SSL check results of johanniter.de

NEW You can also bulk check multiple servers.

Discover if the mail servers for johanniter.de can be reached through a secure connection.

To establish a secure connection a mail server has to offer STARTTLS (SSL), a trustworthy SSL certificate, support for the Diffie-Hellman-Algorithm to guarantee Perfect Forward Secrecy and must not be vulnerable against the Heartbleed attack. Futhermore we recommend using end-to-end encryption with GnuPG.

Summary

Report created Fri, 02 Jun 2023 09:26:44 +0000

The mailservers of johanniter.de can be reached through a secure connection.

Servers

Incoming Mails

These servers are responsible for incoming mails to @johanniter.de addresses.

Hostname / IP address Priority STARTTLS Certificates Protocol
mx2.johanniter.de
87.190.39.211
10
supported
mx2.johanniter.de
DANE
missing
PFS
supported
Heartbleed
not vulnerable
Weak ciphers
not found
  • TLSv1.2
  • TLSv1.1
  • SSLv3
12 s
mx1.johanniter.de
87.190.39.210
10
supported
mx1.johanniter.de
DANE
missing
PFS
supported
Heartbleed
not vulnerable
Weak ciphers
not found
  • TLSv1.2
  • TLSv1.1
  • SSLv3
12 s

Outgoing Mails

We have received emails from these servers with @johanniter.de sender addresses. Test mail delivery

Host TLS Version & Cipher
mx2.johanniter.de (87.190.39.211)
TLSv1.2 DHE-RSA-AES256-GCM-SHA384

Certificates

First seen at:

CN=mx2.johanniter.de

Certificate chain
Subject
Common Name (CN)
  • mx2.johanniter.de
Alternative Names
  • mx2.johanniter.de
Issuer
Country (C)
  • US
Organization (O)
  • DigiCert, Inc.
Common Name (CN)
  • GeoTrust Global TLS RSA4096 SHA256 2022 CA1
validity period
Not valid before
2022-06-07
Not valid after
2023-07-08
This certifcate has been verified for the following usages:
  • Digital Signature
  • Key Encipherment
  • TLS Web Server Authentication
  • TLS Web Client Authentication
Fingerprints
SHA256
16:80:88:2A:6B:5A:12:B7:B2:5C:61:BC:E5:AB:B1:F1:18:24:B9:A4:F4:0B:E0:ED:0B:CA:9E:FD:97:D3:30:D9
SHA1
84:C1:B7:AF:DF:36:96:09:82:95:0B:16:A9:E2:3E:20:DD:B8:32:17
X509v3 extensions
authorityKeyIdentifier
  • keyid:A5:B4:D6:EB:36:C4:E7:6B:A6:DF:C4:64:0B:01:2A:20:04:B8:66:23
subjectKeyIdentifier
  • 02:5B:F4:DA:53:73:6D:AB:51:51:3B:C2:33:6E:4E:16:8F:65:26:8A
crlDistributionPoints
  • Full Name:
  • URI:http://crl3.digicert.com/GeoTrustGlobalTLSRSA4096SHA2562022CA1.crl
  • Full Name:
  • URI:http://crl4.digicert.com/GeoTrustGlobalTLSRSA4096SHA2562022CA1.crl
certificatePolicies
  • Policy: 2.23.140.1.2.1
  • CPS: http://www.digicert.com/CPS
authorityInfoAccess
  • OCSP - URI:http://ocsp.digicert.com
  • CA Issuers - URI:http://cacerts.digicert.com/GeoTrustGlobalTLSRSA4096SHA2562022CA1.crt
ct_precert_scts
  • Signed Certificate Timestamp:
  • Version : v1 (0x0)
  • Log ID : E8:3E:D0:DA:3E:F5:06:35:32:E7:57:28:BC:89:6B:C9:
  • 03:D3:CB:D1:11:6B:EC:EB:69:E1:77:7D:6D:06:BD:6E
  • Timestamp : Jun 7 08:34:32.800 2022 GMT
  • Extensions: none
  • Signature : ecdsa-with-SHA256
  • 30:45:02:21:00:C3:F3:84:14:0F:36:1D:B7:AF:5F:B8:
  • 79:CA:0E:B8:56:4F:4A:D8:EF:FC:50:0D:05:10:E9:1E:
  • B2:15:65:08:BF:02:20:5A:74:BC:BA:60:0D:DB:D2:A6:
  • 18:FC:2D:E0:88:1F:1C:49:70:92:29:A1:41:46:A1:B5:
  • FD:49:C6:CD:A5:CD:E0
  • Signed Certificate Timestamp:
  • Version : v1 (0x0)
  • Log ID : 35:CF:19:1B:BF:B1:6C:57:BF:0F:AD:4C:6D:42:CB:BB:
  • B6:27:20:26:51:EA:3F:E1:2A:EF:A8:03:C3:3B:D6:4C
  • Timestamp : Jun 7 08:34:32.846 2022 GMT
  • Extensions: none
  • Signature : ecdsa-with-SHA256
  • 30:46:02:21:00:FF:5E:93:31:5C:C4:18:5F:31:40:AA:
  • 2C:C0:EC:63:1D:BC:C9:97:0C:06:FA:6F:51:1C:AC:7A:
  • B8:36:64:33:E0:02:21:00:B6:7B:04:F6:58:95:AB:69:
  • 4F:A2:5E:E4:93:74:E8:84:E9:1C:B0:53:F6:73:4B:AF:
  • 73:52:27:7B:91:18:D2:02
  • Signed Certificate Timestamp:
  • Version : v1 (0x0)
  • Log ID : B7:3E:FB:24:DF:9C:4D:BA:75:F2:39:C5:BA:58:F4:6C:
  • 5D:FC:42:CF:7A:9F:35:C4:9E:1D:09:81:25:ED:B4:99
  • Timestamp : Jun 7 08:34:32.838 2022 GMT
  • Extensions: none
  • Signature : ecdsa-with-SHA256
  • 30:44:02:20:3C:EF:20:6B:57:95:77:92:66:60:3E:EA:
  • AB:48:C9:AE:2F:19:B6:D7:43:69:09:E0:AC:D7:DF:45:
  • A5:93:49:F6:02:20:3B:B2:B6:CD:A3:91:95:FD:26:B9:
  • 8E:C9:D6:E9:25:B9:31:AA:D4:36:96:E3:45:79:81:F5:
  • EB:99:10:40:DF:6E
First seen at:

CN=mx1.johanniter.de

Certificate chain
Subject
Common Name (CN)
  • mx1.johanniter.de
Alternative Names
  • mx1.johanniter.de
Issuer
Country (C)
  • US
Organization (O)
  • DigiCert, Inc.
Common Name (CN)
  • GeoTrust Global TLS RSA4096 SHA256 2022 CA1
validity period
Not valid before
2022-06-07
Not valid after
2023-07-08
This certifcate has been verified for the following usages:
  • Digital Signature
  • Key Encipherment
  • TLS Web Server Authentication
  • TLS Web Client Authentication
Fingerprints
SHA256
33:07:FB:C8:D5:6C:92:F5:76:4B:28:E3:70:4C:5E:6B:0D:EE:97:AF:77:D4:0D:79:76:D8:7B:7A:52:C7:F9:34
SHA1
E0:42:CB:51:87:59:83:25:22:6A:05:7E:93:F5:9A:1B:CB:D3:0F:4C
X509v3 extensions
authorityKeyIdentifier
  • keyid:A5:B4:D6:EB:36:C4:E7:6B:A6:DF:C4:64:0B:01:2A:20:04:B8:66:23
subjectKeyIdentifier
  • 17:8B:ED:E6:90:17:19:E8:05:7D:AB:A5:4D:0A:94:BE:A3:80:9D:DD
crlDistributionPoints
  • Full Name:
  • URI:http://crl3.digicert.com/GeoTrustGlobalTLSRSA4096SHA2562022CA1.crl
  • Full Name:
  • URI:http://crl4.digicert.com/GeoTrustGlobalTLSRSA4096SHA2562022CA1.crl
certificatePolicies
  • Policy: 2.23.140.1.2.1
  • CPS: http://www.digicert.com/CPS
authorityInfoAccess
  • OCSP - URI:http://ocsp.digicert.com
  • CA Issuers - URI:http://cacerts.digicert.com/GeoTrustGlobalTLSRSA4096SHA2562022CA1.crt
ct_precert_scts
  • Signed Certificate Timestamp:
  • Version : v1 (0x0)
  • Log ID : E8:3E:D0:DA:3E:F5:06:35:32:E7:57:28:BC:89:6B:C9:
  • 03:D3:CB:D1:11:6B:EC:EB:69:E1:77:7D:6D:06:BD:6E
  • Timestamp : Jun 7 08:34:10.418 2022 GMT
  • Extensions: none
  • Signature : ecdsa-with-SHA256
  • 30:46:02:21:00:E7:23:3D:15:18:72:D8:1F:B4:16:F1:
  • 3D:76:33:AA:6B:B8:1C:77:BF:DD:56:E0:4D:47:F4:B2:
  • 0D:54:F0:90:3A:02:21:00:E2:23:BA:44:F1:BA:88:A7:
  • 91:65:DB:68:B4:24:47:BB:04:9F:7D:79:B5:98:EE:50:
  • E5:BF:B2:0C:7C:12:50:36
  • Signed Certificate Timestamp:
  • Version : v1 (0x0)
  • Log ID : 35:CF:19:1B:BF:B1:6C:57:BF:0F:AD:4C:6D:42:CB:BB:
  • B6:27:20:26:51:EA:3F:E1:2A:EF:A8:03:C3:3B:D6:4C
  • Timestamp : Jun 7 08:34:10.278 2022 GMT
  • Extensions: none
  • Signature : ecdsa-with-SHA256
  • 30:46:02:21:00:DB:62:1F:64:34:55:7E:91:8D:CD:96:
  • E3:6C:DE:53:4D:D1:B4:AC:5A:19:90:63:74:48:E6:D0:
  • 2A:3C:C2:5C:53:02:21:00:B1:46:05:70:31:C8:C5:7C:
  • 92:4B:68:85:DB:93:34:84:A4:90:A8:B7:52:44:4B:98:
  • 71:08:11:2D:17:77:26:3E
  • Signed Certificate Timestamp:
  • Version : v1 (0x0)
  • Log ID : B3:73:77:07:E1:84:50:F8:63:86:D6:05:A9:DC:11:09:
  • 4A:79:2D:B1:67:0C:0B:87:DC:F0:03:0E:79:36:A5:9A
  • Timestamp : Jun 7 08:34:10.338 2022 GMT
  • Extensions: none
  • Signature : ecdsa-with-SHA256
  • 30:44:02:20:13:2B:32:AD:B9:79:03:2F:62:A2:07:95:
  • 5C:40:E3:94:5E:5C:67:6A:78:52:DE:2E:A9:DF:0B:F4:
  • D3:36:13:AE:02:20:63:14:F0:5C:01:68:7D:33:91:16:
  • FA:8F:39:17:52:02:89:4C:79:71:0A:9A:BD:11:B0:15:
  • A6:B7:63:23:B1:1F