SSL check results of dozen-of-bytes.com

NEW You can also bulk check multiple servers.

Discover if the mail servers for dozen-of-bytes.com can be reached through a secure connection.

To establish a secure connection a mail server has to offer STARTTLS (SSL), a trustworthy SSL certificate, support for the Diffie-Hellman-Algorithm to guarantee Perfect Forward Secrecy and must not be vulnerable against the Heartbleed attack. Futhermore we recommend using end-to-end encryption with GnuPG.

Summary

Report created Sat, 27 Jul 2024 00:30:55 +0000

The mailservers of dozen-of-bytes.com can be reached through a secure connection.

Servers

Incoming Mails

These servers are responsible for incoming mails to @dozen-of-bytes.com addresses.

Hostname / IP address Priority STARTTLS Certificates Protocol
mail.dozen-of-bytes.com
2a03:4000:29:173:648a:aaff:fe33:c6a1
10
supported
mail.dozen-of-bytes.com
DANE
valid
PFS
supported
Heartbleed
not vulnerable
Weak ciphers
not found
  • TLSv1.2
  • SSLv3
7 s
mail.dozen-of-bytes.com
94.16.119.92
10
supported
mail.dozen-of-bytes.com
DANE
valid
PFS
supported
Heartbleed
not vulnerable
Weak ciphers
not found
  • TLSv1.2
  • SSLv3
7 s

Outgoing Mails

We have not received any emails from a @dozen-of-bytes.com address so far. Test mail delivery

Certificates

First seen at:

CN=mail.dozen-of-bytes.com

Certificate chain
  • mail.dozen-of-bytes.com
    • remaining
    • 256 bit
    • ecdsa-with-SHA384

      • E5
        • remaining
        • 384 bit
        • sha256WithRSAEncryption

          • ISRG Root X1 (Certificate is self-signed.)
            • remaining
            • 4096 bit
            • sha256WithRSAEncryption

Subject
Common Name (CN)
  • mail.dozen-of-bytes.com
Alternative Names
  • mail.dozen-of-bytes.com
Issuer
Country (C)
  • US
Organization (O)
  • Let's Encrypt
Common Name (CN)
  • E5
validity period
Not valid before
2024-07-14
Not valid after
2024-10-12
This certifcate has been verified for the following usages:
  • Digital Signature
  • TLS Web Server Authentication
  • TLS Web Client Authentication
Fingerprints
SHA256
27:82:CC:56:B6:9C:63:44:A8:24:BC:7F:F9:6F:F4:ED:B7:43:D8:5A:C0:76:FD:4E:6D:05:0A:0A:61:DA:F2:B2
SHA1
71:5D:41:01:4F:0A:26:75:0B:9C:17:F8:BE:52:69:50:12:42:CD:47
X509v3 extensions
subjectKeyIdentifier
  • AB:42:0F:EB:47:8D:4D:49:0C:F8:3C:4A:22:0D:D7:57:2A:82:36:5C
authorityKeyIdentifier
  • keyid:9F:2B:5F:CF:3C:21:4F:9D:04:B7:ED:2B:2C:C4:C6:70:8B:D2:D7:0D
authorityInfoAccess
  • OCSP - URI:http://e5.o.lencr.org
  • CA Issuers - URI:http://e5.i.lencr.org/
certificatePolicies
  • Policy: 2.23.140.1.2.1
ct_precert_scts
  • Signed Certificate Timestamp:
  • Version : v1 (0x0)
  • Log ID : 48:B0:E3:6B:DA:A6:47:34:0F:E5:6A:02:FA:9D:30:EB:
  • 1C:52:01:CB:56:DD:2C:81:D9:BB:BF:AB:39:D8:84:73
  • Timestamp : Jul 14 20:08:48.143 2024 GMT
  • Extensions: none
  • Signature : ecdsa-with-SHA256
  • 30:46:02:21:00:A5:EF:54:E5:C4:62:9E:A7:90:B2:56:
  • F9:AA:0D:B9:0B:46:EE:EA:97:63:47:D6:41:A8:FC:31:
  • E8:09:01:BB:37:02:21:00:AD:93:80:34:86:22:68:18:
  • 2F:76:BF:49:E3:E1:B3:AB:68:6A:8B:68:FD:73:27:B7:
  • 14:57:4E:7B:0F:26:7A:89
  • Signed Certificate Timestamp:
  • Version : v1 (0x0)
  • Log ID : 3F:17:4B:4F:D7:22:47:58:94:1D:65:1C:84:BE:0D:12:
  • ED:90:37:7F:1F:85:6A:EB:C1:BF:28:85:EC:F8:64:6E
  • Timestamp : Jul 14 20:08:48.151 2024 GMT
  • Extensions: none
  • Signature : ecdsa-with-SHA256
  • 30:45:02:20:6C:E9:03:E2:F3:6C:90:CC:35:84:88:EC:
  • 69:8F:F0:7C:C0:D6:8D:62:53:FF:31:21:A4:26:F4:F3:
  • 7B:24:90:FE:02:21:00:D4:BD:67:8D:36:46:F4:56:54:
  • AA:7A:A3:B8:35:20:AD:7C:4F:C0:E2:70:6C:4B:B6:B2:
  • C7:4F:5F:8F:AA:CC:F9

DANE

DNS-based Authentication of Named Entities (DANE) is a protocol to allow X.509 certificates to be bound to DNS using TLSA records and DNSSEC.

Name Options DNSSEC Matches
_25._tcp.mail.dozen-of-bytes.com
  • DANE-EE: Domain Issued Certificate
  • Use subject public key
  • SHA-256 Hash
valid
valid