SSL check results of tecmea.it

NEW You can also bulk check multiple servers.

Discover if the mail servers for tecmea.it can be reached through a secure connection.

To establish a secure connection a mail server has to offer STARTTLS (SSL), a trustworthy SSL certificate, support for the Diffie-Hellman-Algorithm to guarantee Perfect Forward Secrecy and must not be vulnerable against the Heartbleed attack. Futhermore we recommend using end-to-end encryption with GnuPG.

Summary

Report created Thu, 17 Jul 2025 10:05:04 +0000

We can not guarantee a secure connection to the mailservers of tecmea.it!

Please contact the operator of tecmea.it and ask him or her to solve this problem. This result stays accessible under the following address:

/mailservers/tecmea.it

Servers

Incoming Mails

These servers are responsible for incoming mails to @tecmea.it addresses.

Hostname / IP address Priority STARTTLS Certificates Protocol
mail.tecmea.it
188.11.91.73
Results incomplete
10
supported
not checked
DANE
missing
PFS
not checked
Heartbleed
not vulnerable
Weak ciphers
not checked
11 s
mail2.tecmea.it
213.137.54.59
15
supported
mail.tecmea.it
DANE
missing
PFS
supported
Heartbleed
not vulnerable
Weak ciphers
not found
  • TLSv1.2
  • TLSv1.1
  • TLSv1.0
  • SSLv3
12 s
rigel.orion.it
212.115.64.10
Results incomplete
20
supported
not checked
DANE
missing
PFS
supported
Heartbleed
not vulnerable
Weak ciphers
not found
  • TLSv1.2
  • SSLv3
6 s
alpha.orion.it
212.115.64.5
Results incomplete
30
supported
not checked
DANE
missing
PFS
supported
Heartbleed
not vulnerable
Weak ciphers
not found
  • TLSv1.2
  • SSLv3
6 s
dante.orion.it
77.93.229.164
50
supported
mail.nouvelle.it
DANE
missing
PFS
supported
Heartbleed
not vulnerable
Weak ciphers
not found
  • TLSv1.2
  • TLSv1.1
  • SSLv3
12 s
auriga.orion.it
79.58.48.196
60
supported
mail.nouvelle.it
DANE
missing
PFS
supported
Heartbleed
not vulnerable
Weak ciphers
not found
  • TLSv1.2
  • TLSv1.1
  • TLSv1.0
  • SSLv3
19 s

Outgoing Mails

We have not received any emails from a @tecmea.it address so far. Test mail delivery

Certificates

First seen at:

CN=mail.nouvelle.it

Certificate chain
  • mail.nouvelle.it
    • remaining
    • 2048 bit
    • sha256WithRSAEncryption
    • Hostname Mismatch

      • R11
        • remaining
        • 2048 bit
        • sha256WithRSAEncryption

          • ISRG Root X1 (Certificate is self-signed.)
            • remaining
            • 4096 bit
            • sha256WithRSAEncryption

Subject
Common Name (CN)
  • mail.nouvelle.it
Alternative Names
  • mail.nouvelle.it
Issuer
Country (C)
  • US
Organization (O)
  • Let's Encrypt
Common Name (CN)
  • R11
validity period
Not valid before
2025-05-19
Not valid after
2025-08-17
This certifcate has been verified for the following usages:
  • Digital Signature
  • Key Encipherment
  • TLS Web Server Authentication
  • TLS Web Client Authentication
Fingerprints
SHA256
EA:DD:CB:1D:EA:9D:F0:5A:41:8F:1F:17:2A:3D:CF:1D:DB:3B:D2:5B:95:73:24:85:A2:90:04:AB:CA:21:DD:E6
SHA1
F7:EA:98:89:DD:3E:CC:D4:08:AD:C8:C3:FC:F2:9F:AD:34:A1:FD:73
X509v3 extensions
subjectKeyIdentifier
  • D8:C3:B5:D6:81:E7:71:0D:F4:D0:5D:AB:1D:54:3D:6B:77:34:AB:A1
authorityKeyIdentifier
  • keyid:C5:CF:46:A4:EA:F4:C3:C0:7A:6C:95:C4:2D:B0:5E:92:2F:26:E3:B9
authorityInfoAccess
  • CA Issuers - URI:http://r11.i.lencr.org/
certificatePolicies
  • Policy: 2.23.140.1.2.1
crlDistributionPoints
  • Full Name:
  • URI:http://r11.c.lencr.org/71.crl
ct_precert_scts
  • Signed Certificate Timestamp:
  • Version : v1 (0x0)
  • Log ID : 0D:E1:F2:30:2B:D3:0D:C1:40:62:12:09:EA:55:2E:FC:
  • 47:74:7C:B1:D7:E9:30:EF:0E:42:1E:B4:7E:4E:AA:34
  • Timestamp : May 19 05:49:27.689 2025 GMT
  • Extensions: none
  • Signature : ecdsa-with-SHA256
  • 30:44:02:20:13:4C:09:D3:C8:54:97:C2:79:21:3C:8E:
  • 64:E6:36:5C:E1:80:54:6B:46:FB:7F:03:E0:C0:3F:E2:
  • 69:F1:2F:A7:02:20:6D:3F:5C:03:E4:24:E3:7B:27:25:
  • BD:FB:D8:B7:FD:04:1C:3E:43:2B:67:32:38:7C:B8:9E:
  • 5B:01:5F:C2:5B:67
  • Signed Certificate Timestamp:
  • Version : v1 (0x0)
  • Log ID : CC:FB:0F:6A:85:71:09:65:FE:95:9B:53:CE:E9:B2:7C:
  • 22:E9:85:5C:0D:97:8D:B6:A9:7E:54:C0:FE:4C:0D:B0
  • Timestamp : May 19 05:49:29.720 2025 GMT
  • Extensions: none
  • Signature : ecdsa-with-SHA256
  • 30:44:02:20:37:D3:3A:EB:62:1B:70:7F:F3:34:AB:98:
  • B1:3C:16:D7:F4:65:48:66:8C:F0:48:9B:5E:41:47:80:
  • CF:51:C8:16:02:20:25:82:60:FD:92:4C:C6:B2:D4:56:
  • 4A:C1:A1:89:1E:F1:BC:6B:92:BC:4A:3B:63:6C:50:C5:
  • A8:4B:69:F1:61:11
First seen at:

CN=mail.tecmea.it

Certificate chain
  • mail.tecmea.it
    • remaining
    • 2048 bit
    • sha256WithRSAEncryption
    • Hostname Mismatch

      • R11
        • remaining
        • 2048 bit
        • sha256WithRSAEncryption

          • ISRG Root X1 (Certificate is self-signed.)
            • remaining
            • 4096 bit
            • sha256WithRSAEncryption

Subject
Common Name (CN)
  • mail.tecmea.it
Alternative Names
  • mail.tecmea.it
Issuer
Country (C)
  • US
Organization (O)
  • Let's Encrypt
Common Name (CN)
  • R11
validity period
Not valid before
2025-06-26
Not valid after
2025-09-24
This certifcate has been verified for the following usages:
  • Digital Signature
  • Key Encipherment
  • TLS Web Server Authentication
  • TLS Web Client Authentication
Fingerprints
SHA256
A7:67:8E:1A:2E:49:B2:50:03:E0:AD:3F:70:F6:7C:88:BA:06:E9:D4:15:73:D3:C2:52:48:3A:A5:A0:20:71:A0
SHA1
70:83:DD:A7:E8:57:2B:ED:C7:90:BE:29:EA:C7:40:3C:81:84:A8:84
X509v3 extensions
subjectKeyIdentifier
  • 11:C0:23:0C:B6:73:1B:85:2C:FC:59:51:9F:F4:EB:9D:88:6D:F1:C8
authorityKeyIdentifier
  • keyid:C5:CF:46:A4:EA:F4:C3:C0:7A:6C:95:C4:2D:B0:5E:92:2F:26:E3:B9
authorityInfoAccess
  • CA Issuers - URI:http://r11.i.lencr.org/
certificatePolicies
  • Policy: 2.23.140.1.2.1
crlDistributionPoints
  • Full Name:
  • URI:http://r11.c.lencr.org/106.crl
ct_precert_scts
  • Signed Certificate Timestamp:
  • Version : v1 (0x0)
  • Log ID : A4:42:C5:06:49:60:61:54:8F:0F:D4:EA:9C:FB:7A:2D:
  • 26:45:4D:87:A9:7F:2F:DF:45:59:F6:27:4F:3A:84:54
  • Timestamp : Jun 26 07:07:01.455 2025 GMT
  • Extensions: none
  • Signature : ecdsa-with-SHA256
  • 30:45:02:20:66:F5:BF:6B:55:B7:3B:04:C7:F4:B1:E2:
  • 80:18:A2:51:E1:25:EC:D1:CB:E2:70:BF:BF:EB:76:51:
  • 20:13:71:00:02:21:00:FC:D8:F3:1E:77:04:E0:7E:FD:
  • 11:EC:45:9A:64:FD:15:C7:22:BB:74:27:38:A3:90:34:
  • A3:22:DD:2E:83:13:14
  • Signed Certificate Timestamp:
  • Version : v1 (0x0)
  • Log ID : CC:FB:0F:6A:85:71:09:65:FE:95:9B:53:CE:E9:B2:7C:
  • 22:E9:85:5C:0D:97:8D:B6:A9:7E:54:C0:FE:4C:0D:B0
  • Timestamp : Jun 26 07:07:01.488 2025 GMT
  • Extensions: none
  • Signature : ecdsa-with-SHA256
  • 30:45:02:21:00:AA:A2:9E:EE:DF:45:E2:9D:C5:C8:FE:
  • DD:21:80:27:9F:7A:53:F3:D2:E1:97:10:F0:7C:1E:09:
  • 4D:F7:0F:90:1F:02:20:2A:05:0D:6B:98:30:89:78:CE:
  • EF:1B:10:80:30:AD:E2:EE:A9:4D:21:36:86:EB:43:D9:
  • 6D:56:A6:7C:A2:CD:8D