SSL check results of jazilos.fr

NEW You can also bulk check multiple servers.

Discover if the mail servers for jazilos.fr can be reached through a secure connection.

To establish a secure connection a mail server has to offer STARTTLS (SSL), a trustworthy SSL certificate, support for the Diffie-Hellman-Algorithm to guarantee Perfect Forward Secrecy and must not be vulnerable against the Heartbleed attack. Futhermore we recommend using end-to-end encryption with GnuPG.

Summary

Report created Sun, 25 May 2025 12:36:47 +0000

We can not guarantee a secure connection to the mailservers of jazilos.fr!

Please contact the operator of jazilos.fr and ask him or her to solve this problem. This result stays accessible under the following address:

/mailservers/jazilos.fr

Servers

Incoming Mails

These servers are responsible for incoming mails to @jazilos.fr addresses.

Hostname / IP address Priority STARTTLS Certificates Protocol
mail.jazilos.fr
2a01:e0a:aae:4532:2::1
10
supported
mail.jazilos.fr
DANE
valid
PFS
supported
Heartbleed
not vulnerable
Weak ciphers
not found
  • TLSv1.2
  • SSLv3
6 s
mail.jazilos.fr
82.66.53.60
10
supported
mail.jazilos.fr
DANE
valid
PFS
supported
Heartbleed
not vulnerable
Weak ciphers
not found
  • TLSv1.2
  • SSLv3
2 s
route1.mx.cloudflare.net
2606:4700:f5::b
Results incomplete
20
unsupported
not checked
DANE
errors
PFS
not checked
Heartbleed
not checked
Weak ciphers
not checked
1 s
route1.mx.cloudflare.net
2606:4700:f5::d
Results incomplete
20
unsupported
not checked
DANE
errors
PFS
not checked
Heartbleed
not checked
Weak ciphers
not checked
2 s
route1.mx.cloudflare.net
2606:4700:f5::c
Results incomplete
20
unsupported
not checked
DANE
errors
PFS
not checked
Heartbleed
not checked
Weak ciphers
not checked
1 s
route1.mx.cloudflare.net
162.159.205.13
20
supported
*.mx.cloudflare.net
DANE
valid
PFS
supported
Heartbleed
not vulnerable
Weak ciphers
not found
  • TLSv1.2
  • TLSv1.1
  • TLSv1.0
  • SSLv3
2 s
route1.mx.cloudflare.net
162.159.205.11
20
supported
*.mx.cloudflare.net
DANE
valid
PFS
supported
Heartbleed
not vulnerable
Weak ciphers
not found
  • TLSv1.2
  • TLSv1.1
  • TLSv1.0
  • SSLv3
2 s
route1.mx.cloudflare.net
162.159.205.12
20
supported
*.mx.cloudflare.net
DANE
valid
PFS
supported
Heartbleed
