SSL check results of fischer-extmails.opendesk.qa

NEW You can also bulk check multiple servers.

Discover if the mail servers for fischer-extmails.opendesk.qa can be reached through a secure connection.

To establish a secure connection a mail server has to offer STARTTLS (SSL), a trustworthy SSL certificate, support for the Diffie-Hellman-Algorithm to guarantee Perfect Forward Secrecy and must not be vulnerable against the Heartbleed attack. Futhermore we recommend using end-to-end encryption with GnuPG.

Summary

Report created Mon, 05 May 2025 00:30:32 +0000

We can not guarantee a secure connection to the mailservers of fischer-extmails.opendesk.qa!

Please contact the operator of fischer-extmails.opendesk.qa and ask him or her to solve this problem. This result stays accessible under the following address:

/mailservers/fischer-extmails.opendesk.qa

Servers

Incoming Mails

These servers are responsible for incoming mails to @fischer-extmails.opendesk.qa addresses.

Hostname / IP address Priority STARTTLS Certificates Protocol
mail.opendesk.qa
2a01:8280:dc00::69:2
Results incomplete
10 not checked
DANE
missing
PFS
not checked
Heartbleed
not checked
Weak ciphers
not checked
1 s
mail.opendesk.qa
213.181.122.69
10
supported
opendesk.qa
DANE
missing
PFS
supported
Heartbleed
not vulnerable
Weak ciphers
not found
  • TLSv1.2
  • SSLv3
3 s

Outgoing Mails

We have not received any emails from a @fischer-extmails.opendesk.qa address so far. Test mail delivery

Certificates

First seen at:

CN=opendesk.qa

Certificate chain
  • opendesk.qa
    • remaining
    • 2048 bit
    • sha256WithRSAEncryption
    • Hostname Mismatch

      • R11
        • remaining
        • 2048 bit
        • sha256WithRSAEncryption

          • ISRG Root X1 (Certificate is self-signed.)
            • remaining
            • 4096 bit
            • sha256WithRSAEncryption

Subject
Common Name (CN)
  • opendesk.qa
Alternative Names
  • opendesk.qa
Issuer
Country (C)
  • US
Organization (O)
  • Let's Encrypt
Common Name (CN)
  • R11
validity period
Not valid before
2025-05-04
Not valid after
2025-08-02
This certifcate has been verified for the following usages:
  • Digital Signature
  • Key Encipherment
  • TLS Web Server Authentication
  • TLS Web Client Authentication
Fingerprints
SHA256
3C:59:0B:EE:89:FE:FD:11:A2:C1:66:CC:42:45:0B:D4:6E:73:01:E6:6E:1B:75:F9:CF:6A:40:B0:2F:C9:64:84
SHA1
99:BA:DB:F8:80:4A:3B:2E:4D:33:A8:DA:F1:01:EB:82:7D:F3:2F:26
X509v3 extensions
subjectKeyIdentifier
  • 4A:EE:8E:3B:A2:F9:A5:52:41:15:A6:47:DA:05:90:06:80:BD:5B:7A
authorityKeyIdentifier
  • keyid:C5:CF:46:A4:EA:F4:C3:C0:7A:6C:95:C4:2D:B0:5E:92:2F:26:E3:B9
authorityInfoAccess
  • OCSP - URI:http://r11.o.lencr.org
  • CA Issuers - URI:http://r11.i.lencr.org/
certificatePolicies
  • Policy: 2.23.140.1.2.1
crlDistributionPoints
  • Full Name:
  • URI:http://r11.c.lencr.org/117.crl
ct_precert_scts
  • Signed Certificate Timestamp:
  • Version : v1 (0x0)
  • Log ID : ED:3C:4B:D6:E8:06:C2:A4:A2:00:57:DB:CB:24:E2:38:
  • 01:DF:51:2F:ED:C4:86:C5:70:0F:20:DD:B7:3E:3F:E0
  • Timestamp : May 4 11:59:53.273 2025 GMT
  • Extensions: none
  • Signature : ecdsa-with-SHA256
  • 30:45:02:21:00:9B:CA:D9:46:54:4A:D9:06:0E:08:1C:
  • 07:5C:B3:6C:6C:AC:43:CF:3B:FD:B8:69:03:12:D6:E7:
  • 1C:CB:E7:2E:FB:02:20:27:1C:D5:B1:E4:19:9F:BA:4E:
  • CA:46:C2:ED:26:80:95:52:8A:D8:30:01:1F:23:FC:4C:
  • 5F:DF:D8:90:88:A0:EB
  • Signed Certificate Timestamp:
  • Version : v1 (0x0)
  • Log ID : CC:FB:0F:6A:85:71:09:65:FE:95:9B:53:CE:E9:B2:7C:
  • 22:E9:85:5C:0D:97:8D:B6:A9:7E:54:C0:FE:4C:0D:B0
  • Timestamp : May 4 11:59:53.298 2025 GMT
  • Extensions: none
  • Signature : ecdsa-with-SHA256
  • 30:45:02:21:00:D0:72:9E:BF:38:09:90:99:78:1A:10:
  • 04:57:6E:81:1E:48:F8:C9:04:E5:6A:08:43:B6:14:CA:
  • B0:05:E8:10:C1:02:20:76:34:2E:72:25:D1:D3:F4:ED:
  • BC:A7:AD:92:73:A0:2A:A9:2A:00:9E:17:3E:65:5A:8A:
  • 30:29:79:78:53:B3:62