SSL check results of fecg.app

NEW You can also bulk check multiple servers.

Discover if the mail servers for fecg.app can be reached through a secure connection.

To establish a secure connection a mail server has to offer STARTTLS (SSL), a trustworthy SSL certificate, support for the Diffie-Hellman-Algorithm to guarantee Perfect Forward Secrecy and must not be vulnerable against the Heartbleed attack. Futhermore we recommend using end-to-end encryption with GnuPG.

Summary

Report created Wed, 02 Sep 2026 08:05:52 +0000

The mailservers of fecg.app can be reached through a secure connection.

Servers

Incoming Mails

These servers are responsible for incoming mails to @fecg.app addresses.

Hostname / IP address Priority STARTTLS Certificates Protocol
mail.fecg.app
2a03:4000:4e:fc3::1
10
supported
mail.fecg.app
DANE
errors
PFS
supported
Heartbleed
not vulnerable
Weak ciphers
not found
  • TLSv1.2
  • SSLv3
1 s
mail.fecg.app
185.232.71.101
10
supported
mail.fecg.app
DANE
errors
PFS
supported
Heartbleed
not vulnerable
Weak ciphers
not found
  • TLSv1.2
  • SSLv3
1 s

Outgoing Mails

We have not received any emails from a @fecg.app address so far. Test mail delivery

Certificates

First seen at:

CN=mail.fecg.app

Certificate chain
  • mail.fecg.app
    • remaining
    • 256 bit
    • ecdsa-with-SHA384

      • YE1
        • remaining
        • 384 bit
        • ecdsa-with-SHA384

          • Root YE
            • remaining
            • 384 bit
            • ecdsa-with-SHA384

              • ISRG Root X2 (Certificate is self-signed.)
                • remaining
                • 384 bit
                • ecdsa-with-SHA384

Subject
Common Name (CN)
  • mail.fecg.app
Alternative Names
  • mail.fecg.app
Issuer
Country (C)
  • US
Organization (O)
  • Let's Encrypt
Common Name (CN)
  • YE1
validity period
Not valid before
2026-06-18
Not valid after
2026-09-16
This certifcate has been verified for the following usages:
  • Digital Signature
  • TLS Web Server Authentication
Fingerprints
SHA256
86:B1:02:D3:93:44:CA:B3:4D:9D:D2:E1:20:74:EA:09:60:E4:18:C7:1D:BC:FB:DC:42:CF:0C:50:99:0A:32:86
SHA1
07:6D:C5:6D:74:18:85:6B:01:A0:C0:2A:48:23:F1:2E:DA:A2:96:65
X509v3 extensions
subjectKeyIdentifier
  • C8:0C:42:F3:9A:B1:05:21:B7:31:D7:9C:8B:11:AC:33:31:BB:9C:6D
authorityKeyIdentifier
  • keyid:BB:20:CA:47:0B:FE:D7:E5:9C:F9:8F:09:2A:A3:8C:37:45:B1:BC:D8
authorityInfoAccess
  • CA Issuers - URI:http://ye1.i.lencr.org/
certificatePolicies
  • Policy: 2.23.140.1.2.1
crlDistributionPoints
  • Full Name:
  • URI:http://ye1.c.lencr.org/23.crl
ct_precert_scts
  • Signed Certificate Timestamp:
  • Version : v1 (0x0)
  • Log ID : A8:26:CB:E3:0A:C6:35:12:46:53:3F:E0:65:F1:4F:19:
  • D9:6E:19:08:13:C4:1D:D9:6D:79:00:B3:12:3C:55:27
  • Timestamp : Jun 18 19:06:01.782 2026 GMT
  • Extensions: 00:00:05:00:10:16:9A:CA
  • Signature : ecdsa-with-SHA256
  • 30:44:02:20:7E:20:A0:81:90:AD:64:5B:4A:83:45:4F:
  • 3B:83:BC:91:50:DA:95:CA:6F:5F:33:F1:C8:DC:A5:8F:
  • 95:B0:C3:DD:02:20:77:0F:93:C4:E6:F4:75:17:B0:F9:
  • FF:B2:28:DD:92:49:C5:B5:F5:B0:24:74:B9:77:D0:38:
  • 2F:4A:95:03:E3:31
  • Signed Certificate Timestamp:
  • Version : v1 (0x0)
  • Log ID : C8:A3:C4:7F:C7:B3:AD:B9:35:6B:01:3F:6A:7A:12:6D:
  • E3:3A:4E:43:A5:C6:46:F9:97:AD:39:75:99:1D:CF:9A
  • Timestamp : Jun 18 19:06:01.686 2026 GMT
  • Extensions: none
  • Signature : ecdsa-with-SHA256
  • 30:45:02:21:00:AC:B4:34:DD:DB:F3:58:3B:04:93:17:
  • 56:DE:3A:B9:6E:88:C9:D1:6F:02:A9:98:5B:5C:9C:10:
  • A7:A0:B3:7D:F7:02:20:1E:7B:EE:ED:01:49:21:71:01:
  • 4D:20:C7:2A:E9:B2:A3:6C:ED:67:00:BB:5E:CC:72:B3:
  • F9:64:56:8A:F6:80:8F

DANE

DNS-based Authentication of Named Entities (DANE) is a protocol to allow X.509 certificates to be bound to DNS using TLSA records and DNSSEC.

Name Options DNSSEC Matches
_25._tcp.mail.fecg.app
  • DANE-EE: Domain Issued Certificate
  • Use full certificate
  • SHA-512 Hash
error
Debug
_25._tcp.mail.fecg.app
  • DANE-TA: Trust Anchor Assertion
  • Use full certificate
  • SHA-256 Hash
error
Debug
_25._tcp.mail.fecg.app
  • DANE-EE: Domain Issued Certificate
  • Use full certificate
  • SHA-256 Hash
error
Debug
_25._tcp.mail.fecg.app
  • DANE-EE: Domain Issued Certificate
  • Use subject public key
  • SHA-256 Hash
error
Debug
_25._tcp.mail.fecg.app
  • DANE-EE: Domain Issued Certificate
  • Use subject public key
  • SHA-512 Hash
error
Debug
_25._tcp.mail.fecg.app
  • DANE-TA: Trust Anchor Assertion
  • Use subject public key
  • SHA-256 Hash
error
Debug
_25._tcp.mail.fecg.app
  • DANE-TA: Trust Anchor Assertion
  • Use full certificate
  • SHA-512 Hash
error
Debug
_25._tcp.mail.fecg.app
  • DANE-TA: Trust Anchor Assertion
  • Use subject public key
  • SHA-512 Hash
error
Debug