not vulnerable
Weak ciphers
not found
  • TLSv1.2
  • TLSv1.1
  • TLSv1.0
  • SSLv3
2 s
route2.mx.cloudflare.net
2606:4700:f5::10
Results incomplete
30
unsupported
not checked
DANE
errors
PFS
not checked
Heartbleed
not checked
Weak ciphers
not checked
2 s
route2.mx.cloudflare.net
2606:4700:f5::e
Results incomplete
30
unsupported
not checked
DANE
errors
PFS
not checked
Heartbleed
not checked
Weak ciphers
not checked
1 s
route2.mx.cloudflare.net
2606:4700:f5::f
Results incomplete
30
unsupported
not checked
DANE
errors
PFS
not checked
Heartbleed
not checked
Weak ciphers
not checked
1 s
route2.mx.cloudflare.net
162.159.205.18
30
supported
*.mx.cloudflare.net
DANE
valid
PFS
supported
Heartbleed
not vulnerable
Weak ciphers
not found
  • TLSv1.2
  • TLSv1.1
  • TLSv1.0
  • SSLv3
2 s
route2.mx.cloudflare.net
162.159.205.17
30
supported
*.mx.cloudflare.net
DANE
valid
PFS
supported
Heartbleed
not vulnerable
Weak ciphers
not found
  • TLSv1.2
  • TLSv1.1
  • TLSv1.0
  • SSLv3
2 s
route2.mx.cloudflare.net
162.159.205.19
30
supported
*.mx.cloudflare.net
DANE
valid
PFS
supported
Heartbleed
not vulnerable
Weak ciphers
not found
  • TLSv1.2
  • TLSv1.1
  • TLSv1.0
  • SSLv3
2 s
route3.mx.cloudflare.net
2606:4700:f5::13
Results incomplete
40
unsupported
not checked
DANE
errors
PFS
not checked
Heartbleed
not checked
Weak ciphers
not checked
1 s
route3.mx.cloudflare.net
2606:4700:f5::12
Results incomplete
40
unsupported
not checked
DANE
errors
PFS
not checked
Heartbleed
not checked
Weak ciphers
not checked
1 s
route3.mx.cloudflare.net
2606:4700:f5::11
Results incomplete
40
unsupported
not checked
DANE
errors
PFS
not checked
Heartbleed
not checked
Weak ciphers
not checked
1 s
route3.mx.cloudflare.net
162.159.205.25
40
supported
*.mx.cloudflare.net
DANE
valid
PFS
supported
Heartbleed
not vulnerable
Weak ciphers
not found
  • TLSv1.2
  • TLSv1.1
  • TLSv1.0
  • SSLv3
2 s
route3.mx.cloudflare.net
162.159.205.23
40
supported
*.mx.cloudflare.net
DANE
valid
PFS
supported
Heartbleed
not vulnerable
Weak ciphers
not found
  • TLSv1.2
  • TLSv1.1
  • TLSv1.0
  • SSLv3
2 s
route3.mx.cloudflare.net
162.159.205.24
40
supported
*.mx.cloudflare.net
DANE
valid
PFS
supported
Heartbleed
not vulnerable
Weak ciphers
not found
  • TLSv1.2
  • TLSv1.1
  • TLSv1.0
  • SSLv3
2 s

