SSL check results of bouquet24.de

NEW You can also bulk check multiple servers.

Discover if the mail servers for bouquet24.de can be reached through a secure connection.

To establish a secure connection a mail server has to offer STARTTLS (SSL), a trustworthy SSL certificate, support for the Diffie-Hellman-Algorithm to guarantee Perfect Forward Secrecy and must not be vulnerable against the Heartbleed attack. Futhermore we recommend using end-to-end encryption with GnuPG.

Summary

Report created Thu, 16 Oct 2025 21:53:17 +0000

The mailservers of bouquet24.de can be reached through a secure connection.

Servers

Incoming Mails

These servers are responsible for incoming mails to @bouquet24.de addresses.

Hostname / IP address Priority STARTTLS Certificates Protocol
mx01.bouquet24.de
185.150.25.151
10
supported
bouquet24.de
DANE
valid
PFS
supported
Heartbleed
not vulnerable
Weak ciphers
not found
  • TLSv1.2
  • SSLv3
2 s
mail.bouquet24.de
45.74.33.33
20
supported
bouquet24.de
DANE
valid
PFS
supported
Heartbleed
not vulnerable
Weak ciphers
not found
  • TLSv1.2
  • SSLv3
3 s

Outgoing Mails

We have not received any emails from a @bouquet24.de address so far. Test mail delivery

Certificates

First seen at:

CN=bouquet24.de

Certificate chain
  • bouquet24.de
    • remaining
    • 256 bit
    • ecdsa-with-SHA384

      • E8
        • remaining
        • 384 bit
        • sha256WithRSAEncryption

          • ISRG Root X1 (Certificate is self-signed.)
            • remaining
            • 4096 bit
            • sha256WithRSAEncryption

Subject
Common Name (CN)
  • bouquet24.de
Alternative Names
  • bouquet24.de
  • mail.bouquet24.de
  • mx01.bouquet24.de
Issuer
Country (C)
  • US
Organization (O)
  • Let's Encrypt
Common Name (CN)
  • E8
validity period
Not valid before
2025-10-16
Not valid after
2026-01-14
This certifcate has been verified for the following usages:
  • Digital Signature
  • TLS Web Server Authentication
  • TLS Web Client Authentication
Fingerprints
SHA256
BF:7C:4F:7D:47:F6:9B:60:17:B8:44:09:71:DE:18:7E:21:5E:E8:99:34:2A:D3:78:73:A2:02:B0:C8:B4:B5:3D
SHA1
F8:08:3E:DB:05:14:52:BF:69:9B:8B:02:5E:74:18:80:0E:C1:DB:9F
X509v3 extensions
subjectKeyIdentifier
  • 10:B7:43:14:F1:41:00:E0:A9:6E:86:A7:C3:AE:BB:87:0C:DC:D7:02
authorityKeyIdentifier
  • keyid:8F:0D:13:A2:F6:2E:7E:D1:50:6C:33:18:38:5D:59:8E:23:72:91:CA
authorityInfoAccess
  • CA Issuers - URI:http://e8.i.lencr.org/
certificatePolicies
  • Policy: 2.23.140.1.2.1
crlDistributionPoints
  • Full Name:
  • URI:http://e8.c.lencr.org/108.crl
ct_precert_scts
  • Signed Certificate Timestamp:
  • Version : v1 (0x0)
  • Log ID : 49:9C:9B:69:DE:1D:7C:EC:FC:36:DE:CD:87:64:A6:B8:
  • 5B:AF:0A:87:80:19:D1:55:52:FB:E9:EB:29:DD:F8:C3
  • Timestamp : Oct 16 20:04:40.533 2025 GMT
  • Extensions: none
  • Signature : ecdsa-with-SHA256
  • 30:45:02:21:00:E7:55:86:CB:48:9F:1F:3B:7F:0C:D7:
  • 22:66:AF:4F:57:B1:C4:CA:71:E2:67:D3:B6:79:1D:4C:
  • 37:FE:6A:22:D7:02:20:6A:7D:1B:B7:17:C8:B7:4D:59:
  • CA:91:19:83:63:A1:E0:16:42:00:BD:3F:0F:7E:4C:13:
  • 15:DC:9D:62:5D:40:E9
  • Signed Certificate Timestamp:
  • Version : v1 (0x0)
  • Log ID : 19:86:D4:C7:28:AA:6F:FE:BA:03:6F:78:2A:4D:01:91:
  • AA:CE:2D:72:31:0F:AE:CE:5D:70:41:2D:25:4C:C7:D4
  • Timestamp : Oct 16 20:04:40.549 2025 GMT
  • Extensions: none
  • Signature : ecdsa-with-SHA256
  • 30:46:02:21:00:EA:EE:E7:07:D8:D7:66:3A:FD:0A:CD:
  • F8:C8:24:73:7E:A0:3E:98:59:46:E1:08:B9:83:B5:C2:
  • FD:C6:F9:66:78:02:21:00:8D:B1:D4:BD:9A:26:CB:8C:
  • C2:C7:69:CA:64:F7:24:00:BE:70:BA:CE:A7:53:AE:8C:
  • 07:1C:1E:2D:11:68:50:47
First seen at:

