SSL check results of xiweb.ch

NEW You can also bulk check multiple servers.

Discover if the mail servers for xiweb.ch can be reached through a secure connection.

To establish a secure connection a mail server has to offer STARTTLS (SSL), a trustworthy SSL certificate, support for the Diffie-Hellman-Algorithm to guarantee Perfect Forward Secrecy and must not be vulnerable against the Heartbleed attack. Futhermore we recommend using end-to-end encryption with GnuPG.

Summary

Report created Wed, 19 Aug 2026 14:06:40 +0000

The mailservers of xiweb.ch can be reached through a secure connection.

Servers

Incoming Mails

These servers are responsible for incoming mails to @xiweb.ch addresses.

Hostname / IP address Priority STARTTLS Certificates Protocol
mail.xiweb.ch
212.147.16.39
10
supported
xiweb.ch
DANE
missing
PFS
supported
Heartbleed
not vulnerable
Weak ciphers
not found
  • TLSv1.2
  • SSLv3
2 s

Outgoing Mails

We have received emails from these servers with @xiweb.ch sender addresses. Test mail delivery

Host TLS Version & Cipher
mail.xiweb.ch (212.147.16.39)
TLSv1.3 TLS_AES_256_GCM_SHA384

Certificates

First seen at:

CN=xiweb.ch

Certificate chain
  • xiweb.ch
    • remaining
    • 256 bit
    • ecdsa-with-SHA384

      • YE1
        • remaining
        • 384 bit
        • ecdsa-with-SHA384

          • Root YE
            • remaining
            • 384 bit
            • ecdsa-with-SHA384

              • ISRG Root X2 (Certificate is self-signed.)
                • remaining
                • 384 bit
                • ecdsa-with-SHA384

Subject
Common Name (CN)
  • xiweb.ch
Alternative Names
  • mail.xiweb.ch
  • www.xiweb.ch
  • xiweb.ch
Issuer
Country (C)
  • US
Organization (O)
  • Let's Encrypt
Common Name (CN)
  • YE1
validity period
Not valid before
2026-08-16
Not valid after
2026-11-14
This certifcate has been verified for the following usages:
  • Digital Signature
  • TLS Web Server Authentication
Fingerprints
SHA256
91:89:AC:B0:FB:51:BF:6A:85:6A:C3:40:7C:69:7C:08:42:FB:59:7B:F5:08:2A:79:F0:32:7B:0B:AD:F4:3F:D1
SHA1
58:00:E7:3F:B6:9B:79:23:0B:74:CC:A8:4E:C6:FD:9E:98:30:3A:CE
X509v3 extensions
subjectKeyIdentifier
  • 62:2C:34:82:83:D8:74:D8:83:B5:69:58:00:EC:5D:D9:74:63:CD:CF
authorityKeyIdentifier
  • keyid:BB:20:CA:47:0B:FE:D7:E5:9C:F9:8F:09:2A:A3:8C:37:45:B1:BC:D8
authorityInfoAccess
  • CA Issuers - URI:http://ye1.i.lencr.org/
certificatePolicies
  • Policy: 2.23.140.1.2.1
crlDistributionPoints
  • Full Name:
  • URI:http://ye1.c.lencr.org/55.crl
ct_precert_scts
  • Signed Certificate Timestamp:
  • Version : v1 (0x0)
  • Log ID : C2:31:7E:57:45:19:A3:45:EE:7F:38:DE:B2:90:41:EB:
  • C7:C2:21:5A:22:BF:7F:D5:B5:AD:76:9A:D9:0E:52:CD
  • Timestamp : Aug 16 07:02:08.921 2026 GMT
  • Extensions: none
  • Signature : ecdsa-with-SHA256
  • 30:46:02:21:00:90:10:46:D6:AF:FC:CD:31:EF:2E:EA:
  • 4E:F5:31:B1:27:29:CE:68:AE:92:60:BF:04:58:50:FB:
  • B4:60:83:15:01:02:21:00:D1:B8:FB:D1:79:4E:4D:55:
  • 3B:CB:1B:0D:0B:1A:44:AA:77:4C:CF:0E:9B:CE:C5:93:
  • 0E:CF:C1:B3:1D:BF:99:70
  • Signed Certificate Timestamp:
  • Version : v1 (0x0)
  • Log ID : A8:26:CB:E3:0A:C6:35:12:46:53:3F:E0:65:F1:4F:19:
  • D9:6E:19:08:13:C4:1D:D9:6D:79:00:B3:12:3C:55:27
  • Timestamp : Aug 16 07:02:09.031 2026 GMT
  • Extensions: 00:00:05:00:1D:25:37:A3
  • Signature : ecdsa-with-SHA256
  • 30:46:02:21:00:94:CC:33:E6:2B:D1:F7:03:BA:51:71:
  • 36:19:E1:B8:61:41:C0:C1:D4:C4:5D:55:0A:57:32:1C:
  • E7:DC:A8:22:AB:02:21:00:B1:69:DC:BF:6E:52:71:C5:
  • 00:FC:C4:BC:6C:E6:BF:D1:DE:9D:CC:44:0A:95:8F:30:
  • 6C:C9:15:AA:7E:2B:73:6F