SSL check results of efgcapital.com

NEW You can also bulk check multiple servers.

Discover if the mail servers for efgcapital.com can be reached through a secure connection.

To establish a secure connection a mail server has to offer STARTTLS (SSL), a trustworthy SSL certificate, support for the Diffie-Hellman-Algorithm to guarantee Perfect Forward Secrecy and must not be vulnerable against the Heartbleed attack. Futhermore we recommend using end-to-end encryption with GnuPG.

Summary

Report created Mon, 25 May 2020 08:39:10 +0000

The mailservers of efgcapital.com can be reached through a secure connection.

Servers

Incoming Mails

These servers are responsible for incoming mails to @efgcapital.com addresses.

Hostname / IP address Priority STARTTLS Certificates Protocol
mta1.efgcapital.com
66.165.182.107
Results incomplete
10
supported
not checked
DANE
missing
PFS
supported
Heartbleed
not vulnerable
Weak ciphers
not found
  • TLSv1.2
  • SSLv3
2 s
mta2.efgcapital.com
67.220.111.167
Results incomplete
15
supported
not checked
DANE
missing
PFS
supported
Heartbleed
not vulnerable
Weak ciphers
not found
  • TLSv1.2
  • SSLv3
2 s
smtp5.efgbank.com
193.0.237.94
30
supported
smtp5.efgbank.com
DANE
missing
PFS
supported
Heartbleed
not vulnerable
Weak ciphers
not found
  • TLSv1.2
  • TLSv1.1
  • TLSv1.0
  • SSLv3
14 s
smtp6.efgbank.com
193.0.237.95
50
supported
smtp6.efgbank.com
DANE
missing
PFS
supported
Heartbleed
not vulnerable
Weak ciphers
not found
  • TLSv1.2
  • TLSv1.1
  • TLSv1.0
  • SSLv3
14 s

Outgoing Mails

We have not received any emails from a @efgcapital.com address so far. Test mail delivery

Certificates

First seen at:

