SSL check results of mx.juddoc.ru

NEW You can also bulk check multiple servers.

Discover if the mail servers for mx.juddoc.ru can be reached through a secure connection.

To establish a secure connection a mail server has to offer STARTTLS (SSL), a trustworthy SSL certificate, support for the Diffie-Hellman-Algorithm to guarantee Perfect Forward Secrecy and must not be vulnerable against the Heartbleed attack. Futhermore we recommend using end-to-end encryption with GnuPG.

Summary

Report created Tue, 14 Jan 2025 01:30:34 +0000

The mailservers of mx.juddoc.ru can be reached through a secure connection.

Servers

Incoming Mails

These servers are responsible for incoming mails to @mx.juddoc.ru addresses.

Hostname / IP address Priority STARTTLS Certificates Protocol
mx.juddoc.ru
91.244.169.105
10
supported
*.juddoc.ru
DANE
errors
PFS
supported
Heartbleed
not vulnerable
Weak ciphers
not found
  • TLSv1.2
  • TLSv1.1
  • TLSv1.0
  • SSLv3
3 s

Outgoing Mails

We have not received any emails from a @mx.juddoc.ru address so far. Test mail delivery

Certificates

First seen at:

CN=*.juddoc.ru

Certificate chain
  • *.juddoc.ru
    • remaining
    • 2048 bit
    • sha256WithRSAEncryption

      • R11
        • remaining
        • 2048 bit
        • sha256WithRSAEncryption

          • ISRG Root X1 (Certificate is self-signed.)
            • remaining
            • 4096 bit
            • sha256WithRSAEncryption

Subject
Common Name (CN)
  • *.juddoc.ru
Alternative Names
  • *.juddoc.ru
Issuer
Country (C)
  • US
Organization (O)
  • Let's Encrypt
Common Name (CN)
  • R11
validity period
Not valid before
2025-01-11
Not valid after
2025-04-11
This certifcate has been verified for the following usages:
  • Digital Signature
  • Key Encipherment
  • TLS Web Server Authentication
  • TLS Web Client Authentication
Fingerprints
SHA256
33:14:37:AE:65:00:CA:25:63:D2:A8:12:EA:17:18:9F:87:7A:44:37:17:1E:7A:F5:68:E4:DA:63:C1:0F:52:85
SHA1
42:5C:06:9B:22:1E:90:ED:F1:8F:25:95:7A:F8:17:CD:24:3C:11:1F
X509v3 extensions
subjectKeyIdentifier
  • 69:18:F7:8C:AC:41:F5:61:DD:76:91:F3:72:22:86:4F:33:B0:6D:E1
authorityKeyIdentifier
  • keyid:C5:CF:46:A4:EA:F4:C3:C0:7A:6C:95:C4:2D:B0:5E:92:2F:26:E3:B9
authorityInfoAccess
  • OCSP - URI:http://r11.o.lencr.org
  • CA Issuers - URI:http://r11.i.lencr.org/
certificatePolicies
  • Policy: 2.23.140.1.2.1
ct_precert_scts
  • Signed Certificate Timestamp:
  • Version : v1 (0x0)
  • Log ID : E0:92:B3:FC:0C:1D:C8:E7:68:36:1F:DE:61:B9:96:4D:
  • 0A:52:78:19:8A:72:D6:72:C4:B0:4D:A5:6D:6F:54:04
  • Timestamp : Jan 11 21:26:36.485 2025 GMT
  • Extensions: none
  • Signature : ecdsa-with-SHA256
  • 30:44:02:20:21:E4:A5:E5:60:C3:75:81:1B:BE:EB:AC:
  • C8:5F:2B:7B:A7:A2:40:75:7B:D7:48:63:02:01:96:A1:
  • 5E:46:9E:88:02:20:59:61:A1:05:93:D0:B3:76:9E:48:
  • 51:B1:55:0D:EF:DE:4B:53:C3:55:CC:42:DF:77:8A:10:
  • C5:33:83:DE:E8:3E
  • Signed Certificate Timestamp:
  • Version : v1 (0x0)
  • Log ID : CF:11:56:EE:D5:2E:7C:AF:F3:87:5B:D9:69:2E:9B:E9:
  • 1A:71:67:4A:B0:17:EC:AC:01:D2:5B:77:CE:CC:3B:08
  • Timestamp : Jan 11 21:26:36.520 2025 GMT
  • Extensions: none
  • Signature : ecdsa-with-SHA256
  • 30:44:02:20:3E:C7:3C:D3:5B:41:DA:8F:7C:93:75:CC:
  • 28:0B:ED:83:9A:D7:8F:B2:AE:9F:5C:80:02:CB:90:BE:
  • F4:71:78:CA:02:20:7F:81:6D:73:18:C1:09:79:4F:41:
  • 6D:17:66:18:13:B7:E8:7C:C7:76:3D:75:14:4C:98:B3:
  • 7A:B4:69:06:B7:93

DANE

DNS-based Authentication of Named Entities (DANE) is a protocol to allow X.509 certificates to be bound to DNS using TLSA records and DNSSEC.

Name Options DNSSEC Matches
_25._tcp.mx.juddoc.ru
  • DANE-EE: Domain Issued Certificate
  • Use subject public key
  • SHA-256 Hash
error
Debug