SSL check results of squadrasec.com

NEW You can also bulk check multiple servers.

Discover if the mail servers for squadrasec.com can be reached through a secure connection.

To establish a secure connection a mail server has to offer STARTTLS (SSL), a trustworthy SSL certificate, support for the Diffie-Hellman-Algorithm to guarantee Perfect Forward Secrecy and must not be vulnerable against the Heartbleed attack. Futhermore we recommend using end-to-end encryption with GnuPG.

Summary

Report created Sat, 22 Aug 2026 20:53:32 +0000

The mailservers of squadrasec.com can be reached through a secure connection.

Servers

Incoming Mails

These servers are responsible for incoming mails to @squadrasec.com addresses.

Hostname / IP address Priority STARTTLS Certificates Protocol
mail.squadrasec.com
158.220.90.53
10
supported
squadrasec.com
DANE
valid
PFS
supported
Heartbleed
not vulnerable
Weak ciphers
not found
  • TLSv1.2
  • SSLv3
5 s

Outgoing Mails

We have not received any emails from a @squadrasec.com address so far. Test mail delivery

Certificates

First seen at:

CN=squadrasec.com

Certificate chain
  • squadrasec.com
    • remaining
    • 256 bit
    • ecdsa-with-SHA384

      • YE2
        • remaining
        • 384 bit
        • ecdsa-with-SHA384

          • Root YE
            • remaining
            • 384 bit
            • ecdsa-with-SHA384

              • ISRG Root X2 (Certificate is self-signed.)
                • remaining
                • 384 bit
                • ecdsa-with-SHA384

Subject
Common Name (CN)
  • squadrasec.com
Alternative Names
  • *.squadrasec.com
  • squadrasec.com
Issuer
Country (C)
  • US
Organization (O)
  • Let's Encrypt
Common Name (CN)
  • YE2
validity period
Not valid before
2026-08-22
Not valid after
2026-11-20
This certifcate has been verified for the following usages:
  • Digital Signature
  • TLS Web Server Authentication
Fingerprints
SHA256
98:A6:5E:78:08:2D:19:EA:03:CC:B1:BD:54:DB:EA:AA:24:65:D0:23:26:F3:00:F4:7C:38:EC:C0:F6:39:C2:27
SHA1
09:9B:76:DF:06:6A:61:2D:71:08:44:22:C5:7B:A8:2D:76:9C:DF:CC
X509v3 extensions
subjectKeyIdentifier
  • E1:5A:D0:95:B8:98:74:24:9B:96:E4:B9:EF:95:33:DD:F9:CC:27:4E
authorityKeyIdentifier
  • keyid:B9:59:F2:8E:CF:22:F0:86:D3:37:48:FF:76:14:18:BA:82:D8:55:87
authorityInfoAccess
  • CA Issuers - URI:http://ye2.i.lencr.org/
certificatePolicies
  • Policy: 2.23.140.1.2.1
crlDistributionPoints
  • Full Name:
  • URI:http://ye2.c.lencr.org/16.crl
ct_precert_scts
  • Signed Certificate Timestamp:
  • Version : v1 (0x0)
  • Log ID : 6C:FE:50:19:43:A8:5E:A9:16:BC:52:D1:33:E4:DC:C9:
  • 1E:F1:41:1C:7D:25:84:20:D1:73:80:9E:18:18:EB:3A
  • Timestamp : Aug 22 20:47:25.992 2026 GMT
  • Extensions: 00:00:05:00:23:70:30:2E
  • Signature : ecdsa-with-SHA256
  • 30:44:02:20:70:02:BF:5F:C7:67:0A:9D:F2:BE:BB:44:
  • C0:3E:3A:7D:CA:21:C1:FF:48:C3:11:F7:F7:E6:41:98:
  • 17:81:24:1C:02:20:5F:4E:E4:EC:A9:61:F7:FC:8A:2E:
  • 98:D7:6E:4A:28:D3:04:F6:53:19:14:58:97:A4:36:43:
  • 3F:84:3E:D9:C9:D8
  • Signed Certificate Timestamp:
  • Version : v1 (0x0)
  • Log ID : 94:4E:43:87:FA:EC:C1:EF:81:F3:19:24:26:A8:18:65:
  • 01:C7:D3:5F:38:02:01:3F:72:67:7D:55:37:2E:19:D8
  • Timestamp : Aug 22 20:47:25.888 2026 GMT
  • Extensions: none
  • Signature : ecdsa-with-SHA256
  • 30:45:02:20:72:22:D2:6B:3E:85:65:6E:B8:52:87:B7:
  • 8C:12:4B:23:2F:EE:32:16:AA:85:8C:BA:76:C6:B0:D1:
  • 80:32:F6:FE:02:21:00:F7:52:5F:22:E1:DF:16:A5:DC:
  • 0E:AD:CF:99:76:F3:0E:16:13:4F:04:29:D8:12:AE:8D:
  • 79:2F:9E:FF:4B:CA:DB

DANE

DNS-based Authentication of Named Entities (DANE) is a protocol to allow X.509 certificates to be bound to DNS using TLSA records and DNSSEC.

Name Options DNSSEC Matches
_25._tcp.mail.squadrasec.com
  • DANE-EE: Domain Issued Certificate
  • Use subject public key
  • SHA-256 Hash
valid
_25._tcp.mail.squadrasec.com
  • DANE-EE: Domain Issued Certificate
  • Use subject public key
  • SHA-256 Hash
valid
valid