CN=bouquet24.de

Certificate chain
  • bouquet24.de
    • remaining
    • 256 bit
    • ecdsa-with-SHA384

      • E8
        • remaining
        • 384 bit
        • sha256WithRSAEncryption

          • ISRG Root X1 (Certificate is self-signed.)
            • remaining
            • 4096 bit
            • sha256WithRSAEncryption

Subject
Common Name (CN)
  • bouquet24.de
Alternative Names
  • bouquet24.de
  • imap.bouquet24.de
  • mail.bouquet24.de
  • mx01.bouquet24.de
  • smtp.bouquet24.de
Issuer
Country (C)
  • US
Organization (O)
  • Let's Encrypt
Common Name (CN)
  • E8
validity period
Not valid before
2025-10-15
Not valid after
2026-01-13
This certifcate has been verified for the following usages:
  • Digital Signature
  • TLS Web Server Authentication
  • TLS Web Client Authentication
Fingerprints
SHA256
79:95:DF:1A:41:54:9E:9A:A2:0B:AA:E7:BB:B9:21:C6:C0:6B:A0:E5:B5:85:F1:46:95:FF:F6:C6:AE:C4:8D:11
SHA1
34:38:1F:A8:71:8C:E2:04:9A:65:51:C2:F4:F6:B9:51:09:4F:5E:CB
X509v3 extensions
subjectKeyIdentifier
  • 73:B2:A4:71:97:BC:24:6B:AC:F6:FD:7D:28:81:C2:1C:BE:02:60:6D
authorityKeyIdentifier
  • keyid:8F:0D:13:A2:F6:2E:7E:D1:50:6C:33:18:38:5D:59:8E:23:72:91:CA
authorityInfoAccess
  • CA Issuers - URI:http://e8.i.lencr.org/
certificatePolicies
  • Policy: 2.23.140.1.2.1
crlDistributionPoints
  • Full Name:
  • URI:http://e8.c.lencr.org/9.crl
ct_precert_scts
  • Signed Certificate Timestamp:
  • Version : v1 (0x0)
  • Log ID : 64:11:C4:6C:A4:12:EC:A7:89:1C:A2:02:2E:00:BC:AB:
  • 4F:28:07:D4:1E:35:27:AB:EA:FE:D5:03:C9:7D:CD:F0
  • Timestamp : Oct 15 19:36:02.031 2025 GMT
  • Extensions: none
  • Signature : ecdsa-with-SHA256
  • 30:45:02:21:00:A8:2F:79:9E:6B:07:85:23:13:D0:61:
  • DF:FD:BD:8D:74:51:C2:57:23:15:E8:05:EF:9E:F4:77:
  • E1:32:1A:63:6D:02:20:11:6C:1F:32:86:DA:C9:CB:19:
  • A6:2B:D9:E5:E4:63:09:85:D3:E6:44:9F:68:0D:3F:1C:
  • 5E:2B:0B:C0:F2:10:D1
  • Signed Certificate Timestamp:
  • Version : v1 (0x0)
  • Log ID : 96:97:64:BF:55:58:97:AD:F7:43:87:68:37:08:42:77:
  • E9:F0:3A:D5:F6:A4:F3:36:6E:46:A4:3F:0F:CA:A9:C6
  • Timestamp : Oct 15 19:36:02.097 2025 GMT
  • Extensions: none
  • Signature : ecdsa-with-SHA256
  • 30:45:02:20:57:4B:60:20:F8:6B:F7:97:8C:C8:37:85:
  • 0E:7C:00:AE:D8:C6:03:D1:09:25:01:34:94:56:7D:F6:
  • EF:C4:35:23:02:21:00:8F:29:C6:23:98:EA:99:53:74:
  • 52:9B:4A:BC:EE:B1:1F:59:56:D8:46:97:9A:33:ED:23:
  • 19:34:11:67:11:E0:EF

DANE

DNS-based Authentication of Named Entities (DANE) is a protocol to allow X.509 certificates to be bound to DNS using TLSA records and DNSSEC.

Name Options DNSSEC Matches
_25._tcp.mail.bouquet24.de
  • DANE-EE: Domain Issued Certificate
  • Use subject public key
  • SHA-256 Hash
valid
valid
_25._tcp.mx01.bouquet24.de
  • DANE-EE: Domain Issued Certificate
  • Use subject public key
  • SHA-256 Hash
valid
valid