Outgoing Mails

We have not received any emails from a @jazilos.fr address so far. Test mail delivery

Certificates

First seen at:

CN=*.mx.cloudflare.net,O=Cloudflare\, Inc.,L=San Francisco,ST=California,C=US

Certificate chain
Subject
Country (C)
  • US
State (ST)
  • California
Locality (L)
  • San Francisco
Organization (O)
  • Cloudflare, Inc.
Common Name (CN)
  • *.mx.cloudflare.net
Alternative Names
  • *.mx.cloudflare.net
  • mx.cloudflare.net
Issuer
Country (C)
  • US
Organization (O)
  • DigiCert Inc
Common Name (CN)
  • DigiCert Global G2 TLS RSA SHA256 2020 CA1
validity period
Not valid before
2025-01-13
Not valid after
2026-01-14
This certifcate has been verified for the following usages:
  • Digital Signature
  • Key Encipherment
  • TLS Web Server Authentication
  • TLS Web Client Authentication
Fingerprints
SHA256
A2:FE:A3:B2:A8:65:BC:CA:14:BC:AF:96:47:F2:A0:EF:64:E7:FC:AA:DC:23:AD:42:E6:11:44:8F:2E:D3:7B:09
SHA1
E4:69:0D:37:2F:98:39:FF:34:75:F7:0D:41:C8:71:8C:54:19:05:EC
X509v3 extensions
authorityKeyIdentifier
  • keyid:74:85:80:C0:66:C7:DF:37:DE:CF:BD:29:37:AA:03:1D:BE:ED:CD:17
subjectKeyIdentifier
  • 81:6C:A3:B8:D3:FD:29:CD:C7:F2:04:FE:A2:31:07:28:B0:35:35:29
certificatePolicies
  • Policy: 2.23.140.1.2.2
  • CPS: http://www.digicert.com/CPS
crlDistributionPoints
  • Full Name:
  • URI:http://crl3.digicert.com/DigiCertGlobalG2TLSRSASHA2562020CA1-1.crl
  • Full Name:
  • URI:http://crl4.digicert.com/DigiCertGlobalG2TLSRSASHA2562020CA1-1.crl
authorityInfoAccess
  • OCSP - URI:http://ocsp.digicert.com
  • CA Issuers - URI:http://cacerts.digicert.com/DigiCertGlobalG2TLSRSASHA2562020CA1-1.crt
ct_precert_scts
  • Signed Certificate Timestamp:
  • Version : v1 (0x0)
  • Log ID : 0E:57:94:BC:F3:AE:A9:3E:33:1B:2C:99:07:B3:F7:90:
  • DF:9B:C2:3D:71:32:25:DD:21:A9:25:AC:61:C5:4E:21
  • Timestamp : Jan 13 01:05:35.445 2025 GMT
  • Extensions: none
  • Signature : ecdsa-with-SHA256
  • 30:45:02:20:66:E8:D1:C3:7A:ED:E5:5B:89:1E:77:77:
  • 66:9D:0B:39:B3:69:FA:70:82:DA:EB:93:7C:B3:70:62:
  • 48:5E:C1:8F:02:21:00:89:B1:DC:CC:95:20:91:9B:6D:
  • F7:C9:AE:73:0D:DD:F4:78:44:82:69:19:78:C8:1C:A5:
  • 53:44:76:59:61:FB:F3
  • Signed Certificate Timestamp:
  • Version : v1 (0x0)
  • Log ID : 64:11:C4:6C:A4:12:EC:A7:89:1C:A2:02:2E:00:BC:AB:
  • 4F:28:07:D4:1E:35:27:AB:EA:FE:D5:03:C9:7D:CD:F0
  • Timestamp : Jan 13 01:05:35.423 2025 GMT
  • Extensions: none
  • Signature : ecdsa-with-SHA256
  • 30:45:02:21:00:98:03:BE:5A:0A:59:4F:70:CA:1C:82:
  • 80:62:4E:32:A6:09:2E:94:0C:6B:16:6C:F3:79:DF:59:
  • 44:21:6D:AB:F4:02:20:67:BA:5F:9F:7C:06:0C:1C:D2:
  • D2:DF:EA:6D:63:A3:F0:BD:E2:6B:83:79:E2:5F:E6:67:
  • 61:59:24:2B:7A:F3:C3
  • Signed Certificate Timestamp:
  • Version : v1 (0x0)
  • Log ID : 49:9C:9B:69:DE:1D:7C:EC:FC:36:DE:CD:87:64:A6:B8:
  • 5B:AF:0A:87:80:19:D1:55:52:FB:E9:EB:29:DD:F8:C3
  • Timestamp : Jan 13 01:05:35.473 2025 GMT
  • Extensions: none
  • Signature : ecdsa-with-SHA256
  • 30:44:02:20:2A:15:EA:B0:1D:47:14:73:B9:A5:3A:40:
  • 51:A5:DE:C7:3E:1C:9A:54:A2:11:FE:E5:B3:7E:6E:C6:
  • 6F:39:45:4D:02:20:71:C7:75:B1:4D:46:B6:29:75:8F:
  • A2:F4:22:93:CF:0E:AC:79:47:77:64:39:12:E1:8E:5F:
  • D3:DD:F3:18:D9:51
First seen at:

CN=mail.jazilos.fr

Certificate chain
  • mail.jazilos.fr
    • remaining
    • 4096 bit
    • sha256WithRSAEncryption

      • R10
        • remaining
        • 2048 bit
        • sha256WithRSAEncryption

          • ISRG Root X1 (Certificate is self-signed.)
            • remaining
            • 4096 bit
            • sha256WithRSAEncryption

