SSL check results of mnet.pt

NEW You can also bulk check multiple servers.

Discover if the mail servers for mnet.pt can be reached through a secure connection.

To establish a secure connection a mail server has to offer STARTTLS (SSL), a trustworthy SSL certificate, support for the Diffie-Hellman-Algorithm to guarantee Perfect Forward Secrecy and must not be vulnerable against the Heartbleed attack. Futhermore we recommend using end-to-end encryption with GnuPG.

Summary

Report created Wed, 27 Mar 2024 05:41:36 +0000

We can not guarantee a secure connection to the mailservers of mnet.pt!

Please contact the operator of mnet.pt and ask him or her to solve this problem. This result stays accessible under the following address:

/mailservers/mnet.pt

Servers

Incoming Mails

These servers are responsible for incoming mails to @mnet.pt addresses.

Hostname / IP address Priority STARTTLS Certificates Protocol
mail.mnet.pt
2001:bc8:3e16:200::101
Results incomplete
10
unsupported
not checked
DANE
errors
PFS
not checked
Heartbleed
not checked
Weak ciphers
not checked
1 s
mail.mnet.pt
212.129.1.96
10
supported
mail.mnet.pt
DANE
valid
PFS
supported
Heartbleed
not vulnerable
Weak ciphers
not found
  • TLSv1.2
  • SSLv3
2 s
mx3.mnet.pt
2001:41d0:700:3d94::77
Results incomplete
99
unsupported
not checked
DANE
errors
PFS
not checked
Heartbleed
not checked
Weak ciphers
not checked
4 s
mx3.mnet.pt
51.77.70.107
Results incomplete
99
supported
mx3.mnet.pt
DANE
valid
PFS
supported
Heartbleed
not vulnerable
Weak ciphers
not found
  • TLSv1.2
  • SSLv3
1 s

Outgoing Mails

We have not received any emails from a @mnet.pt address so far. Test mail delivery

Certificates

First seen at:

CN=mail.mnet.pt

Certificate chain
  • mail.mnet.pt
    • remaining
    • 384 bit
    • sha256WithRSAEncryption

      • R3
        • remaining
        • 2048 bit
        • sha256WithRSAEncryption

          • ISRG Root X1 (Certificate is self-signed.)
            • remaining
            • 4096 bit
            • sha256WithRSAEncryption

Subject
Common Name (CN)
  • mail.mnet.pt
Alternative Names
  • mail.mnet.pt
Issuer
Country (C)
  • US
Organization (O)
  • Let's Encrypt
Common Name (CN)
  • R3
validity period
Not valid before
2024-02-17
Not valid after
2024-05-17
This certifcate has been verified for the following usages:
  • Digital Signature
  • TLS Web Server Authentication
  • TLS Web Client Authentication
Fingerprints
SHA256
2B:47:0D:16:04:68:D7:69:A8:1F:6A:A8:08:3C:19:68:92:0E:E4:D4:43:B5:8D:65:92:5A:24:00:3C:8B:E9:51
SHA1
F3:BC:B2:7E:A6:D9:33:5B:0F:F6:E9:4E:DD:11:E8:F9:A9:07:9B:1B
X509v3 extensions
subjectKeyIdentifier
  • CE:70:28:30:D2:CA:5B:FF:32:EC:B8:4C:59:27:8B:15:D6:34:9D:D7
authorityKeyIdentifier
  • keyid:14:2E:B3:17:B7:58:56:CB:AE:50:09:40:E6:1F:AF:9D:8B:14:C2:C6
authorityInfoAccess
  • OCSP - URI:http://r3.o.lencr.org
  • CA Issuers - URI:http://r3.i.lencr.org/
certificatePolicies
  • Policy: 2.23.140.1.2.1
ct_precert_scts
  • Signed Certificate Timestamp:
  • Version : v1 (0x0)
  • Log ID : 3B:53:77:75:3E:2D:B9:80:4E:8B:30:5B:06:FE:40:3B:
  • 67:D8:4F:C3:F4:C7:BD:00:0D:2D:72:6F:E1:FA:D4:17
  • Timestamp : Feb 17 03:16:41.213 2024 GMT
  • Extensions: none
  • Signature : ecdsa-with-SHA256
  • 30:45:02:21:00:D8:42:80:E0:AD:DA:47:D3:0B:C6:1D:
  • DC:07:5F:64:41:11:87:B8:15:48:62:81:96:D7:3C:CF:
  • E8:DD:61:45:9E:02:20:25:B3:88:E0:DB:58:0A:4A:F2:
  • 0D:2F:F0:1B:B7:DC:15:3B:A7:2B:24:B8:13:EA:41:88:
  • 05:4E:5D:C4:62:C0:8C
  • Signed Certificate Timestamp:
  • Version : v1 (0x0)
  • Log ID : 76:FF:88:3F:0A:B6:FB:95:51:C2:61:CC:F5:87:BA:34:
  • B4:A4:CD:BB:29:DC:68:42:0A:9F:E6:67:4C:5A:3A:74
  • Timestamp : Feb 17 03:16:41.271 2024 GMT
  • Extensions: none
  • Signature : ecdsa-with-SHA256
  • 30:44:02:20:5F:84:F9:B4:DF:2F:08:9C:89:40:C3:39:
  • 08:B1:88:DB:BB:26:42:52:41:2E:2D:24:97:E0:90:B0:
  • A9:31:27:E6:02:20:0D:00:81:07:52:13:BA:6A:2C:0D:
  • E4:37:6B:5B:9D:E7:78:0D:8C:19:A6:A8:C5:17:35:14:
  • 7A:B3:66:6A:C1:09
First seen at:

CN=mx3.mnet.pt

Certificate chain
  • mx3.mnet.pt
    • remaining
    • 384 bit
    • sha256WithRSAEncryption

      • R3
        • remaining
        • 2048 bit
        • sha256WithRSAEncryption

          • ISRG Root X1 (Certificate is self-signed.)
            • remaining
            • 4096 bit
            • sha256WithRSAEncryption

Subject
Common Name (CN)
  • mx3.mnet.pt
Alternative Names
  • mx3.mnet.pt
Issuer
Country (C)
  • US
Organization (O)
  • Let's Encrypt
Common Name (CN)
  • R3
validity period
Not valid before
2024-01-23
Not valid after
2024-04-22
This certifcate has been verified for the following usages:
  • Digital Signature
  • TLS Web Server Authentication
  • TLS Web Client Authentication
Fingerprints
SHA256
7F:AB:00:FA:22:1D:3C:95:D1:5F:9E:52:BC:7C:93:45:24:C4:04:C3:0A:B1:E0:80:AD:4A:93:68:C1:19:6B:C3
SHA1
F4:EC:9D:45:0E:DB:DD:75:77:09:3D:D9:B2:06:91:90:9C:E0:9A:9F
X509v3 extensions
subjectKeyIdentifier
  • 7F:18:B3:EE:B5:72:1A:96:C3:53:9B:4F:AE:59:AD:CD:D4:A2:18:45
authorityKeyIdentifier
  • keyid:14:2E:B3:17:B7:58:56:CB:AE:50:09:40:E6:1F:AF:9D:8B:14:C2:C6
authorityInfoAccess
  • OCSP - URI:http://r3.o.lencr.org
  • CA Issuers - URI:http://r3.i.lencr.org/
certificatePolicies
  • Policy: 2.23.140.1.2.1
ct_precert_scts
  • Signed Certificate Timestamp:
  • Version : v1 (0x0)
  • Log ID : 48:B0:E3:6B:DA:A6:47:34:0F:E5:6A:02:FA:9D:30:EB:
  • 1C:52:01:CB:56:DD:2C:81:D9:BB:BF:AB:39:D8:84:73
  • Timestamp : Jan 23 12:16:15.411 2024 GMT
  • Extensions: none
  • Signature : ecdsa-with-SHA256
  • 30:43:02:1F:5C:CB:75:3A:D9:F7:FD:EA:10:95:32:0F:
  • 30:30:8D:2D:88:3B:D6:74:D3:D7:A7:E4:21:78:E1:A3:
  • E0:99:BF:02:20:56:B1:14:14:F1:E6:8B:47:43:2F:FF:
  • 8B:53:31:3C:54:46:44:4F:AE:A1:1F:34:7E:11:94:87:
  • D6:FE:72:5C:FA
  • Signed Certificate Timestamp:
  • Version : v1 (0x0)
  • Log ID : 76:FF:88:3F:0A:B6:FB:95:51:C2:61:CC:F5:87:BA:34:
  • B4:A4:CD:BB:29:DC:68:42:0A:9F:E6:67:4C:5A:3A:74
  • Timestamp : Jan 23 12:16:15.559 2024 GMT
  • Extensions: none
  • Signature : ecdsa-with-SHA256
  • 30:45:02:21:00:86:B4:3C:48:EC:95:AB:97:92:21:E5:
  • 8F:8F:4A:9A:B8:0A:6D:1A:92:2D:E1:21:36:F5:5B:06:
  • 26:83:18:6B:6C:02:20:67:13:28:73:89:92:C0:F9:F6:
  • 67:7D:4C:BB:C4:4A:7D:51:12:01:77:33:2A:B7:C2:AF:
  • A3:02:6C:47:EC:55:D3

DANE

DNS-based Authentication of Named Entities (DANE) is a protocol to allow X.509 certificates to be bound to DNS using TLSA records and DNSSEC.

Name Options DNSSEC Matches
_25._tcp.mail.mnet.pt
  • DANE-EE: Domain Issued Certificate
  • Use subject public key
  • SHA-256 Hash
valid
valid
_25._tcp.mx3.mnet.pt
  • DANE-EE: Domain Issued Certificate
  • Use subject public key
  • SHA-256 Hash
valid
valid