SSL check results of chr4.org

NEW You can also bulk check multiple servers.

Discover if the mail servers for chr4.org can be reached through a secure connection.

To establish a secure connection a mail server has to offer STARTTLS (SSL), a trustworthy SSL certificate, support for the Diffie-Hellman-Algorithm to guarantee Perfect Forward Secrecy and must not be vulnerable against the Heartbleed attack. Futhermore we recommend using end-to-end encryption with GnuPG.

Summary

Report created Sun, 07 Jun 2026 20:15:20 +0000

The mailservers of chr4.org can be reached through a secure connection.

Servers

Incoming Mails

These servers are responsible for incoming mails to @chr4.org addresses.

Hostname / IP address Priority STARTTLS Certificates Protocol
smtp.chr4.org
2a01:4f8:221:c66::2
10
supported
chr4.org
DANE
missing
PFS
supported
Heartbleed
not vulnerable
Weak ciphers
not found
  • TLSv1.2
  • TLSv1.1
  • TLSv1.0
  • SSLv3
1 s
smtp.chr4.org
88.99.96.111
10
supported
chr4.org
DANE
missing
PFS
supported
Heartbleed
not vulnerable
Weak ciphers
not found
  • TLSv1.2
  • TLSv1.1
  • TLSv1.0
  • SSLv3
1 s

Outgoing Mails

We have not received any emails from a @chr4.org address so far. Test mail delivery

Certificates

First seen at:

CN=chr4.org

Certificate chain
  • chr4.org
    • remaining
    • 4096 bit
    • sha256WithRSAEncryption

      • R13
        • remaining
        • 2048 bit
        • sha256WithRSAEncryption

          • ISRG Root X1 (Certificate is self-signed.)
            • remaining
            • 4096 bit
            • sha256WithRSAEncryption

Subject
Common Name (CN)
  • chr4.org
Alternative Names
  • aumann.cc
  • chr4.org
  • imap.aumann.cc
  • imap.chr4.org
  • mta-sts.aumann.cc
  • mta-sts.chr4.org
  • mta-sts.penner.lol
  • mta-sts.raumneun.net
  • mta-sts.rndsec.net
  • mta-sts.tine.coach
  • smtp.aumann.cc
  • smtp.chr4.org
  • vault.aumann.cc
  • www.chr4.org
Issuer
Country (C)
  • US
Organization (O)
  • Let's Encrypt
Common Name (CN)
  • R13
validity period
Not valid before
2026-04-26
Not valid after
2026-07-25
This certifcate has been verified for the following usages:
  • Digital Signature
  • Key Encipherment
  • TLS Web Server Authentication
Fingerprints
SHA256
6F:BD:47:D7:7D:C8:37:C8:94:A4:08:EB:CF:28:CE:0A:19:5B:B0:5F:5D:69:9E:47:BA:E6:67:AC:0D:23:AC:5E
SHA1
D6:2A:FC:B1:62:E6:AE:2D:51:4D:AD:D3:25:F3:E9:A9:90:6D:0B:4F
X509v3 extensions
subjectKeyIdentifier
  • 76:C4:8F:C4:D3:B9:0C:28:9A:A8:27:0C:64:F8:7F:D9:14:60:35:60
authorityKeyIdentifier
  • keyid:E7:AB:9F:0F:2C:33:A0:53:D3:5E:4F:78:C8:B2:84:0E:3B:D6:92:33
authorityInfoAccess
  • CA Issuers - URI:http://r13.i.lencr.org/
certificatePolicies
  • Policy: 2.23.140.1.2.1
crlDistributionPoints
  • Full Name:
  • URI:http://r13.c.lencr.org/22.crl
ct_precert_scts
  • Signed Certificate Timestamp:
  • Version : v1 (0x0)
  • Log ID : CB:38:F7:15:89:7C:84:A1:44:5F:5B:C1:DD:FB:C9:6E:
  • F2:9A:59:CD:47:0A:69:05:85:B0:CB:14:C3:14:58:E7
  • Timestamp : Apr 26 22:01:07.013 2026 GMT
  • Extensions: none
  • Signature : ecdsa-with-SHA256
  • 30:45:02:21:00:E0:B5:B6:38:17:0C:25:5E:D4:C4:6A:
  • A4:A0:16:73:2E:25:B5:3B:75:9B:AF:01:34:30:89:D9:
  • BA:83:12:C4:8A:02:20:1C:A7:69:C7:DF:86:5E:06:E9:
  • C3:9E:F7:7F:99:79:C4:BB:61:3C:D9:AC:A2:F3:BD:67:
  • 81:DF:4A:AE:85:0A:FA
  • Signed Certificate Timestamp:
  • Version : v1 (0x0)
  • Log ID : 46:AF:86:3D:3B:3E:E5:9F:A5:77:DE:A8:24:5D:36:B0:
  • D9:ED:22:A2:23:F4:61:77:41:22:94:52:EE:95:50:5F
  • Timestamp : Apr 26 22:01:07.130 2026 GMT
  • Extensions: 00:00:05:00:04:F0:FC:30
  • Signature : ecdsa-with-SHA256
  • 30:46:02:21:00:DC:58:C6:A0:05:A2:8A:35:70:00:FA:
  • BD:5A:DB:73:AE:B4:B9:A4:8C:83:72:53:19:CD:32:0B:
  • 52:82:D1:40:7E:02:21:00:B7:42:C8:23:94:D1:83:00:
  • 67:F8:9E:25:37:47:C4:5D:2B:9E:06:0A:96:AD:3E:43:
  • 26:20:9B:86:52:B7:C9:44