SSL check results of freunde.cloud

NEW You can also bulk check multiple servers.

Discover if the mail servers for freunde.cloud can be reached through a secure connection.

To establish a secure connection a mail server has to offer STARTTLS (SSL), a trustworthy SSL certificate, support for the Diffie-Hellman-Algorithm to guarantee Perfect Forward Secrecy and must not be vulnerable against the Heartbleed attack. Futhermore we recommend using end-to-end encryption with GnuPG.

Summary

Report created Fri, 05 Jun 2026 07:36:57 +0000

We can not guarantee a secure connection to the mailservers of freunde.cloud!

Please contact the operator of freunde.cloud and ask him or her to solve this problem. This result stays accessible under the following address:

/mailservers/freunde.cloud

Servers

Incoming Mails

These servers are responsible for incoming mails to @freunde.cloud addresses.

Hostname / IP address Priority STARTTLS Certificates Protocol
mail.freunde.cloud
80.152.190.185
5
supported
mail.broleen.net
DANE
missing
PFS
supported
Heartbleed
not vulnerable
Weak ciphers
not found
  • TLSv1.2
  • SSLv3
3 s
freunde.cloud
2a01:4a0:2002:4:1da9:a99f:5423:3cf1
Results incomplete
10 not checked
DANE
missing
PFS
not checked
Heartbleed
not checked
Weak ciphers
not checked
11 s
freunde.cloud
80.152.190.185
10
supported
mail.broleen.net
DANE
missing
PFS
supported
Heartbleed
not vulnerable
Weak ciphers
not found
  • TLSv1.2
  • SSLv3
6 s

Outgoing Mails

We have not received any emails from a @freunde.cloud address so far. Test mail delivery

Certificates

First seen at:

CN=mail.broleen.net

Certificate chain
  • mail.broleen.net
    • remaining
    • 256 bit
    • ecdsa-with-SHA384
    • Hostname Mismatch

      • E8
        • remaining
        • 384 bit
        • sha256WithRSAEncryption

          • ISRG Root X1 (Certificate is self-signed.)
            • remaining
            • 4096 bit
            • sha256WithRSAEncryption

Subject
Common Name (CN)
  • mail.broleen.net
Alternative Names
  • mail.broleen.net
Issuer
Country (C)
  • US
Organization (O)
  • Let's Encrypt
Common Name (CN)
  • E8
validity period
Not valid before
2026-04-02
Not valid after
2026-07-01
This certifcate has been verified for the following usages:
  • Digital Signature
  • TLS Web Server Authentication
Fingerprints
SHA256
E9:3A:7D:42:E1:8D:9A:77:4D:9C:E9:A2:E6:D9:78:FB:AE:53:A9:58:BA:5D:A9:33:EC:00:2F:3A:5B:1E:9F:59
SHA1
E6:BC:BD:EF:22:AA:A7:22:0E:57:CF:43:D6:9A:9C:FD:3D:40:B9:4D
X509v3 extensions
subjectKeyIdentifier
  • 99:C2:5B:CA:8F:D1:32:8E:17:24:1C:52:23:0E:CF:D3:FF:18:27:68
authorityKeyIdentifier
  • keyid:8F:0D:13:A2:F6:2E:7E:D1:50:6C:33:18:38:5D:59:8E:23:72:91:CA
authorityInfoAccess
  • CA Issuers - URI:http://e8.i.lencr.org/
certificatePolicies
  • Policy: 2.23.140.1.2.1
crlDistributionPoints
  • Full Name:
  • URI:http://e8.c.lencr.org/38.crl
ct_precert_scts
  • Signed Certificate Timestamp:
  • Version : v1 (0x0)
  • Log ID : C8:A3:C4:7F:C7:B3:AD:B9:35:6B:01:3F:6A:7A:12:6D:
  • E3:3A:4E:43:A5:C6:46:F9:97:AD:39:75:99:1D:CF:9A
  • Timestamp : Apr 2 08:57:44.954 2026 GMT
  • Extensions: none
  • Signature : ecdsa-with-SHA256
  • 30:45:02:20:05:65:A8:93:89:FC:34:9F:25:2F:A1:FF:
  • DF:99:6D:FB:5C:94:FD:E9:45:38:77:22:EF:1E:E2:FB:
  • 65:92:FE:F9:02:21:00:E1:B0:80:75:1F:63:94:2B:8B:
  • 9B:30:CE:56:39:3E:39:82:48:3B:56:03:5B:74:59:D2:
  • BB:CA:DC:48:51:4B:2E
  • Signed Certificate Timestamp:
  • Version : v1 (0x0)
  • Log ID : 46:AF:86:3D:3B:3E:E5:9F:A5:77:DE:A8:24:5D:36:B0:
  • D9:ED:22:A2:23:F4:61:77:41:22:94:52:EE:95:50:5F
  • Timestamp : Apr 2 08:57:45.130 2026 GMT
  • Extensions: 00:00:05:00:02:C2:8F:39
  • Signature : ecdsa-with-SHA256
  • 30:45:02:21:00:94:B1:AB:F5:1F:B8:8E:98:5A:33:CA:
  • 11:BE:3D:92:67:D3:F8:15:99:B9:2A:28:09:F5:04:26:
  • 09:99:2B:EB:AA:02:20:6E:5A:F4:EA:A8:E3:36:B1:19:
  • 74:2F:6D:FF:A1:6A:CF:98:0D:E2:15:19:5E:1F:07:38:
  • 79:EC:DF:43:E4:85:11