SSL check results of gericke.online

NEW You can also bulk check multiple servers.

Discover if the mail servers for gericke.online can be reached through a secure connection.

To establish a secure connection a mail server has to offer STARTTLS (SSL), a trustworthy SSL certificate, support for the Diffie-Hellman-Algorithm to guarantee Perfect Forward Secrecy and must not be vulnerable against the Heartbleed attack. Futhermore we recommend using end-to-end encryption with GnuPG.

Summary

Report created Mon, 05 Oct 2026 00:30:10 +0000

We can not guarantee a secure connection to the mailservers of gericke.online!

Please contact the operator of gericke.online and ask him or her to solve this problem. This result stays accessible under the following address:

/mailservers/gericke.online

Servers

Incoming Mails

These servers are responsible for incoming mails to @gericke.online addresses.

Hostname / IP address Priority STARTTLS Certificates Protocol
mailserver.adrian2023.com
2a01:4f8:1c19:2bea::1
Results incomplete
0
supported
not checked
DANE
errors
PFS
supported
Heartbleed
not vulnerable
Weak ciphers
not found
  • TLSv1.2
  • SSLv3
8 s
mailserver.adrian2023.com
2.28.48.65
Results incomplete
0
supported
not checked
DANE
errors
PFS
supported
Heartbleed
not vulnerable
Weak ciphers
not found
  • TLSv1.2
  • SSLv3
2 s
mailbackup1.adrian2023.com
2a01:4f9:c015:27af:8d2f:8798:607c:a5bb
20
supported
mailbackup1.adrian2023.com
DANE
valid
PFS
supported
Heartbleed
not vulnerable
Weak ciphers
not found
  • TLSv1.2
  • SSLv3
3 s
mailbackup1.adrian2023.com
204.168.141.234
20
supported
mailbackup1.adrian2023.com
DANE
valid
PFS
supported
Heartbleed
not vulnerable
Weak ciphers
not found
  • TLSv1.2
  • SSLv3
2 s
mailbackup2.adrian2023.com
2a00:ccc1:102:19:3026:a9e1:47d9:c0df
30
supported
mailbackup2.adrian2023.com
DANE
valid
PFS
supported
Heartbleed
not vulnerable
Weak ciphers
not found
  • TLSv1.2
  • SSLv3
4 s
mailbackup2.adrian2023.com
45.142.115.11
Results incomplete
30
unsupported
not checked
DANE
errors
PFS
not checked
Heartbleed
not checked
Weak ciphers
not checked
1 s

Outgoing Mails

We have not received any emails from a @gericke.online address so far. Test mail delivery

Certificates

First seen at:

CN=mailbackup1.adrian2023.com

Certificate chain
  • mailbackup1.adrian2023.com
    • remaining
    • 384 bit
    • ecdsa-with-SHA384

      • YE1
        • remaining
        • 384 bit
        • ecdsa-with-SHA384

          • Root YE
            • remaining
            • 384 bit
            • ecdsa-with-SHA384

              • ISRG Root X2 (Certificate is self-signed.)
                • remaining
                • 384 bit
                • ecdsa-with-SHA384

