SSL check results of cea.fr

NEW You can also bulk check multiple servers.

Discover if the mail servers for cea.fr can be reached through a secure connection.

To establish a secure connection a mail server has to offer STARTTLS (SSL), a trustworthy SSL certificate, support for the Diffie-Hellman-Algorithm to guarantee Perfect Forward Secrecy and must not be vulnerable against the Heartbleed attack. Futhermore we recommend using end-to-end encryption with GnuPG.

Summary

Report created Fri, 07 Aug 2026 13:09:15 +0000

We can not guarantee a secure connection to the mailservers of cea.fr!

Please contact the operator of cea.fr and ask him or her to solve this problem. This result stays accessible under the following address:

/mailservers/cea.fr

Servers

Incoming Mails

These servers are responsible for incoming mails to @cea.fr addresses.

Hostname / IP address Priority STARTTLS Certificates Protocol
cirse-smtp-in.extra.cea.fr
132.167.192.147
5
supported
cirse-smtp-in.extra.cea.fr
DANE
missing
PFS
supported
Heartbleed
not vulnerable
Weak ciphers
not found
  • TLSv1.2
  • TLSv1.1
  • TLSv1.0
  • SSLv3
47 s
sainfoin-smtp-in.extra.cea.fr
132.167.192.227
Results incomplete
5
supported
not checked
DANE
missing
PFS
supported
Heartbleed
not vulnerable
Weak ciphers
not found
  • TLSv1.2
  • SSLv3
6 s
oxalide-smtp-in.extra.cea.fr
132.168.224.12
5
supported
oxalide-smtp-in.extra.cea.fr
DANE
missing
PFS
supported
Heartbleed
not vulnerable
Weak ciphers
not found
  • TLSv1.2
  • TLSv1.1
  • TLSv1.0
  • SSLv3
47 s

Outgoing Mails

We have not received any emails from a @cea.fr address so far. Test mail delivery

Certificates

First seen at:

CN=cirse-smtp-in.extra.cea.fr

Certificate chain
Subject
Common Name (CN)
  • cirse-smtp-in.extra.cea.fr
Alternative Names
  • cirse-smtp-in.extra.cea.fr
  • www.cirse-smtp-in.extra.cea.fr
Issuer
Country (C)
  • GR
Organization (O)
  • Hellenic Academic and Research Institutions CA
Common Name (CN)
  • GEANT TLS RSA 1
validity period
Not valid before
2026-07-22
Not valid after
2027-02-06
This certifcate has been verified for the following usages:
  • Digital Signature
  • Key Encipherment
  • TLS Web Client Authentication
  • TLS Web Server Authentication
Fingerprints
SHA256
7B:CD:28:D4:14:57:63:39:30:2A:3D:8B:05:9E:35:68:3A:69:2C:0C:A6:15:8A:EE:9C:31:15:D7:B5:13:80:38
SHA1
80:75:50:D7:99:A9:50:A2:EB:01:14:C2:AA:0C:81:9A:7A:60:1C:14
X509v3 extensions
authorityKeyIdentifier
  • keyid:86:01:72:3F:8C:A9:70:E2:31:06:53:16:CE:01:5F:5B:79:C8:3C:3B
authorityInfoAccess
  • CA Issuers - URI:http://crt.harica.gr/HARICA-GEANT-TLS-R1.cer
certificatePolicies
  • Policy: 2.23.140.1.2.1
  • Policy: 0.4.0.2042.1.6
  • Policy: 1.3.6.1.4.1.26513.1.1.1.1
crlDistributionPoints
  • Full Name:
  • URI:http://crl.harica.gr/HARICA-GEANT-TLS-R1.crl
subjectKeyIdentifier
  • 61:59:E5:D0:7D:0B:E9:E5:3F:B4:23:9C:07:06:E0:78:33:F6:BE:89
ct_precert_scts
  • Signed Certificate Timestamp:
  • Version : v1 (0x0)
  • Log ID : 60:4C:9A:AF:7A:7F:77:5F:01:D4:06:FC:92:0D:C8:99:
  • EB:0B:1C:7D:F8:C9:52:1B:FA:FA:17:77:3B:97:8B:C9
  • Timestamp : Jul 22 21:49:28.153 2026 GMT
  • Extensions: none
  • Signature : ecdsa-with-SHA256
  • 30:44:02:20:2F:13:5C:79:F9:9C:14:7C:4B:47:31:03:
  • 55:D6:BA:00:1E:98:A3:F4:2D:39:C3:3A:2C:A6:76:31:
  • 84:B9:A6:78:02:20:72:E8:EA:69:0E:04:A2:C6:C4:C1:
  • F7:56:D0:A8:9C:AB:B4:3C:AA:B4:19:CF:A9:BA:CF:E9:
  • EE:70:18:5D:A3:35
  • Signed Certificate Timestamp:
  • Version : v1 (0x0)
  • Log ID : 46:A2:39:67:C6:0D:B6:46:87:C6:6F:3D:F9:99:94:76:
  • 93:A6:A6:11:20:84:57:D5:55:E7:E3:D0:A1:D9:B6:46
  • Timestamp : Jul 22 21:49:28.180 2026 GMT
  • Extensions: none
  • Signature : ecdsa-with-SHA256
  • 30:45:02:20:17:A5:04:32:1D:D0:9F:E0:25:B5:EF:77:
  • 8B:4E:FA:24:00:E8:17:5F:D4:86:9B:D3:2F:01:A1:17:
  • 8B:B3:5A:4C:02:21:00:AB:26:93:DE:3C:41:8D:E3:D8:
  • 79:60:5E:6E:07:99:E9:88:7D:B4:4E:18:E4:8B:19:4A:
  • 08:3B:65:F5:DD:4A:83
  • Signed Certificate Timestamp:
  • Version : v1 (0x0)
  • Log ID : 44:C2:BD:0C:E9:14:0E:64:A5:C9:4A:01:93:0A:5A:A1:
  • BB:35:97:0E:00:EE:11:16:89:68:2A:1C:44:D7:B5:66
  • Timestamp : Jul 22 21:49:28.128 2026 GMT
  • Extensions: none
  • Signature : ecdsa-with-SHA256
  • 30:44:02:20:70:67:A7:A8:E9:E0:6A:7B:99:A1:E4:FC:
  • D8:12:2E:B8:A1:46:70:B7:C6:68:3B:33:26:86:64:9D:
  • 55:27:12:17:02:20:48:F1:50:A3:1B:18:94:08:5F:B7:
  • 13:5F:BF:D4:F9:62:B6:BF:D2:14:27:5F:D5:EB:14:EE:
  • 8F:34:BB:86:41:F4
First seen at:

