SSL check results of greenstars.cc

NEW You can also bulk check multiple servers.

Discover if the mail servers for greenstars.cc can be reached through a secure connection.

To establish a secure connection a mail server has to offer STARTTLS (SSL), a trustworthy SSL certificate, support for the Diffie-Hellman-Algorithm to guarantee Perfect Forward Secrecy and must not be vulnerable against the Heartbleed attack. Futhermore we recommend using end-to-end encryption with GnuPG.

Summary

Report created Tue, 17 Sep 2024 19:22:23 +0000

The mailservers of greenstars.cc can be reached through a secure connection.

Servers

Incoming Mails

These servers are responsible for incoming mails to @greenstars.cc addresses.

Hostname / IP address Priority STARTTLS Certificates Protocol
mail.protonmail.ch
185.70.42.128
10
supported
protonmail.com
DANE
valid
PFS
supported
Heartbleed
not vulnerable
Weak ciphers
not found
  • TLSv1.2
  • SSLv3
30 s
mail.protonmail.ch
185.205.70.128
10
supported
protonmail.com
DANE
valid
PFS
supported
Heartbleed
not vulnerable
Weak ciphers
not found
  • TLSv1.2
  • SSLv3
30 s
mail.protonmail.ch
176.119.200.128
10
supported
protonmail.com
DANE
valid
PFS
supported
Heartbleed
not vulnerable
Weak ciphers
not found
  • TLSv1.2
  • SSLv3
25 s
mailsec.protonmail.ch
185.205.70.129
20
supported
protonmail.com
DANE
valid
PFS
supported
Heartbleed
not vulnerable
Weak ciphers
not found
  • TLSv1.2
  • SSLv3
13 s
mailsec.protonmail.ch
176.119.200.129
20
supported
protonmail.com
DANE
valid
PFS
supported
Heartbleed
not vulnerable
Weak ciphers
not found
  • TLSv1.2
  • SSLv3
14 s
mailsec.protonmail.ch
185.70.42.129
20
supported
protonmail.com
DANE
valid
PFS
supported
Heartbleed
not vulnerable
Weak ciphers
not found
  • TLSv1.2
  • SSLv3
7 s
mx1.simplelogin.co
176.119.200.136
30
supported
mx1.simplelogin.co
DANE
valid
PFS
supported
Heartbleed
not vulnerable
Weak ciphers
not found
  • TLSv1.2
  • SSLv3
2 s
mx1.simplelogin.co
185.205.70.136
30
supported
mx1.simplelogin.co
DANE
valid
PFS
supported
Heartbleed
not vulnerable
Weak ciphers
not found
  • TLSv1.2
  • SSLv3
2 s
mx2.simplelogin.co
176.119.200.136
40
supported
mx1.simplelogin.co
DANE
valid
PFS
supported
Heartbleed
not vulnerable
Weak ciphers
not found
  • TLSv1.2
  • SSLv3
2 s
mx2.simplelogin.co
185.205.70.136
40
supported
mx1.simplelogin.co
DANE
valid
PFS
supported
Heartbleed
not vulnerable
Weak ciphers
not found
  • TLSv1.2
  • SSLv3
1 s

Outgoing Mails

We have not received any emails from a @greenstars.cc address so far. Test mail delivery

Certificates

First seen at:

CN=mx1.simplelogin.co

Certificate chain
  • mx1.simplelogin.co
    • remaining
    • 4096 bit
    • sha256WithRSAEncryption

      • R11
        • remaining
        • 2048 bit
        • sha256WithRSAEncryption

          • ISRG Root X1 (Certificate is self-signed.)
            • remaining
            • 4096 bit
            • sha256WithRSAEncryption

