SSL check results of gotha.de

NEW You can also bulk check multiple servers.

Discover if the mail servers for gotha.de can be reached through a secure connection.

To establish a secure connection a mail server has to offer STARTTLS (SSL), a trustworthy SSL certificate, support for the Diffie-Hellman-Algorithm to guarantee Perfect Forward Secrecy and must not be vulnerable against the Heartbleed attack. Futhermore we recommend using end-to-end encryption with GnuPG.

Summary

Report created Fri, 21 Feb 2025 14:08:04 +0000

We can not guarantee a secure connection to the mailservers of gotha.de!

Please contact the operator of gotha.de and ask him or her to solve this problem. This result stays accessible under the following address:

/mailservers/gotha.de

Servers

Incoming Mails

These servers are responsible for incoming mails to @gotha.de addresses.

Hostname / IP address Priority STARTTLS Certificates Protocol
mail.gotha.de
91.26.46.18
Results incomplete
10
supported
not checked
DANE
missing
PFS
supported
Heartbleed
not vulnerable
Weak ciphers
not found
  • TLSv1.2
  • SSLv3
1 s
mail8.cm-system.de
2003:c3:3811:6::30
100
supported
mail8.cm-system.de
DANE
missing
PFS
supported
Heartbleed
not vulnerable
Weak ciphers
supported
  • SSL_RSA_EXPORT_WITH_RC2_CBC_40_MD5
  • TLSv1.2
  • TLSv1.1
  • TLSv1.0
  • SSLv3
12 s
mail8.cm-system.de
195.145.156.30
100
supported
mail8.cm-system.de
DANE
missing
PFS
supported
Heartbleed
not vulnerable
Weak ciphers
supported
  • SSL_RSA_EXPORT_WITH_RC2_CBC_40_MD5
  • TLSv1.2
  • TLSv1.1
  • TLSv1.0
  • SSLv3
12 s
mail5.cm-system.de
2003:c3:3811:6::125
Results incomplete
200 not checked
DANE
missing
PFS
not checked
Heartbleed
not checked
Weak ciphers
not checked
11 s
mail5.cm-system.de
195.145.156.125
Results incomplete
200 not checked
DANE
missing
PFS
not checked
Heartbleed
not checked
Weak ciphers
not checked
11 s

Outgoing Mails

We have not received any emails from a @gotha.de address so far. Test mail delivery

Certificates

First seen at:

CN=mail8.cm-system.de

Certificate chain
  • mail8.cm-system.de
    • remaining
    • 2048 bit
    • sha256WithRSAEncryption
    • Unknown Authority

      RapidSSL TLS RSA CA G1
Subject
Common Name (CN)
  • mail8.cm-system.de
Alternative Names
  • mail8.cm-system.de
  • www.mail8.cm-system.de
Issuer
Country (C)
  • US
Organization (O)
  • DigiCert Inc
Organizational Unit (OU)
  • www.digicert.com
Common Name (CN)
  • RapidSSL TLS RSA CA G1
validity period
Not valid before
2024-07-22
Not valid after
2025-07-21
This certifcate has been verified for the following usages:
  • Digital Signature
  • Key Encipherment
  • TLS Web Server Authentication
  • TLS Web Client Authentication
Fingerprints
SHA256
0D:10:48:A6:D2:80:F9:74:88:3A:AA:D8:B9:B9:E4:32:2D:62:2E:89:A3:B6:85:FB:7F:1B:10:04:5C:91:F7:0B
SHA1
FE:4D:FF:84:3B:42:19:02:5F:2D:04:F1:42:EA:95:79:59:9A:04:C2
X509v3 extensions
authorityKeyIdentifier
  • keyid:0C:DB:6C:82:49:0F:4A:67:0A:B8:14:EE:7A:C4:48:52:88:EB:56:38
subjectKeyIdentifier
  • ED:5F:90:48:B7:B8:A5:CE:4C:37:93:F2:12:6A:AD:7E:B7:7E:39:FC
certificatePolicies
  • Policy: 2.23.140.1.2.1
  • CPS: http://www.digicert.com/CPS
crlDistributionPoints
  • Full Name:
  • URI:http://cdp.rapidssl.com/RapidSSLTLSRSACAG1.crl
authorityInfoAccess
  • OCSP - URI:http://status.rapidssl.com
  • CA Issuers - URI:http://cacerts.rapidssl.com/RapidSSLTLSRSACAG1.crt
ct_precert_scts
  • Signed Certificate Timestamp:
  • Version : v1 (0x0)
  • Log ID : 12:F1:4E:34:BD:53:72:4C:84:06:19:C3:8F:3F:7A:13:
  • F8:E7:B5:62:87:88:9C:6D:30:05:84:EB:E5:86:26:3A
  • Timestamp : Jul 22 14:10:56.521 2024 GMT
  • Extensions: none
  • Signature : ecdsa-with-SHA256
  • 30:44:02:20:31:35:E8:17:26:03:65:D1:8C:72:A6:98:
  • 3D:D1:7E:F3:17:26:1B:E0:9F:42:BF:F0:61:1C:96:13:
  • C6:0B:FF:BF:02:20:28:73:C7:D2:93:10:90:82:2E:72:
  • C0:9C:06:D6:BE:F1:0B:24:C7:91:B3:2F:FE:F4:B2:D2:
  • 66:BC:7C:D1:C7:C9
  • Signed Certificate Timestamp:
  • Version : v1 (0x0)
  • Log ID : E6:D2:31:63:40:77:8C:C1:10:41:06:D7:71:B9:CE:C1:
  • D2:40:F6:96:84:86:FB:BA:87:32:1D:FD:1E:37:8E:50
  • Timestamp : Jul 22 14:10:56.389 2024 GMT
  • Extensions: none
  • Signature : ecdsa-with-SHA256
  • 30:45:02:21:00:D7:4F:E6:AE:37:50:C6:A6:B1:C0:E8:
  • 44:3E:D7:51:83:FF:9D:F7:73:7B:BE:88:43:96:67:00:
  • B7:D6:4F:88:18:02:20:42:F1:0F:84:EA:CA:91:89:AA:
  • E5:2F:2F:36:E2:0C:4E:0B:73:6E:2F:59:BB:6E:EE:57:
  • F8:F7:F3:0F:B6:9B:6C
  • Signed Certificate Timestamp:
  • Version : v1 (0x0)
  • Log ID : CC:FB:0F:6A:85:71:09:65:FE:95:9B:53:CE:E9:B2:7C:
  • 22:E9:85:5C:0D:97:8D:B6:A9:7E:54:C0:FE:4C:0D:B0
  • Timestamp : Jul 22 14:10:56.420 2024 GMT
  • Extensions: none
  • Signature : ecdsa-with-SHA256
  • 30:45:02:20:10:D4:33:25:91:22:7A:4A:46:8F:BB:12:
  • 47:94:45:E2:4C:4D:A7:59:8F:89:18:72:25:B4:64:05:
  • 79:7D:5E:4E:02:21:00:E9:9A:EC:4A:F2:A1:C1:5E:F5:
  • 5D:AA:FF:AD:0C:FE:0F:1F:A0:E9:A2:80:01:0D:7E:4B:
  • F3:6B:E4:9B:A1:F1:D2