SSL check results of mx.rosegarden.cloud

NEW You can also bulk check multiple servers.

Discover if the mail servers for mx.rosegarden.cloud can be reached through a secure connection.

To establish a secure connection a mail server has to offer STARTTLS (SSL), a trustworthy SSL certificate, support for the Diffie-Hellman-Algorithm to guarantee Perfect Forward Secrecy and must not be vulnerable against the Heartbleed attack. Futhermore we recommend using end-to-end encryption with GnuPG.

Summary

Report created Thu, 18 Sep 2025 00:31:08 +0000

The mailservers of mx.rosegarden.cloud can be reached through a secure connection.

Servers

Incoming Mails

These servers are responsible for incoming mails to @mx.rosegarden.cloud addresses.

Hostname / IP address Priority STARTTLS Certificates Protocol
mx.rosegarden.cloud
43.229.150.26
-
supported
mx.rosegarden.cloud
DANE
valid
PFS
supported
Heartbleed
not vulnerable
Weak ciphers
not found
  • TLSv1.2
  • SSLv3
16 s

Outgoing Mails

We have not received any emails from a @mx.rosegarden.cloud address so far. Test mail delivery

Certificates

First seen at:

CN=mx.rosegarden.cloud

Certificate chain
  • mx.rosegarden.cloud
    • remaining
    • 4096 bit
    • sha256WithRSAEncryption

      • R13
        • remaining
        • 2048 bit
        • sha256WithRSAEncryption

          • ISRG Root X1 (Certificate is self-signed.)
            • remaining
            • 4096 bit
            • sha256WithRSAEncryption

Subject
Common Name (CN)
  • mx.rosegarden.cloud
Alternative Names
  • autoconfig.rosegarden.cloud
  • autodiscover.rosegarden.cloud
  • mta-sts.rosegarden.cloud
  • mx.rosegarden.cloud
Issuer
Country (C)
  • US
Organization (O)
  • Let's Encrypt
Common Name (CN)
  • R13
validity period
Not valid before
2025-09-08
Not valid after
2025-12-07
This certifcate has been verified for the following usages:
  • Digital Signature
  • Key Encipherment
  • TLS Web Server Authentication
  • TLS Web Client Authentication
Fingerprints
SHA256
46:51:C6:5C:A6:E9:2C:9C:F2:61:67:DF:83:A4:F1:B8:F7:09:C2:F2:BA:24:5D:BB:95:78:E2:AA:35:43:E4:F4
SHA1
2E:EC:6A:93:CD:1D:AD:9E:23:45:20:A8:79:1B:87:58:2C:22:14:4C
X509v3 extensions
subjectKeyIdentifier
  • B4:AE:5A:B1:89:2B:61:69:F6:24:09:67:D2:F3:01:5F:B6:FF:53:63
authorityKeyIdentifier
  • keyid:E7:AB:9F:0F:2C:33:A0:53:D3:5E:4F:78:C8:B2:84:0E:3B:D6:92:33
authorityInfoAccess
  • CA Issuers - URI:http://r13.i.lencr.org/
certificatePolicies
  • Policy: 2.23.140.1.2.1
crlDistributionPoints
  • Full Name:
  • URI:http://r13.c.lencr.org/93.crl
ct_precert_scts
  • Signed Certificate Timestamp:
  • Version : v1 (0x0)
  • Log ID : A4:42:C5:06:49:60:61:54:8F:0F:D4:EA:9C:FB:7A:2D:
  • 26:45:4D:87:A9:7F:2F:DF:45:59:F6:27:4F:3A:84:54
  • Timestamp : Sep 8 08:58:02.864 2025 GMT
  • Extensions: none
  • Signature : ecdsa-with-SHA256
  • 30:45:02:21:00:B0:26:4A:0E:4A:36:19:F5:CD:F5:62:
  • 51:C7:73:FC:5E:6E:D8:83:45:85:99:62:19:35:91:8E:
  • 1E:06:6B:37:19:02:20:75:C8:18:2A:78:24:A8:16:D6:
  • 03:5F:54:B9:3A:FF:C1:CF:CB:83:91:E2:88:5A:54:B4:
  • BB:BC:26:62:F2:6E:06
  • Signed Certificate Timestamp:
  • Version : v1 (0x0)
  • Log ID : CC:FB:0F:6A:85:71:09:65:FE:95:9B:53:CE:E9:B2:7C:
  • 22:E9:85:5C:0D:97:8D:B6:A9:7E:54:C0:FE:4C:0D:B0
  • Timestamp : Sep 8 08:58:02.888 2025 GMT
  • Extensions: none
  • Signature : ecdsa-with-SHA256
  • 30:46:02:21:00:BA:69:D9:40:A5:E7:3F:C3:61:2E:E2:
  • AC:3B:43:F8:B5:74:34:93:DB:05:2B:19:1D:EE:FD:C2:
  • 15:18:3B:B5:88:02:21:00:9C:F7:82:4A:2B:09:8C:C5:
  • 3A:38:E7:A7:12:AA:E1:C0:08:63:38:5C:1F:7E:14:1E:
  • 31:F7:25:FE:CF:54:2C:FE

DANE

DNS-based Authentication of Named Entities (DANE) is a protocol to allow X.509 certificates to be bound to DNS using TLSA records and DNSSEC.

Name Options DNSSEC Matches
_25._tcp.mx.rosegarden.cloud
  • DANE-EE: Domain Issued Certificate
  • Use subject public key
  • SHA-256 Hash
valid
valid