SSL check results of syr.edu

NEW You can also bulk check multiple servers.

Discover if the mail servers for syr.edu can be reached through a secure connection.

To establish a secure connection a mail server has to offer STARTTLS (SSL), a trustworthy SSL certificate, support for the Diffie-Hellman-Algorithm to guarantee Perfect Forward Secrecy and must not be vulnerable against the Heartbleed attack. Futhermore we recommend using end-to-end encryption with GnuPG.

Summary

Report created Thu, 18 Apr 2024 14:02:14 +0000

We can not guarantee a secure connection to the mailservers of syr.edu!

Please contact the operator of syr.edu and ask him or her to solve this problem. This result stays accessible under the following address:

/mailservers/syr.edu

Servers

Incoming Mails

These servers are responsible for incoming mails to @syr.edu addresses.

Hostname / IP address Priority STARTTLS Certificates Protocol
mx-ext.syr.edu
128.230.21.73
Results incomplete
10
unsupported
not checked
DANE
missing
PFS
not checked
Heartbleed
not checked
Weak ciphers
not checked
11 s
mx-ext.syr.edu
128.230.21.71
10
supported
mx-ext.syr.edu
DANE
missing
PFS
supported
Heartbleed
not vulnerable
Weak ciphers
supported
  • ECDHE_RSA_WITH_RC4_128_SHA
  • SSL_RSA_WITH_RC4_128_SHA
  • TLSv1.2
  • TLSv1.1
  • SSLv3
29 s
mx-ext.syr.edu
128.230.21.72
10
supported
mx-ext.syr.edu
DANE
missing
PFS
supported
Heartbleed
not vulnerable
Weak ciphers
supported
  • ECDHE_RSA_WITH_RC4_128_SHA
  • SSL_RSA_WITH_RC4_128_SHA
  • TLSv1.2
  • TLSv1.1
  • SSLv3
27 s

Outgoing Mails

We have not received any emails from a @syr.edu address so far. Test mail delivery

Certificates

First seen at:

CN=mx-ext.syr.edu,O=Syracuse University,ST=New York,C=US

Certificate chain
Subject
Country (C)
  • US
State (ST)
  • New York
Organization (O)
  • Syracuse University
Common Name (CN)
  • mx-ext.syr.edu
Alternative Names
  • mx-ext.syr.edu
Issuer
Country (C)
  • US
State (ST)
  • MI
Locality (L)
  • Ann Arbor
Organization (O)
  • Internet2
Organizational Unit (OU)
  • InCommon
Common Name (CN)
  • InCommon RSA Server CA
validity period
Not valid before
2023-08-28
Not valid after
2024-08-27
This certifcate has been verified for the following usages:
  • Digital Signature
  • Key Encipherment
  • TLS Web Server Authentication
  • TLS Web Client Authentication
Fingerprints
SHA256
12:F5:83:98:78:FD:BA:C5:9A:85:85:1C:15:EA:84:AD:2D:3A:A3:16:A4:16:C6:84:0A:E8:E8:80:EC:DF:DA:C9
SHA1
9B:62:68:F6:18:A6:72:0B:26:26:B2:5C:4C:16:C7:57:02:7A:0B:71
X509v3 extensions
authorityKeyIdentifier
  • keyid:1E:05:A3:77:8F:6C:96:E2:5B:87:4B:A6:B4:86:AC:71:00:0C:E7:38
subjectKeyIdentifier
  • B7:CB:16:B9:A3:DC:56:8E:9B:0A:06:D4:81:1C:2D:9A:D0:3D:B2:50
certificatePolicies
  • Policy: 1.3.6.1.4.1.5923.1.4.3.1.1
  • CPS: https://www.incommon.org/cert/repository/cps_ssl.pdf
  • Policy: 2.23.140.1.2.2
crlDistributionPoints
  • Full Name:
  • URI:http://crl.incommon-rsa.org/InCommonRSAServerCA.crl
authorityInfoAccess
  • CA Issuers - URI:http://crt.usertrust.com/InCommonRSAServerCA_2.crt
  • OCSP - URI:http://ocsp.usertrust.com
ct_precert_scts
  • Signed Certificate Timestamp:
  • Version : v1 (0x0)
  • Log ID : 76:FF:88:3F:0A:B6:FB:95:51:C2:61:CC:F5:87:BA:34:
  • B4:A4:CD:BB:29:DC:68:42:0A:9F:E6:67:4C:5A:3A:74
  • Timestamp : Aug 28 18:06:04.056 2023 GMT
  • Extensions: none
  • Signature : ecdsa-with-SHA256
  • 30:45:02:21:00:F9:A6:5C:22:35:14:41:A4:D4:8C:D6:
  • F2:C7:FF:DE:01:11:00:4E:EF:F6:E0:04:87:37:88:2D:
  • 3F:7D:0C:0A:1E:02:20:6A:FB:40:0F:19:75:C4:FC:0B:
  • D0:AB:67:49:EF:20:B1:81:A4:4B:7B:E3:D7:91:CA:90:
  • 1B:E4:84:0C:49:A9:E9
  • Signed Certificate Timestamp:
  • Version : v1 (0x0)
  • Log ID : DA:B6:BF:6B:3F:B5:B6:22:9F:9B:C2:BB:5C:6B:E8:70:
  • 91:71:6C:BB:51:84:85:34:BD:A4:3D:30:48:D7:FB:AB
  • Timestamp : Aug 28 18:06:04.141 2023 GMT
  • Extensions: none
  • Signature : ecdsa-with-SHA256
  • 30:46:02:21:00:EA:CE:AB:F3:5D:4D:10:04:A3:8C:06:
  • BB:93:2D:C5:B6:04:D0:71:BB:2D:5C:8E:3F:2B:72:E7:
  • 07:97:5C:6E:88:02:21:00:CF:43:E9:C8:E1:2E:43:DD:
  • 98:44:2D:68:17:49:0B:AD:E4:69:45:0F:E5:D9:97:9D:
  • DF:CC:93:AE:BE:4B:DA:66
  • Signed Certificate Timestamp:
  • Version : v1 (0x0)
  • Log ID : EE:CD:D0:64:D5:DB:1A:CE:C5:5C:B7:9D:B4:CD:13:A2:
  • 32:87:46:7C:BC:EC:DE:C3:51:48:59:46:71:1F:B5:9B
  • Timestamp : Aug 28 18:06:04.180 2023 GMT
  • Extensions: none
  • Signature : ecdsa-with-SHA256
  • 30:44:02:20:7F:5E:8F:B8:E7:D1:31:43:47:80:10:E1:
  • 46:21:DC:18:36:10:02:BE:9C:93:D7:89:26:B0:66:62:
  • F8:40:18:ED:02:20:3D:2B:B0:B9:9A:AE:1D:39:13:56:
  • 3C:A9:71:C7:5C:5D:C4:DE:4D:44:72:6E:55:62:0F:F9:
  • 50:18:3B:C5:B4:0F