SSL check results of mvtec.com

NEW You can also bulk check multiple servers.

Discover if the mail servers for mvtec.com can be reached through a secure connection.

To establish a secure connection a mail server has to offer STARTTLS (SSL), a trustworthy SSL certificate, support for the Diffie-Hellman-Algorithm to guarantee Perfect Forward Secrecy and must not be vulnerable against the Heartbleed attack. Futhermore we recommend using end-to-end encryption with GnuPG.

Summary

Report created Mon, 25 May 2020 00:30:42 +0000

We can not guarantee a secure connection to the mailservers of mvtec.com!

Please contact the operator of mvtec.com and ask him or her to solve this problem. This result stays accessible under the following address:

/mailservers/mvtec.com

Servers

Incoming Mails

These servers are responsible for incoming mails to @mvtec.com addresses.

Hostname / IP address Priority STARTTLS Certificates Protocol
buffoni.mvtec.com
88.217.251.116
50
supported
*.mvtec.com
DANE
missing
PFS
supported
Heartbleed
not vulnerable
Weak ciphers
supported
  • ECDHE_RSA_WITH_RC4_128_SHA
  • SSL_RSA_WITH_RC4_128_SHA
  • TLSv1.2
  • TLSv1.1
  • TLSv1.0
  • SSLv3
12 s
mx.mvtec-adm.net
2a03:2a00:1300:1:a800::10
Results incomplete
100 not checked
DANE
missing
PFS
not checked
Heartbleed
not checked
Weak ciphers
not checked
1 s
mx.mvtec-adm.net
31.220.127.175
100
supported
mvtec-adm.net
DANE
missing
PFS
supported
Heartbleed
not vulnerable
Weak ciphers
supported
  • SSL_RSA_WITH_RC4_128_SHA
  • TLSv1.2
  • TLSv1.1
  • TLSv1.0
  • SSLv3
12 s
mail.mvtec.com
88.217.251.123
110
supported
*.mvtec.com
DANE
missing
PFS
supported
Heartbleed
not vulnerable
Weak ciphers
supported
  • SSL_RSA_WITH_RC4_128_SHA
  • SSL_RSA_EXPORT_WITH_RC4_40_MD5
  • TLSv1.0
  • SSLv3
2 s

Outgoing Mails

We have received emails from these servers with @mvtec.com sender addresses. Test mail delivery

Host TLS Version & Cipher
buffoni.mvtec.com (88.217.251.116)
TLSv1.2 AECDH-AES256-SHA

Certificates

First seen at:

CN=mvtec-adm.net

Certificate chain
  • mvtec-adm.net
    • remaining
    • 2048 bit
    • sha256WithRSAEncryption
    • Hostname Mismatch
    • Expired

Subject
Common Name (CN)
  • mvtec-adm.net
Alternative Names
  • mvtec-adm.net
Issuer
Country (C)
  • US
Organization (O)
  • Let's Encrypt
Common Name (CN)
  • Let's Encrypt Authority X3
validity period
Not valid before
2017-06-22
Not valid after
2017-09-20
This certifcate has been verified for the following usages:
  • Digital Signature
  • Key Encipherment
  • TLS Web Server Authentication
  • TLS Web Client Authentication
Fingerprints
SHA256
CC:24:6B:A7:CB:41:2D:29:3B:8C:91:26:BA:25:5E:C6:11:68:5D:59:B7:54:C2:9D:6A:75:E8:77:67:28:CA:84
SHA1
32:83:92:1C:F9:8D:05:09:C0:49:90:5E:B5:0D:7C:C1:A3:F6:99:53
X509v3 extensions
subjectKeyIdentifier
  • AE:0D:93:CB:2C:58:43:74:B7:B4:24:71:29:62:CF:C0:2A:FC:DF:BD
authorityKeyIdentifier
  • keyid:A8:4A:6A:63:04:7D:DD:BA:E6:D1:39:B7:A6:45:65:EF:F3:A8:EC:A1
authorityInfoAccess
  • OCSP - URI:http://ocsp.int-x3.letsencrypt.org
  • CA Issuers - URI:http://cert.int-x3.letsencrypt.org/
certificatePolicies
  • Policy: 2.23.140.1.2.1
  • Policy: 1.3.6.1.4.1.44947.1.1.1
  • CPS: http://cps.letsencrypt.org
  • User Notice:
  • Explicit Text: This Certificate may only be relied upon by Relying Parties and only in accordance with the Certificate Policy found at https://letsencrypt.org/repository/
First seen at:

CN=*.mvtec.com

Certificate chain
Subject
Common Name (CN)
  • *.mvtec.com
Alternative Names
  • *.mvtec.com
  • mvtec.com
Issuer
Country (C)
  • US
Organization (O)
  • DigiCert Inc
Organizational Unit (OU)
  • www.digicert.com
Common Name (CN)
  • Thawte TLS RSA CA G1
validity period
Not valid before
2019-10-30
Not valid after
2021-12-28
This certifcate has been verified for the following usages:
  • Digital Signature
  • Key Encipherment
  • TLS Web Server Authentication
  • TLS Web Client Authentication
Fingerprints
SHA256
6B:FD:E1:70:4C:1C:A6:6E:C1:45:E8:29:60:66:E5:B0:6E:C5:B1:E5:DE:D2:12:5A:71:F4:34:21:D0:C1:2B:72
SHA1
04:3A:C9:C8:43:F0:19:C4:2D:C1:34:7F:09:46:0D:14:8E:5B:48:C3
X509v3 extensions
authorityKeyIdentifier
  • keyid:A5:8C:FE:32:CC:EB:0F:2C:D4:19:C6:08:B8:00:24:88:5D:C3:C5:B7
subjectKeyIdentifier
  • 0B:27:A9:3E:B1:FA:33:D5:79:86:F4:7E:40:57:23:B8:A9:E5:7D:02
crlDistributionPoints
  • Full Name:
  • URI:http://cdp.thawte.com/ThawteTLSRSACAG1.crl
certificatePolicies
  • Policy: 2.16.840.1.114412.1.2
  • CPS: https://www.digicert.com/CPS
  • Policy: 2.23.140.1.2.1
authorityInfoAccess
  • OCSP - URI:http://status.thawte.com
  • CA Issuers - URI:http://cacerts.thawte.com/ThawteTLSRSACAG1.crt
ct_precert_scts
  • Signed Certificate Timestamp:
  • Version : v1 (0x0)
  • Log ID : A4:B9:09:90:B4:18:58:14:87:BB:13:A2:CC:67:70:0A:
  • 3C:35:98:04:F9:1B:DF:B8:E3:77:CD:0E:C8:0D:DC:10
  • Timestamp : Oct 30 14:04:44.231 2019 GMT
  • Extensions: none
  • Signature : ecdsa-with-SHA256
  • 30:46:02:21:00:C6:2B:BE:3A:8C:5A:39:1C:C7:4B:63:
  • 7F:C3:D7:1B:9C:8B:81:6C:E8:6C:59:24:28:97:08:72:
  • F1:3F:2A:83:2C:02:21:00:E5:C8:86:EC:A9:DD:6C:A6:
  • 06:32:9C:04:18:33:F5:81:F9:48:FC:AB:88:FE:2E:2C:
  • 8C:E3:FB:26:A8:AE:00:67
  • Signed Certificate Timestamp:
  • Version : v1 (0x0)
  • Log ID : 87:75:BF:E7:59:7C:F8:8C:43:99:5F:BD:F3:6E:FF:56:
  • 8D:47:56:36:FF:4A:B5:60:C1:B4:EA:FF:5E:A0:83:0F
  • Timestamp : Oct 30 14:04:44.377 2019 GMT
  • Extensions: none
  • Signature : ecdsa-with-SHA256
  • 30:46:02:21:00:84:7D:D8:DB:DC:4F:82:A6:A3:8B:8A:
  • EA:C7:65:86:65:4D:5D:E1:3C:A1:B4:AB:F2:32:B3:BA:
  • DE:8F:65:68:55:02:21:00:94:B0:70:53:0F:D4:6B:3F:
  • 01:62:9A:B9:31:42:9B:10:77:DF:34:76:40:DA:34:14:
  • CA:FA:AF:D1:29:2C:D7:9B
  • Signed Certificate Timestamp:
  • Version : v1 (0x0)
  • Log ID : 44:94:65:2E:B0:EE:CE:AF:C4:40:07:D8:A8:FE:28:C0:
  • DA:E6:82:BE:D8:CB:31:B5:3F:D3:33:96:B5:B6:81:A8
  • Timestamp : Oct 30 14:04:44.144 2019 GMT
  • Extensions: none
  • Signature : ecdsa-with-SHA256
  • 30:44:02:20:56:78:24:89:EE:33:86:EB:86:F2:42:E0:
  • F1:54:31:43:12:3F:09:56:BA:A7:21:E3:24:F9:96:C6:
  • 19:51:E0:F8:02:20:3A:47:6F:63:C7:7E:E1:20:45:5D:
  • 83:83:80:B3:5E:6A:8F:32:76:82:BC:9C:11:2A:F3:FB:
  • 0B:15:EA:92:81:C9