SSL check results of atg-business.ch

NEW You can also bulk check multiple servers.

Discover if the mail servers for atg-business.ch can be reached through a secure connection.

To establish a secure connection a mail server has to offer STARTTLS (SSL), a trustworthy SSL certificate, support for the Diffie-Hellman-Algorithm to guarantee Perfect Forward Secrecy and must not be vulnerable against the Heartbleed attack. Futhermore we recommend using end-to-end encryption with GnuPG.

Summary

Report created Tue, 24 Sep 2024 16:07:48 +0000

The mailservers of atg-business.ch can be reached through a secure connection.

Servers

Incoming Mails

These servers are responsible for incoming mails to @atg-business.ch addresses.

Hostname / IP address Priority STARTTLS Certificates Protocol
atg-business-ch.gate.seppmail.cloud
2001:620:5ca1:1f0:f816:3eff:fea5:6f69
Results incomplete
0 not checked
DANE
errors
PFS
not checked
Heartbleed
not checked
Weak ciphers
not checked
2 s
atg-business-ch.gate.seppmail.cloud
2001:620:5ca1:2f0:f816:3eff:fe00:aa60
0
supported
ch.seppmail.cloud
DANE
valid
PFS
supported
Heartbleed
not vulnerable
Weak ciphers
not found
  • TLSv1.2
  • SSLv3
16 s
atg-business-ch.gate.seppmail.cloud
86.119.35.35
0
supported
ch.seppmail.cloud
DANE
valid
PFS
supported
Heartbleed
not vulnerable
Weak ciphers
not found
  • TLSv1.2
  • SSLv3
14 s
atg-business-ch.gate.seppmail.cloud
217.20.194.80
0
supported
ch.seppmail.cloud
DANE
valid
PFS
supported
Heartbleed
not vulnerable
Weak ciphers
not found
  • TLSv1.2
  • SSLv3
15 s

Outgoing Mails

We have not received any emails from a @atg-business.ch address so far. Test mail delivery

Certificates

First seen at:

CN=ch.seppmail.cloud

Certificate chain
  • ch.seppmail.cloud
    • remaining
    • 4096 bit
    • sha256WithRSAEncryption

      • R10
        • remaining
        • 2048 bit
        • sha256WithRSAEncryption

          • ISRG Root X1 (Certificate is self-signed.)
            • remaining
            • 4096 bit
            • sha256WithRSAEncryption

Subject
Common Name (CN)
  • ch.seppmail.cloud
Alternative Names
  • *.ch.seppmail.cloud
  • *.gate.seppmail.cloud
  • *.mail.seppmail.cloud
  • *.relay.seppmail.cloud
  • ch.seppmail.cloud
  • gate.seppmail.cloud
  • mail.seppmail.cloud
  • relay.seppmail.cloud
Issuer
Country (C)
  • US
Organization (O)
  • Let's Encrypt
Common Name (CN)
  • R10
validity period
Not valid before
2024-08-12
Not valid after
2024-11-10
This certifcate has been verified for the following usages:
  • Digital Signature
  • Key Encipherment
  • TLS Web Server Authentication
  • TLS Web Client Authentication
Fingerprints
SHA256
43:2F:34:34:47:2D:2A:90:57:1A:E0:87:1E:DE:4E:03:50:E1:14:9F:2A:65:26:56:65:C7:93:A5:D8:EA:49:3D
SHA1
37:AF:CC:36:1A:2C:E9:9C:6A:74:39:27:FD:77:14:06:F8:46:21:10
X509v3 extensions
subjectKeyIdentifier
  • 39:E0:7B:C4:36:45:E9:F0:8B:A7:78:81:70:CE:22:EC:8A:C8:36:AF
authorityKeyIdentifier
  • keyid:BB:BC:C3:47:A5:E4:BC:A9:C6:C3:A4:72:0C:10:8D:A2:35:E1:C8:E8
authorityInfoAccess
  • OCSP - URI:http://r10.o.lencr.org
  • CA Issuers - URI:http://r10.i.lencr.org/
certificatePolicies
  • Policy: 2.23.140.1.2.1
ct_precert_scts
  • Signed Certificate Timestamp:
  • Version : v1 (0x0)
  • Log ID : 3F:17:4B:4F:D7:22:47:58:94:1D:65:1C:84:BE:0D:12:
  • ED:90:37:7F:1F:85:6A:EB:C1:BF:28:85:EC:F8:64:6E
  • Timestamp : Aug 12 11:13:59.278 2024 GMT
  • Extensions: none
  • Signature : ecdsa-with-SHA256
  • 30:46:02:21:00:AE:96:97:38:03:02:F7:8B:D7:89:16:
  • 2C:E1:F1:CC:5E:B7:1E:4C:3A:84:20:52:E5:88:54:2C:
  • 31:FD:E1:0F:E8:02:21:00:CD:06:21:4F:9B:A8:23:8B:
  • B9:77:0B:D2:83:84:D8:65:87:30:13:1A:0D:D8:F0:D4:
  • 08:9A:D0:A0:6C:42:DF:51
  • Signed Certificate Timestamp:
  • Version : v1 (0x0)
  • Log ID : 76:FF:88:3F:0A:B6:FB:95:51:C2:61:CC:F5:87:BA:34:
  • B4:A4:CD:BB:29:DC:68:42:0A:9F:E6:67:4C:5A:3A:74
  • Timestamp : Aug 12 11:13:59.357 2024 GMT
  • Extensions: none
  • Signature : ecdsa-with-SHA256
  • 30:45:02:20:3A:2F:25:FF:A9:E7:C1:D8:8C:0A:1E:D9:
  • 31:7F:EF:C2:E1:B9:C7:FF:38:65:1E:90:BB:60:2F:DC:
  • BB:7F:E6:A8:02:21:00:F6:81:2D:E5:A5:A2:41:83:A3:
  • CA:27:F9:29:03:2F:5C:73:99:E5:28:84:38:F5:68:96:
  • DC:32:84:92:4C:5F:52

DANE

DNS-based Authentication of Named Entities (DANE) is a protocol to allow X.509 certificates to be bound to DNS using TLSA records and DNSSEC.

Name Options DNSSEC Matches
_25._tcp.atg-business-ch.gate.seppmail.cloud
  • DANE-EE: Domain Issued Certificate
  • Use subject public key
  • SHA-256 Hash
valid
valid