SSL check results of mail.demosystem.de

NEW You can also bulk check multiple servers.

Discover if the mail servers for mail.demosystem.de can be reached through a secure connection.

To establish a secure connection a mail server has to offer STARTTLS (SSL), a trustworthy SSL certificate, support for the Diffie-Hellman-Algorithm to guarantee Perfect Forward Secrecy and must not be vulnerable against the Heartbleed attack. Futhermore we recommend using end-to-end encryption with GnuPG.

Summary

Report created Wed, 24 Apr 2024 09:09:51 +0000

The mailservers of mail.demosystem.de can be reached through a secure connection.

Servers

Incoming Mails

These servers are responsible for incoming mails to @mail.demosystem.de addresses.

Hostname / IP address Priority STARTTLS Certificates Protocol
mail.demosystem.de
217.89.135.77
-
supported
*.demosystem.de
DANE
missing
PFS
supported
Heartbleed
not vulnerable
Weak ciphers
not found
  • TLSv1.2
  • TLSv1.1
  • SSLv3
11 s

Outgoing Mails

We have not received any emails from a @mail.demosystem.de address so far. Test mail delivery

Certificates

First seen at:

CN=*.demosystem.de

Certificate chain
Subject
Common Name (CN)
  • *.demosystem.de
Alternative Names
  • *.demosystem.de
  • demosystem.de
Issuer
Country (C)
  • US
Organization (O)
  • DigiCert Inc
Organizational Unit (OU)
  • www.digicert.com
Common Name (CN)
  • Thawte TLS RSA CA G1
validity period
Not valid before
2024-04-08
Not valid after
2025-04-17
This certifcate has been verified for the following usages:
  • Digital Signature
  • Key Encipherment
  • TLS Web Server Authentication
  • TLS Web Client Authentication
Fingerprints
SHA256
31:98:4C:3C:E9:EC:7F:C2:B3:AB:EB:7E:41:B6:3B:FC:37:16:59:CC:55:13:13:F1:2D:C1:53:D7:91:3E:26:65
SHA1
58:5D:71:62:1F:C9:63:AE:27:78:06:FC:9F:5A:82:9A:70:97:CE:A6
X509v3 extensions
authorityKeyIdentifier
  • keyid:A5:8C:FE:32:CC:EB:0F:2C:D4:19:C6:08:B8:00:24:88:5D:C3:C5:B7
subjectKeyIdentifier
  • 0A:E1:2B:52:86:B6:2A:39:6E:70:D7:25:95:31:8F:4A:0E:5C:66:59
certificatePolicies
  • Policy: 2.23.140.1.2.1
  • CPS: http://www.digicert.com/CPS
crlDistributionPoints
  • Full Name:
  • URI:http://cdp.thawte.com/ThawteTLSRSACAG1.crl
authorityInfoAccess
  • OCSP - URI:http://status.thawte.com
  • CA Issuers - URI:http://cacerts.thawte.com/ThawteTLSRSACAG1.crt
ct_precert_scts
  • Signed Certificate Timestamp:
  • Version : v1 (0x0)
  • Log ID : 4E:75:A3:27:5C:9A:10:C3:38:5B:6C:D4:DF:3F:52:EB:
  • 1D:F0:E0:8E:1B:8D:69:C0:B1:FA:64:B1:62:9A:39:DF
  • Timestamp : Apr 8 10:31:55.144 2024 GMT
  • Extensions: none
  • Signature : ecdsa-with-SHA256
  • 30:45:02:21:00:84:B5:BF:17:92:47:C3:51:87:76:98:
  • 0F:06:8B:0E:76:57:F6:46:F2:8C:BD:F5:BE:51:EF:24:
  • 3A:DD:4C:0E:1A:02:20:43:CF:9E:1C:D7:76:2C:A7:C5:
  • 26:0D:DF:10:C1:07:59:39:21:AA:BE:AD:01:1D:50:7D:
  • 7E:AE:9D:74:E8:B9:76
  • Signed Certificate Timestamp:
  • Version : v1 (0x0)
  • Log ID : 7D:59:1E:12:E1:78:2A:7B:1C:61:67:7C:5E:FD:F8:D0:
  • 87:5C:14:A0:4E:95:9E:B9:03:2F:D9:0E:8C:2E:79:B8
  • Timestamp : Apr 8 10:31:55.170 2024 GMT
  • Extensions: none
  • Signature : ecdsa-with-SHA256
  • 30:44:02:20:78:A8:F9:7E:B2:6C:DB:40:D5:83:F9:8C:
  • CD:AB:9C:68:27:37:9F:6C:1F:BA:59:21:A1:8D:CC:97:
  • 11:C5:0F:AB:02:20:76:FA:70:BC:87:42:A6:B1:15:12:
  • C7:65:97:A7:57:8F:20:93:A8:8A:77:60:2C:D8:E2:DA:
  • C0:18:1D:29:5B:8C
  • Signed Certificate Timestamp:
  • Version : v1 (0x0)
  • Log ID : E6:D2:31:63:40:77:8C:C1:10:41:06:D7:71:B9:CE:C1:
  • D2:40:F6:96:84:86:FB:BA:87:32:1D:FD:1E:37:8E:50
  • Timestamp : Apr 8 10:31:55.184 2024 GMT
  • Extensions: none
  • Signature : ecdsa-with-SHA256
  • 30:44:02:20:61:39:6C:40:A6:AA:E8:1D:DC:7C:DE:BA:
  • 7F:14:BD:4A:D6:23:C1:E6:BA:F1:64:D0:C6:D3:21:66:
  • AF:1E:91:B2:02:20:57:27:A6:07:0F:F7:33:3C:48:0E:
  • 61:CA:56:BB:1C:5D:02:21:F8:77:31:88:D1:81:C5:43:
  • 18:D1:12:92:E0:73