CN=oxalide-smtp-in.extra.cea.fr

Certificate chain
Subject
Common Name (CN)
  • oxalide-smtp-in.extra.cea.fr
Alternative Names
  • oxalide-smtp-in.extra.cea.fr
  • www.oxalide-smtp-in.extra.cea.fr
Issuer
Country (C)
  • GR
Organization (O)
  • Hellenic Academic and Research Institutions CA
Common Name (CN)
  • GEANT TLS RSA 1
validity period
Not valid before
2026-07-22
Not valid after
2027-02-06
This certifcate has been verified for the following usages:
  • Digital Signature
  • Key Encipherment
  • TLS Web Client Authentication
  • TLS Web Server Authentication
Fingerprints
SHA256
6B:4E:48:01:22:05:23:5F:43:FC:D9:14:19:A5:0C:A3:55:D8:DC:00:3A:E5:48:F5:D1:5E:E2:92:63:50:BC:64
SHA1
9D:81:A6:AF:56:82:D7:0C:A5:A7:10:1D:4F:FB:65:62:87:63:AE:29
X509v3 extensions
authorityKeyIdentifier
  • keyid:86:01:72:3F:8C:A9:70:E2:31:06:53:16:CE:01:5F:5B:79:C8:3C:3B
authorityInfoAccess
  • CA Issuers - URI:http://crt.harica.gr/HARICA-GEANT-TLS-R1.cer
certificatePolicies
  • Policy: 2.23.140.1.2.1
  • Policy: 0.4.0.2042.1.6
  • Policy: 1.3.6.1.4.1.26513.1.1.1.1
crlDistributionPoints
  • Full Name:
  • URI:http://crl.harica.gr/HARICA-GEANT-TLS-R1.crl
subjectKeyIdentifier
  • E0:43:37:6F:45:1C:AD:8D:3B:CA:2A:C8:9C:8C:7C:DE:1B:B3:1C:07
ct_precert_scts
  • Signed Certificate Timestamp:
  • Version : v1 (0x0)
  • Log ID : 60:4C:9A:AF:7A:7F:77:5F:01:D4:06:FC:92:0D:C8:99:
  • EB:0B:1C:7D:F8:C9:52:1B:FA:FA:17:77:3B:97:8B:C9
  • Timestamp : Jul 22 20:43:31.632 2026 GMT
  • Extensions: none
  • Signature : ecdsa-with-SHA256
  • 30:45:02:20:63:C0:38:5D:07:E0:76:2A:C4:32:0D:1A:
  • 7A:4D:7D:24:84:5B:AF:00:5A:1B:1A:02:9A:0A:32:58:
  • A6:E1:5E:F3:02:21:00:80:A2:F9:FE:9F:98:79:BB:B7:
  • 68:5D:92:25:87:6B:32:26:E6:B7:93:89:E5:0E:88:B4:
  • EF:9F:60:35:1A:2C:20
  • Signed Certificate Timestamp:
  • Version : v1 (0x0)
  • Log ID : 46:A2:39:67:C6:0D:B6:46:87:C6:6F:3D:F9:99:94:76:
  • 93:A6:A6:11:20:84:57:D5:55:E7:E3:D0:A1:D9:B6:46
  • Timestamp : Jul 22 20:43:31.639 2026 GMT
  • Extensions: none
  • Signature : ecdsa-with-SHA256
  • 30:46:02:21:00:91:2B:39:00:74:E9:5E:37:40:85:ED:
  • 5F:78:38:25:B6:56:FA:A4:C6:0D:67:DE:A1:73:E4:39:
  • 96:E2:55:75:1D:02:21:00:DF:9C:E0:79:72:65:74:8C:
  • 76:54:23:D8:FD:B0:AC:38:22:DF:DC:C3:5E:18:33:EE:
  • 49:63:75:D6:38:AB:75:A8
  • Signed Certificate Timestamp:
  • Version : v1 (0x0)
  • Log ID : 44:C2:BD:0C:E9:14:0E:64:A5:C9:4A:01:93:0A:5A:A1:
  • BB:35:97:0E:00:EE:11:16:89:68:2A:1C:44:D7:B5:66
  • Timestamp : Jul 22 20:43:31.586 2026 GMT
  • Extensions: none
  • Signature : ecdsa-with-SHA256
  • 30:45:02:20:45:03:BD:9F:8D:EA:22:30:C4:4D:93:C2:
  • 5A:2A:8A:56:10:BD:5F:88:C5:72:EA:CD:F3:AA:45:AE:
  • A6:61:28:32:02:21:00:A9:96:59:15:00:87:C1:A8:6F:
  • 4B:BD:B9:01:4B:32:13:41:D2:D1:38:CC:38:31:DF:C4:
  • 82:CA:81:34:07:22:59