SSL check results of bcl.lu

NEW You can also bulk check multiple servers.

Discover if the mail servers for bcl.lu can be reached through a secure connection.

To establish a secure connection a mail server has to offer STARTTLS (SSL), a trustworthy SSL certificate, support for the Diffie-Hellman-Algorithm to guarantee Perfect Forward Secrecy and must not be vulnerable against the Heartbleed attack. Futhermore we recommend using end-to-end encryption with GnuPG.

Summary

Report created Mon, 31 Aug 2026 15:20:10 +0000

The mailservers of bcl.lu can be reached through a secure connection.

Servers

Incoming Mails

These servers are responsible for incoming mails to @bcl.lu addresses.

Hostname / IP address Priority STARTTLS Certificates Protocol
mailsrv1.bcl.lu
194.154.215.26
10
supported
mailsrv1.bcl.lu
DANE
missing
PFS
supported
Heartbleed
not vulnerable
Weak ciphers
not found
  • TLSv1.2
  • SSLv3
2 s
mailsrv2.bcl.lu
194.154.215.27
20
supported
mailsrv2.bcl.lu
DANE
missing
PFS
supported
Heartbleed
not vulnerable
Weak ciphers
not found
  • TLSv1.2
  • SSLv3
2 s

Outgoing Mails

We have not received any emails from a @bcl.lu address so far. Test mail delivery

Certificates

First seen at:

CN=mailsrv1.bcl.lu,O=Banque centrale du Luxembourg,L=Luxembourg,C=LU

Certificate chain
Subject
Country (C)
  • LU
Locality (L)
  • Luxembourg
Organization (O)
  • Banque centrale du Luxembourg
Common Name (CN)
  • mailsrv1.bcl.lu
Alternative Names
  • mailsrv1.bcl.lu
  • www.mailsrv1.bcl.lu
Issuer
Country (C)
  • US
Organization (O)
  • DigiCert Inc
Common Name (CN)
  • DigiCert Global G2 TLS RSA SHA256 2020 CA1
validity period
Not valid before
2025-09-09
Not valid after
2026-10-02
This certifcate has been verified for the following usages:
  • Digital Signature
  • Key Encipherment
  • TLS Web Server Authentication
  • TLS Web Client Authentication
Fingerprints
SHA256
C5:EC:5A:C4:EE:C2:21:D3:B4:0B:DF:19:0B:2D:A5:EC:6E:F3:8A:F3:52:D5:82:4F:0A:E0:9F:7C:83:0F:34:35
SHA1
D5:D7:61:F7:6A:DE:F3:13:83:0E:9A:8D:8E:B4:8D:3F:68:60:A7:FB
X509v3 extensions
authorityKeyIdentifier
  • keyid:74:85:80:C0:66:C7:DF:37:DE:CF:BD:29:37:AA:03:1D:BE:ED:CD:17
subjectKeyIdentifier
  • A6:EE:BB:17:A4:CE:85:22:AB:B1:2C:C3:31:BC:39:D7:51:04:06:A9
certificatePolicies
  • Policy: 2.23.140.1.2.2
  • CPS: http://www.digicert.com/CPS
crlDistributionPoints
  • Full Name:
  • URI:http://crl3.digicert.com/DigiCertGlobalG2TLSRSASHA2562020CA1-1.crl
  • Full Name:
  • URI:http://crl4.digicert.com/DigiCertGlobalG2TLSRSASHA2562020CA1-1.crl
authorityInfoAccess
  • OCSP - URI:http://ocsp.digicert.com
  • CA Issuers - URI:http://cacerts.digicert.com/DigiCertGlobalG2TLSRSASHA2562020CA1-1.crt
ct_precert_scts
  • Signed Certificate Timestamp:
  • Version : v1 (0x0)
  • Log ID : D8:09:55:3B:94:4F:7A:FF:C8:16:19:6F:94:4F:85:AB:
  • B0:F8:FC:5E:87:55:26:0F:15:D1:2E:72:BB:45:4B:14
  • Timestamp : Sep 9 14:10:29.136 2025 GMT
  • Extensions: none
  • Signature : ecdsa-with-SHA256
  • 30:44:02:20:2C:1F:B6:9F:30:EB:AF:59:E9:B1:44:7E:
  • 3B:B5:4B:85:A6:8E:16:62:03:B6:6F:67:AF:E7:4B:F6:
  • 66:BE:65:DD:02:20:13:E4:1F:51:D3:D1:DF:15:67:97:
  • AF:4C:F5:0F:4A:99:A0:1B:F3:AC:FF:8F:F9:95:EF:38:
  • BF:7F:48:60:62:C5
  • Signed Certificate Timestamp:
  • Version : v1 (0x0)
  • Log ID : C2:31:7E:57:45:19:A3:45:EE:7F:38:DE:B2:90:41:EB:
  • C7:C2:21:5A:22:BF:7F:D5:B5:AD:76:9A:D9:0E:52:CD
  • Timestamp : Sep 9 14:10:29.121 2025 GMT
  • Extensions: none
  • Signature : ecdsa-with-SHA256
  • 30:46:02:21:00:92:5D:EE:18:75:A4:B6:34:3D:14:46:
  • 46:EC:CB:B2:F9:50:B6:F2:93:6D:74:EA:EF:82:68:77:
  • 28:86:EB:64:29:02:21:00:EC:31:C1:D0:C9:A2:20:52:
  • F5:F0:0A:A3:DD:C6:90:B6:3C:BF:F9:F9:D7:83:EB:02:
  • 69:F6:DE:F0:1B:7F:24:9C
  • Signed Certificate Timestamp:
  • Version : v1 (0x0)
  • Log ID : 94:4E:43:87:FA:EC:C1:EF:81:F3:19:24:26:A8:18:65:
  • 01:C7:D3:5F:38:02:01:3F:72:67:7D:55:37:2E:19:D8
  • Timestamp : Sep 9 14:10:29.131 2025 GMT
  • Extensions: none
  • Signature : ecdsa-with-SHA256
  • 30:46:02:21:00:F2:AA:C3:22:88:6D:84:C5:E8:67:CF:
  • F5:26:D5:D5:39:29:D0:F6:56:97:78:0A:41:A2:0B:D9:
  • 8D:C5:6B:BE:DA:02:21:00:ED:CC:E1:A7:31:21:B5:96:
  • B6:48:91:3B:65:D3:80:62:2D:8A:7F:F7:EA:00:A5:C2:
  • 59:64:1F:4F:8C:4A:74:97
First seen at:

