IM Observatory client report for ifsr.de

Test started 2018-12-16 17:57:45 UTC .

Show server to server result | Permalink to this report | Retest

ifsr.de:5222
Server supports SSL 3. Grade capped to B.
Server uses Diffie-Hellman parameters of < 2048 bits. Grade capped to B.
ifsr.de:5222
StartTLS
ALLOWED

SASL

Pre-TLS
PLAIN
X-OAUTH2
Post-TLS
PLAIN
X-OAUTH2

SRV records _xmpp-client._tcp.ifsr.de BOGUS DNSSEC

Priority Weight Port Server

TLSA records

Certificates

Subject
commonName
ifsr.de
countryName
DE
localityName
Dresden
organizationalUnitName
iFSR
organizationName
Technische Universitaet Dresden
stateOrProvinceName
Sachsen
Details
Signature algorithm
sha256WithRSAEncryption
Public key
4096 bit RSA
Valid from
2018-08-07 08:03:57 UTC
Valid to
2020-11-08 08:03:57 UTC
CRL
http://cdp2.pca.dfn.de/tu-dresden-g2-ca/pub/crl/cacrl.crl
OCSP
http://ocsp.pca.dfn.de/OCSP-Server/OCSP
Valid for ifsr.de
YES
3F:65:83:2F:60:BF:F3:85:5D:E4:85:A9:84:88:07:3F:3D:60:22:24
Subject Alternative Names
DNSName
admin.ifsr.de
DNSName
ascii.ifsr.de
DNSName
cups.ifsr.de
DNSName
dev.ifsr.de
DNSName
ep.ifsr.de
DNSName
ese.ifsr.de
DNSName
etherpad.ifsr.de
DNSName
fsr.etherpad.ifsr.de
DNSName
ftp.ifsr.de
DNSName
git.ifsr.de
DNSName
ifsr.de Matches
DNSName
imap.ifsr.de
DNSName
jabber.ifsr.de
DNSName
kif.ifsr.de
DNSName
kurse.ifsr.de
DNSName
ldap.ifsr.de
DNSName
lists.ifsr.de
DNSName
mail.ifsr.de
DNSName
nc.ifsr.de
DNSName
oc.ifsr.de
DNSName
pad.ifsr.de
DNSName
propaganda.ifsr.de
DNSName
staging.ifsr.de
DNSName
users.ifsr.de
DNSName
wiki.ifsr.de
DNSName
www.ifsr.de
Subject
commonName
TU Dresden CA
countryName
DE
localityName
Dresden
organizationName
Technische Universitaet Dresden
stateOrProvinceName
Sachsen
Details
Signature algorithm
sha256WithRSAEncryption
Public key
2048 bit RSA
Valid from
2016-12-12 14:39:16 UTC
Valid to
2031-02-22 23:59:59 UTC
CRL
http://cdp2.pca.dfn.de/global-root-g2-ca/pub/crl/cacrl.crl
OCSP
http://ocsp.pca.dfn.de/OCSP-Server/OCSP
29:F4:1A:D1:61:FD:98:18:59:DE:48:C1:0F:7E:E6:38:12:1C:E3:B1
Subject
commonName
DFN-Verein Certification Authority 2
countryName
DE
organizationalUnitName
DFN-PKI
organizationName
Verein zur Foerderung eines Deutschen Forschungsnetzes e. V.
Details
Signature algorithm
sha256WithRSAEncryption
Public key
2048 bit RSA
Valid from
2016-02-22 13:38:22 UTC
Valid to
2031-02-22 23:59:59 UTC
CRL
http://pki0336.telesec.de/rl/TeleSec_GlobalRoot_Class_2.crl
OCSP
http://ocsp0336.telesec.de/ocspr
E2:24:BE:F6:D7:86:22:0D:26:2B:B8:07:AB:6D:AC:F9:D3:A8:9A:93
Subject
commonName
T-TeleSec GlobalRoot Class 2
countryName
DE
organizationalUnitName
T-Systems Trust Center
organizationName
T-Systems Enterprise Services GmbH
Details
Signature algorithm
sha256WithRSAEncryption
Public key
2048 bit RSA
Valid from
2008-10-01 10:40:14 UTC
Valid to
2033-10-01 23:59:59 UTC
59:0D:2D:7D:88:4F:40:2E:61:7E:A5:62:32:17:65:CF:17:D8:94:E9

Protocols

SSLv2 No
SSLv3 Yes
TLSv1 Yes
TLSv1.1 Yes
TLSv1.2 Yes

Ciphers

Server does respect the client's cipher ordering.

