IM Observatory client report for dc1vms020.inserm.fr

Test started 2019-01-07 01:15:37 UTC .

Show server to server result | Permalink to this report |

dc1vms020.inserm.fr:5222
Certificate is not trusted, grade capped to F. Ignoring trust: B.
dc1vms020.inserm.fr:5222
StartTLS
REQUIRED

SASL

Pre-TLS
JIVE-SHAREDSECRET
OFMEET
PLAIN
Post-TLS
JIVE-SHAREDSECRET
OFMEET
PLAIN

SRV records _xmpp-client._tcp.dc1vms020.inserm.fr BOGUS DNSSEC

Priority Weight Port Server

TLSA records

Certificates

Subject
commonName
mi.inserm.fr
countryName
FR
localityName
Paris
organizationalUnitName
DSI
organizationName
INSTITUT NATIONAL DE LA SANTE ET DE LA RECHERCHE MEDICALE
stateOrProvinceName
Paris
Details
Error: unable to get local issuer certificate.
Error: unable to verify the first certificate.
Signature algorithm
sha256WithRSAEncryption
Public key
2048 bit RSA
Valid from
2016-02-04 00:00:00 UTC
Valid to
2019-02-08 12:00:00 UTC
CRL
http://crl4.digicert.com/TERENASSLCA3.crl
OCSP
http://ocsp.digicert.com
Valid for dc1vms020.inserm.fr
NO
7B:6A:87:D0:F1:E6:14:C1:A3:BB:B0:D0:44:FF:E1:01:9C:E0:61:EA
Subject Alternative Names
DNSName
mi.inserm.fr
Subject
commonName
TERENA SSL CA 3
countryName
NL
localityName
Amsterdam
organizationName
TERENA
stateOrProvinceName
Noord-Holland
Details
Signature algorithm
sha256WithRSAEncryption
Public key
2048 bit RSA
Valid from
2014-11-18 12:00:00 UTC
Valid to
2024-11-18 12:00:00 UTC
CRL
http://crl4.digicert.com/DigiCertAssuredIDRootCA.crl
OCSP
http://ocsp.digicert.com
77:B9:9B:B2:BD:75:22:E1:7E:C0:99:EA:71:77:51:6F:27:78:7C:AD
Subject
commonName
DigiCert Assured ID Root CA
countryName
US
organizationalUnitName
www.digicert.com
organizationName
DigiCert Inc
Details
Signature algorithm
sha1WithRSAEncryption
Public key
2048 bit RSA
Valid from
2006-11-10 00:00:00 UTC
Valid to
2031-11-10 00:00:00 UTC
05:63:B8:63:0D:62:D7:5A:BB:C8:AB:1E:4B:DF:B5:A8:99:B2:4D:43

Protocols

SSLv2 No
SSLv3 No
TLSv1 Yes
TLSv1.1 Yes
TLSv1.2 Yes

Ciphers

Server does respect the client's cipher ordering.

Cipher suiteBitsizeForward secrecyInfo
ECDHE-RSA-AES256-GCM-SHA384 (0xc030) 256 Yes Curve: sect571r1
ECDHE-RSA-AES256-SHA384 (0xc028) 256 Yes Curve: sect571r1
ECDHE-RSA-AES256-SHA (0xc014) 256 Yes Curve: sect571r1
DHE-RSA-AES256-GCM-SHA384 (0x9f) 256 Yes Diffie-Hellman:
Group: draft-ietf-tls-negotiated-ff-dhe-10 ffdhe2048
Bitsize: 2048
DHE-RSA-AES256-SHA256 (0x6b) 256 Yes Diffie-Hellman:
Group: draft-ietf-tls-negotiated-ff-dhe-10 ffdhe2048
Bitsize: 2048
DHE-RSA-AES256-SHA (0x39) 256 Yes Diffie-Hellman:
Group: draft-ietf-tls-negotiated-ff-dhe-10 ffdhe2048
Bitsize: 2048
AES256-GCM-SHA384 (0x9d) 256 No -
AES256-SHA256 (0x3d) 256 No -
AES256-SHA (0x35) 256 No -
ECDHE-RSA-AES128-GCM-SHA256 (0xc02f) 128 Yes Curve: sect571r1
ECDHE-RSA-AES128-SHA256 (0xc027) 128 Yes Curve: sect571r1
ECDHE-RSA-AES128-SHA (0xc013) 128 Yes Curve: sect571r1
DHE-RSA-AES128-GCM-SHA256 (0x9e) 128 Yes Diffie-Hellman:
Group: draft-ietf-tls-negotiated-ff-dhe-10 ffdhe2048
Bitsize: 2048
DHE-RSA-AES128-SHA256 (0x67) 128 Yes Diffie-Hellman:
Group: draft-ietf-tls-negotiated-ff-dhe-10 ffdhe2048
Bitsize: 2048
DHE-RSA-AES128-SHA (0x33) 128 Yes Diffie-Hellman:
Group: draft-ietf-tls-negotiated-ff-dhe-10 ffdhe2048
Bitsize: 2048
AES128-GCM-SHA256 (0x9c) 128 No -
AES128-SHA256 (0x3c) 128 No -
AES128-SHA (0x2f) 128 No -
ECDHE-RSA-DES-CBC3-SHA (0xc012) WEAK 112 Yes Curve: sect571r1
EDH-RSA-DES-CBC3-SHA (0x16) WEAK 112 Yes Diffie-Hellman:
Group: draft-ietf-tls-negotiated-ff-dhe-10 ffdhe2048
Bitsize: 2048
DES-CBC3-SHA (0xa) WEAK 112 No -

Badge

xmpp.net score

Want to show this result on your webpage? Add this:

<a href='https://xmpp.net/result.php?domain=dc1vms020.inserm.fr&amp;type=client'><img src='https://xmpp.net/badge.php?domain=dc1vms020.inserm.fr' alt='xmpp.net score' /></a>