SSL check results of recoop.pl

NEW You can also bulk check multiple servers.

Discover if the mail servers for recoop.pl can be reached through a secure connection.

To establish a secure connection a mail server has to offer STARTTLS (SSL), a trustworthy SSL certificate, support for the Diffie-Hellman-Algorithm to guarantee Perfect Forward Secrecy and must not be vulnerable against the Heartbleed attack. Futhermore we recommend using end-to-end encryption with GnuPG.

Summary

Report created Mon, 31 Aug 2026 20:56:14 +0000

The mailservers of recoop.pl can be reached through a secure connection.

Servers

Incoming Mails

These servers are responsible for incoming mails to @recoop.pl addresses.

Hostname / IP address Priority STARTTLS Certificates Protocol
mail.recoop.pl
2001:41d0:601:1100::60ce
10
supported
mail.recoop.pl
DANE
valid
PFS
supported
Heartbleed
not vulnerable
Weak ciphers
not found
  • TLSv1.2
  • SSLv3
2 s
mail.recoop.pl
57.128.194.142
10
supported
mail.recoop.pl
DANE
valid
PFS
supported
Heartbleed
not vulnerable
Weak ciphers
not found
  • TLSv1.2
  • SSLv3
2 s

Outgoing Mails

We have not received any emails from a @recoop.pl address so far. Test mail delivery

Certificates

First seen at:

CN=mail.recoop.pl

Certificate chain
  • mail.recoop.pl
    • remaining
    • 256 bit
    • ecdsa-with-SHA384

      • YE1
        • remaining
        • 384 bit
        • ecdsa-with-SHA384

          • Root YE
            • remaining
            • 384 bit
            • ecdsa-with-SHA384

              • ISRG Root X2 (Certificate is self-signed.)
                • remaining
                • 384 bit
                • ecdsa-with-SHA384

Subject
Common Name (CN)
  • mail.recoop.pl
Alternative Names
  • autoconfig.recoop.pl
  • autodiscover.recoop.pl
  • mail.recoop.pl
  • mta-sts.recoop.pl
  • ua-auto-config.recoop.pl
Issuer
Country (C)
  • US
Organization (O)
  • Let's Encrypt
Common Name (CN)
  • YE1
validity period
Not valid before
2026-07-13
Not valid after
2026-10-11
This certifcate has been verified for the following usages:
  • Digital Signature
  • TLS Web Server Authentication
Fingerprints
SHA256
9B:41:1E:4E:84:53:2E:08:D0:35:FA:D1:1B:90:32:6C:64:27:15:6F:86:54:71:DA:72:EC:D0:E7:3C:A9:51:E5
SHA1
21:43:9B:95:F4:35:87:0E:D0:44:56:9C:58:98:EE:46:D3:27:55:66
X509v3 extensions
subjectKeyIdentifier
  • 94:2C:E2:76:DA:53:FE:5C:E8:A5:FB:8A:05:9D:1A:99:44:56:20:E2
authorityKeyIdentifier
  • keyid:BB:20:CA:47:0B:FE:D7:E5:9C:F9:8F:09:2A:A3:8C:37:45:B1:BC:D8
authorityInfoAccess
  • CA Issuers - URI:http://ye1.i.lencr.org/
certificatePolicies
  • Policy: 2.23.140.1.2.1
crlDistributionPoints
  • Full Name:
  • URI:http://ye1.c.lencr.org/64.crl
ct_precert_scts
  • Signed Certificate Timestamp:
  • Version : v1 (0x0)
  • Log ID : CB:38:F7:15:89:7C:84:A1:44:5F:5B:C1:DD:FB:C9:6E:
  • F2:9A:59:CD:47:0A:69:05:85:B0:CB:14:C3:14:58:E7
  • Timestamp : Jul 13 20:07:46.559 2026 GMT
  • Extensions: none
  • Signature : ecdsa-with-SHA256
  • 30:45:02:21:00:8A:CB:06:3C:E3:2E:77:D5:97:AE:91:
  • EE:CF:0E:8B:FB:E1:02:9A:57:3C:E5:5C:B9:AD:2A:6A:
  • DD:5D:6A:C4:DF:02:20:27:33:1A:E9:D3:34:86:2B:8B:
  • B1:6D:98:49:B8:2C:82:33:46:A4:8F:9C:E7:9E:9F:5B:
  • 2F:94:ED:6E:33:76:30
  • Signed Certificate Timestamp:
  • Version : v1 (0x0)
  • Log ID : 6C:FE:50:19:43:A8:5E:A9:16:BC:52:D1:33:E4:DC:C9:
  • 1E:F1:41:1C:7D:25:84:20:D1:73:80:9E:18:18:EB:3A
  • Timestamp : Jul 13 20:07:47.362 2026 GMT
  • Extensions: 00:00:05:00:15:18:E4:35
  • Signature : ecdsa-with-SHA256
  • 30:46:02:21:00:B3:8E:1F:EC:2E:89:E0:A5:89:DC:F4:
  • 7C:A9:A1:97:B3:EE:36:4C:A1:D9:55:45:D4:43:56:E6:
  • C7:9B:0E:97:BF:02:21:00:D4:FA:05:38:5D:2E:47:C5:
  • 8C:5D:97:62:81:80:67:C8:49:DC:F9:F5:1F:C6:93:EB:
  • 03:3E:DF:6B:6E:CA:EF:1B

DANE

DNS-based Authentication of Named Entities (DANE) is a protocol to allow X.509 certificates to be bound to DNS using TLSA records and DNSSEC.

Name Options DNSSEC Matches
_25._tcp.mail.recoop.pl
  • DANE-EE: Domain Issued Certificate
  • Use subject public key
  • SHA-256 Hash
valid
valid
_25._tcp.mail.recoop.pl
  • DANE-TA: Trust Anchor Assertion
  • Use subject public key
  • SHA-256 Hash
valid
valid
_25._tcp.mail.recoop.pl
  • DANE-TA: Trust Anchor Assertion
  • Use subject public key
  • SHA-256 Hash
valid
valid
_25._tcp.mail.recoop.pl
  • DANE-TA: Trust Anchor Assertion
  • Use subject public key
  • SHA-256 Hash
valid
valid