SSL check results of ejbygruppe.dk

NEW You can also bulk check multiple servers.

Discover if the mail servers for ejbygruppe.dk can be reached through a secure connection.

To establish a secure connection a mail server has to offer STARTTLS (SSL), a trustworthy SSL certificate, support for the Diffie-Hellman-Algorithm to guarantee Perfect Forward Secrecy and must not be vulnerable against the Heartbleed attack. Futhermore we recommend using end-to-end encryption with GnuPG.

Summary

Report created Thu, 27 Jun 2024 22:16:54 +0000

The mailservers of ejbygruppe.dk can be reached through a secure connection.

Servers

Incoming Mails

These servers are responsible for incoming mails to @ejbygruppe.dk addresses.

Hostname / IP address Priority STARTTLS Certificates Protocol
hermod.arnested.dk
2a02:c207:2007:7741::1
10
supported
hermod.arnested.dk
DANE
missing
PFS
supported
Heartbleed
not vulnerable
Weak ciphers
not found
  • TLSv1.2
  • SSLv3
1 s
hermod.arnested.dk
5.189.168.47
10
supported
hermod.arnested.dk
DANE
missing
PFS
supported
Heartbleed
not vulnerable
Weak ciphers
not found
  • TLSv1.2
  • SSLv3
2 s

Outgoing Mails

We have received emails from these servers with @ejbygruppe.dk sender addresses. Test mail delivery

Host TLS Version & Cipher
hermod.arnested.dk (5.189.168.47)
TLSv1.3 TLS_AES_256_GCM_SHA384
hermod.arnested.dk (IPv6:2a02:c207:2007:7741::1)
TLSv1.3 TLS_AES_256_GCM_SHA384

Certificates

First seen at:

CN=hermod.arnested.dk

Certificate chain
  • hermod.arnested.dk
    • remaining
    • 4096 bit
    • sha256WithRSAEncryption

      • R10
        • remaining
        • 2048 bit
        • sha256WithRSAEncryption

          • ISRG Root X1 (Certificate is self-signed.)
            • remaining
            • 4096 bit
            • sha256WithRSAEncryption

Subject
Common Name (CN)
  • hermod.arnested.dk
Alternative Names
  • hermod.arnested.dk
  • status.arnested.dk
Issuer
Country (C)
  • US
Organization (O)
  • Let's Encrypt
Common Name (CN)
  • R10
validity period
Not valid before
2024-06-24
Not valid after
2024-09-22
This certifcate has been verified for the following usages:
  • Digital Signature
  • Key Encipherment
  • TLS Web Server Authentication
  • TLS Web Client Authentication
Fingerprints
SHA256
7B:78:FC:E6:2B:ED:26:37:78:26:EA:89:A5:B9:1F:CE:67:24:C3:BD:88:17:A9:63:D9:53:6F:D4:48:F8:E2:50
SHA1
89:77:9F:87:ED:26:1F:90:36:13:EA:BA:06:C4:9B:91:6A:EE:15:AC
X509v3 extensions
subjectKeyIdentifier
  • 81:D5:3B:23:5E:D3:AA:2E:B9:DB:EE:A8:34:A1:03:90:C9:56:F6:8D
authorityKeyIdentifier
  • keyid:BB:BC:C3:47:A5:E4:BC:A9:C6:C3:A4:72:0C:10:8D:A2:35:E1:C8:E8
authorityInfoAccess
  • OCSP - URI:http://r10.o.lencr.org
  • CA Issuers - URI:http://r10.i.lencr.org/
certificatePolicies
  • Policy: 2.23.140.1.2.1
ct_precert_scts
  • Signed Certificate Timestamp:
  • Version : v1 (0x0)
  • Log ID : 76:FF:88:3F:0A:B6:FB:95:51:C2:61:CC:F5:87:BA:34:
  • B4:A4:CD:BB:29:DC:68:42:0A:9F:E6:67:4C:5A:3A:74
  • Timestamp : Jun 24 12:23:28.590 2024 GMT
  • Extensions: none
  • Signature : ecdsa-with-SHA256
  • 30:46:02:21:00:AD:7D:6F:81:9C:46:23:9D:12:B4:53:
  • 82:5C:C3:A4:84:E5:A2:C5:FA:9F:48:77:1A:4F:67:F1:
  • 86:BE:80:08:04:02:21:00:8E:12:2A:30:4A:0A:6B:65:
  • 60:69:31:C2:5F:29:8F:6C:07:D3:B9:A2:80:BB:59:F0:
  • 8A:67:F0:46:DB:C7:4C:11
  • Signed Certificate Timestamp:
  • Version : v1 (0x0)
  • Log ID : DF:E1:56:EB:AA:05:AF:B5:9C:0F:86:71:8D:A8:C0:32:
  • 4E:AE:56:D9:6E:A7:F5:A5:6A:01:D1:C1:3B:BE:52:5C
  • Timestamp : Jun 24 12:23:28.700 2024 GMT
  • Extensions: none
  • Signature : ecdsa-with-SHA256
  • 30:46:02:21:00:AE:AD:EA:30:9C:F9:B7:E0:14:EB:DF:
  • FF:CD:66:8F:14:67:17:0F:E0:0E:34:41:9C:54:58:DE:
  • A1:1A:43:FF:1B:02:21:00:BF:6D:2D:1A:76:A3:AD:03:
  • 58:8B:11:3B:28:EB:8D:D5:CD:CB:82:A9:3A:46:51:7B:
  • BA:54:B1:2E:B7:E5:D0:A1