SSL check results of mdx.united-arrows.co.jp

NEW You can also bulk check multiple servers.

Discover if the mail servers for mdx.united-arrows.co.jp can be reached through a secure connection.

To establish a secure connection a mail server has to offer STARTTLS (SSL), a trustworthy SSL certificate, support for the Diffie-Hellman-Algorithm to guarantee Perfect Forward Secrecy and must not be vulnerable against the Heartbleed attack. Futhermore we recommend using end-to-end encryption with GnuPG.

Summary

Report created Wed, 04 Aug 2021 09:14:55 +0000

The mailservers of mdx.united-arrows.co.jp can be reached through an encrypted connection.

However, we found problems that may affect the security.

Servers

Incoming Mails

These servers are responsible for incoming mails to @mdx.united-arrows.co.jp addresses.

Hostname / IP address Priority STARTTLS Certificates Protocol
smtp-mh2.united-arrows.co.jp
35.74.176.241
10
supported
*.united-arrows.co.jp
DANE
missing
PFS
supported
Heartbleed
not vulnerable
Weak ciphers
supported
  • ECDHE_RSA_WITH_RC4_128_SHA
  • SSL_RSA_WITH_RC4_128_SHA
  • TLSv1.2
  • TLSv1.1
  • TLSv1.0
  • SSLv3
12 s
smtp-mh1.united-arrows.co.jp
35.73.99.219
10
supported
pualeml001
DANE
missing
PFS
supported
Heartbleed
not vulnerable
Weak ciphers
supported
  • ECDHE_RSA_WITH_RC4_128_SHA
  • SSL_RSA_WITH_RC4_128_SHA
  • TLSv1.2
  • TLSv1.1
  • TLSv1.0
  • SSLv3
13 s

Outgoing Mails

We have not received any emails from a @mdx.united-arrows.co.jp address so far. Test mail delivery

Certificates

First seen at:

CN=*.united-arrows.co.jp,OU=Legal Division,O=UNITED ARROWS LTD.,L=Shibuya ku,ST=Tokyo,C=JP

