SSL check results of slxh.eu

NEW You can also bulk check multiple servers.

Discover if the mail servers for slxh.eu can be reached through a secure connection.

To establish a secure connection a mail server has to offer STARTTLS (SSL), a trustworthy SSL certificate, support for the Diffie-Hellman-Algorithm to guarantee Perfect Forward Secrecy and must not be vulnerable against the Heartbleed attack. Futhermore we recommend using end-to-end encryption with GnuPG.

Summary

Report created Mon, 01 Jun 2020 00:56:42 +0000

The mailservers of slxh.eu can be reached through a secure connection.

Servers

Incoming Mails

These servers are responsible for incoming mails to @slxh.eu addresses.

Hostname / IP address Priority STARTTLS Certificates Protocol
mx2.slxh.eu
2a01:4f8:1c17:52e5::25
10
supported
mx2.slxh.eu
DANE
valid
PFS
supported
Heartbleed
not vulnerable
Weak ciphers
not found
  • TLSv1.2
  • TLSv1.1
  • TLSv1.0
  • SSLv3
2 s
mx2.slxh.eu
88.198.152.81
10
supported
mx2.slxh.eu
DANE
valid
PFS
supported
Heartbleed
not vulnerable
Weak ciphers
not found
  • TLSv1.2
  • TLSv1.1
  • TLSv1.0
  • SSLv3
2 s

Outgoing Mails

We have not received any emails from a @slxh.eu address so far. Test mail delivery

Certificates

First seen at:

CN=mx2.slxh.eu

Certificate chain
Subject
Common Name (CN)
  • mx2.slxh.eu
Alternative Names
  • mail.slxh.eu
  • mail.slxh.nl
  • mx2.slxh.eu
  • mx2.slxh.nl
  • smtp.slxh.eu
  • smtp.slxh.nl
Issuer
Country (C)
  • US
Organization (O)
  • Let's Encrypt
Common Name (CN)
  • Let's Encrypt Authority X3
validity period
Not valid before
2020-05-31
Not valid after
2020-08-29
This certifcate has been verified for the following usages:
  • Digital Signature
  • TLS Web Server Authentication
  • TLS Web Client Authentication
Fingerprints
SHA256
14:8E:B2:02:A6:B2:A4:11:21:12:75:EF:81:82:27:E7:2D:BF:43:8D:74:36:BD:3F:DA:0F:86:8F:D1:43:88:B9
SHA1
97:4A:F3:4C:AD:60:D2:FC:F2:F2:E1:E3:FE:50:E3:96:70:C5:05:C6
X509v3 extensions
subjectKeyIdentifier
  • 67:75:17:2F:40:7B:D4:0F:A9:C0:B7:22:6E:98:A6:98:C9:21:1D:4F
authorityKeyIdentifier
  • keyid:A8:4A:6A:63:04:7D:DD:BA:E6:D1:39:B7:A6:45:65:EF:F3:A8:EC:A1
authorityInfoAccess
  • OCSP - URI:http://ocsp.int-x3.letsencrypt.org
  • CA Issuers - URI:http://cert.int-x3.letsencrypt.org/
certificatePolicies
  • Policy: 2.23.140.1.2.1
  • Policy: 1.3.6.1.4.1.44947.1.1.1
  • CPS: http://cps.letsencrypt.org
ct_precert_scts
  • Signed Certificate Timestamp:
  • Version : v1 (0x0)
  • Log ID : 5E:A7:73:F9:DF:56:C0:E7:B5:36:48:7D:D0:49:E0:32:
  • 7A:91:9A:0C:84:A1:12:12:84:18:75:96:81:71:45:58
  • Timestamp : May 31 12:10:40.794 2020 GMT
  • Extensions: none
  • Signature : ecdsa-with-SHA256
  • 30:45:02:20:34:9C:3D:F6:32:FB:4B:16:66:11:AE:84:
  • 87:46:70:8B:CE:37:EC:8D:6A:6D:E1:0D:7D:EE:48:4A:
  • D9:A8:AD:60:02:21:00:C8:26:B0:05:F4:19:C9:C9:19:
  • A6:1C:36:1C:67:29:19:62:50:E2:91:7E:E7:C8:E9:13:
  • D0:74:A7:6F:7F:B5:62
  • Signed Certificate Timestamp:
  • Version : v1 (0x0)
  • Log ID : 07:B7:5C:1B:E5:7D:68:FF:F1:B0:C6:1D:23:15:C7:BA:
  • E6:57:7C:57:94:B7:6A:EE:BC:61:3A:1A:69:D3:A2:1C
  • Timestamp : May 31 12:10:40.838 2020 GMT
  • Extensions: none
  • Signature : ecdsa-with-SHA256
  • 30:46:02:21:00:E3:FC:EC:D5:01:85:A0:0B:27:E8:1F:
  • DC:14:C7:68:EC:6E:BD:D0:FD:16:D1:80:FD:69:B4:BA:
  • FB:34:4C:0E:EA:02:21:00:E4:B8:2D:7A:1A:BA:75:45:
  • 61:FD:F7:E6:68:64:E9:C1:A5:72:A1:51:CE:EA:80:90:
  • C6:CC:68:A6:48:02:B3:27

DANE

DNS-based Authentication of Named Entities (DANE) is a protocol to allow X.509 certificates to be bound to DNS using TLSA records and DNSSEC.

Name Options DNSSEC Matches
_25._tcp.mx2.slxh.eu
  • DANE-TA: Trust Anchor Assertion
  • Use subject public key
  • SHA-256 Hash
valid
valid
_25._tcp.mx2.slxh.eu
  • DANE-TA: Trust Anchor Assertion
  • Use subject public key
  • SHA-256 Hash
valid