SSL check results of edaxi.de

NEW You can also bulk check multiple servers.

Discover if the mail servers for edaxi.de can be reached through a secure connection.

To establish a secure connection a mail server has to offer STARTTLS (SSL), a trustworthy SSL certificate, support for the Diffie-Hellman-Algorithm to guarantee Perfect Forward Secrecy and must not be vulnerable against the Heartbleed attack. Futhermore we recommend using end-to-end encryption with GnuPG.

Summary

Report created Fri, 23 May 2025 15:55:41 +0000

The mailservers of edaxi.de can be reached through a secure connection.

Servers

Incoming Mails

These servers are responsible for incoming mails to @edaxi.de addresses.

Hostname / IP address Priority STARTTLS Certificates Protocol
mail.edaxi.de
2a01:4f8:10a:3c1f::2
10
supported
mail.edaxi.de
DANE
missing
PFS
supported
Heartbleed
not vulnerable
Weak ciphers
not found
  • TLSv1.2
  • SSLv3
1 s
mail.edaxi.de
88.99.211.39
10
supported
mail.edaxi.de
DANE
missing
PFS
supported
Heartbleed
not vulnerable
Weak ciphers
not found
  • TLSv1.2
  • SSLv3
1 s

Outgoing Mails

We have received emails from these servers with @edaxi.de sender addresses. Test mail delivery

Host TLS Version & Cipher
mars.edaxi.de (IPv6:2a01:4f8:13b:37cb::2)
TLSv1.2 ECDHE-RSA-AES256-GCM-SHA384

Certificates

First seen at:

CN=mail.edaxi.de

Certificate chain
  • mail.edaxi.de
    • remaining
    • 256 bit
    • ecdsa-with-SHA384

      • E5
        • remaining
        • 384 bit
        • sha256WithRSAEncryption

          • ISRG Root X1 (Certificate is self-signed.)
            • remaining
            • 4096 bit
            • sha256WithRSAEncryption

Subject
Common Name (CN)
  • mail.edaxi.de
Alternative Names
  • mail.edaxi.de
Issuer
Country (C)
  • US
Organization (O)
  • Let's Encrypt
Common Name (CN)
  • E5
validity period
Not valid before
2025-05-23
Not valid after
2025-08-21
This certifcate has been verified for the following usages:
  • Digital Signature
  • TLS Web Server Authentication
  • TLS Web Client Authentication
Fingerprints
SHA256
8C:96:5D:B0:A9:68:89:A8:46:8F:04:F1:4A:21:99:C5:AD:DE:E1:60:9A:04:CF:2B:DC:2E:62:3F:52:AE:16:7B
SHA1
DF:31:A9:DD:44:1D:10:45:6D:BD:AC:DD:3C:FF:32:B4:FA:FB:28:3C
X509v3 extensions
subjectKeyIdentifier
  • F6:DB:31:2B:B7:92:A6:51:96:B0:B6:15:4B:6C:EB:95:68:84:D1:03
authorityKeyIdentifier
  • keyid:9F:2B:5F:CF:3C:21:4F:9D:04:B7:ED:2B:2C:C4:C6:70:8B:D2:D7:0D
authorityInfoAccess
  • CA Issuers - URI:http://e5.i.lencr.org/
certificatePolicies
  • Policy: 2.23.140.1.2.1
crlDistributionPoints
  • Full Name:
  • URI:http://e5.c.lencr.org/66.crl
ct_precert_scts
  • Signed Certificate Timestamp:
  • Version : v1 (0x0)
  • Log ID : A4:42:C5:06:49:60:61:54:8F:0F:D4:EA:9C:FB:7A:2D:
  • 26:45:4D:87:A9:7F:2F:DF:45:59:F6:27:4F:3A:84:54
  • Timestamp : May 23 15:49:42.670 2025 GMT
  • Extensions: none
  • Signature : ecdsa-with-SHA256
  • 30:46:02:21:00:8B:B1:BA:59:01:2A:1A:BF:4B:54:CE:
  • BD:B4:B3:AE:EE:F1:C1:3E:4C:1D:AD:64:91:DD:44:50:
  • A4:6C:97:43:FA:02:21:00:EE:34:7C:F2:99:AF:AB:A9:
  • 2E:E0:A4:7D:79:48:1A:D0:5F:88:B5:69:FC:CB:81:E6:
  • 0A:B1:8B:4E:F6:B7:F3:70
  • Signed Certificate Timestamp:
  • Version : v1 (0x0)
  • Log ID : CC:FB:0F:6A:85:71:09:65:FE:95:9B:53:CE:E9:B2:7C:
  • 22:E9:85:5C:0D:97:8D:B6:A9:7E:54:C0:FE:4C:0D:B0
  • Timestamp : May 23 15:49:42.694 2025 GMT
  • Extensions: none
  • Signature : ecdsa-with-SHA256
  • 30:45:02:21:00:99:E5:B8:CB:C2:89:47:8D:BA:D3:F2:
  • 06:72:40:28:92:79:C7:21:83:B7:BE:AE:2C:C1:BB:C0:
  • E6:85:3A:97:78:02:20:1E:EB:D1:96:12:DE:B0:CD:53:
  • AE:05:68:23:76:12:FB:47:E4:27:D8:3C:B0:C4:42:85:
  • 5F:93:35:E3:68:E0:1A