CN=mailsrv2.bcl.lu,O=Banque centrale du Luxembourg,L=Luxembourg,C=LU

Certificate chain
Subject
Country (C)
  • LU
Locality (L)
  • Luxembourg
Organization (O)
  • Banque centrale du Luxembourg
Common Name (CN)
  • mailsrv2.bcl.lu
Alternative Names
  • mailsrv2.bcl.lu
  • www.mailsrv2.bcl.lu
Issuer
Country (C)
  • US
Organization (O)
  • DigiCert Inc
Common Name (CN)
  • DigiCert Global G2 TLS RSA SHA256 2020 CA1
validity period
Not valid before
2025-09-09
Not valid after
2026-10-02
This certifcate has been verified for the following usages:
  • Digital Signature
  • Key Encipherment
  • TLS Web Server Authentication
  • TLS Web Client Authentication
Fingerprints
SHA256
22:3D:38:90:50:50:C8:B5:5F:12:CE:F3:6A:59:0E:32:F2:3D:1C:BA:9D:DF:5F:F6:7B:FE:26:97:EB:EC:DE:A6
SHA1
E5:2E:A4:72:BC:AF:FB:93:EB:DE:65:54:2D:64:57:CD:2D:1C:27:1E
X509v3 extensions
authorityKeyIdentifier
  • keyid:74:85:80:C0:66:C7:DF:37:DE:CF:BD:29:37:AA:03:1D:BE:ED:CD:17
subjectKeyIdentifier
  • 13:CD:CF:DE:33:D6:1A:35:36:C1:11:F1:EB:58:37:CE:C0:3F:50:85
certificatePolicies
  • Policy: 2.23.140.1.2.2
  • CPS: http://www.digicert.com/CPS
crlDistributionPoints
  • Full Name:
  • URI:http://crl3.digicert.com/DigiCertGlobalG2TLSRSASHA2562020CA1-1.crl
  • Full Name:
  • URI:http://crl4.digicert.com/DigiCertGlobalG2TLSRSASHA2562020CA1-1.crl
authorityInfoAccess
  • OCSP - URI:http://ocsp.digicert.com
  • CA Issuers - URI:http://cacerts.digicert.com/DigiCertGlobalG2TLSRSASHA2562020CA1-1.crt
ct_precert_scts
  • Signed Certificate Timestamp:
  • Version : v1 (0x0)
  • Log ID : D8:09:55:3B:94:4F:7A:FF:C8:16:19:6F:94:4F:85:AB:
  • B0:F8:FC:5E:87:55:26:0F:15:D1:2E:72:BB:45:4B:14
  • Timestamp : Sep 9 14:13:19.488 2025 GMT
  • Extensions: none
  • Signature : ecdsa-with-SHA256
  • 30:44:02:20:20:17:4E:CE:0E:34:28:B8:57:5C:6A:36:
  • 65:0C:44:31:50:05:3C:19:19:5F:5F:16:19:04:FC:D5:
  • E3:B3:1D:95:02:20:7A:10:54:9D:F8:26:70:D2:0C:88:
  • 98:E9:7F:61:EA:56:7A:C2:D9:71:6A:D8:CB:5C:1F:45:
  • A8:FF:BD:89:F8:1C
  • Signed Certificate Timestamp:
  • Version : v1 (0x0)
  • Log ID : C2:31:7E:57:45:19:A3:45:EE:7F:38:DE:B2:90:41:EB:
  • C7:C2:21:5A:22:BF:7F:D5:B5:AD:76:9A:D9:0E:52:CD
  • Timestamp : Sep 9 14:13:19.490 2025 GMT
  • Extensions: none
  • Signature : ecdsa-with-SHA256
  • 30:45:02:21:00:EE:39:CC:40:1A:ED:B6:6A:31:00:73:
  • 28:1B:EE:5A:C9:67:C4:0F:AD:D4:0A:EA:56:19:DC:1A:
  • AF:75:CF:FE:4A:02:20:28:4E:B4:58:93:06:1A:0A:40:
  • CE:15:20:0B:E4:F8:4B:6A:9D:0E:22:92:54:7B:8D:AE:
  • 5A:97:9E:D8:33:2B:F3
  • Signed Certificate Timestamp:
  • Version : v1 (0x0)
  • Log ID : 94:4E:43:87:FA:EC:C1:EF:81:F3:19:24:26:A8:18:65:
  • 01:C7:D3:5F:38:02:01:3F:72:67:7D:55:37:2E:19:D8
  • Timestamp : Sep 9 14:13:19.516 2025 GMT
  • Extensions: none
  • Signature : ecdsa-with-SHA256
  • 30:45:02:20:0C:F3:6E:F6:1B:3A:73:CB:D6:80:3C:AD:
  • A7:BC:76:74:28:33:E4:02:FB:FD:90:3A:D2:82:C8:DB:
  • 8D:8E:5F:D2:02:21:00:E6:72:32:D7:F4:15:26:F9:81:
  • 00:98:47:2A:07:61:B9:38:6E:BB:95:71:D9:64:4E:F5:
  • EC:4F:72:DE:66:40:3F