SSL check results of tazzmania.de

NEW You can also bulk check multiple servers.

Discover if the mail servers for tazzmania.de can be reached through a secure connection.

To establish a secure connection a mail server has to offer STARTTLS (SSL), a trustworthy SSL certificate, support for the Diffie-Hellman-Algorithm to guarantee Perfect Forward Secrecy and must not be vulnerable against the Heartbleed attack. Futhermore we recommend using end-to-end encryption with GnuPG.

Summary

Report created Thu, 23 Jun 2022 11:01:20 +0000

We can not guarantee a secure connection to the mailservers of tazzmania.de!

Please contact the operator of tazzmania.de and ask him or her to solve this problem. This result stays accessible under the following address:

/mailservers/tazzmania.de

Servers

Incoming Mails

These servers are responsible for incoming mails to @tazzmania.de addresses.

Hostname / IP address Priority STARTTLS Certificates Protocol
mg.jessenlenz.com
193.194.136.175
10
supported
mg1.jessenlenz.com
DANE
errors
PFS
supported
Heartbleed
not vulnerable
Weak ciphers
supported
  • SSL_RSA_WITH_RC4_128_SHA
  • SSL_RSA_EXPORT_WITH_RC4_40_MD5
  • TLSv1.2
  • TLSv1.1
  • TLSv1.0
  • SSLv3
12 s
mg.jessenlenz.com
212.79.192.86
Results incomplete
10
supported
not checked
DANE
errors
PFS
unsupported
Heartbleed
not vulnerable
Weak ciphers
supported
  • SSL_RSA_WITH_RC4_128_SHA
  • TLSv1.2
  • SSLv3
1 s

Outgoing Mails

We have not received any emails from a @tazzmania.de address so far. Test mail delivery

Certificates

First seen at:

emailAddress=internet-team@jessenlenz.com,CN=mg1.jessenlenz.com,O=JessenLenz GmbH,L=Luebeck,ST=Schleswig-Holstein,C=DE

Certificate chain
  • mg1.jessenlenz.com (Certificate is self-signed.)
    • remaining
    • 4096 bit
    • sha256WithRSAEncryption
    • Hostname Mismatch
    • Unknown Authority

Subject
Country (C)
  • DE
State (ST)
  • Schleswig-Holstein
Locality (L)
  • Luebeck
Organization (O)
  • JessenLenz GmbH
Common Name (CN)
  • mg1.jessenlenz.com
Email
  • internet-team@jessenlenz.com
Issuer

Certificate is self-signed.

validity period
Not valid before
2020-07-20
Not valid after
2022-10-23
Fingerprints
SHA256
09:01:89:BC:A8:34:92:E7:36:34:18:62:F5:D1:2B:D6:D3:11:97:AB:05:C9:BF:D6:F3:F6:52:02:11:D1:5D:95
SHA1
08:8E:AD:38:6A:92:01:D6:A3:EB:64:70:75:FA:B2:2D:F6:02:67:9D
X509v3 extensions
subjectKeyIdentifier
  • 28:20:3C:65:2C:65:71:D4:5E:48:55:EC:C3:67:39:AC:9C:4D:76:D0
authorityKeyIdentifier
  • keyid:28:20:3C:65:2C:65:71:D4:5E:48:55:EC:C3:67:39:AC:9C:4D:76:D0
  • DirName:/C=DE/ST=Schleswig-Holstein/L=Luebeck/O=JessenLenz GmbH/CN=mg1.jessenlenz.com/emailAddress=internet-team@jessenlenz.com
  • serial:DB:05:26:84:CD:12:1E:C4

DANE

DNS-based Authentication of Named Entities (DANE) is a protocol to allow X.509 certificates to be bound to DNS using TLSA records and DNSSEC.

Name Options DNSSEC Matches
_25._tcp.mg.jessenlenz.com
  • DANE-EE: Domain Issued Certificate
  • Use full certificate
  • SHA-256 Hash
valid
_25._tcp.mg.jessenlenz.com
  • DANE-EE: Domain Issued Certificate
  • Use subject public key
  • SHA-256 Hash
valid