CN=smtp6.efgbank.com,O=EFG Bank SA,L=Zurich,ST=Zurich,C=CH

Certificate chain
Subject
Country (C)
  • CH
State (ST)
  • Zurich
Locality (L)
  • Zurich
Organization (O)
  • EFG Bank SA
Common Name (CN)
  • smtp6.efgbank.com
Alternative Names
  • smtp6.efgbank.com
Issuer
Country (C)
  • US
Organization (O)
  • DigiCert Inc
Organizational Unit (OU)
  • www.digicert.com
Common Name (CN)
  • Thawte RSA CA 2018
validity period
Not valid before
2019-08-22
Not valid after
2021-09-23
This certifcate has been verified for the following usages:
  • Digital Signature
  • Key Encipherment
  • TLS Web Server Authentication
  • TLS Web Client Authentication
Fingerprints
SHA256
94:A6:36:5B:0A:10:B0:66:64:FC:0A:EC:2B:9D:38:5D:34:39:27:D6:BB:DF:B4:C2:95:3D:B2:3A:78:BC:10:5B
SHA1
17:48:95:81:4E:BE:B1:F3:1C:1F:4A:24:32:62:4D:DF:C9:1E:DD:AA
X509v3 extensions
authorityKeyIdentifier
  • keyid:A3:C8:5E:65:54:E5:30:78:C1:05:EA:07:0A:6A:59:CC:B9:FE:DE:5A
subjectKeyIdentifier
  • 4A:0C:FB:50:F4:E1:9B:85:2E:E9:EB:53:2F:A6:56:08:61:B5:C3:EA
crlDistributionPoints
  • Full Name:
  • URI:http://cdp.thawte.com/ThawteRSACA2018.crl
certificatePolicies
  • Policy: 2.16.840.1.114412.1.1
  • CPS: https://www.digicert.com/CPS
  • Policy: 2.23.140.1.2.2
authorityInfoAccess
  • OCSP - URI:http://status.thawte.com
  • CA Issuers - URI:http://cacerts.thawte.com/ThawteRSACA2018.crt
ct_precert_scts
  • Signed Certificate Timestamp:
  • Version : v1 (0x0)
  • Log ID : A4:B9:09:90:B4:18:58:14:87:BB:13:A2:CC:67:70:0A:
  • 3C:35:98:04:F9:1B:DF:B8:E3:77:CD:0E:C8:0D:DC:10
  • Timestamp : Aug 22 08:07:33.529 2019 GMT
  • Extensions: none
  • Signature : ecdsa-with-SHA256
  • 30:45:02:21:00:ED:A5:7A:F8:03:F2:83:CD:D6:B6:7E:
  • 37:96:3E:9B:C5:EC:83:1E:31:9D:86:09:AB:CA:73:73:
  • E8:E3:77:3A:7E:02:20:45:60:A4:10:94:0B:4D:5D:60:
  • FB:62:02:E0:E8:BA:47:0D:92:44:64:98:3E:71:3F:FC:
  • 8E:DC:D0:74:43:1C:5F
  • Signed Certificate Timestamp:
  • Version : v1 (0x0)
  • Log ID : 87:75:BF:E7:59:7C:F8:8C:43:99:5F:BD:F3:6E:FF:56:
  • 8D:47:56:36:FF:4A:B5:60:C1:B4:EA:FF:5E:A0:83:0F
  • Timestamp : Aug 22 08:07:33.585 2019 GMT
  • Extensions: none
  • Signature : ecdsa-with-SHA256
  • 30:44:02:20:03:3A:49:01:71:7B:93:A6:D3:99:C3:48:
  • 96:1A:62:31:9B:AD:D1:B9:7D:D7:9D:A7:5C:D2:02:B4:
  • B2:8E:CD:39:02:20:32:A0:B2:96:F0:08:CB:61:BD:28:
  • 8D:EB:A5:B7:5C:0C:E1:58:0F:9A:AE:7B:77:F4:89:F2:
  • AB:CB:2C:1F:98:C5
  • Signed Certificate Timestamp:
  • Version : v1 (0x0)
  • Log ID : 44:94:65:2E:B0:EE:CE:AF:C4:40:07:D8:A8:FE:28:C0:
  • DA:E6:82:BE:D8:CB:31:B5:3F:D3:33:96:B5:B6:81:A8
  • Timestamp : Aug 22 08:07:33.330 2019 GMT
  • Extensions: none
  • Signature : ecdsa-with-SHA256
  • 30:45:02:21:00:B2:92:A9:52:F5:DB:D0:B3:2C:D0:0A:
  • EC:D4:9A:10:F6:71:32:2F:F1:A5:D0:37:53:3D:EA:62:
  • 89:27:D8:1B:E3:02:20:12:FF:63:FA:1A:A9:8A:C5:05:
  • DF:D2:8C:09:61:F5:E3:D9:2F:C9:DB:E4:7C:A1:B2:40:
  • FD:D8:24:A8:D1:C6:B5
First seen at:

CN=smtp5.efgbank.com,O=EFG Bank SA,L=Zurich,ST=Zurich,C=CH

Certificate chain
Subject
Country (C)
  • CH
State (ST)
  • Zurich
Locality (L)
  • Zurich
Organization (O)
  • EFG Bank SA
Common Name (CN)
  • smtp5.efgbank.com
Alternative Names
  • smtp5.efgbank.com
Issuer
Country (C)
  • US
Organization (O)
  • DigiCert Inc
Organizational Unit (OU)
  • www.digicert.com
Common Name (CN)
  • Thawte RSA CA 2018
validity period
Not valid before
2019-08-22
Not valid after
2021-09-23
This certifcate has been verified for the following usages:
  • Digital Signature
  • Key Encipherment
  • TLS Web Server Authentication
  • TLS Web Client Authentication
Fingerprints
SHA256
15:26:FB:E0:F8:6C:55:1C:B9:0A:C4:E9:8E:79:96:4C:9D:02:2E:03:98:4D:D0:9A:A6:E7:CA:4F:60:29:7E:F4
SHA1
8A:4E:77:D6:C5:1F:CD:93:8D:C5:9D:7C:A9:99:4F:6F:58:A7:C0:99
X509v3 extensions
authorityKeyIdentifier
  • keyid:A3:C8:5E:65:54:E5:30:78:C1:05:EA:07:0A:6A:59:CC:B9:FE:DE:5A
subjectKeyIdentifier
  • 22:2D:68:2B:A1:94:E4:FE:D2:4A:77:DF:83:20:53:20:FA:6F:DF:92
crlDistributionPoints
  • Full Name:
  • URI:http://cdp.thawte.com/ThawteRSACA2018.crl
certificatePolicies
  • Policy: 2.16.840.1.114412.1.1
  • CPS: https://www.digicert.com/CPS
  • Policy: 2.23.140.1.2.2
authorityInfoAccess
  • OCSP - URI:http://status.thawte.com
  • CA Issuers - URI:http://cacerts.thawte.com/ThawteRSACA2018.crt
ct_precert_scts
  • Signed Certificate Timestamp:
  • Version : v1 (0x0)
  • Log ID : EE:4B:BD:B7:75:CE:60:BA:E1:42:69:1F:AB:E1:9E:66:
  • A3:0F:7E:5F:B0:72:D8:83:00:C4:7B:89:7A:A8:FD:CB
  • Timestamp : Aug 22 07:54:42.492 2019 GMT
  • Extensions: none
  • Signature : ecdsa-with-SHA256
  • 30:44:02:20:4A:E3:93:FE:51:F6:75:9F:68:13:4B:F9:
  • 12:5A:B0:C0:48:9D:E7:A0:77:65:49:5F:DF:C4:DF:4A:
  • 68:75:3E:F3:02:20:04:46:16:C4:EE:50:1A:99:F2:96:
  • 1F:9F:D5:C6:63:87:FA:02:CB:2C:ED:CF:D0:56:FB:E3:
  • A2:0A:3F:E6:99:3F
  • Signed Certificate Timestamp:
  • Version : v1 (0x0)
  • Log ID : 87:75:BF:E7:59:7C:F8:8C:43:99:5F:BD:F3:6E:FF:56:
  • 8D:47:56:36:FF:4A:B5:60:C1:B4:EA:FF:5E:A0:83:0F
  • Timestamp : Aug 22 07:54:42.547 2019 GMT
  • Extensions: none
  • Signature : ecdsa-with-SHA256
  • 30:45:02:20:75:BB:04:44:89:B4:35:17:CA:E6:73:2D:
  • 65:84:00:8E:5A:88:AD:F6:D8:D4:A6:26:1D:F1:D1:B2:
  • E6:7B:1C:B3:02:21:00:D9:F7:BA:7F:8F:6B:0A:2C:B9:
  • 3B:BF:9D:06:A6:DE:39:60:04:01:56:FC:FE:C6:C5:E3:
  • 84:C0:56:A4:28:93:06
  • Signed Certificate Timestamp:
  • Version : v1 (0x0)
  • Log ID : 44:94:65:2E:B0:EE:CE:AF:C4:40:07:D8:A8:FE:28:C0:
  • DA:E6:82:BE:D8:CB:31:B5:3F:D3:33:96:B5:B6:81:A8
  • Timestamp : Aug 22 07:54:42.362 2019 GMT
  • Extensions: none
  • Signature : ecdsa-with-SHA256
  • 30:46:02:21:00:C6:A9:3E:C7:4C:23:72:D7:09:84:A2:
  • 2A:B8:2C:50:86:E3:8D:15:49:F6:C5:E4:F8:D2:34:57:
  • AE:22:78:50:33:02:21:00:B1:68:77:93:BC:8B:6D:19:
  • 54:4E:ED:7A:6E:0B:47:A3:04:5F:23:18:4F:56:07:C5:
  • 5E:7C:01:8C:FF:C5:4B:57