SSL check results of gaillard.onl

NEW You can also bulk check multiple servers.

Discover if the mail servers for gaillard.onl can be reached through a secure connection.

To establish a secure connection a mail server has to offer STARTTLS (SSL), a trustworthy SSL certificate, support for the Diffie-Hellman-Algorithm to guarantee Perfect Forward Secrecy and must not be vulnerable against the Heartbleed attack. Futhermore we recommend using end-to-end encryption with GnuPG.

Summary

Report created Fri, 20 Dec 2024 22:40:55 +0000

We can not guarantee a secure connection to the mailservers of gaillard.onl!

Please contact the operator of gaillard.onl and ask him or her to solve this problem. This result stays accessible under the following address:

/mailservers/gaillard.onl

Servers

Incoming Mails

These servers are responsible for incoming mails to @gaillard.onl addresses.

Hostname / IP address Priority STARTTLS Certificates Protocol
gaillard.onl
91.5.79.172
-
supported
mail.gaillard.onl
DANE
missing
PFS
supported
Heartbleed
not vulnerable
Weak ciphers
not found
  • TLSv1.2
  • SSLv3
2 s
gaillard.onl
2003:d5:1741:8500:d2d6:bf86:8981:a302
Results incomplete
- not checked
DANE
missing
PFS
not checked
Heartbleed
not checked
Weak ciphers
not checked
1 s

Outgoing Mails

We have received emails from these servers with @gaillard.onl sender addresses. Test mail delivery

Host TLS Version & Cipher
mail.gaillard.onl (188.246.24.42)
TLSv1.2 AECDH-AES256-SHA
unknown (IPv6:2a02:810d:e80:d6ac:b5f:d5ae:d496:6227)
Insecure - not encrypted!

Certificates

First seen at:

CN=mail.gaillard.onl

Certificate chain
  • mail.gaillard.onl
    • remaining
    • 256 bit
    • ecdsa-with-SHA384
    • Hostname Mismatch

      • E6
        • remaining
        • 384 bit
        • sha256WithRSAEncryption

          • ISRG Root X1 (Certificate is self-signed.)
            • remaining
            • 4096 bit
            • sha256WithRSAEncryption

Subject
Common Name (CN)
  • mail.gaillard.onl
Alternative Names
  • mail.gaillard.onl
Issuer
Country (C)
  • US
Organization (O)
  • Let's Encrypt
Common Name (CN)
  • E6
validity period
Not valid before
2024-12-20
Not valid after
2025-03-20
This certifcate has been verified for the following usages:
  • Digital Signature
  • TLS Web Server Authentication
  • TLS Web Client Authentication
Fingerprints
SHA256
A2:76:F8:A4:24:A9:0E:45:3A:87:BC:51:E0:47:22:C0:18:D7:F6:30:08:F5:FA:07:45:66:EB:29:AF:53:58:DD
SHA1
42:4A:B0:F2:78:84:F1:D5:5B:40:C9:A1:47:FC:2B:8D:91:87:52:EA
X509v3 extensions
subjectKeyIdentifier
  • F5:B1:D5:8D:6A:C9:5F:75:03:7A:78:AD:BF:AD:39:F2:2D:44:3B:C0
authorityKeyIdentifier
  • keyid:93:27:46:98:03:A9:51:68:8E:98:D6:C4:42:48:DB:23:BF:58:94:D2
authorityInfoAccess
  • OCSP - URI:http://e6.o.lencr.org
  • CA Issuers - URI:http://e6.i.lencr.org/
certificatePolicies
  • Policy: 2.23.140.1.2.1
ct_precert_scts
  • Signed Certificate Timestamp:
  • Version : v1 (0x0)
  • Log ID : 7D:59:1E:12:E1:78:2A:7B:1C:61:67:7C:5E:FD:F8:D0:
  • 87:5C:14:A0:4E:95:9E:B9:03:2F:D9:0E:8C:2E:79:B8
  • Timestamp : Dec 20 22:10:30.538 2024 GMT
  • Extensions: none
  • Signature : ecdsa-with-SHA256
  • 30:45:02:21:00:A7:4B:E1:74:05:D5:95:B8:60:19:ED:
  • 1A:54:AC:9A:C6:A0:7A:9B:1D:3D:84:A8:AE:10:70:B5:
  • 37:E2:A7:7E:25:02:20:0C:38:D6:FF:A6:3C:44:A9:EE:
  • EA:91:0E:9D:21:0E:E4:6D:06:2B:A4:D7:1E:61:45:15:
  • A3:4D:E4:08:20:DA:05
  • Signed Certificate Timestamp:
  • Version : v1 (0x0)
  • Log ID : CC:FB:0F:6A:85:71:09:65:FE:95:9B:53:CE:E9:B2:7C:
  • 22:E9:85:5C:0D:97:8D:B6:A9:7E:54:C0:FE:4C:0D:B0
  • Timestamp : Dec 20 22:10:30.543 2024 GMT
  • Extensions: none
  • Signature : ecdsa-with-SHA256
  • 30:44:02:20:7C:29:B0:B1:C7:8B:DB:73:98:5C:36:E4:
  • A0:B1:22:34:2D:C7:E2:51:C6:EC:F0:7F:CE:74:3F:0B:
  • 56:C6:71:B9:02:20:47:4B:04:19:FD:3B:84:1F:C9:DB:
  • 29:5D:C2:97:08:ED:0D:84:FD:6E:06:3C:B3:4A:6D:E7:
  • D6:05:9C:2D:31:C9