Subject
Common Name (CN)
  • mx1.simplelogin.co
Alternative Names
  • mx1.simplelogin.co
  • mx2.simplelogin.co
Issuer
Country (C)
  • US
Organization (O)
  • Let's Encrypt
Common Name (CN)
  • R11
validity period
Not valid before
2024-09-08
Not valid after
2024-12-07
This certifcate has been verified for the following usages:
  • Digital Signature
  • Key Encipherment
  • TLS Web Server Authentication
  • TLS Web Client Authentication
Fingerprints
SHA256
4A:85:B4:22:A4:64:FB:81:59:51:93:05:48:93:1C:83:26:51:58:79:57:8E:C9:26:44:02:F0:43:A7:AE:AD:59
SHA1
A8:13:5B:A4:69:B2:E0:4F:7A:C6:83:C5:FE:2D:CB:1D:38:E2:02:91
X509v3 extensions
subjectKeyIdentifier
  • A1:D2:2B:45:A3:B1:6E:8B:D9:B3:E2:10:45:69:96:C1:D7:42:6B:18
authorityKeyIdentifier
  • keyid:C5:CF:46:A4:EA:F4:C3:C0:7A:6C:95:C4:2D:B0:5E:92:2F:26:E3:B9
authorityInfoAccess
  • OCSP - URI:http://r11.o.lencr.org
  • CA Issuers - URI:http://r11.i.lencr.org/
certificatePolicies
  • Policy: 2.23.140.1.2.1
ct_precert_scts
  • Signed Certificate Timestamp:
  • Version : v1 (0x0)
  • Log ID : 3F:17:4B:4F:D7:22:47:58:94:1D:65:1C:84:BE:0D:12:
  • ED:90:37:7F:1F:85:6A:EB:C1:BF:28:85:EC:F8:64:6E
  • Timestamp : Sep 8 14:11:01.167 2024 GMT
  • Extensions: none
  • Signature : ecdsa-with-SHA256
  • 30:45:02:21:00:96:0B:1F:A2:F2:4E:2A:E1:03:B8:25:
  • 06:85:21:E0:FC:37:5A:D4:AA:7A:B4:0B:AD:75:39:8E:
  • ED:1F:9C:5B:EA:02:20:4D:1A:48:F9:5C:7B:3B:F5:AA:
  • 68:5E:4C:7B:D0:76:CB:0A:42:80:0B:FA:A4:50:E9:51:
  • 74:4B:BA:A3:B3:49:B2
  • Signed Certificate Timestamp:
  • Version : v1 (0x0)
  • Log ID : 48:B0:E3:6B:DA:A6:47:34:0F:E5:6A:02:FA:9D:30:EB:
  • 1C:52:01:CB:56:DD:2C:81:D9:BB:BF:AB:39:D8:84:73
  • Timestamp : Sep 8 14:11:01.210 2024 GMT
  • Extensions: none
  • Signature : ecdsa-with-SHA256
  • 30:45:02:20:27:52:33:21:1D:8C:F1:0D:FF:22:41:9C:
  • EE:FB:5A:AD:67:93:7F:41:9A:05:01:27:CC:A1:50:29:
  • CA:FB:4E:9C:02:21:00:8E:48:C0:BD:2E:C3:D2:40:E0:
  • 95:78:0A:AF:AA:60:1B:2E:09:02:82:00:56:A8:2A:A7:
  • FA:7B:BF:F6:29:62:4D
First seen at:

CN=protonmail.com

Certificate chain
  • protonmail.com
    • remaining
    • 4096 bit
    • sha256WithRSAEncryption

      • R11
        • remaining
        • 2048 bit
        • sha256WithRSAEncryption

          • ISRG Root X1 (Certificate is self-signed.)
            • remaining
            • 4096 bit
            • sha256WithRSAEncryption

