SSL check results of grellmann.net

NEW You can also bulk check multiple servers.

Discover if the mail servers for grellmann.net can be reached through a secure connection.

To establish a secure connection a mail server has to offer STARTTLS (SSL), a trustworthy SSL certificate, support for the Diffie-Hellman-Algorithm to guarantee Perfect Forward Secrecy and must not be vulnerable against the Heartbleed attack. Futhermore we recommend using end-to-end encryption with GnuPG.

Summary

Report created Thu, 18 Dec 2025 12:08:16 +0000

The mailservers of grellmann.net can be reached through a secure connection.

Servers

Incoming Mails

These servers are responsible for incoming mails to @grellmann.net addresses.

Hostname / IP address Priority STARTTLS Certificates Protocol
cp.grelli-it.de
2a03:4000:1e:1f3:a4ce:86ff:fe6b:42dc
10
supported
cp.grelli-it.de
DANE
missing
PFS
supported
Heartbleed
not vulnerable
Weak ciphers
not found
  • TLSv1.2
  • SSLv3
1 s
cp.grelli-it.de
185.207.104.110
10
supported
cp.grelli-it.de
DANE
missing
PFS
supported
Heartbleed
not vulnerable
Weak ciphers
not found
  • TLSv1.2
  • SSLv3
1 s

Outgoing Mails

We have received emails from these servers with @grellmann.net sender addresses. Test mail delivery

Host TLS Version & Cipher
mo4-p00-ob.smtp.rzone.de (81.169.146.218)
TLSv1.3 TLS_AES_256_GCM_SHA384
mo4-p00-ob.smtp.rzone.de (81.169.146.161)
TLSv1.3 TLS_AES_256_GCM_SHA384
mo4-p00-ob.smtp.rzone.de (85.215.255.21)
TLSv1.3 TLS_AES_256_GCM_SHA384
mo4-p00-ob.smtp.rzone.de (81.169.146.219)
TLSv1.3 TLS_AES_256_GCM_SHA384
mo4-p00-ob.smtp.rzone.de (81.169.146.217)
TLSv1.3 TLS_AES_256_GCM_SHA384
mo4-p00-ob.smtp.rzone.de (85.215.255.25)
TLSv1.3 TLS_AES_256_GCM_SHA384
mo4-p00-ob.smtp.rzone.de (81.169.146.163)
TLSv1.3 TLS_AES_256_GCM_SHA384
mo4-p00-ob.smtp.rzone.de (85.215.255.22)
TLSv1.3 TLS_AES_256_GCM_SHA384
mo4-p00-ob.smtp.rzone.de (85.215.255.24)
TLSv1.3 TLS_AES_256_GCM_SHA384
mo4-p00-ob.smtp.rzone.de (81.169.146.162)
TLSv1.3 TLS_AES_256_GCM_SHA384
mo4-p00-ob.smtp.rzone.de (81.169.146.160)
TLSv1.3 TLS_AES_256_GCM_SHA384
mo4-p00-ob.smtp.rzone.de (81.169.146.220)
TLSv1.3 TLS_AES_256_GCM_SHA384
mo6-p00-ob.smtp.rzone.de (IPv6:2a01:238:20a:202:5300::5)
TLSv1.3 TLS_AES_256_GCM_SHA384
mo6-p00-ob.smtp.rzone.de (IPv6:2a01:238:20a:202:5300::9)
TLSv1.3 TLS_AES_256_GCM_SHA384
mo6-p00-ob.smtp.rzone.de (IPv6:2a01:238:20a:202:5300::1)
TLSv1.3 TLS_AES_256_GCM_SHA384

Certificates

First seen at:

CN=cp.grelli-it.de

Certificate chain
  • cp.grelli-it.de
    • remaining
    • 4096 bit
    • sha256WithRSAEncryption

      • R12
        • remaining
        • 2048 bit
        • sha256WithRSAEncryption

          • ISRG Root X1 (Certificate is self-signed.)
            • remaining
            • 4096 bit
            • sha256WithRSAEncryption

Subject
Common Name (CN)
  • cp.grelli-it.de
Alternative Names
  • cp.grelli-it.de
Issuer
Country (C)
  • US
Organization (O)
  • Let's Encrypt
Common Name (CN)
  • R12
validity period
Not valid before
2025-11-06
Not valid after
2026-02-04
This certifcate has been verified for the following usages:
  • Digital Signature
  • Key Encipherment
  • TLS Web Server Authentication
  • TLS Web Client Authentication
Fingerprints
SHA256
D6:F0:54:32:15:2F:00:19:AE:61:7A:F3:14:5E:36:D8:EB:4A:BE:8E:04:0F:BA:85:FD:8B:86:B6:86:12:10:8D
SHA1
35:71:7A:3E:60:22:CE:40:D4:9B:3E:3E:3A:05:E4:A7:57:28:A9:53
X509v3 extensions
subjectKeyIdentifier
  • 76:25:BA:7A:DB:79:62:CA:C3:15:75:8F:95:17:7A:5E:15:5C:09:67
authorityKeyIdentifier
  • keyid:00:B5:29:F2:2D:8E:6F:31:E8:9B:4C:AD:78:3E:FA:DC:E9:0C:D1:D2
authorityInfoAccess
  • CA Issuers - URI:http://r12.i.lencr.org/
certificatePolicies
  • Policy: 2.23.140.1.2.1
crlDistributionPoints
  • Full Name:
  • URI:http://r12.c.lencr.org/109.crl
ct_precert_scts
  • Signed Certificate Timestamp:
  • Version : v1 (0x0)
  • Log ID : 64:11:C4:6C:A4:12:EC:A7:89:1C:A2:02:2E:00:BC:AB:
  • 4F:28:07:D4:1E:35:27:AB:EA:FE:D5:03:C9:7D:CD:F0
  • Timestamp : Nov 6 23:01:06.902 2025 GMT
  • Extensions: none
  • Signature : ecdsa-with-SHA256
  • 30:44:02:20:73:09:68:DD:8D:DC:A8:8D:4E:4E:F1:14:
  • 81:CF:0B:D1:7D:57:CC:AE:39:03:22:C2:DA:8A:EA:B1:
  • 9F:4C:62:CE:02:20:3B:A1:7C:E2:B1:37:01:96:75:FF:
  • BB:39:7A:24:2F:DC:08:FB:28:59:C7:03:21:F4:33:24:
  • B2:B0:23:E5:A2:46
  • Signed Certificate Timestamp:
  • Version : v1 (0x0)
  • Log ID : 0E:57:94:BC:F3:AE:A9:3E:33:1B:2C:99:07:B3:F7:90:
  • DF:9B:C2:3D:71:32:25:DD:21:A9:25:AC:61:C5:4E:21
  • Timestamp : Nov 6 23:01:06.905 2025 GMT
  • Extensions: none
  • Signature : ecdsa-with-SHA256
  • 30:46:02:21:00:E9:38:37:7E:2F:39:7E:3B:F6:CD:1C:
  • 6F:A4:F8:77:94:00:18:9C:A1:4A:72:9F:63:AC:53:45:
  • 5E:EE:07:C0:F2:02:21:00:F3:A2:34:34:D6:04:2F:F3:
  • EC:0E:EC:DB:61:14:91:50:33:A5:85:96:B1:03:2E:EE:
  • A2:47:01:23:51:75:15:1B