SSL check results of mail.schulen-koeln.de

NEW You can also bulk check multiple servers.

Discover if the mail servers for mail.schulen-koeln.de can be reached through a secure connection.

To establish a secure connection a mail server has to offer STARTTLS (SSL), a trustworthy SSL certificate, support for the Diffie-Hellman-Algorithm to guarantee Perfect Forward Secrecy and must not be vulnerable against the Heartbleed attack. Futhermore we recommend using end-to-end encryption with GnuPG.

Summary

Report created Sat, 15 Feb 2025 20:00:52 +0000

The mailservers of mail.schulen-koeln.de can be reached through a secure connection.

Servers

Incoming Mails

These servers are responsible for incoming mails to @mail.schulen-koeln.de addresses.

Hostname / IP address Priority STARTTLS Certificates Protocol
mail.schulen-koeln.de
194.8.194.97
-
supported
mail.schulen-koeln.de
DANE
missing
PFS
supported
Heartbleed
not vulnerable
Weak ciphers
not found
  • TLSv1.2
  • TLSv1.1
  • TLSv1.0
  • SSLv3
2 s

Outgoing Mails

We have not received any emails from a @mail.schulen-koeln.de address so far. Test mail delivery

Certificates

First seen at:

CN=mail.schulen-koeln.de

Certificate chain
  • mail.schulen-koeln.de
    • remaining
    • 384 bit
    • ecdsa-with-SHA384

      • E5
        • remaining
        • 384 bit
        • sha256WithRSAEncryption

          • ISRG Root X1 (Certificate is self-signed.)
            • remaining
            • 4096 bit
            • sha256WithRSAEncryption

Subject
Common Name (CN)
  • mail.schulen-koeln.de
Alternative Names
  • mail.schulen-koeln.de
Issuer
Country (C)
  • US
Organization (O)
  • Let's Encrypt
Common Name (CN)
  • E5
validity period
Not valid before
2025-01-01
Not valid after
2025-04-01
This certifcate has been verified for the following usages:
  • Digital Signature
  • TLS Web Server Authentication
  • TLS Web Client Authentication
Fingerprints
SHA256
E9:67:DB:92:27:E4:04:3A:5F:91:0F:CD:D3:4A:CC:38:1E:C2:2D:6C:6C:5D:42:F4:78:0B:89:37:0A:B5:E4:05
SHA1
C8:C9:CA:19:D0:FC:84:78:8E:E1:11:52:E9:EA:8B:2D:77:0F:8D:C0
X509v3 extensions
subjectKeyIdentifier
  • 04:7C:AE:A5:A7:21:0D:E7:C0:66:9F:40:DF:45:C8:86:98:3E:5F:F4
authorityKeyIdentifier
  • keyid:9F:2B:5F:CF:3C:21:4F:9D:04:B7:ED:2B:2C:C4:C6:70:8B:D2:D7:0D
authorityInfoAccess
  • OCSP - URI:http://e5.o.lencr.org
  • CA Issuers - URI:http://e5.i.lencr.org/
certificatePolicies
  • Policy: 2.23.140.1.2.1
ct_precert_scts
  • Signed Certificate Timestamp:
  • Version : v1 (0x0)
  • Log ID : CC:FB:0F:6A:85:71:09:65:FE:95:9B:53:CE:E9:B2:7C:
  • 22:E9:85:5C:0D:97:8D:B6:A9:7E:54:C0:FE:4C:0D:B0
  • Timestamp : Jan 1 09:00:10.080 2025 GMT
  • Extensions: none
  • Signature : ecdsa-with-SHA256
  • 30:44:02:20:07:6B:11:DD:63:E9:B7:86:2F:00:3B:E6:
  • 95:87:74:6B:68:F1:F6:37:ED:2A:E1:C8:61:8D:A7:F4:
  • D9:67:5A:46:02:20:68:CB:7C:7D:50:D2:39:64:F1:EE:
  • 94:AE:DD:27:5D:98:76:8E:E6:67:D0:E8:9F:65:A2:7F:
  • 89:77:F4:A7:9C:D0
  • Signed Certificate Timestamp:
  • Version : v1 (0x0)
  • Log ID : CF:11:56:EE:D5:2E:7C:AF:F3:87:5B:D9:69:2E:9B:E9:
  • 1A:71:67:4A:B0:17:EC:AC:01:D2:5B:77:CE:CC:3B:08
  • Timestamp : Jan 1 09:00:10.102 2025 GMT
  • Extensions: none
  • Signature : ecdsa-with-SHA256
  • 30:46:02:21:00:84:28:03:57:7A:39:3D:4A:7F:84:27:
  • 3D:56:1B:5C:74:6D:12:7C:C5:4F:96:6D:E7:AA:D1:53:
  • 19:5F:FF:16:57:02:21:00:DE:5B:1B:3C:91:E7:78:28:
  • A6:85:D3:FD:87:CC:34:F3:AB:A1:77:1A:B5:2C:6C:5F:
  • 92:84:13:D1:23:CC:0A:AB