SSL check results of geretsried.de

NEW You can also bulk check multiple servers.

Discover if the mail servers for geretsried.de can be reached through a secure connection.

To establish a secure connection a mail server has to offer STARTTLS (SSL), a trustworthy SSL certificate, support for the Diffie-Hellman-Algorithm to guarantee Perfect Forward Secrecy and must not be vulnerable against the Heartbleed attack. Futhermore we recommend using end-to-end encryption with GnuPG.

Summary

Report created Sun, 10 Aug 2025 00:30:47 +0000

We can not guarantee a secure connection to the mailservers of geretsried.de!

Please contact the operator of geretsried.de and ask him or her to solve this problem. This result stays accessible under the following address:

/mailservers/geretsried.de

Servers

Incoming Mails

These servers are responsible for incoming mails to @geretsried.de addresses.

Hostname / IP address Priority STARTTLS Certificates Protocol
mail.lra-toelz.de
193.158.231.228
10
supported
*.lra-toelz.de
DANE
missing
PFS
supported
Heartbleed
not vulnerable
Weak ciphers
not found
  • TLSv1.2
  • TLSv1.1
  • TLSv1.0
  • SSLv3
1 s
mail.geretsried.de
193.158.231.228
50
supported
*.lra-toelz.de
DANE
missing
PFS
supported
Heartbleed
not vulnerable
Weak ciphers
not found
  • TLSv1.2
  • TLSv1.1
  • TLSv1.0
  • SSLv3
1 s
stadtwerke.geretsried.de
193.53.251.198
Results incomplete
51 not checked
DANE
missing
PFS
not checked
Heartbleed
not checked
Weak ciphers
not checked
11 s

Outgoing Mails

We have not received any emails from a @geretsried.de address so far. Test mail delivery

Certificates

First seen at:

CN=*.lra-toelz.de

Certificate chain
  • *.lra-toelz.de
    • remaining
    • 2048 bit
    • sha256WithRSAEncryption
    • Unknown Authority

      Sectigo Public Server Authentication CA DV R36
Subject
Common Name (CN)
  • *.lra-toelz.de
Alternative Names
  • *.lra-toelz.de
  • lra-toelz.de
Issuer
Country (C)
  • GB
Organization (O)
  • Sectigo Limited
Common Name (CN)
  • Sectigo Public Server Authentication CA DV R36
validity period
Not valid before
2025-07-10
Not valid after
2026-08-10
This certifcate has been verified for the following usages:
  • Digital Signature
  • Key Encipherment
  • TLS Web Server Authentication
  • TLS Web Client Authentication
  • 2.16.840.1.113741.1.2.3
Fingerprints
SHA256
FF:66:AF:0F:DF:FE:9A:32:31:5E:61:52:93:F5:4A:CB:A0:5B:D4:D2:B5:6E:06:9B:83:C0:24:C0:76:73:C9:7A
SHA1
D8:DC:B6:CF:72:EC:BE:75:4E:CD:B7:AA:64:10:69:C9:4F:B8:54:F0
X509v3 extensions
authorityKeyIdentifier
  • keyid:68:C0:12:16:18:0E:AF:CE:F6:87:A6:32:57:A3:46:51:5D:CB:07:27
subjectKeyIdentifier
  • 98:5E:CB:35:96:FA:5B:D1:5F:E9:DB:84:1E:4C:B4:E7:67:15:4B:BF
certificatePolicies
  • Policy: 1.3.6.1.4.1.6449.1.2.2.7
  • CPS: https://sectigo.com/CPS
  • Policy: 2.23.140.1.2.1
authorityInfoAccess
  • CA Issuers - URI:http://crt.sectigo.com/SectigoPublicServerAuthenticationCADVR36.crt
  • OCSP - URI:http://ocsp.sectigo.com
ct_precert_scts
  • Signed Certificate Timestamp:
  • Version : v1 (0x0)
  • Log ID : D8:09:55:3B:94:4F:7A:FF:C8:16:19:6F:94:4F:85:AB:
  • B0:F8:FC:5E:87:55:26:0F:15:D1:2E:72:BB:45:4B:14
  • Timestamp : Jul 10 11:44:26.736 2025 GMT
  • Extensions: none
  • Signature : ecdsa-with-SHA256
  • 30:46:02:21:00:81:24:DA:8F:B1:2E:D4:B2:22:B1:00:
  • BE:59:2A:A1:60:93:F0:66:F9:80:AD:E3:68:25:DF:F1:
  • E2:E6:90:C3:CE:02:21:00:DA:3A:85:B1:49:9D:DA:04:
  • 56:5C:69:94:E6:53:BA:9D:5A:E7:17:22:BA:B5:31:D1:
  • 4B:C4:69:F5:50:8A:55:B4
  • Signed Certificate Timestamp:
  • Version : v1 (0x0)
  • Log ID : AC:AB:30:70:6C:EB:EC:84:31:F4:13:D2:F4:91:5F:11:
  • 1E:42:24:43:B1:F2:A6:8C:4F:3C:2B:3B:A7:1E:02:C3
  • Timestamp : Jul 10 11:44:26.709 2025 GMT
  • Extensions: none
  • Signature : ecdsa-with-SHA256
  • 30:46:02:21:00:E0:FA:0F:5A:52:9C:15:30:81:87:43:
  • 91:F6:39:98:46:A3:13:FA:AE:44:61:6D:33:A6:6C:75:
  • 08:EC:FA:09:D3:02:21:00:9B:A0:39:82:27:EF:49:B2:
  • A5:FA:77:DB:4A:AF:82:17:BC:29:9A:58:72:BD:6B:7E:
  • FD:89:6B:4A:2B:27:9C:5B
  • Signed Certificate Timestamp:
  • Version : v1 (0x0)
  • Log ID : D7:6D:7D:10:D1:A7:F5:77:C2:C7:E9:5F:D7:00:BF:F9:
  • 82:C9:33:5A:65:E1:D0:B3:01:73:17:C0:C8:C5:69:77
  • Timestamp : Jul 10 11:44:26.704 2025 GMT
  • Extensions: none
  • Signature : ecdsa-with-SHA256
  • 30:46:02:21:00:B0:BD:A4:6C:FD:6C:4C:46:EB:2C:69:
  • 1A:5F:9A:9B:FA:A8:B3:13:89:8E:3A:1E:E1:50:6C:9A:
  • 4C:83:5F:8D:83:02:21:00:9D:21:C4:EE:6A:68:50:A6:
  • E5:2C:7C:94:FB:9C:38:60:54:FB:2E:38:95:4D:F5:43:
  • 3D:F4:B7:3A:6A:D7:2A:E4