SSL check results of mail.eskapaden.org

NEW You can also bulk check multiple servers.

Discover if the mail servers for mail.eskapaden.org can be reached through a secure connection.

To establish a secure connection a mail server has to offer STARTTLS (SSL), a trustworthy SSL certificate, support for the Diffie-Hellman-Algorithm to guarantee Perfect Forward Secrecy and must not be vulnerable against the Heartbleed attack. Futhermore we recommend using end-to-end encryption with GnuPG.

Summary

Report created Wed, 14 Apr 2021 09:17:13 +0000

The mailservers of mail.eskapaden.org can be reached through a secure connection.

Servers

Incoming Mails

These servers are responsible for incoming mails to @mail.eskapaden.org addresses.

Hostname / IP address Priority STARTTLS Certificates Protocol
mail.eskapaden.org
159.69.32.231
-
supported
mail.gericke.me
DANE
missing
PFS
supported
Heartbleed
not vulnerable
Weak ciphers
not found
  • TLSv1.2
  • TLSv1.1
  • TLSv1.0
  • SSLv3
6 s
mail.eskapaden.org
2a01:4f8:1c1c:c571::1
-
supported
mail.gericke.me
DANE
missing
PFS
supported
Heartbleed
not vulnerable
Weak ciphers
not found
  • TLSv1.2
  • TLSv1.1
  • TLSv1.0
  • SSLv3
11 s

Outgoing Mails

We have not received any emails from a @mail.eskapaden.org address so far. Test mail delivery

Certificates

First seen at:

CN=mail.gericke.me

Certificate chain
  • mail.gericke.me
    • remaining
    • 4096 bit
    • sha256WithRSAEncryption

      • R3
        • remaining
        • 2048 bit
        • sha256WithRSAEncryption

          • DST Root CA X3 (Certificate is self-signed.)
            • remaining
            • 2048 bit
            • sha1WithRSAEncryption

Subject
Common Name (CN)
  • mail.gericke.me
Alternative Names
  • autodiscover.beh.wtf
  • autodiscover.eskapaden.org
  • autodiscover.gericke.me
  • autodiscover.jobst.one
  • autodiscover.kayuk.de
  • imap.beh.wtf
  • imap.eskapaden.org
  • mail.beh.wtf
  • mail.eskapaden.org
  • mail.gericke.me
  • mail.jobst.one
  • mail.kayuk.de
  • smtp.beh.wtf
  • smtp.eskapaden.org
Issuer
Country (C)
  • US
Organization (O)
  • Let's Encrypt
Common Name (CN)
  • R3
validity period
Not valid before
2021-03-13
Not valid after
2021-06-11
This certifcate has been verified for the following usages:
  • Digital Signature
  • Key Encipherment
  • TLS Web Server Authentication
  • TLS Web Client Authentication
Fingerprints
SHA256
FC:F5:29:BB:7A:CA:50:B3:60:DD:B4:EF:4D:C7:A5:F2:0D:18:A4:78:77:77:59:53:69:02:7D:92:D0:45:EB:9B
SHA1
63:4E:A2:F8:1F:65:2C:F0:15:53:F8:A7:55:7A:81:80:83:20:F4:25
X509v3 extensions
subjectKeyIdentifier
  • AA:2F:68:EE:CE:CD:63:89:B8:82:BD:C6:C6:9A:DF:9C:B5:5A:C2:5C
authorityKeyIdentifier
  • keyid:14:2E:B3:17:B7:58:56:CB:AE:50:09:40:E6:1F:AF:9D:8B:14:C2:C6
authorityInfoAccess
  • OCSP - URI:http://r3.o.lencr.org
  • CA Issuers - URI:http://r3.i.lencr.org/
certificatePolicies
  • Policy: 2.23.140.1.2.1
  • Policy: 1.3.6.1.4.1.44947.1.1.1
  • CPS: http://cps.letsencrypt.org
ct_precert_scts
  • Signed Certificate Timestamp:
  • Version : v1 (0x0)
  • Log ID : 6F:53:76:AC:31:F0:31:19:D8:99:00:A4:51:15:FF:77:
  • 15:1C:11:D9:02:C1:00:29:06:8D:B2:08:9A:37:D9:13
  • Timestamp : Mar 13 21:40:38.403 2021 GMT
  • Extensions: none
  • Signature : ecdsa-with-SHA256
  • 30:44:02:20:6D:71:98:5F:04:AF:83:C1:73:FC:BE:94:
  • D4:DD:85:CA:CC:E3:63:3B:83:B2:E1:9B:CC:B7:0C:AD:
  • 6A:07:61:B1:02:20:55:2E:AF:B5:C2:9F:CB:A0:5E:FA:
  • 95:54:FA:E4:16:93:00:9E:44:DF:41:07:86:EA:45:F2:
  • 05:24:09:D8:95:11
  • Signed Certificate Timestamp:
  • Version : v1 (0x0)
  • Log ID : F6:5C:94:2F:D1:77:30:22:14:54:18:08:30:94:56:8E:
  • E3:4D:13:19:33:BF:DF:0C:2F:20:0B:CC:4E:F1:64:E3
  • Timestamp : Mar 13 21:40:38.355 2021 GMT
  • Extensions: none
  • Signature : ecdsa-with-SHA256
  • 30:44:02:20:5E:71:18:02:12:B6:8F:79:88:FA:76:CE:
  • BE:DC:C7:FA:EA:90:3A:90:AF:2A:6E:96:35:67:05:6B:
  • 50:E1:58:C9:02:20:6D:E3:10:AC:FC:E9:00:85:4E:50:
  • 7D:2B:4A:05:80:74:8B:5D:CE:CA:2C:65:53:E2:45:BD:
  • 8C:A1:BF:84:DF:0D