SSL check results of jsonprice.org

NEW You can also bulk check multiple servers.

Discover if the mail servers for jsonprice.org can be reached through a secure connection.

To establish a secure connection a mail server has to offer STARTTLS (SSL), a trustworthy SSL certificate, support for the Diffie-Hellman-Algorithm to guarantee Perfect Forward Secrecy and must not be vulnerable against the Heartbleed attack. Futhermore we recommend using end-to-end encryption with GnuPG.

Summary

Report created Sun, 10 Aug 2025 20:20:52 +0000

The mailservers of jsonprice.org can be reached through a secure connection.

Servers

Incoming Mails

These servers are responsible for incoming mails to @jsonprice.org addresses.

Hostname / IP address Priority STARTTLS Certificates Protocol
jsonprice.org
2a01:4f9:3071:1ce0::4
0
supported
jsonprice.org
DANE
valid
PFS
supported
Heartbleed
not vulnerable
Weak ciphers
not found
  • TLSv1.2
  • SSLv3
2 s
jsonprice.org
65.21.45.178
0
supported
jsonprice.org
DANE
valid
PFS
supported
Heartbleed
not vulnerable
Weak ciphers
not found
  • TLSv1.2
  • SSLv3
2 s

Outgoing Mails

We have not received any emails from a @jsonprice.org address so far. Test mail delivery

Certificates

First seen at:

CN=jsonprice.org

Certificate chain
  • jsonprice.org
    • remaining
    • 256 bit
    • ecdsa-with-SHA384

      • E6
        • remaining
        • 384 bit
        • sha256WithRSAEncryption

          • ISRG Root X1 (Certificate is self-signed.)
            • remaining
            • 4096 bit
            • sha256WithRSAEncryption

Subject
Common Name (CN)
  • jsonprice.org
Alternative Names
  • *.jsonprice.org
  • jsonprice.org
Issuer
Country (C)
  • US
Organization (O)
  • Let's Encrypt
Common Name (CN)
  • E6
validity period
Not valid before
2025-08-10
Not valid after
2025-11-08
This certifcate has been verified for the following usages:
  • Digital Signature
  • TLS Web Server Authentication
  • TLS Web Client Authentication
Fingerprints
SHA256
3F:D6:D1:57:BD:82:E8:CA:54:D2:EF:9D:8B:EE:C5:F9:D0:F3:69:88:C8:59:2F:84:97:CB:81:F8:AD:79:F7:62
SHA1
8B:7B:0E:F5:6F:FB:17:37:D3:1B:B8:4D:13:D3:7B:7D:7E:9C:35:AE
X509v3 extensions
subjectKeyIdentifier
  • CC:F6:72:5B:A3:7D:9E:68:64:4E:5A:1C:95:BB:A2:57:B2:FA:87:E0
authorityKeyIdentifier
  • keyid:93:27:46:98:03:A9:51:68:8E:98:D6:C4:42:48:DB:23:BF:58:94:D2
authorityInfoAccess
  • CA Issuers - URI:http://e6.i.lencr.org/
certificatePolicies
  • Policy: 2.23.140.1.2.1
crlDistributionPoints
  • Full Name:
  • URI:http://e6.c.lencr.org/102.crl
ct_precert_scts
  • Signed Certificate Timestamp:
  • Version : v1 (0x0)
  • Log ID : DD:DC:CA:34:95:D7:E1:16:05:E7:95:32:FA:C7:9F:F8:
  • 3D:1C:50:DF:DB:00:3A:14:12:76:0A:2C:AC:BB:C8:2A
  • Timestamp : Aug 10 04:13:03.322 2025 GMT
  • Extensions: none
  • Signature : ecdsa-with-SHA256
  • 30:46:02:21:00:99:5B:5A:89:F5:48:CF:FF:60:DE:8E:
  • D7:28:0A:2E:E9:16:50:CE:D0:AD:77:C5:72:35:C4:33:
  • 05:EE:BA:C9:82:02:21:00:AE:B2:36:92:1B:07:EE:9F:
  • 7B:CB:CF:4C:3E:36:F5:D4:40:F2:A1:4E:9A:AA:0B:7C:
  • 3E:F8:46:15:18:B9:A0:52
  • Signed Certificate Timestamp:
  • Version : v1 (0x0)
  • Log ID : ED:3C:4B:D6:E8:06:C2:A4:A2:00:57:DB:CB:24:E2:38:
  • 01:DF:51:2F:ED:C4:86:C5:70:0F:20:DD:B7:3E:3F:E0
  • Timestamp : Aug 10 04:13:05.269 2025 GMT
  • Extensions: none
  • Signature : ecdsa-with-SHA256
  • 30:45:02:21:00:C0:9A:9C:A3:BD:1B:65:57:25:44:F0:
  • C0:21:04:A2:E3:A8:F2:72:FC:28:44:31:24:3B:9B:1E:
  • 02:C6:C1:AD:BF:02:20:6C:EF:EA:54:08:A9:3A:21:8C:
  • 28:39:5F:81:F4:80:C0:4E:6E:F8:E1:1C:D4:E0:9B:78:
  • 4F:1C:03:E4:63:0C:56

DANE

DNS-based Authentication of Named Entities (DANE) is a protocol to allow X.509 certificates to be bound to DNS using TLSA records and DNSSEC.

Name Options DNSSEC Matches
_25._tcp.jsonprice.org
  • DANE-TA: Trust Anchor Assertion
  • Use subject public key
  • SHA-256 Hash
valid
valid
_25._tcp.jsonprice.org
  • DANE-EE: Domain Issued Certificate
  • Use subject public key
  • SHA-256 Hash
valid
valid