IM Observatory client report for imp.comwave.net

Test started 2021-04-07 21:11:00 UTC .

Show server to server result | Permalink to this report |

imp-01.comwave.net:5222
Warning: Server allows RC4 when using TLS 1.1 and/or TLS 1.2. Grade capped to C.
Server supports SSL 3. Grade capped to B.
Server uses Diffie-Hellman parameters of < 2048 bits. Grade capped to B.
imp-02.comwave.net:5222
Warning: Server allows RC4 when using TLS 1.1 and/or TLS 1.2. Grade capped to C.
Server supports SSL 3. Grade capped to B.
Server uses Diffie-Hellman parameters of < 2048 bits. Grade capped to B.

Show all 2 SRV targets

imp-01.comwave.net:5222
StartTLS
ALLOWED

SASL

Pre-TLS
ANONYMOUS
PLAIN
Post-TLS
ANONYMOUS
PLAIN

imp-02.comwave.net:5222
StartTLS
ALLOWED

SASL

Pre-TLS
ANONYMOUS
PLAIN
Post-TLS
ANONYMOUS
PLAIN

Show all 2 SRV targets

SRV records _xmpp-client._tcp.imp.comwave.net NO DNSSEC

Priority Weight Port Server
10 20 5222 imp-01.comwave.net
20 20 5222 imp-02.comwave.net

TLSA records

Show all 2 SRV targets

Certificates

Subject
commonName
*.comwave.net
organizationalUnitName
Domain Control Validated
Details
Signature algorithm
sha256WithRSAEncryption
Public key
4096 bit RSA
Valid from
2020-12-01 18:26:37 UTC
Valid to
2022-01-02 18:26:37 UTC
CRL
http://crl.starfieldtech.com/sfig2s1-258.crl
OCSP
http://ocsp.starfieldtech.com/
Valid for imp.comwave.net
YES
87:4D:02:E6:8C:F4:86:C6:A3:42:0E:1B:A1:40:AA:20:A9:F7:B0:51
Subject Alternative Names
DNSName
*.comwave.net
DNSName
comwave.net
Subject
commonName
Starfield Secure Certificate Authority - G2
countryName
US
localityName
Scottsdale
organizationalUnitName
http://certs.starfieldtech.com/repository/
organizationName
Starfield Technologies, Inc.
stateOrProvinceName
Arizona
Details
Signature algorithm
sha256WithRSAEncryption
Public key
2048 bit RSA
Valid from
2011-05-03 07:00:00 UTC
Valid to
2031-05-03 07:00:00 UTC
CRL
http://crl.starfieldtech.com/sfroot-g2.crl
OCSP
http://ocsp.starfieldtech.com/
7E:DC:37:6D:CF:D4:5E:6D:DF:08:2C:16:0D:F6:AC:21:83:5B:95:D4
Subject
commonName
Starfield Root Certificate Authority - G2
countryName
US
localityName
Scottsdale
organizationName
Starfield Technologies, Inc.
stateOrProvinceName
Arizona
Details
Signature algorithm
sha256WithRSAEncryption
Public key
2048 bit RSA
Valid from
2014-01-01 07:00:00 UTC
Valid to
2031-05-30 07:00:00 UTC
CRL
http://crl.starfieldtech.com/sfroot.crl
OCSP
http://ocsp.starfieldtech.com/
95:65:B7:78:C8:A5:0E:B4:FE:FD:45:C8:A6:58:DD:E2:41:1E:AD:0A
Subject
countryName
US
organizationalUnitName
Starfield Class 2 Certification Authority
organizationName
Starfield Technologies, Inc.
Details
Signature algorithm
sha1WithRSAEncryption
Public key
2048 bit RSA
Valid from
2004-06-29 17:39:16 UTC
Valid to
2034-06-29 17:39:16 UTC
AD:7E:1C:28:B0:64:EF:8F:60:03:40:20:14:C3:D0:E3:37:0E:B5:8A

Protocols

SSLv2 No
SSLv3 Yes
TLSv1 Yes
TLSv1.1 Yes
TLSv1.2 Yes

Ciphers

Server does respect the client's cipher ordering.