Subject
Common Name (CN)
  • mail.jazilos.fr
Alternative Names
  • autoconfig.jazilos.fr
  • autodiscover.jazilos.fr
  • mail.jazilos.fr
Issuer
Country (C)
  • US
Organization (O)
  • Let's Encrypt
Common Name (CN)
  • R10
validity period
Not valid before
2025-03-29
Not valid after
2025-06-27
This certifcate has been verified for the following usages:
  • Digital Signature
  • Key Encipherment
  • TLS Web Server Authentication
  • TLS Web Client Authentication
Fingerprints
SHA256
23:C8:FE:9D:E5:3E:89:38:E1:45:FF:90:2C:5A:9D:09:5A:DD:AE:D2:9F:78:93:8F:96:BC:95:50:B8:CD:A7:B6
SHA1
21:A9:E3:47:6C:2B:68:74:7E:AF:D7:C1:F8:8D:B4:40:08:52:9F:03
X509v3 extensions
subjectKeyIdentifier
  • A6:5A:68:A2:97:16:C6:CE:4E:D9:04:B1:E9:EA:2A:E2:F7:74:2B:67
authorityKeyIdentifier
  • keyid:BB:BC:C3:47:A5:E4:BC:A9:C6:C3:A4:72:0C:10:8D:A2:35:E1:C8:E8
authorityInfoAccess
  • OCSP - URI:http://r10.o.lencr.org
  • CA Issuers - URI:http://r10.i.lencr.org/
certificatePolicies
  • Policy: 2.23.140.1.2.1
crlDistributionPoints
  • Full Name:
  • URI:http://r10.c.lencr.org/105.crl
ct_precert_scts
  • Signed Certificate Timestamp:
  • Version : v1 (0x0)
  • Log ID : A2:E3:0A:E4:45:EF:BD:AD:9B:7E:38:ED:47:67:77:53:
  • D7:82:5B:84:94:D7:2B:5E:1B:2C:C4:B9:50:A4:47:E7
  • Timestamp : Mar 29 17:23:10.528 2025 GMT
  • Extensions: none
  • Signature : ecdsa-with-SHA256
  • 30:45:02:21:00:C9:09:02:A2:A9:F8:90:88:07:F9:BD:
  • E2:F8:75:FF:2B:C3:6F:EB:5A:D5:56:E3:1E:14:A2:2B:
  • 6C:27:D1:44:87:02:20:5F:E8:BE:12:50:4B:0D:70:D5:
  • D0:24:9C:15:B3:08:11:43:77:86:03:49:4C:AB:C4:58:
  • 74:41:54:69:17:10:76
  • Signed Certificate Timestamp:
  • Version : v1 (0x0)
  • Log ID : CC:FB:0F:6A:85:71:09:65:FE:95:9B:53:CE:E9:B2:7C:
  • 22:E9:85:5C:0D:97:8D:B6:A9:7E:54:C0:FE:4C:0D:B0
  • Timestamp : Mar 29 17:23:12.615 2025 GMT
  • Extensions: none
  • Signature : ecdsa-with-SHA256
  • 30:45:02:21:00:C7:F9:BC:3E:76:25:8B:1C:F7:FC:75:
  • 95:0A:51:42:30:03:F5:09:62:E0:1F:52:F5:AF:2C:9D:
  • A2:F5:45:B8:1B:02:20:19:52:5B:FD:D3:10:AB:40:F6:
  • E8:2A:20:B9:F0:D2:C5:7D:9A:34:10:87:2E:5C:70:B4:
  • A8:58:A6:AD:38:74:A9

DANE

DNS-based Authentication of Named Entities (DANE) is a protocol to allow X.509 certificates to be bound to DNS using TLSA records and DNSSEC.

Name Options DNSSEC Matches
_25._tcp.route2.mx.cloudflare.net
  • DANE-EE: Domain Issued Certificate
  • Use subject public key
  • SHA-256 Hash
valid
valid
_25._tcp.route2.mx.cloudflare.net
  • DANE-TA: Trust Anchor Assertion
  • Use subject public key
  • SHA-256 Hash
valid
valid
_25._tcp.route1.mx.cloudflare.net
  • DANE-TA: Trust Anchor Assertion
  • Use subject public key
  • SHA-256 Hash
valid
valid
_25._tcp.route1.mx.cloudflare.net
  • DANE-EE: Domain Issued Certificate
  • Use subject public key
  • SHA-256 Hash
valid
valid
_25._tcp.route3.mx.cloudflare.net
  • DANE-TA: Trust Anchor Assertion
  • Use subject public key
  • SHA-256 Hash
valid
valid
_25._tcp.route3.mx.cloudflare.net
  • DANE-EE: Domain Issued Certificate
  • Use subject public key
  • SHA-256 Hash
valid
valid
_25._tcp.mail.jazilos.fr
  • DANE-EE: Domain Issued Certificate
  • Use subject public key
  • SHA-256 Hash
valid
valid