Subject
Common Name (CN)
  • protonmail.com
Alternative Names
  • *.pm.me
  • *.protonmail.ch
  • *.protonmail.com
  • *.protonvpn.ch
  • *.protonvpn.com
  • protonmail.com
Issuer
Country (C)
  • US
Organization (O)
  • Let's Encrypt
Common Name (CN)
  • R11
validity period
Not valid before
2024-07-10
Not valid after
2024-10-08
This certifcate has been verified for the following usages:
  • Digital Signature
  • Key Encipherment
  • TLS Web Server Authentication
  • TLS Web Client Authentication
Fingerprints
SHA256
01:2A:53:32:52:98:5F:ED:C7:90:D9:AB:44:10:91:31:05:C7:B2:58:E9:C6:BF:78:17:5C:F4:C8:9F:B2:5F:F4
SHA1
5A:93:A6:E5:D7:E7:DF:6B:39:9C:C0:97:CB:B6:59:34:64:65:0A:1B
X509v3 extensions
subjectKeyIdentifier
  • F1:A2:0A:FF:29:EF:F8:78:84:E8:07:0C:E0:56:8A:76:64:D2:2B:A5
authorityKeyIdentifier
  • keyid:C5:CF:46:A4:EA:F4:C3:C0:7A:6C:95:C4:2D:B0:5E:92:2F:26:E3:B9
authorityInfoAccess
  • OCSP - URI:http://r11.o.lencr.org
  • CA Issuers - URI:http://r11.i.lencr.org/
certificatePolicies
  • Policy: 2.23.140.1.2.1
ct_precert_scts
  • Signed Certificate Timestamp:
  • Version : v1 (0x0)
  • Log ID : 3F:17:4B:4F:D7:22:47:58:94:1D:65:1C:84:BE:0D:12:
  • ED:90:37:7F:1F:85:6A:EB:C1:BF:28:85:EC:F8:64:6E
  • Timestamp : Jul 10 14:12:25.067 2024 GMT
  • Extensions: none
  • Signature : ecdsa-with-SHA256
  • 30:45:02:20:5F:09:91:A1:E4:9A:69:F5:1C:EA:4A:92:
  • C4:62:8E:FA:A3:99:27:FA:8C:3F:A3:7D:AB:C1:AC:5A:
  • C6:C6:D8:B6:02:21:00:B4:6F:A1:3B:3E:C7:1E:BB:33:
  • CE:24:BE:DC:BD:9D:E7:D8:C0:56:0A:7C:3E:F3:48:D0:
  • FF:C2:B6:A8:3B:19:65
  • Signed Certificate Timestamp:
  • Version : v1 (0x0)
  • Log ID : DF:E1:56:EB:AA:05:AF:B5:9C:0F:86:71:8D:A8:C0:32:
  • 4E:AE:56:D9:6E:A7:F5:A5:6A:01:D1:C1:3B:BE:52:5C
  • Timestamp : Jul 10 14:12:25.262 2024 GMT
  • Extensions: none
  • Signature : ecdsa-with-SHA256
  • 30:45:02:21:00:BB:4F:EE:9A:42:1F:B8:90:DC:3A:65:
  • 56:CA:92:C9:31:8A:62:65:A3:3D:7A:99:04:DE:4F:7B:
  • C9:67:D2:B2:FA:02:20:1B:CF:5D:99:69:C8:7B:41:80:
  • EC:7A:7A:B9:D7:65:4B:AB:A4:16:D2:95:4F:D5:12:87:
  • FC:8D:86:65:E1:E9:0E
First seen at:

CN=protonmail.com

Certificate chain
  • protonmail.com
    • remaining
    • 4096 bit
    • sha256WithRSAEncryption

      • R10
        • remaining
        • 2048 bit
        • sha256WithRSAEncryption

          • ISRG Root X1 (Certificate is self-signed.)
            • remaining
            • 4096 bit
            • sha256WithRSAEncryption