Subject
Common Name (CN)
  • mailbackup1.adrian2023.com
Alternative Names
  • mailbackup1.adrian2023.com
Issuer
Country (C)
  • US
Organization (O)
  • Let's Encrypt
Common Name (CN)
  • YE1
validity period
Not valid before
2026-10-03
Not valid after
2027-01-01
This certifcate has been verified for the following usages:
  • Digital Signature
  • TLS Web Server Authentication
Fingerprints
SHA256
54:31:AD:ED:A5:1A:BC:21:F7:0E:E4:B9:C6:D1:2B:23:D5:76:D3:D5:78:2C:AD:C0:16:29:B4:42:30:DC:6D:58
SHA1
25:95:79:34:57:57:10:85:01:1E:A8:2D:E0:2F:B7:C4:93:76:77:43
X509v3 extensions
subjectKeyIdentifier
  • 33:5A:E8:CA:E8:3E:C0:DC:BE:23:86:F5:C7:2D:87:4C:34:07:B9:3F
authorityKeyIdentifier
  • keyid:BB:20:CA:47:0B:FE:D7:E5:9C:F9:8F:09:2A:A3:8C:37:45:B1:BC:D8
authorityInfoAccess
  • CA Issuers - URI:http://ye1.i.lencr.org/
certificatePolicies
  • Policy: 2.23.140.1.2.1
crlDistributionPoints
  • Full Name:
  • URI:http://ye1.c.lencr.org/96.crl
ct_precert_scts
  • Signed Certificate Timestamp:
  • Version : v1 (0x0)
  • Log ID : 60:4C:9A:AF:7A:7F:77:5F:01:D4:06:FC:92:0D:C8:99:
  • EB:0B:1C:7D:F8:C9:52:1B:FA:FA:17:77:3B:97:8B:C9
  • Timestamp : Oct 3 22:23:05.722 2026 GMT
  • Extensions: none
  • Signature : ecdsa-with-SHA256
  • 30:44:02:20:43:6D:FF:71:85:71:4B:CC:E8:1D:E3:80:
  • 61:11:57:4C:F3:CB:B6:31:47:54:8D:96:50:F3:9A:F8:
  • D3:23:D6:08:02:20:28:B9:C1:56:D6:E6:B7:56:C3:A5:
  • A0:76:2A:5F:0E:0A:7F:89:CE:6F:46:1D:FA:48:1F:D7:
  • BA:14:EF:19:F1:2A
  • Signed Certificate Timestamp:
  • Version : v1 (0x0)
  • Log ID : 8E:CA:47:0B:AC:DE:6A:F3:A2:06:B0:A4:7A:84:B7:46:
  • FE:1F:C6:BF:95:3E:25:E6:9B:4E:E4:02:48:F3:C6:E8
  • Timestamp : Oct 3 22:23:05.861 2026 GMT
  • Extensions: 00:00:05:00:1B:63:DF:CC
  • Signature : ecdsa-with-SHA256
  • 30:46:02:21:00:EE:96:A4:B5:9B:12:83:29:D7:03:48:
  • 02:ED:06:3C:B3:BA:06:16:79:E4:D5:FE:58:56:F1:4E:
  • A3:50:B0:F3:DF:02:21:00:8D:D0:4B:DF:F1:8D:5A:9A:
  • 5A:17:84:16:B3:CD:27:A6:72:AD:00:81:30:6B:AA:57:
  • 16:C0:D4:FB:EA:CE:1C:72
First seen at:

CN=mailbackup2.adrian2023.com

Certificate chain
  • mailbackup2.adrian2023.com
    • remaining
    • 384 bit
    • ecdsa-with-SHA384

      • YE2
        • remaining
        • 384 bit
        • ecdsa-with-SHA384

          • Root YE
            • remaining
            • 384 bit
            • ecdsa-with-SHA384

              • ISRG Root X2 (Certificate is self-signed.)
                • remaining
                • 384 bit
                • ecdsa-with-SHA384

