SSL check results of orangj.de

NEW You can also bulk check multiple servers.

Discover if the mail servers for orangj.de can be reached through a secure connection.

To establish a secure connection a mail server has to offer STARTTLS (SSL), a trustworthy SSL certificate, support for the Diffie-Hellman-Algorithm to guarantee Perfect Forward Secrecy and must not be vulnerable against the Heartbleed attack. Futhermore we recommend using end-to-end encryption with GnuPG.

Summary

Report created Thu, 21 Nov 2024 01:30:07 +0000

The mailservers of orangj.de can be reached through a secure connection.

Servers

Incoming Mails

These servers are responsible for incoming mails to @orangj.de addresses.

Hostname / IP address Priority STARTTLS Certificates Protocol
mail.orangj.de
2a0c:8900:2:a88f::1
10
supported
mail.dpsg-willich.de
DANE
missing
PFS
supported
Heartbleed
not vulnerable
Weak ciphers
not found
  • TLSv1.2
  • SSLv3
5 s
mail.orangj.de
45.86.125.113
10
supported
mail.dpsg-willich.de
DANE
missing
PFS
supported
Heartbleed
not vulnerable
Weak ciphers
not found
  • TLSv1.2
  • SSLv3
4 s

Outgoing Mails

We have not received any emails from a @orangj.de address so far. Test mail delivery

Certificates

First seen at:

CN=mail.dpsg-willich.de

Certificate chain
  • mail.dpsg-willich.de
    • remaining
    • 256 bit
    • ecdsa-with-SHA384

      • E5
        • remaining
        • 384 bit
        • sha256WithRSAEncryption

          • ISRG Root X1 (Certificate is self-signed.)
            • remaining
            • 4096 bit
            • sha256WithRSAEncryption

Subject
Common Name (CN)
  • mail.dpsg-willich.de
Alternative Names
  • mail.dpsg-willich.de
  • mail.orangj.de
Issuer
Country (C)
  • US
Organization (O)
  • Let's Encrypt
Common Name (CN)
  • E5
validity period
Not valid before
2024-11-20
Not valid after
2025-02-18
This certifcate has been verified for the following usages:
  • Digital Signature
  • TLS Web Server Authentication
  • TLS Web Client Authentication
Fingerprints
SHA256
D9:6A:66:78:60:F3:7B:42:07:4B:73:75:42:25:39:B8:9E:06:4B:02:25:0F:B5:4D:DA:C8:20:84:E6:DF:B4:6B
SHA1
A3:4A:B4:E5:B4:79:C2:22:51:94:0C:2A:F4:78:FA:B9:49:49:63:70
X509v3 extensions
subjectKeyIdentifier
  • 11:C0:8C:56:C3:A6:FB:64:22:14:D9:04:AF:77:DE:BE:19:26:49:57
authorityKeyIdentifier
  • keyid:9F:2B:5F:CF:3C:21:4F:9D:04:B7:ED:2B:2C:C4:C6:70:8B:D2:D7:0D
authorityInfoAccess
  • OCSP - URI:http://e5.o.lencr.org
  • CA Issuers - URI:http://e5.i.lencr.org/
certificatePolicies
  • Policy: 2.23.140.1.2.1
ct_precert_scts
  • Signed Certificate Timestamp:
  • Version : v1 (0x0)
  • Log ID : E6:D2:31:63:40:77:8C:C1:10:41:06:D7:71:B9:CE:C1:
  • D2:40:F6:96:84:86:FB:BA:87:32:1D:FD:1E:37:8E:50
  • Timestamp : Nov 20 21:49:40.566 2024 GMT
  • Extensions: none
  • Signature : ecdsa-with-SHA256
  • 30:45:02:21:00:C7:09:FC:84:39:69:10:49:F1:AB:0C:
  • 0E:BF:8E:9C:4A:55:DE:BA:FF:2C:A3:B5:96:D4:64:52:
  • AF:B4:E2:C7:7C:02:20:57:2E:52:15:FA:F7:0B:7A:34:
  • 27:14:5F:27:85:77:E5:E1:85:36:F7:10:7D:12:4C:FC:
  • 26:BF:89:28:5F:04:D1
  • Signed Certificate Timestamp:
  • Version : v1 (0x0)
  • Log ID : E0:92:B3:FC:0C:1D:C8:E7:68:36:1F:DE:61:B9:96:4D:
  • 0A:52:78:19:8A:72:D6:72:C4:B0:4D:A5:6D:6F:54:04
  • Timestamp : Nov 20 21:49:40.568 2024 GMT
  • Extensions: none
  • Signature : ecdsa-with-SHA256
  • 30:45:02:21:00:D5:58:5D:32:A3:DA:67:AF:71:97:70:
  • ED:3E:75:DE:E1:B8:84:9E:05:29:EB:80:B8:62:4D:A4:
  • EB:D5:1C:FD:49:02:20:18:D0:3A:95:B5:D8:1B:78:BF:
  • 17:38:3C:5C:18:1B:98:E2:68:70:62:A5:DC:B1:59:AD:
  • 36:83:84:60:F0:0C:C2