Subject
Common Name (CN)
  • protonmail.com
Alternative Names
  • *.pm.me
  • *.protonmail.ch
  • *.protonmail.com
  • *.protonvpn.ch
  • *.protonvpn.com
  • protonmail.com
Issuer
Country (C)
  • US
Organization (O)
  • Let's Encrypt
Common Name (CN)
  • R10
validity period
Not valid before
2024-09-03
Not valid after
2024-12-02
This certifcate has been verified for the following usages:
  • Digital Signature
  • Key Encipherment
  • TLS Web Server Authentication
  • TLS Web Client Authentication
Fingerprints
SHA256
AD:DC:EA:BC:FC:CE:72:F1:A7:28:F9:87:69:0B:EE:70:70:EE:7C:D6:5F:3C:19:D2:90:7A:24:CC:17:F3:22:DD
SHA1
E0:56:7B:97:79:5A:F8:73:4D:EA:08:E9:33:78:91:B5:48:B7:20:96
X509v3 extensions
subjectKeyIdentifier
  • F1:A2:0A:FF:29:EF:F8:78:84:E8:07:0C:E0:56:8A:76:64:D2:2B:A5
authorityKeyIdentifier
  • keyid:BB:BC:C3:47:A5:E4:BC:A9:C6:C3:A4:72:0C:10:8D:A2:35:E1:C8:E8
authorityInfoAccess
  • OCSP - URI:http://r10.o.lencr.org
  • CA Issuers - URI:http://r10.i.lencr.org/
certificatePolicies
  • Policy: 2.23.140.1.2.1
ct_precert_scts
  • Signed Certificate Timestamp:
  • Version : v1 (0x0)
  • Log ID : 3F:17:4B:4F:D7:22:47:58:94:1D:65:1C:84:BE:0D:12:
  • ED:90:37:7F:1F:85:6A:EB:C1:BF:28:85:EC:F8:64:6E
  • Timestamp : Sep 3 14:12:19.200 2024 GMT
  • Extensions: none
  • Signature : ecdsa-with-SHA256
  • 30:46:02:21:00:C5:E6:F7:BC:87:7A:56:96:7E:44:72:
  • ED:13:AC:9C:86:C8:2C:A4:BC:84:83:CD:1B:AB:6A:3F:
  • 9B:5F:79:83:07:02:21:00:EA:35:2C:CE:F7:69:D1:02:
  • B2:2F:CE:7B:78:D9:E8:41:1C:D5:CA:C3:39:63:41:2E:
  • 8E:75:A4:1D:CD:45:8D:28
  • Signed Certificate Timestamp:
  • Version : v1 (0x0)
  • Log ID : DF:E1:56:EB:AA:05:AF:B5:9C:0F:86:71:8D:A8:C0:32:
  • 4E:AE:56:D9:6E:A7:F5:A5:6A:01:D1:C1:3B:BE:52:5C
  • Timestamp : Sep 3 14:12:19.407 2024 GMT
  • Extensions: none
  • Signature : ecdsa-with-SHA256
  • 30:45:02:21:00:A8:59:70:BD:F0:AC:9B:B2:D8:16:1C:
  • EE:E1:6C:89:8C:E9:15:B1:E7:B0:4E:97:AA:1C:B9:02:
  • BE:A6:D4:EA:CB:02:20:2B:1F:E2:7B:37:1F:BE:34:26:
  • 9E:97:BB:97:37:28:39:2A:2A:80:42:31:F6:3B:9E:86:
  • B2:F9:FB:D0:B0:DC:EB

DANE

DNS-based Authentication of Named Entities (DANE) is a protocol to allow X.509 certificates to be bound to DNS using TLSA records and DNSSEC.

Name Options DNSSEC Matches
_25._tcp.mx1.simplelogin.co
  • DANE-TA: Trust Anchor Assertion
  • Use subject public key
  • SHA-256 Hash
valid
_25._tcp.mx1.simplelogin.co
  • DANE-EE: Domain Issued Certificate
  • Use subject public key
  • SHA-256 Hash
valid
valid
_25._tcp.mx1.simplelogin.co
  • DANE-TA: Trust Anchor Assertion
  • Use subject public key
  • SHA-256 Hash
valid
_25._tcp.mail.protonmail.ch
  • DANE-EE: Domain Issued Certificate
  • Use subject public key
  • SHA-256 Hash
valid
_25._tcp.mail.protonmail.ch
  • DANE-EE: Domain Issued Certificate
  • Use subject public key
  • SHA-256 Hash
valid
valid
_25._tcp.mx2.simplelogin.co
  • DANE-TA: Trust Anchor Assertion
  • Use subject public key
  • SHA-256 Hash
valid
_25._tcp.mx2.simplelogin.co
  • DANE-TA: Trust Anchor Assertion
  • Use subject public key
  • SHA-256 Hash
valid
_25._tcp.mx2.simplelogin.co
  • DANE-EE: Domain Issued Certificate
  • Use subject public key
  • SHA-256 Hash
valid
valid
_25._tcp.mailsec.protonmail.ch
  • DANE-EE: Domain Issued Certificate
  • Use subject public key
  • SHA-256 Hash
valid
_25._tcp.mailsec.protonmail.ch
  • DANE-EE: Domain Issued Certificate
  • Use subject public key
  • SHA-256 Hash
valid
valid