SSL check results of plus.pl

NEW You can also bulk check multiple servers.

Discover if the mail servers for plus.pl can be reached through a secure connection.

To establish a secure connection a mail server has to offer STARTTLS (SSL), a trustworthy SSL certificate, support for the Diffie-Hellman-Algorithm to guarantee Perfect Forward Secrecy and must not be vulnerable against the Heartbleed attack. Futhermore we recommend using end-to-end encryption with GnuPG.

Summary

Report created Sun, 08 Dec 2019 07:19:20 +0000

The mailservers of plus.pl can be reached through a secure connection.

Servers

Incoming Mails

These servers are responsible for incoming mails to @plus.pl addresses.

Hostname / IP address Priority STARTTLS Certificates Protocol
plusmx4.polkomtel.com.pl
212.2.96.54
10
supported
plusmx4.polkomtel.com.pl
DANE
missing
PFS
supported
Heartbleed
not vulnerable
Weak ciphers
not found
  • TLSv1.2
  • TLSv1.1
  • TLSv1.0
  • SSLv3
2 s
plusmx3.polkomtel.com.pl
212.2.96.53
10
supported
plusmx3.polkomtel.com.pl
DANE
missing
PFS
supported
Heartbleed
not vulnerable
Weak ciphers
not found
  • TLSv1.2
  • TLSv1.1
  • TLSv1.0
  • SSLv3
1 s

Outgoing Mails

We have received emails from these servers with @plus.pl sender addresses. Test mail delivery

Host TLS Version & Cipher
apn-95-41-4-89.dynamic.gprs.plus.pl (95.41.4.89)
Insecure - not encrypted!
apn-87-251-228-114.static.gprs.plus.pl (87.251.228.114)
Insecure - not encrypted!

Certificates

First seen at:

CN=plusmx4.polkomtel.com.pl

Certificate chain
Subject
Common Name (CN)
  • plusmx4.polkomtel.com.pl
Alternative Names
  • plusmx4.polkomtel.com.pl
Issuer
Country (C)
  • US
Organization (O)
  • Let's Encrypt
Common Name (CN)
  • Let's Encrypt Authority X3
validity period
Not valid before
2019-11-29
Not valid after
2020-02-27
This certifcate has been verified for the following usages:
  • Digital Signature
  • Key Encipherment
  • TLS Web Server Authentication
  • TLS Web Client Authentication
Fingerprints
SHA256
C3:C3:D9:C4:4D:83:B7:F5:A0:95:DD:80:E9:72:A7:06:1D:99:30:82:24:28:AF:39:E0:46:61:44:FB:21:7B:83
SHA1
79:0B:FC:3A:DD:B0:F2:82:3E:BD:D9:59:28:F3:87:70:E7:25:CC:DB
X509v3 extensions
subjectKeyIdentifier
  • BE:9A:6A:30:AA:6C:B4:B8:76:63:69:6E:7E:39:9A:16:AC:33:99:D9
authorityKeyIdentifier
  • keyid:A8:4A:6A:63:04:7D:DD:BA:E6:D1:39:B7:A6:45:65:EF:F3:A8:EC:A1
authorityInfoAccess
  • OCSP - URI:http://ocsp.int-x3.letsencrypt.org
  • CA Issuers - URI:http://cert.int-x3.letsencrypt.org/
certificatePolicies
  • Policy: 2.23.140.1.2.1
  • Policy: 1.3.6.1.4.1.44947.1.1.1
  • CPS: http://cps.letsencrypt.org
ct_precert_scts
  • Signed Certificate Timestamp:
  • Version : v1 (0x0)
  • Log ID : F0:95:A4:59:F2:00:D1:82:40:10:2D:2F:93:88:8E:AD:
  • 4B:FE:1D:47:E3:99:E1:D0:34:A6:B0:A8:AA:8E:B2:73
  • Timestamp : Nov 29 23:39:36.054 2019 GMT
  • Extensions: none
  • Signature : ecdsa-with-SHA256
  • 30:44:02:20:6E:CF:42:B7:9E:E5:24:6B:61:9B:3A:73:
  • 41:52:DF:2A:BC:6C:1F:80:F7:E4:FC:52:43:F2:53:89:
  • EA:C5:7F:C9:02:20:69:8F:D2:B0:69:4D:57:92:2F:BC:
  • 3E:3E:B4:DA:8D:C2:85:84:56:31:52:2C:3A:CF:A5:77:
  • A0:FC:86:D4:06:83
  • Signed Certificate Timestamp:
  • Version : v1 (0x0)
  • Log ID : B2:1E:05:CC:8B:A2:CD:8A:20:4E:87:66:F9:2B:B9:8A:
  • 25:20:67:6B:DA:FA:70:E7:B2:49:53:2D:EF:8B:90:5E
  • Timestamp : Nov 29 23:39:36.539 2019 GMT
  • Extensions: none
  • Signature : ecdsa-with-SHA256
  • 30:44:02:20:75:50:19:BD:30:B6:4C:8F:00:15:F4:7C:
  • 49:BB:4B:D5:EE:06:E0:DF:CA:A4:F1:D1:8D:6D:15:E6:
  • B3:73:3F:52:02:20:0E:17:E4:22:83:A0:B5:7D:2E:CB:
  • AE:0A:D1:12:91:46:4F:E8:68:E1:56:5C:CA:A1:D7:2D:
  • A1:FD:85:3C:AF:7C
First seen at:

CN=plusmx3.polkomtel.com.pl

Certificate chain
Subject
Common Name (CN)
  • plusmx3.polkomtel.com.pl
Alternative Names
  • plusmx3.polkomtel.com.pl
Issuer
Country (C)
  • US
Organization (O)
  • Let's Encrypt
Common Name (CN)
  • Let's Encrypt Authority X3
validity period
Not valid before
2019-11-29
Not valid after
2020-02-27
This certifcate has been verified for the following usages:
  • Digital Signature
  • Key Encipherment
  • TLS Web Server Authentication
  • TLS Web Client Authentication
Fingerprints
SHA256
01:9F:40:FE:B7:96:EF:45:20:97:4F:E7:D6:4E:7A:78:55:D8:01:BF:1D:46:01:25:E6:B5:03:3F:18:DA:83:6B
SHA1
E8:9E:A8:F7:11:5E:90:9B:47:F0:84:7F:56:EA:F6:9F:01:03:13:BE
X509v3 extensions
subjectKeyIdentifier
  • 83:3D:15:32:8D:FE:E3:DE:97:B9:C9:A7:D3:28:A6:24:1B:56:10:0D
authorityKeyIdentifier
  • keyid:A8:4A:6A:63:04:7D:DD:BA:E6:D1:39:B7:A6:45:65:EF:F3:A8:EC:A1
authorityInfoAccess
  • OCSP - URI:http://ocsp.int-x3.letsencrypt.org
  • CA Issuers - URI:http://cert.int-x3.letsencrypt.org/
certificatePolicies
  • Policy: 2.23.140.1.2.1
  • Policy: 1.3.6.1.4.1.44947.1.1.1
  • CPS: http://cps.letsencrypt.org
ct_precert_scts
  • Signed Certificate Timestamp:
  • Version : v1 (0x0)
  • Log ID : F0:95:A4:59:F2:00:D1:82:40:10:2D:2F:93:88:8E:AD:
  • 4B:FE:1D:47:E3:99:E1:D0:34:A6:B0:A8:AA:8E:B2:73
  • Timestamp : Nov 29 23:39:05.831 2019 GMT
  • Extensions: none
  • Signature : ecdsa-with-SHA256
  • 30:46:02:21:00:A3:52:93:13:D8:16:24:AD:18:DC:FB:
  • 14:36:BF:A2:E5:B7:DE:A9:77:31:16:46:65:72:CC:11:
  • 96:B9:44:B8:0C:02:21:00:C7:A1:A6:9B:55:E8:E7:49:
  • BE:62:5E:B5:6B:92:00:F6:BA:23:99:72:12:39:2E:CC:
  • E6:E6:B5:2A:8F:FF:B7:0A
  • Signed Certificate Timestamp:
  • Version : v1 (0x0)
  • Log ID : 07:B7:5C:1B:E5:7D:68:FF:F1:B0:C6:1D:23:15:C7:BA:
  • E6:57:7C:57:94:B7:6A:EE:BC:61:3A:1A:69:D3:A2:1C
  • Timestamp : Nov 29 23:39:05.871 2019 GMT
  • Extensions: none
  • Signature : ecdsa-with-SHA256
  • 30:46:02:21:00:FE:BE:F9:BF:A4:6F:6E:D7:C1:1D:D1:
  • 96:D4:8A:2B:72:7A:A8:7C:46:0D:4B:2B:A3:3D:A0:CA:
  • B0:CF:CB:D7:0C:02:21:00:AF:0C:48:10:CE:DA:54:BD:
  • F2:6E:54:40:61:48:92:DD:1F:0C:95:19:EE:70:C5:3F:
  • 8C:92:72:C0:CA:C7:29:BC