Subject
Common Name (CN)
  • mailbackup2.adrian2023.com
Alternative Names
  • mailbackup2.adrian2023.com
Issuer
Country (C)
  • US
Organization (O)
  • Let's Encrypt
Common Name (CN)
  • YE2
validity period
Not valid before
2026-10-03
Not valid after
2027-01-01
This certifcate has been verified for the following usages:
  • Digital Signature
  • TLS Web Server Authentication
Fingerprints
SHA256
D7:A4:E4:C5:9C:FC:47:ED:6F:48:74:FF:88:2E:09:BC:CF:22:3D:85:85:D7:15:47:02:91:94:95:1D:6C:AF:9C
SHA1
D7:4D:1B:B8:ED:C3:84:DA:0B:40:28:52:59:1F:C1:1B:D4:CB:F9:20
X509v3 extensions
subjectKeyIdentifier
  • 93:1F:E0:64:88:B4:65:9E:AB:76:69:D0:CA:93:40:B2:F4:B0:B5:65
authorityKeyIdentifier
  • keyid:B9:59:F2:8E:CF:22:F0:86:D3:37:48:FF:76:14:18:BA:82:D8:55:87
authorityInfoAccess
  • CA Issuers - URI:http://ye2.i.lencr.org/
certificatePolicies
  • Policy: 2.23.140.1.2.1
crlDistributionPoints
  • Full Name:
  • URI:http://ye2.c.lencr.org/49.crl
ct_precert_scts
  • Signed Certificate Timestamp:
  • Version : v1 (0x0)
  • Log ID : D6:D5:8D:A9:D0:17:53:F3:6A:4A:A0:C7:57:49:02:AF:
  • EB:C7:DC:2C:D3:8C:D9:F7:64:C8:0C:89:19:1E:9F:02
  • Timestamp : Oct 3 22:24:04.826 2026 GMT
  • Extensions: none
  • Signature : ecdsa-with-SHA256
  • 30:45:02:21:00:B9:6F:4F:1A:01:96:C8:FA:D0:15:AE:
  • 5F:F6:46:68:35:77:66:DC:A2:1E:AF:19:2D:5F:04:03:
  • D4:92:35:70:A0:02:20:47:4E:01:AB:F1:97:5F:A7:93:
  • AA:E0:AB:65:65:CA:0B:1D:21:AB:5E:FB:BD:A1:88:9E:
  • B4:C8:9E:E0:B5:2F:EC
  • Signed Certificate Timestamp:
  • Version : v1 (0x0)
  • Log ID : 1A:8B:9D:6B:8D:D7:91:D1:CD:05:49:ED:B6:03:55:D6:
  • 06:B6:4F:AD:30:DB:71:FE:78:8F:0F:C7:C8:FB:C4:B1
  • Timestamp : Oct 3 22:24:05.580 2026 GMT
  • Extensions: 00:00:05:00:05:0A:35:E1
  • Signature : ecdsa-with-SHA256
  • 30:45:02:21:00:F0:76:F4:A5:B2:69:61:36:E4:E7:9B:
  • 11:2C:E9:7A:89:56:F0:44:34:E5:68:3D:40:16:E3:00:
  • 94:66:AC:1F:8D:02:20:39:AE:1A:E5:9F:E7:FD:36:F4:
  • D4:8D:5A:D5:4C:24:79:9F:B1:8A:BF:9F:88:21:5A:F0:
  • CB:7C:C2:9B:A3:93:DC

DANE

DNS-based Authentication of Named Entities (DANE) is a protocol to allow X.509 certificates to be bound to DNS using TLSA records and DNSSEC.

Name Options DNSSEC Matches
_25._tcp.mailbackup1.adrian2023.com
  • DANE-EE: Domain Issued Certificate
  • Use subject public key
  • SHA-256 Hash
valid
valid
_25._tcp.mailbackup1.adrian2023.com
  • DANE-EE: Domain Issued Certificate
  • Use subject public key
  • SHA-256 Hash
valid
—
_25._tcp.mailserver.adrian2023.com
  • DANE-EE: Domain Issued Certificate
  • Use subject public key
  • SHA-256 Hash
valid
—
_25._tcp.mailserver.adrian2023.com
  • DANE-EE: Domain Issued Certificate
  • Use subject public key
  • SHA-256 Hash
valid
—
_25._tcp.mailbackup2.adrian2023.com
  • DANE-EE: Domain Issued Certificate
  • Use subject public key
  • SHA-256 Hash
valid
—
_25._tcp.mailbackup2.adrian2023.com
  • DANE-EE: Domain Issued Certificate
  • Use subject public key
  • SHA-256 Hash
valid
—