priority STARTTLS Certificates Protocol
mail.protonmail.ch
176.119.200.128
10
supported
protonmail.com
DANE
valid
PFS
supported
Heartbleed
not vulnerable
Weak ciphers
not found
  • TLSv1.2
  • SSLv3
30 s
mail.protonmail.ch
185.70.42.128
10
supported
protonmail.com
DANE
valid
PFS
supported
Heartbleed
not vulnerable
Weak ciphers
not found
  • TLSv1.2
  • SSLv3
36 s
mail.protonmail.ch
185.205.70.128
10
supported
protonmail.com
DANE
valid
PFS
supported
Heartbleed
not vulnerable
Weak ciphers
not found
  • TLSv1.2
  • SSLv3
24 s
mailsec.protonmail.ch
176.119.200.129
20
supported
protonmail.com
DANE
valid
PFS
supported
Heartbleed
not vulnerable
Weak ciphers
not found
  • TLSv1.2
  • SSLv3
14 s
mailsec.protonmail.ch
185.70.42.129
20
supported
protonmail.com
DANE
valid
PFS
supported
Heartbleed
not vulnerable
Weak ciphers
not found
  • TLSv1.2
  • SSLv3
19 s
mailsec.protonmail.ch
185.205.70.129
20
supported
protonmail.com
DANE
valid
PFS
supported
Heartbleed
not vulnerable
Weak ciphers
not found
  • TLSv1.2
  • SSLv3
13 s

Outgoing Mails

We have not received any emails from a @adriandylanwulf.de address so far. Test mail delivery

Certificates

First seen at:

CN=protonmail.com

Certificate chain
  • protonmail.com
    • remaining
    • 4096 bit
    • sha256WithRSAEncryption

      • R11
        • remaining
        • 2048 bit
        • sha256WithRSAEncryption

          • ISRG Root X1 (Certificate is self-signed.)
            • remaining
            • 4096 bit
            • sha256WithRSAEncryption

Subject
Common Name (CN)
  • protonmail.com
Alternative Names
  • *.pm.me
  • *.protonmail.ch
  • *.protonmail.com
  • *.protonvpn.ch
  • *.protonvpn.com
  • protonmail.com
Issuer
Country (C)
  • US
Organization (O)
  • Let's Encrypt
Common Name (CN)
  • R11
validity period
Not valid before
2024-07-10
Not valid after
2024-10-08
This certifcate has been verified for the following usages:
  • Digital Signature
  • Key Encipherment
  • TLS Web Server Authentication
  • TLS Web Client Authentication
Fingerprints
SHA256
01:2A:53:32:52:98:5F:ED:C7:90:D9:AB:44:10:91:31:05:C7:B2:58:E9:C6:BF:78:17:5C:F4:C8:9F:B2:5F:F4
SHA1
5A:93:A6:E5:D7:E7:DF:6B:39:9C:C0:97:CB:B6:59:34:64:65:0A:1B
X509v3 extensions
subjectKeyIdentifier
  • F1:A2:0A:FF:29:EF:F8:78:84:E8:07:0C:E0:56:8A:76:64:D2:2B:A5
authorityKeyIdentifier
  • keyid:C5:CF:46:A4:EA:F4:C3:C0:7A:6C:95:C4:2D:B0:5E:92:2F:26:E3:B9
authorityInfoAccess
  • OCSP - URI:http://r11.o.lencr.org
  • CA Issuers - URI:http://r11.i.lencr.org/
certificatePolicies
  • Policy: 2.23.140.1.2.1
ct_precert_scts
  • Signed Certificate Timestamp:
  • Version : v1 (0x0)
  • Log ID : 3F:17:4B:4F:D7:22:47:58:94:1D:65:1C:84:BE:0D:12:
  • ED:90:37:7F:1F:85:6A:EB:C1:BF:28:85:EC:F8:64:6E
  • Timestamp : Jul 10 14:12:25.067 2024 GMT
  • Extensions: none
  • Signature : ecdsa-with-SHA256
  • 30:45:02:20:5F:09:91:A1:E4:9A:69:F5:1C:EA:4A:92:
  • C4:62:8E:FA:A3:99:27:FA:8C:3F:A3:7D:AB:C1:AC:5A:
  • C6:C6:D8:B6:02:21:00:B4:6F:A1:3B:3E:C7:1E:BB:33:
  • CE:24:BE:DC:BD:9D:E7:D8:C0:56:0A:7C:3E:F3:48:D0:
  • FF:C2:B6:A8:3B:19:65
  • Signed Certificate Timestamp:
  • Version : v1 (0x0)
  • Log ID : DF:E1:56:EB:AA:05:AF:B5:9C:0F:86:71:8D:A8:C0:32:
  • 4E:AE:56:D9:6E:A7:F5:A5:6A:01:D1:C1:3B:BE:52:5C
  • Timestamp : Jul 10 14:12:25.262 2024 GMT
  • Extensions: none
  • Signature : ecdsa-with-SHA256
  • 30:45:02:21:00:BB:4F:EE:9A:42:1F:B8:90:DC:3A:65:
  • 56:CA:92:C9:31:8A:62:65:A3:3D:7A:99:04:DE:4F:7B:
  • C9:67:D2:B2:FA:02:20:1B:CF:5D:99:69:C8:7B:41:80:
  • EC:7A:7A:B9:D7:65:4B:AB:A4:16:D2:95:4F:D5:12:87:
  • FC:8D:86:65:E1:E9:0E

DANE

DNS-based Authentication of Named Entities (DANE) is a protocol to allow X.509 certificates to be bound to DNS using TLSA records and DNSSEC.

Name Options DNSSEC Matches
_25._tcp.mailsec.protonmail.ch
  • DANE-EE: Domain Issued Certificate
  • Use subject public key
  • SHA-256 Hash
valid
valid
_25._tcp.mailsec.protonmail.ch
  • DANE-EE: Domain Issued Certificate
  • Use subject public key
  • SHA-256 Hash
valid
_25._tcp.mail.protonmail.ch
  • DANE-EE: Domain Issued Certificate
  • Use subject public key
  • SHA-256 Hash
valid
valid
_25._tcp.mail.protonmail.ch
  • DANE-EE: Domain Issued Certificate
  • Use subject public key
  • SHA-256 Hash
valid