SSL check results of web001.isrv.ch

NEW You can also bulk check multiple servers.

Discover if the mail servers for web001.isrv.ch can be reached through a secure connection.

To establish a secure connection a mail server has to offer STARTTLS (SSL), a trustworthy SSL certificate, support for the Diffie-Hellman-Algorithm to guarantee Perfect Forward Secrecy and must not be vulnerable against the Heartbleed attack. Futhermore we recommend using end-to-end encryption with GnuPG.

Summary

Report created Tue, 08 Sep 2026 12:39:56 +0000

The mailservers of web001.isrv.ch can be reached through a secure connection.

Servers

Incoming Mails

These servers are responsible for incoming mails to @web001.isrv.ch addresses.

Hostname / IP address Priority STARTTLS Certificates Protocol
web001.isrv.ch
185.66.109.50
-
supported
web001.isrv.ch
DANE
missing
PFS
supported
Heartbleed
not vulnerable
Weak ciphers
not found
  • TLSv1.2
  • TLSv1.1
  • TLSv1.0
  • SSLv3
2 s
web001.isrv.ch
2a0e:f0c1:0:1088::100
-
supported
web001.isrv.ch
DANE
missing
PFS
supported
Heartbleed
not vulnerable
Weak ciphers
not found
  • TLSv1.2
  • TLSv1.1
  • TLSv1.0
  • SSLv3
2 s

Outgoing Mails

We have not received any emails from a @web001.isrv.ch address so far. Test mail delivery

Certificates

First seen at:

CN=web001.isrv.ch

Certificate chain
  • web001.isrv.ch
    • remaining
    • 256 bit
    • ecdsa-with-SHA384

      • YE2
        • remaining
        • 384 bit
        • ecdsa-with-SHA384

          • Root YE
            • remaining
            • 384 bit
            • ecdsa-with-SHA384

              • ISRG Root X2 (Certificate is self-signed.)
                • remaining
                • 384 bit
                • ecdsa-with-SHA384

Subject
Common Name (CN)
  • web001.isrv.ch
Alternative Names
  • web001.isrv.ch
Issuer
Country (C)
  • US
Organization (O)
  • Let's Encrypt
Common Name (CN)
  • YE2
validity period
Not valid before
2026-08-29
Not valid after
2026-11-27
This certifcate has been verified for the following usages:
  • Digital Signature
  • TLS Web Server Authentication
Fingerprints
SHA256
59:4F:4B:6D:13:8A:77:D0:66:05:D0:B3:EF:71:A5:AC:2B:D9:EA:24:2F:E3:85:38:B7:45:2C:70:92:4B:4A:FB
SHA1
0B:B7:12:6F:77:E1:87:3C:9B:9A:BC:C8:0B:7B:1E:AA:E9:4E:5E:6D
X509v3 extensions
subjectKeyIdentifier
  • 02:BA:7C:7F:C4:30:17:42:0B:6C:1F:EE:97:82:81:E1:8F:EB:13:63
authorityKeyIdentifier
  • keyid:B9:59:F2:8E:CF:22:F0:86:D3:37:48:FF:76:14:18:BA:82:D8:55:87
authorityInfoAccess
  • CA Issuers - URI:http://ye2.i.lencr.org/
certificatePolicies
  • Policy: 2.23.140.1.2.1
crlDistributionPoints
  • Full Name:
  • URI:http://ye2.c.lencr.org/116.crl
ct_precert_scts
  • Signed Certificate Timestamp:
  • Version : v1 (0x0)
  • Log ID : C2:31:7E:57:45:19:A3:45:EE:7F:38:DE:B2:90:41:EB:
  • C7:C2:21:5A:22:BF:7F:D5:B5:AD:76:9A:D9:0E:52:CD
  • Timestamp : Aug 29 18:35:10.798 2026 GMT
  • Extensions: none
  • Signature : ecdsa-with-SHA256
  • 30:46:02:21:00:AA:25:78:7A:A6:E9:52:28:0C:F5:69:
  • 9B:A0:3B:64:5A:BE:10:57:66:02:A3:06:ED:71:1B:38:
  • F5:D8:CE:F4:B2:02:21:00:FB:F1:56:EA:DC:2B:24:6C:
  • 8E:7C:E5:F1:70:6A:80:1F:BA:46:C6:A8:05:31:38:AD:
  • 02:9A:BD:E8:E0:F2:35:E1
  • Signed Certificate Timestamp:
  • Version : v1 (0x0)
  • Log ID : A8:26:CB:E3:0A:C6:35:12:46:53:3F:E0:65:F1:4F:19:
  • D9:6E:19:08:13:C4:1D:D9:6D:79:00:B3:12:3C:55:27
  • Timestamp : Aug 29 18:35:11.215 2026 GMT
  • Extensions: 00:00:05:00:28:48:AE:BA
  • Signature : ecdsa-with-SHA256
  • 30:46:02:21:00:D7:5D:8D:0B:9F:2D:48:16:B7:5D:80:
  • 8D:FC:A8:81:67:97:D8:73:AE:4A:A2:07:D1:1F:5C:4F:
  • A9:A2:1F:7A:F8:02:21:00:C5:58:E6:EB:8C:6D:C5:07:
  • ED:25:DB:C7:7A:3B:EE:37:B4:58:23:BF:3C:35:80:E1:
  • 6D:05:03:28:88:EE:2D:F9