Certificate chain
Subject
Country (C)
  • JP
State (ST)
  • Tokyo
Locality (L)
  • Shibuya ku
Organization (O)
  • UNITED ARROWS LTD.
Organizational Unit (OU)
  • Legal Division
Common Name (CN)
  • *.united-arrows.co.jp
Alternative Names
  • *.united-arrows.co.jp
Issuer
Country (C)
  • JP
Organization (O)
  • Cybertrust Japan Co., Ltd.
Common Name (CN)
  • Cybertrust Japan SureServer CA G4
validity period
Not valid before
2021-05-26
Not valid after
2022-05-26
This certifcate has been verified for the following usages:
  • Digital Signature
  • Key Encipherment
  • TLS Web Server Authentication
  • TLS Web Client Authentication
Fingerprints
SHA256
8C:96:19:4E:87:0C:8F:6C:57:4A:82:32:45:09:8A:A0:83:26:24:E4:BD:E5:33:A6:3F:9D:09:52:19:FD:5D:E4
SHA1
C8:9B:37:B1:6E:29:92:07:69:1E:47:B9:0E:0C:43:A4:7C:0E:46:93
X509v3 extensions
certificatePolicies
  • Policy: 1.2.392.200081.1.23.1
  • CPS: https://www.cybertrust.ne.jp/ssl/repository/index.html
  • Policy: 2.23.140.1.2.2
authorityInfoAccess
  • OCSP - URI:http://ssocsp.cybertrust.ne.jp/OcspServer
  • CA Issuers - URI:http://crl.cybertrust.ne.jp/SureServer/ovcag4/ovcag4.crt
authorityKeyIdentifier
  • keyid:62:A7:D2:DA:DE:85:B6:92:F1:85:BC:F6:E8:95:9D:75:A0:FA:4E:1F
crlDistributionPoints
  • Full Name:
  • URI:http://crl.cybertrust.ne.jp/SureServer/ovcag4/cdp.crl
subjectKeyIdentifier
  • 96:62:73:03:17:08:58:72:DF:1D:A7:75:BF:AC:BD:CF:49:84:20:51
ct_precert_scts
  • Signed Certificate Timestamp:
  • Version : v1 (0x0)
  • Log ID : 29:79:BE:F0:9E:39:39:21:F0:56:73:9F:63:A5:77:E5:
  • BE:57:7D:9C:60:0A:F8:F9:4D:5D:26:5C:25:5D:C7:84
  • Timestamp : May 26 07:20:41.667 2021 GMT
  • Extensions: none
  • Signature : ecdsa-with-SHA256
  • 30:45:02:20:11:41:BA:B5:39:B6:EE:47:27:66:15:F5:
  • AE:5E:DD:2D:0B:3B:DC:8E:54:9C:7B:78:26:AF:AF:2A:
  • 32:EE:94:2F:02:21:00:E1:20:3F:5F:86:91:BF:B8:CB:
  • C2:C2:3D:1E:DB:EE:AC:25:18:A8:0D:6E:57:50:60:EA:
  • 17:19:0E:79:90:0B:A2
  • Signed Certificate Timestamp:
  • Version : v1 (0x0)
  • Log ID : 46:A5:55:EB:75:FA:91:20:30:B5:A2:89:69:F4:F3:7D:
  • 11:2C:41:74:BE:FD:49:B8:85:AB:F2:FC:70:FE:6D:47
  • Timestamp : May 26 07:20:43.356 2021 GMT
  • Extensions: none
  • Signature : ecdsa-with-SHA256
  • 30:45:02:20:1F:75:2B:DA:1A:FB:56:A4:91:94:A4:AD:
  • 6D:69:A8:74:C5:C2:16:52:52:9F:A8:A7:98:26:E5:37:
  • 49:49:F1:F5:02:21:00:E1:D7:9C:4E:75:5C:6F:DF:C2:
  • AE:72:82:D4:62:43:05:1C:71:E7:CF:56:E0:BA:0A:6C:
  • CA:00:84:32:50:09:44
  • Signed Certificate Timestamp:
  • Version : v1 (0x0)
  • Log ID : 22:45:45:07:59:55:24:56:96:3F:A1:2F:F1:F7:6D:86:
  • E0:23:26:63:AD:C0:4B:7F:5D:C6:83:5C:6E:E2:0F:02
  • Timestamp : May 26 07:20:44.222 2021 GMT
  • Extensions: none
  • Signature : ecdsa-with-SHA256
  • 30:44:02:20:61:56:04:62:51:AC:2F:96:8B:59:48:6F:
  • 27:6A:FB:04:C0:BE:48:6E:63:20:F6:A2:43:CE:49:57:
  • 89:38:1F:F4:02:20:4D:EF:30:82:00:76:A7:13:64:0D:
  • 05:56:DF:F1:1E:78:76:EB:77:9B:DD:E5:41:56:77:6D:
  • 66:97:E1:30:79:FA
  • Signed Certificate Timestamp:
  • Version : v1 (0x0)
  • Log ID : DF:A5:5E:AB:68:82:4F:1F:6C:AD:EE:B8:5F:4E:3E:5A:
  • EA:CD:A2:12:A4:6A:5E:8E:3B:12:C0:20:44:5C:2A:73
  • Timestamp : May 26 07:20:45.259 2021 GMT
  • Extensions: none
  • Signature : ecdsa-with-SHA256
  • 30:46:02:21:00:D4:93:EC:63:39:13:7F:94:41:7C:69:
  • 72:6A:2A:BD:1E:D8:73:40:96:EB:46:A0:62:56:DF:AE:
  • 19:35:3F:07:E8:02:21:00:98:EE:5D:67:7E:3E:86:81:
  • E3:0A:64:A4:FD:1A:4C:D7:44:08:DE:4B:C7:90:F0:65:
  • 59:8D:34:FF:83:93:4E:F0
First seen at:

emailAddress=root@pualeml001,CN=pualeml001,OU=SomeOrganizationalUnit,O=SomeOrganization,L=SomeCity,ST=SomeState,C=--

Certificate chain
  • pualeml001 (Certificate is self-signed.)
    • remaining
    • 4096 bit
    • sha256WithRSAEncryption
    • Hostname Mismatch
    • Unknown Authority

Subject
Country (C)
  • --
State (ST)
  • SomeState
Locality (L)
  • SomeCity
Organization (O)
  • SomeOrganization
Organizational Unit (OU)
  • SomeOrganizationalUnit
Common Name (CN)
  • pualeml001
Email
  • root@pualeml001
Issuer

Certificate is self-signed.

validity period
Not valid before
2021-06-10
Not valid after
2022-06-10
Fingerprints
SHA256
9E:FE:83:9A:3B:04:2D:14:5F:2A:B5:8E:41:32:66:12:19:C9:8E:0A:9B:00:D2:CA:D0:26:12:16:7C:C1:0D:4D
SHA1
9E:0F:F1:64:A2:64:C3:E9:91:45:EE:08:3B:66:E8:82:0B:16:12:82
X509v3 extensions
subjectKeyIdentifier
  • FF:15:5C:8E:08:E9:B2:05:C7:59:9C:F8:21:8F:B6:AE:2F:25:59:BB
authorityKeyIdentifier
  • keyid:FF:15:5C:8E:08:E9:B2:05:C7:59:9C:F8:21:8F:B6:AE:2F:25:59:BB