SSL check results of alt.net

NEW You can also bulk check multiple servers.

Discover if the mail servers for alt.net can be reached through a secure connection.

To establish a secure connection a mail server has to offer STARTTLS (SSL), a trustworthy SSL certificate, support for the Diffie-Hellman-Algorithm to guarantee Perfect Forward Secrecy and must not be vulnerable against the Heartbleed attack. Futhermore we recommend using end-to-end encryption with GnuPG.

Summary

Report created Mon, 23 Sep 2024 00:30:33 +0000

The mailservers of alt.net can be reached through a secure connection.

Servers

Incoming Mails

These servers are responsible for incoming mails to @alt.net addresses.

Hostname / IP address Priority STARTTLS Certificates Protocol
nl.alt.net
208.90.169.10
Results incomplete
10 not checked
DANE
missing
PFS
not checked
Heartbleed
not checked
Weak ciphers
not checked
1 s
tofu.alt.net
2620:0:cf0:1::2
20
supported
*.alt.net
DANE
missing
PFS
supported
Heartbleed
not vulnerable
Weak ciphers
not found
  • TLSv1.2
  • SSLv3
7 s
tofu.alt.net
208.90.169.2
20
supported
*.alt.net
DANE
missing
PFS
supported
Heartbleed
not vulnerable
Weak ciphers
not found
  • TLSv1.2
  • SSLv3
7 s
baklava.alt.net
2620:0:cf0:1::9
30
supported
*.alt.net
DANE
missing
PFS
supported
Heartbleed
not vulnerable
Weak ciphers
not found
  • TLSv1.2
  • SSLv3
8 s
baklava.alt.net
208.90.169.9
30
supported
*.alt.net
DANE
missing
PFS
supported
Heartbleed
not vulnerable
Weak ciphers
not found
  • TLSv1.2
  • SSLv3
7 s

Outgoing Mails

We have not received any emails from a @alt.net address so far. Test mail delivery

Certificates

First seen at:

CN=*.alt.net

Certificate chain
  • *.alt.net
    • remaining
    • 4096 bit
    • sha256WithRSAEncryption

      • R11
        • remaining
        • 2048 bit
        • sha256WithRSAEncryption

          • ISRG Root X1 (Certificate is self-signed.)
            • remaining
            • 4096 bit
            • sha256WithRSAEncryption

Subject
Common Name (CN)
  • *.alt.net
Alternative Names
  • *.alt.net
  • alt.net
Issuer
Country (C)
  • US
Organization (O)
  • Let's Encrypt
Common Name (CN)
  • R11
validity period
Not valid before
2024-09-18
Not valid after
2024-12-17
This certifcate has been verified for the following usages:
  • Digital Signature
  • Key Encipherment
  • TLS Web Server Authentication
  • TLS Web Client Authentication
Fingerprints
SHA256
96:F2:10:5A:F9:10:39:22:68:23:95:57:E7:9E:12:09:14:F0:4D:2C:B0:FC:1B:A9:A9:00:7C:95:35:57:86:82
SHA1
F4:62:EE:63:5C:D7:7A:8E:E9:40:E3:97:70:A4:3E:B2:8A:DC:2F:B3
X509v3 extensions
subjectKeyIdentifier
  • 9C:CF:41:FF:DA:79:38:F1:01:DD:D8:B9:C8:92:4B:7E:B6:F9:24:5A
authorityKeyIdentifier
  • keyid:C5:CF:46:A4:EA:F4:C3:C0:7A:6C:95:C4:2D:B0:5E:92:2F:26:E3:B9
authorityInfoAccess
  • OCSP - URI:http://r11.o.lencr.org
  • CA Issuers - URI:http://r11.i.lencr.org/
certificatePolicies
  • Policy: 2.23.140.1.2.1
ct_precert_scts
  • Signed Certificate Timestamp:
  • Version : v1 (0x0)
  • Log ID : DF:E1:56:EB:AA:05:AF:B5:9C:0F:86:71:8D:A8:C0:32:
  • 4E:AE:56:D9:6E:A7:F5:A5:6A:01:D1:C1:3B:BE:52:5C
  • Timestamp : Sep 19 00:34:38.486 2024 GMT
  • Extensions: none
  • Signature : ecdsa-with-SHA256
  • 30:46:02:21:00:D2:DA:04:A5:67:1C:3F:E5:DF:C4:58:
  • EA:8F:6C:74:43:B4:3D:DC:12:A1:B8:FD:97:03:9F:C7:
  • DC:4E:F7:D7:AB:02:21:00:85:3F:0A:B2:C5:AB:E2:9C:
  • D2:C1:21:EB:23:96:E0:00:CD:F3:70:34:42:3E:53:BC:
  • C5:AD:88:EF:12:5A:93:20
  • Signed Certificate Timestamp:
  • Version : v1 (0x0)
  • Log ID : EE:CD:D0:64:D5:DB:1A:CE:C5:5C:B7:9D:B4:CD:13:A2:
  • 32:87:46:7C:BC:EC:DE:C3:51:48:59:46:71:1F:B5:9B
  • Timestamp : Sep 19 00:34:38.325 2024 GMT
  • Extensions: none
  • Signature : ecdsa-with-SHA256
  • 30:46:02:21:00:AB:9D:23:34:AA:DC:72:94:42:EC:73:
  • 82:B7:9F:A8:92:BA:15:B4:E3:30:E2:FC:B5:95:A1:47:
  • F4:13:F7:C1:2A:02:21:00:A9:3C:9C:08:2C:CB:BF:5A:
  • 73:5B:9A:12:59:22:C3:F4:22:49:9B:CC:19:70:2F:BA:
  • A9:66:34:4D:72:98:48:A9