SSL check results of freemailer.ch

NEW You can also bulk check multiple servers.

Discover if the mail servers for freemailer.ch can be reached through a secure connection.

To establish a secure connection a mail server has to offer STARTTLS (SSL), a trustworthy SSL certificate, support for the Diffie-Hellman-Algorithm to guarantee Perfect Forward Secrecy and must not be vulnerable against the Heartbleed attack. Futhermore we recommend using end-to-end encryption with GnuPG.

Summary

Report created Thu, 07 May 2026 11:47:34 +0000

The mailservers of freemailer.ch can be reached through a secure connection.

Servers

Incoming Mails

These servers are responsible for incoming mails to @freemailer.ch addresses.

Hostname / IP address Priority STARTTLS Certificates Protocol
in1-smtp.messagingengine.com
103.168.172.220
10
supported
*.messagingengine.com
DANE
missing
PFS
supported
Heartbleed
not vulnerable
Weak ciphers
not found
  • TLSv1.2
  • TLSv1.1
  • TLSv1.0
  • SSLv3
13 s
in1-smtp.messagingengine.com
103.168.172.218
10
supported
*.messagingengine.com
DANE
missing
PFS
supported
Heartbleed
not vulnerable
Weak ciphers
not found
  • TLSv1.2
  • TLSv1.1
  • TLSv1.0
  • SSLv3
13 s
in1-smtp.messagingengine.com
103.168.172.222
10
supported
*.messagingengine.com
DANE
missing
PFS
supported
Heartbleed
not vulnerable
Weak ciphers
not found
  • TLSv1.2
  • TLSv1.1
  • TLSv1.0
  • SSLv3
13 s
in1-smtp.messagingengine.com
103.168.172.216
10
supported
*.messagingengine.com
DANE
missing
PFS
supported
Heartbleed
not vulnerable
Weak ciphers
not found
  • TLSv1.2
  • TLSv1.1
  • TLSv1.0
  • SSLv3
13 s
in1-smtp.messagingengine.com
103.168.172.217
10
supported
*.messagingengine.com
DANE
missing
PFS
supported
Heartbleed
not vulnerable
Weak ciphers
not found
  • TLSv1.2
  • TLSv1.1
  • TLSv1.0
  • SSLv3
13 s
in1-smtp.messagingengine.com
103.168.172.221
10
supported
*.messagingengine.com
DANE
missing
PFS
supported
Heartbleed
not vulnerable
Weak ciphers
not found
  • TLSv1.2
  • TLSv1.1
  • TLSv1.0
  • SSLv3
13 s
in1-smtp.messagingengine.com
103.168.172.223
10
supported
*.messagingengine.com
DANE
missing
PFS
supported
Heartbleed
not vulnerable
Weak ciphers
not found
  • TLSv1.2
  • TLSv1.1
  • TLSv1.0
  • SSLv3
13 s
in1-smtp.messagingengine.com
103.168.172.219
10
supported
*.messagingengine.com
DANE
missing
PFS
supported
Heartbleed
not vulnerable
Weak ciphers
not found
  • TLSv1.2
  • TLSv1.1
  • TLSv1.0
  • SSLv3
13 s
in2-smtp.messagingengine.com
202.12.124.218
20
supported
*.messagingengine.com
DANE
missing
PFS
supported
Heartbleed
not vulnerable
Weak ciphers
not found
  • TLSv1.2
  • TLSv1.1
  • TLSv1.0
  • SSLv3
13 s
in2-smtp.messagingengine.com
202.12.124.217
20
supported
*.messagingengine.com
DANE
missing
PFS
supported
Heartbleed
not vulnerable
Weak ciphers
not found
  • TLSv1.2
  • TLSv1.1
  • TLSv1.0
  • SSLv3
13 s
in2-smtp.messagingengine.com
202.12.124.216
20
supported
*.messagingengine.com
DANE
missing
PFS
supported
Heartbleed
not vulnerable
Weak ciphers
not found
  • TLSv1.2
  • TLSv1.1
  • TLSv1.0
  • SSLv3
13 s
in2-smtp.messagingengine.com
202.12.124.219
20
supported
*.messagingengine.com
DANE
missing
PFS
supported
Heartbleed
not vulnerable
Weak ciphers
not found
  • TLSv1.2
  • TLSv1.1
  • TLSv1.0
  • SSLv3
13 s