Cipher suiteBitsizeForward secrecyInfo
ECDHE-RSA-AES256-GCM-SHA384 (0xc030) 256 Yes Curve: prime256v1
ECDHE-RSA-AES256-SHA384 (0xc028) 256 Yes Curve: prime256v1
ECDHE-RSA-AES256-SHA (0xc014) 256 Yes Curve: prime256v1
DHE-RSA-AES256-GCM-SHA384 (0x9f) 256 Yes Diffie-Hellman:
Group: RFC 5114 1024-bit MODP Group with 160-bit Prime Order Subgroup
Bitsize: 1024
DHE-RSA-CAMELLIA256-SHA (0x88) 256 Yes Diffie-Hellman:
Group: RFC 5114 1024-bit MODP Group with 160-bit Prime Order Subgroup
Bitsize: 1024
DHE-RSA-AES256-SHA256 (0x6b) 256 Yes Diffie-Hellman:
Group: RFC 5114 1024-bit MODP Group with 160-bit Prime Order Subgroup
Bitsize: 1024
DHE-RSA-AES256-SHA (0x39) 256 Yes Diffie-Hellman:
Group: RFC 5114 1024-bit MODP Group with 160-bit Prime Order Subgroup
Bitsize: 1024
AES256-GCM-SHA384 (0x9d) 256 No -
CAMELLIA256-SHA (0x84) 256 No -
AES256-SHA256 (0x3d) 256 No -
AES256-SHA (0x35) 256 No -
ECDHE-RSA-AES128-GCM-SHA256 (0xc02f) 128 Yes Curve: prime256v1
ECDHE-RSA-AES128-SHA256 (0xc027) 128 Yes Curve: prime256v1
ECDHE-RSA-AES128-SHA (0xc013) 128 Yes Curve: prime256v1
DHE-RSA-AES128-GCM-SHA256 (0x9e) 128 Yes Diffie-Hellman:
Group: RFC 5114 1024-bit MODP Group with 160-bit Prime Order Subgroup
Bitsize: 1024
DHE-RSA-SEED-SHA (0x9a) 128 Yes Diffie-Hellman:
Group: RFC 5114 1024-bit MODP Group with 160-bit Prime Order Subgroup
Bitsize: 1024
DHE-RSA-AES128-SHA256 (0x67) 128 Yes Diffie-Hellman:
Group: RFC 5114 1024-bit MODP Group with 160-bit Prime Order Subgroup
Bitsize: 1024
DHE-RSA-CAMELLIA128-SHA (0x45) 128 Yes Diffie-Hellman:
Group: RFC 5114 1024-bit MODP Group with 160-bit Prime Order Subgroup
Bitsize: 1024
DHE-RSA-AES128-SHA (0x33) 128 Yes Diffie-Hellman:
Group: RFC 5114 1024-bit MODP Group with 160-bit Prime Order Subgroup
Bitsize: 1024
AES128-GCM-SHA256 (0x9c) 128 No -
SEED-SHA (0x96) 128 No -
CAMELLIA128-SHA (0x41) 128 No -
AES128-SHA256 (0x3c) 128 No -
AES128-SHA (0x2f) 128 No -
IDEA-CBC-SHA (0x7) 128 No -
ECDHE-RSA-DES-CBC3-SHA (0xc012) WEAK 112 Yes Curve: prime256v1
EDH-RSA-DES-CBC3-SHA (0x16) WEAK 112 Yes Diffie-Hellman:
Group: RFC 5114 1024-bit MODP Group with 160-bit Prime Order Subgroup
Bitsize: 1024
DES-CBC3-SHA (0xa) WEAK 112 No -

Badge

xmpp.net score

Want to show this result on your webpage? Add this:

<a href='https://xmpp.net/result.php?domain=ifsr.de&amp;type=client'><img src='https://xmpp.net/badge.php?domain=ifsr.de' alt='xmpp.net score' /></a>