SSL check results of aramis.de

NEW You can also bulk check multiple servers.

Discover if the mail servers for aramis.de can be reached through a secure connection.

To establish a secure connection a mail server has to offer STARTTLS (SSL), a trustworthy SSL certificate, support for the Diffie-Hellman-Algorithm to guarantee Perfect Forward Secrecy and must not be vulnerable against the Heartbleed attack. Futhermore we recommend using end-to-end encryption with GnuPG.

Summary

Report created Thu, 23 Sep 2021 09:19:29 +0000

The mailservers of aramis.de can be reached through a secure connection.

Servers

Incoming Mails

These servers are responsible for incoming mails to @aramis.de addresses.

Hostname / IP address Priority STARTTLS Certificates Protocol
mbx01.ivimail.de
87.140.99.76
10
supported
mbx01.ivimail.de
DANE
missing
PFS
supported
Heartbleed
not vulnerable
Weak ciphers
not found
  • TLSv1.2
  • SSLv3
7 s
mbx02.ivimail.de
217.86.246.123
20
supported
mbx02.ivimail.de
DANE
missing
PFS
supported
Heartbleed
not vulnerable
Weak ciphers
not found
  • TLSv1.2
  • SSLv3
7 s

Outgoing Mails

We have not received any emails from a @aramis.de address so far. Test mail delivery

Certificates

First seen at:

CN=mbx01.ivimail.de

Certificate chain
  • mbx01.ivimail.de
    • remaining
    • 2048 bit
    • sha256WithRSAEncryption

      • R3
        • remaining
        • 2048 bit
        • sha256WithRSAEncryption

          • DST Root CA X3 (Certificate is self-signed.)
            • remaining
            • 2048 bit
            • sha1WithRSAEncryption

Subject
Common Name (CN)
  • mbx01.ivimail.de
Alternative Names
  • mbx01.ivimail.de
Issuer
Country (C)
  • US
Organization (O)
  • Let's Encrypt
Common Name (CN)
  • R3
validity period
Not valid before
2021-09-03
Not valid after
2021-12-02
This certifcate has been verified for the following usages:
  • Digital Signature
  • Key Encipherment
  • TLS Web Server Authentication
  • TLS Web Client Authentication
Fingerprints
SHA256
DE:6A:90:B5:33:F7:13:3C:8C:97:4E:A3:0C:68:94:F3:AE:22:3F:37:D3:9C:B0:31:12:EA:76:F2:CF:97:36:7F
SHA1
BB:64:26:8D:78:B9:D9:BF:BE:44:D0:2A:BB:83:D8:F2:C1:45:60:0E
X509v3 extensions
subjectKeyIdentifier
  • 19:A9:86:82:C6:7A:DC:A6:56:07:36:26:FF:95:B5:52:5E:FA:9A:B3
authorityKeyIdentifier
  • keyid:14:2E:B3:17:B7:58:56:CB:AE:50:09:40:E6:1F:AF:9D:8B:14:C2:C6
authorityInfoAccess
  • OCSP - URI:http://r3.o.lencr.org
  • CA Issuers - URI:http://r3.i.lencr.org/
certificatePolicies
  • Policy: 2.23.140.1.2.1
  • Policy: 1.3.6.1.4.1.44947.1.1.1
  • CPS: http://cps.letsencrypt.org
ct_precert_scts
  • Signed Certificate Timestamp:
  • Version : v1 (0x0)
  • Log ID : F6:5C:94:2F:D1:77:30:22:14:54:18:08:30:94:56:8E:
  • E3:4D:13:19:33:BF:DF:0C:2F:20:0B:CC:4E:F1:64:E3
  • Timestamp : Sep 3 13:58:28.283 2021 GMT
  • Extensions: none
  • Signature : ecdsa-with-SHA256
  • 30:45:02:21:00:91:3B:57:C4:0E:51:9D:51:D4:D5:D9:
  • 74:39:9E:2F:E8:59:7B:AA:9D:C7:3E:6C:97:11:CF:C4:
  • DF:94:72:35:2E:02:20:08:6E:76:98:A7:71:5A:7D:BF:
  • 50:80:AC:2D:65:97:19:50:F6:38:05:7A:A7:B5:5D:4B:
  • 7A:EE:4D:95:AA:F0:62
  • Signed Certificate Timestamp:
  • Version : v1 (0x0)
  • Log ID : 6F:53:76:AC:31:F0:31:19:D8:99:00:A4:51:15:FF:77:
  • 15:1C:11:D9:02:C1:00:29:06:8D:B2:08:9A:37:D9:13
  • Timestamp : Sep 3 13:58:28.335 2021 GMT
  • Extensions: none
  • Signature : ecdsa-with-SHA256
  • 30:44:02:20:63:C1:C5:8A:57:1F:EC:B2:75:77:FB:B6:
  • 87:DC:9B:DC:28:ED:4C:40:10:5D:E7:CD:1F:45:59:3F:
  • 6B:8B:55:95:02:20:69:61:7F:A6:69:C5:FC:86:C4:7D:
  • 66:2E:60:DE:42:B6:7C:A3:5F:66:F4:40:10:3F:AC:07:
  • 1E:8C:5E:11:D1:ED
First seen at:

CN=mbx02.ivimail.de

Certificate chain
  • mbx02.ivimail.de
    • remaining
    • 2048 bit
    • sha256WithRSAEncryption

      • R3
        • remaining
        • 2048 bit
        • sha256WithRSAEncryption

          • DST Root CA X3 (Certificate is self-signed.)
            • remaining
            • 2048 bit
            • sha1WithRSAEncryption

Subject
Common Name (CN)
  • mbx02.ivimail.de
Alternative Names
  • mbx02.ivimail.de
Issuer
Country (C)
  • US
Organization (O)
  • Let's Encrypt
Common Name (CN)
  • R3
validity period
Not valid before
2021-08-25
Not valid after
2021-11-23
This certifcate has been verified for the following usages:
  • Digital Signature
  • Key Encipherment
  • TLS Web Server Authentication
  • TLS Web Client Authentication
Fingerprints
SHA256
C9:B1:49:E8:19:13:FA:ED:D6:13:89:67:90:46:8C:C7:C1:7F:26:B0:6E:6F:B6:0C:AD:79:27:C0:FF:5B:42:53
SHA1
42:D8:0A:7C:1B:D9:23:85:F6:62:ED:E5:69:12:DE:E9:FF:76:DC:07
X509v3 extensions
subjectKeyIdentifier
  • DD:AD:85:BA:35:69:5C:C8:62:07:20:B5:EA:6F:4C:CC:5D:6A:76:7E
authorityKeyIdentifier
  • keyid:14:2E:B3:17:B7:58:56:CB:AE:50:09:40:E6:1F:AF:9D:8B:14:C2:C6
authorityInfoAccess
  • OCSP - URI:http://r3.o.lencr.org
  • CA Issuers - URI:http://r3.i.lencr.org/
certificatePolicies
  • Policy: 2.23.140.1.2.1
  • Policy: 1.3.6.1.4.1.44947.1.1.1
  • CPS: http://cps.letsencrypt.org
ct_precert_scts
  • Signed Certificate Timestamp:
  • Version : v1 (0x0)
  • Log ID : F6:5C:94:2F:D1:77:30:22:14:54:18:08:30:94:56:8E:
  • E3:4D:13:19:33:BF:DF:0C:2F:20:0B:CC:4E:F1:64:E3
  • Timestamp : Aug 25 13:09:55.789 2021 GMT
  • Extensions: none
  • Signature : ecdsa-with-SHA256
  • 30:45:02:21:00:A3:38:6A:78:A2:0F:36:2B:AE:39:86:
  • 37:FB:EB:23:89:AA:0C:80:62:E3:E8:B6:57:E7:21:EE:
  • 85:C8:12:94:D8:02:20:76:DE:42:AE:8D:19:F3:52:E3:
  • 31:A1:E3:21:AE:A6:45:DE:CE:2A:40:81:83:D5:BC:7E:
  • 7D:AE:27:25:2B:85:AE
  • Signed Certificate Timestamp:
  • Version : v1 (0x0)
  • Log ID : 6F:53:76:AC:31:F0:31:19:D8:99:00:A4:51:15:FF:77:
  • 15:1C:11:D9:02:C1:00:29:06:8D:B2:08:9A:37:D9:13
  • Timestamp : Aug 25 13:09:56.220 2021 GMT
  • Extensions: none
  • Signature : ecdsa-with-SHA256
  • 30:46:02:21:00:93:FD:DE:52:B7:EC:25:78:C2:18:02:
  • DC:BA:4F:C1:35:C9:5E:18:8A:DE:39:14:61:5C:3F:B8:
  • 2B:4C:29:7D:D1:02:21:00:C6:4E:B5:53:A8:D2:43:FE:
  • B3:FA:34:D7:04:D6:52:D6:A8:60:98:ED:30:78:0E:BE:
  • EC:3C:9B:E5:C9:67:3F:AB