IM Observatory client report for canlin.alfalab.com

Test started 2018-06-20 18:09:34 UTC .

Show server to server result | Permalink to this report | Retest

canlin.alfalab.com:5222
Certificate is not trusted, grade capped to F. Ignoring trust: F.
Server allows SSLv2, which is obsolete and insecure. Grade capped to F.
Server does not support TLS 1.2. Grade capped to C.
canlin.alfalab.com:5222
StartTLS
REQUIRED

SASL

Pre-TLS

None

Post-TLS
DIGEST-MD5
EXTERNAL
PLAIN

SRV records _xmpp-client._tcp.canlin.alfalab.com NO DNSSEC

Priority Weight Port Server

TLSA records

Certificates

Subject
commonName
alfalab.com
countryName
CA
Details
Error: unable to get local issuer certificate.
Error: unable to verify the first certificate.
Signature algorithm
sha256WithRSAEncryption
Public key
2048 bit RSA
Valid from
2017-05-09 14:20:54 UTC
Valid to
2019-05-09 06:30:00 UTC
CRL
http://crl.startcomca.com/sca-server1.crl
OCSP
http://ocsp.startcomca.com
Valid for canlin.alfalab.com
YES
83:0E:76:CC:4E:56:FE:BE:4E:B2:60:58:DD:D0:C3:2F:24:5F:72:91
Subject Alternative Names
DNSName
alfalab.com
DNSName
mail.alfalab.com
DNSName
canlin.alfalab.com Matches
DNSName
www.alfalab.com
Subject
commonName
StartCom BR SSL ICA
countryName
ES
organizationalUnitName
StartCom Certification Authority
organizationName
StartCom CA
Details
Signature algorithm
sha256WithRSAEncryption
Public key
4096 bit RSA
Valid from
2017-04-07 12:32:39 UTC
Valid to
2042-03-22 07:17:58 UTC
CRL
http://crl.startcomca.com/sfscabr.crl
OCSP
http://ocsp.startcomca.com
37:7B:35:1C:CB:87:A4:F5:F1:D3:99:78:56:13:15:CD:46:0D:67:1A
Subject
commonName
StartCom Certification Authority G3
countryName
ES
organizationName
StartCom CA
Details
Signature algorithm
sha256WithRSAEncryption
Public key
4096 bit RSA
Valid from
2017-04-11 07:30:01 UTC
Valid to
2022-04-11 07:30:01 UTC
CRL
http://crl.startssl.com/sfsca.crl
OCSP
http://ocsp.startssl.com
33:BE:EB:5F:56:F3:79:EC:E0:BA:4D:A6:C1:A3:CC:2B:35:78:FC:7B
Subject
commonName
StartCom Certification Authority
countryName
IL
organizationalUnitName
Secure Digital Certificate Signing
organizationName
StartCom Ltd.
Details
Signature algorithm
sha256WithRSAEncryption
Public key
4096 bit RSA
Valid from
2006-09-17 19:46:37 UTC
Valid to
2036-09-17 19:46:37 UTC
CRL
http://crl.startssl.com/ca-g2.crl
OCSP
http://ocsp.startssl.com/ca-g2
14:E8:0D:AF:47:BB:F6:44:5D:21:F2:2F:C1:8C:B4:56:93:3F:56:8D
Subject
commonName
StartCom Certification Authority G2
countryName
IL
organizationName
StartCom Ltd.
Details
Signature algorithm
sha256WithRSAEncryption
Public key
4096 bit RSA
Valid from
2010-01-01 01:00:00 UTC
Valid to
2039-12-31 23:59:00 UTC
BB:25:A3:D8:49:30:0F:2E:87:9F:74:36:43:6D:12:94:4A:F5:5A:DA

Protocols

SSLv2 Yes
SSLv3 No
TLSv1 Yes
TLSv1.1 No
TLSv1.2 No

Ciphers

Server does respect the client's cipher ordering.

Cipher suiteBitsizeForward secrecyInfo
DHE-RSA-CAMELLIA256-SHA (0x88) 256 Yes Diffie-Hellman:
Group: RFC 3526 2048-bit MODP Group
Bitsize: 2048
DHE-RSA-AES256-SHA (0x39) 256 Yes Diffie-Hellman:
Group: RFC 3526 2048-bit MODP Group
Bitsize: 2048
ADH-CAMELLIA256-SHA (0x89) 256 No Diffie-Hellman:
Group: RFC 3526 2048-bit MODP Group
Bitsize: 2048
CAMELLIA256-SHA (0x84) 256 No -
ADH-AES256-SHA (0x3a) 256 No Diffie-Hellman:
Group: RFC 3526 2048-bit MODP Group
Bitsize: 2048
AES256-SHA (0x35) 256 No -
DHE-RSA-CAMELLIA128-SHA (0x45) 128 Yes Diffie-Hellman:
Group: RFC 3526 2048-bit MODP Group
Bitsize: 2048
DHE-RSA-AES128-SHA (0x33) 128 Yes Diffie-Hellman:
Group: RFC 3526 2048-bit MODP Group
Bitsize: 2048
ADH-CAMELLIA128-SHA (0x46) 128 No Diffie-Hellman:
Group: RFC 3526 2048-bit MODP Group
Bitsize: 2048
CAMELLIA128-SHA (0x41) 128 No -
ADH-AES128-SHA (0x34) 128 No Diffie-Hellman:
Group: RFC 3526 2048-bit MODP Group
Bitsize: 2048
AES128-SHA (0x2f) 128 No -
EDH-RSA-DES-CBC3-SHA (0x16) WEAK 112 Yes Diffie-Hellman:
Group: RFC 3526 2048-bit MODP Group
Bitsize: 2048
DES-CBC3-MD5 (0x700c0) WEAK 112 No -
ADH-DES-CBC3-SHA (0x1b) WEAK 112 No Diffie-Hellman:
Group: RFC 3526 2048-bit MODP Group
Bitsize: 2048
DES-CBC3-SHA (0xa) WEAK 112 No -

Badge

xmpp.net score

Want to show this result on your webpage? Add this:

<a href='https://xmpp.net/result.php?domain=canlin.alfalab.com&amp;type=client'><img src='https://xmpp.net/badge.php?domain=canlin.alfalab.com' alt='xmpp.net score' /></a>