Outgoing Mails

We have not received any emails from a @freemailer.ch address so far. Test mail delivery

Certificates

First seen at:

CN=*.messagingengine.com

Certificate chain
  • *.messagingengine.com
    • remaining
    • 2048 bit
    • sha256WithRSAEncryption

      • R13
        • remaining
        • 2048 bit
        • sha256WithRSAEncryption

          • ISRG Root X1 (Certificate is self-signed.)
            • remaining
            • 4096 bit
            • sha256WithRSAEncryption

Subject
Common Name (CN)
  • *.messagingengine.com
Alternative Names
  • *.messagingengine.com
  • messagingengine.com
Issuer
Country (C)
  • US
Organization (O)
  • Let's Encrypt
Common Name (CN)
  • R13
validity period
Not valid before
2026-04-04
Not valid after
2026-07-03
This certifcate has been verified for the following usages:
  • Digital Signature
  • Key Encipherment
  • TLS Web Server Authentication
Fingerprints
SHA256
BB:7C:B5:E5:58:0D:1C:F2:08:62:CF:50:AC:47:23:E4:09:15:9B:D2:65:F2:8D:4F:5E:16:48:7A:87:0F:44:58
SHA1
E7:AF:0B:FA:63:E0:AB:1D:EB:73:74:17:A4:86:71:5F:C3:E3:8F:9E
X509v3 extensions
subjectKeyIdentifier
  • 8C:1D:A6:82:62:5A:BF:6D:E1:F2:31:19:0C:4B:D1:70:6F:67:59:F1
authorityKeyIdentifier
  • keyid:E7:AB:9F:0F:2C:33:A0:53:D3:5E:4F:78:C8:B2:84:0E:3B:D6:92:33
authorityInfoAccess
  • CA Issuers - URI:http://r13.i.lencr.org/
certificatePolicies
  • Policy: 2.23.140.1.2.1
crlDistributionPoints
  • Full Name:
  • URI:http://r13.c.lencr.org/124.crl
ct_precert_scts
  • Signed Certificate Timestamp:
  • Version : v1 (0x0)
  • Log ID : AF:67:88:3B:57:B0:4E:DD:8F:A6:D9:7E:F6:2E:A8:EB:
  • 81:0A:C7:71:60:F0:24:5E:55:D6:0C:2F:E7:85:87:3A
  • Timestamp : Apr 4 01:20:22.658 2026 GMT
  • Extensions: none
  • Signature : ecdsa-with-SHA256
  • 30:46:02:21:00:A0:A3:3F:20:64:34:05:2F:0E:0A:EB:
  • 8C:93:A3:66:02:76:A8:53:E8:FB:85:32:82:78:D1:7D:
  • AC:1E:5E:E1:90:02:21:00:D5:61:EB:0F:8C:90:7C:C9:
  • EC:7A:29:0D:26:33:43:BE:9C:9A:EE:5C:8A:A2:9B:43:
  • 51:BC:35:92:90:75:AB:25
  • Signed Certificate Timestamp:
  • Version : v1 (0x0)
  • Log ID : 1A:8B:9D:6B:0F:FE:BF:81:B4:79:39:C6:D2:31:0A:86:
  • D6:D1:02:D4:F0:46:E2:18:2C:9D:E3:5F:5E:26:25:EF
  • Timestamp : Apr 4 01:20:22.701 2026 GMT
  • Extensions: 00:00:05:00:06:92:50:3C
  • Signature : ecdsa-with-SHA256
  • 30:45:02:20:34:3E:ED:69:8B:9E:2B:C8:35:25:84:3A:
  • 11:A3:12:87:A0:97:0D:2E:0B:08:08:AD:F9:EB:74:AA:
  • 8F:DB:30:4C:02:21:00:FF:76:FF:34:D9:32:87:AD:8E:
  • BF:FD:3F:1D:77:A5:FF:8E:E2:B2:87:31:63:4B:5B:AA:
  • 92:E2:15:4A:41:A3:2E