SSL check results of nexlink.ae

NEW You can also bulk check multiple servers.

Discover if the mail servers for nexlink.ae can be reached through a secure connection.

To establish a secure connection a mail server has to offer STARTTLS (SSL), a trustworthy SSL certificate, support for the Diffie-Hellman-Algorithm to guarantee Perfect Forward Secrecy and must not be vulnerable against the Heartbleed attack. Futhermore we recommend using end-to-end encryption with GnuPG.

Summary

Report created Tue, 23 Apr 2024 00:16:07 +0000

We can not guarantee a secure connection to the mailservers of nexlink.ae!

Please contact the operator of nexlink.ae and ask him or her to solve this problem. This result stays accessible under the following address:

/mailservers/nexlink.ae

Servers

Incoming Mails

These servers are responsible for incoming mails to @nexlink.ae addresses.

Hostname / IP address Priority STARTTLS Certificates Protocol
mx.zoho.com
204.141.43.44
10
supported
*.zoho.com
DANE
missing
PFS
supported
Heartbleed
not vulnerable
Weak ciphers
not found
  • TLSv1.2
  • TLSv1.0
  • SSLv3
17 s
mx2.zoho.com
136.143.183.44
20
supported
*.zoho.com
DANE
missing
PFS
supported
Heartbleed
not vulnerable
Weak ciphers
not found
  • TLSv1.2
  • TLSv1.1
  • TLSv1.0
  • SSLv3
9 s
mx3.zoho.com
204.141.43.44
30
supported
*.zoho.com
DANE
missing
PFS
supported
Heartbleed
not vulnerable
Weak ciphers
not found
  • TLSv1.2
  • TLSv1.1
  • TLSv1.0
  • SSLv3
17 s
smtp.google.com
2a00:1450:400c:c06::1b
Results incomplete
100
supported
not checked
DANE
missing
PFS
supported
Heartbleed
not vulnerable
Weak ciphers
not found
  • TLSv1.2
  • SSLv3
1 s
smtp.google.com
2a00:1450:400c:c0d::1b
Results incomplete
100
supported
not checked
DANE
missing
PFS
supported
Heartbleed
not vulnerable
Weak ciphers
not found
  • TLSv1.2
  • SSLv3
1 s
smtp.google.com
2a00:1450:400c:c0d::1a
Results incomplete
100
supported
not checked
DANE
missing
PFS
supported
Heartbleed
not vulnerable
Weak ciphers
not found
  • TLSv1.2
  • SSLv3
1 s
smtp.google.com
2a00:1450:400c:c1d::1a
Results incomplete
100
supported
not checked
DANE
missing
PFS
supported
Heartbleed
not vulnerable
Weak ciphers
not found
  • TLSv1.2
  • SSLv3
1 s
smtp.google.com
66.102.1.27
Results incomplete
100
supported
not checked
DANE
missing
PFS
supported
Heartbleed
not vulnerable
Weak ciphers
not found
  • TLSv1.2
  • SSLv3
1 s
smtp.google.com
142.250.110.27
Results incomplete
100
supported
not checked
DANE
missing
PFS
supported
Heartbleed
not vulnerable
Weak ciphers
not found
  • TLSv1.2
  • SSLv3
1 s
smtp.google.com
142.250.110.26
Results incomplete
100
supported
not checked
DANE
missing
PFS
supported
Heartbleed
not vulnerable
Weak ciphers
not found
  • TLSv1.2
  • SSLv3
1 s
smtp.google.com
142.251.168.26
Results incomplete
100
supported
not checked
DANE
missing
PFS
supported
Heartbleed
not vulnerable
Weak ciphers
not found
  • TLSv1.2
  • SSLv3
1 s
smtp.google.com
142.251.168.27
Results incomplete
100
supported
not checked
DANE
missing
PFS
supported
Heartbleed
not vulnerable
Weak ciphers
not found
  • TLSv1.2
  • SSLv3
1 s
mail.nexlink.ae
3.10.10.83
Results incomplete
200
unsupported
not checked
DANE
missing
PFS
not checked
Heartbleed
not checked
Weak ciphers
not checked
11 s

Outgoing Mails

We have not received any emails from a @nexlink.ae address so far. Test mail delivery

Certificates

First seen at:

CN=*.zoho.com

Certificate chain
Subject
Common Name (CN)
  • *.zoho.com
Alternative Names
  • *.zoho.com
  • zoho.com
Issuer
Country (C)
  • US
Organization (O)
  • DigiCert Inc
Organizational Unit (OU)
  • www.digicert.com
Common Name (CN)
  • Thawte TLS RSA CA G1
validity period
Not valid before
2024-01-29
Not valid after
2025-01-29
This certifcate has been verified for the following usages:
  • Digital Signature
  • Key Encipherment
  • TLS Web Server Authentication
  • TLS Web Client Authentication
Fingerprints
SHA256
6E:76:5C:2C:7A:AD:05:EA:A3:25:FF:85:43:34:45:16:47:D2:BF:B4:D9:94:A1:3F:BE:CE:D4:9E:2E:B1:F7:59
SHA1
A6:FC:56:BF:DC:A1:F6:A2:30:86:75:CC:CC:0A:2D:B7:B5:BE:8B:88
X509v3 extensions
authorityKeyIdentifier
  • keyid:A5:8C:FE:32:CC:EB:0F:2C:D4:19:C6:08:B8:00:24:88:5D:C3:C5:B7
subjectKeyIdentifier
  • F2:34:35:4E:B1:BF:7C:F8:70:60:22:5B:EE:91:50:E2:5C:B8:BF:76
certificatePolicies
  • Policy: 2.23.140.1.2.1
  • CPS: http://www.digicert.com/CPS
crlDistributionPoints
  • Full Name:
  • URI:http://cdp.thawte.com/ThawteTLSRSACAG1.crl
authorityInfoAccess
  • OCSP - URI:http://status.thawte.com
  • CA Issuers - URI:http://cacerts.thawte.com/ThawteTLSRSACAG1.crt
ct_precert_scts
  • Signed Certificate Timestamp:
  • Version : v1 (0x0)
  • Log ID : 4E:75:A3:27:5C:9A:10:C3:38:5B:6C:D4:DF:3F:52:EB:
  • 1D:F0:E0:8E:1B:8D:69:C0:B1:FA:64:B1:62:9A:39:DF
  • Timestamp : Jan 29 03:09:38.134 2024 GMT
  • Extensions: none
  • Signature : ecdsa-with-SHA256
  • 30:45:02:21:00:B0:56:B6:4E:17:F5:65:FE:06:F8:D5:
  • 2A:58:48:D8:FB:D9:27:71:38:ED:6D:C9:00:83:25:E6:
  • 26:AD:91:CD:43:02:20:2C:E9:BA:B9:5F:01:23:42:F5:
  • 38:6E:60:75:07:94:8F:D2:C8:25:F3:4B:D4:51:AE:B8:
  • F4:F0:12:00:DF:48:02
  • Signed Certificate Timestamp:
  • Version : v1 (0x0)
  • Log ID : 7D:59:1E:12:E1:78:2A:7B:1C:61:67:7C:5E:FD:F8:D0:
  • 87:5C:14:A0:4E:95:9E:B9:03:2F:D9:0E:8C:2E:79:B8
  • Timestamp : Jan 29 03:09:38.104 2024 GMT
  • Extensions: none
  • Signature : ecdsa-with-SHA256
  • 30:45:02:20:2D:D7:2A:8F:9A:A9:AC:6C:65:69:95:E5:
  • 24:04:DB:B4:DF:EE:78:1F:CA:0B:C0:52:6D:9F:02:48:
  • BD:5D:46:9E:02:21:00:8A:52:99:3D:B2:0E:6B:F2:48:
  • F1:66:B0:DD:F7:27:4F:61:A5:E3:C9:17:9A:D9:B9:93:
  • 10:12:AE:6B:8F:C3:58
  • Signed Certificate Timestamp:
  • Version : v1 (0x0)
  • Log ID : E6:D2:31:63:40:77:8C:C1:10:41:06:D7:71:B9:CE:C1:
  • D2:40:F6:96:84:86:FB:BA:87:32:1D:FD:1E:37:8E:50
  • Timestamp : Jan 29 03:09:38.142 2024 GMT
  • Extensions: none
  • Signature : ecdsa-with-SHA256
  • 30:45:02:20:6D:28:EC:27:14:2B:5F:59:3A:D2:E5:CA:
  • CA:54:07:6A:89:DD:37:95:3F:7B:52:C8:A4:00:A1:51:
  • C1:3A:5C:CD:02:21:00:F5:D4:FE:2F:15:8B:42:1B:83:
  • E6:AC:F5:54:97:BF:35:85:05:0E:48:09:0B:FC:99:6B:
  • B8:EB:AF:56:63:40:BA