Cipher suiteBitsizeForward secrecyInfo
ECDHE-RSA-AES128-SHA256 (0xc027) 128 Yes Curve: sect571r1
ECDHE-RSA-AES128-SHA (0xc013) 128 Yes Curve: sect571r1
ECDHE-RSA-RC4-SHA (0xc011) 128 Yes Curve: sect571r1
DHE-RSA-AES128-SHA256 (0x67) 128 Yes Diffie-Hellman:
Group: RFC 2409 First Oakley Default Group
Bitsize: 1024
DHE-RSA-AES128-SHA (0x33) 128 Yes Diffie-Hellman:
Group: RFC 2409 First Oakley Default Group
Bitsize: 1024
RC4-MD5 (0x10080) 128 No -
AES128-SHA256 (0x3c) 128 No -
AES128-SHA (0x2f) 128 No -
RC4-SHA (0x5) 128 No -
ECDHE-RSA-DES-CBC3-SHA (0xc012) WEAK 112 Yes Curve: sect571r1
EDH-RSA-DES-CBC3-SHA (0x16) WEAK 112 Yes Diffie-Hellman:
Group: RFC 2409 First Oakley Default Group
Bitsize: 1024
DES-CBC3-SHA (0xa) WEAK 112 No -

Certificates

Subject
commonName
*.comwave.net
organizationalUnitName
Domain Control Validated
Details
Signature algorithm
sha256WithRSAEncryption
Public key
4096 bit RSA
Valid from
2020-12-01 18:26:37 UTC
Valid to
2022-01-02 18:26:37 UTC
CRL
http://crl.starfieldtech.com/sfig2s1-258.crl
OCSP
http://ocsp.starfieldtech.com/
87:4D:02:E6:8C:F4:86:C6:A3:42:0E:1B:A1:40:AA:20:A9:F7:B0:51
Subject Alternative Names
DNSName
*.comwave.net
DNSName
comwave.net
Subject
commonName
Starfield Secure Certificate Authority - G2
countryName
US
localityName
Scottsdale
organizationalUnitName
http://certs.starfieldtech.com/repository/
organizationName
Starfield Technologies, Inc.
stateOrProvinceName
Arizona
Details
Signature algorithm
sha256WithRSAEncryption
Public key
2048 bit RSA
Valid from
2011-05-03 07:00:00 UTC
Valid to
2031-05-03 07:00:00 UTC
CRL
http://crl.starfieldtech.com/sfroot-g2.crl
OCSP
http://ocsp.starfieldtech.com/
7E:DC:37:6D:CF:D4:5E:6D:DF:08:2C:16:0D:F6:AC:21:83:5B:95:D4
Subject
commonName
Starfield Root Certificate Authority - G2
countryName
US
localityName
Scottsdale
organizationName
Starfield Technologies, Inc.
stateOrProvinceName
Arizona
Details
Signature algorithm
sha256WithRSAEncryption
Public key
2048 bit RSA
Valid from
2014-01-01 07:00:00 UTC
Valid to
2031-05-30 07:00:00 UTC
CRL
http://crl.starfieldtech.com/sfroot.crl
OCSP
http://ocsp.starfieldtech.com/
95:65:B7:78:C8:A5:0E:B4:FE:FD:45:C8:A6:58:DD:E2:41:1E:AD:0A
Subject
countryName
US
organizationalUnitName
Starfield Class 2 Certification Authority
organizationName
Starfield Technologies, Inc.
Details
Signature algorithm
sha1WithRSAEncryption
Public key
2048 bit RSA
Valid from
2004-06-29 17:39:16 UTC
Valid to
2034-06-29 17:39:16 UTC
AD:7E:1C:28:B0:64:EF:8F:60:03:40:20:14:C3:D0:E3:37:0E:B5:8A

Protocols

SSLv2 No
SSLv3 Yes
TLSv1 Yes
TLSv1.1 Yes
TLSv1.2 Yes

Ciphers

Server does respect the client's cipher ordering.

Cipher suiteBitsizeForward secrecyInfo
ECDHE-RSA-AES128-SHA256 (0xc027) 128 Yes Curve: sect571r1
ECDHE-RSA-AES128-SHA (0xc013) 128 Yes Curve: sect571r1
ECDHE-RSA-RC4-SHA (0xc011) 128 Yes Curve: sect571r1
DHE-RSA-AES128-SHA256 (0x67) 128 Yes Diffie-Hellman:
Group: RFC 2409 First Oakley Default Group
Bitsize: 1024
DHE-RSA-AES128-SHA (0x33) 128 Yes Diffie-Hellman:
Group: RFC 2409 First Oakley Default Group
Bitsize: 1024
RC4-MD5 (0x10080) 128 No -
AES128-SHA256 (0x3c) 128 No -
AES128-SHA (0x2f) 128 No -
RC4-SHA (0x5) 128 No -
ECDHE-RSA-DES-CBC3-SHA (0xc012) WEAK 112 Yes Curve: sect571r1
EDH-RSA-DES-CBC3-SHA (0x16) WEAK 112 Yes Diffie-Hellman:
Group: RFC 2409 First Oakley Default Group
Bitsize: 1024
DES-CBC3-SHA (0xa) WEAK 112 No -

Show all 2 SRV targets

Badge

xmpp.net score

Want to show this result on your webpage? Add this:

<a href='https://xmpp.net/result.php?domain=imp.comwave.net&amp;type=client'><img src='https://xmpp.net/badge.php?domain=imp.comwave.net' alt='xmpp.net score' /></a>