IM Observatory server report for jabber.fit.vutbr.cz

Test started 2018-09-22 17:37:00 UTC .

Show client to server result | Permalink to this report | Retest

jabber.fit.vutbr.cz:5269
Certificate is not trusted, grade capped to F. Ignoring trust: C.
Server uses an RSA key with < 2048 bits. Grade capped to B.
Warning: Server allows RC4 when using TLS 1.1 and/or TLS 1.2. Grade capped to C.
Server uses Diffie-Hellman parameters of < 2048 bits. Grade capped to B.
jabber.fit.vutbr.cz:5269
StartTLS
ALLOWED

SRV records _xmpp-server._tcp.jabber.fit.vutbr.cz DNSSEC

Priority Weight Port Server

TLSA records

Certificates

Subject
commonName
jabber.fit.vutbr.cz
countryName
CZ
localityName
Brno
organizationalUnitName
Faculty of Information Technology
organizationName
Brno University of Technology
stateOrProvinceName
Czech Republic
Details
Signature algorithm
sha256WithRSAEncryption
Public key
1024 bit RSA WEAK
Valid from
2017-07-20 14:04:02 UTC
Valid to
2020-07-20 14:04:02 UTC
CRL
http://ca.vutbr.cz/pki/pub/crl/cacrl.crl
Valid for jabber.fit.vutbr.cz
YES
02:82:53:0D:57:20:9D:EB:F8:D8:52:89:96:D7:9F:42:DA:38:3E:2D
Subject Alternative Names
DNSName
jabber.fit.vutbr.cz Matches
Subject
commonName
Brno University of Technology CA
countryName
CZ
localityName
Brno
organizationalUnitName
Certification Authority
organizationName
Brno University of Technology
stateOrProvinceName
Czech Republic
Details
Error: self signed certificate in certificate chain.
Signature algorithm
sha1WithRSAEncryption
Public key
4096 bit RSA
Valid from
2009-07-28 16:31:19 UTC
Valid to
2029-07-28 16:31:19 UTC
CRL
http://ca.vutbr.cz/pki/pub/crl/cacrl.crl
15:1A:48:8E:16:E1:50:6C:B3:2C:5B:04:B5:7E:53:89:B4:20:E3:49

Protocols

SSLv2 No
SSLv3 No
TLSv1 Yes
TLSv1.1 Yes
TLSv1.2 Yes

Ciphers

Server does respect the client's cipher ordering.

Cipher suiteBitsizeForward secrecyInfo
ECDHE-RSA-AES256-GCM-SHA384 (0xc030) 256 Yes Curve: prime256v1
ECDHE-RSA-AES256-SHA384 (0xc028) 256 Yes Curve: prime256v1
ECDHE-RSA-AES256-SHA (0xc014) 256 Yes Curve: prime256v1
DHE-RSA-AES256-GCM-SHA384 (0x9f) 256 Yes Diffie-Hellman:
Group: RFC 2409 First Oakley Default Group
Bitsize: 1024
DHE-RSA-CAMELLIA256-SHA (0x88) 256 Yes Diffie-Hellman:
Group: RFC 2409 First Oakley Default Group
Bitsize: 1024
DHE-RSA-AES256-SHA256 (0x6b) 256 Yes Diffie-Hellman:
Group: RFC 2409 First Oakley Default Group
Bitsize: 1024
DHE-RSA-AES256-SHA (0x39) 256 Yes Diffie-Hellman:
Group: RFC 2409 First Oakley Default Group
Bitsize: 1024
AES256-GCM-SHA384 (0x9d) 256 No -
CAMELLIA256-SHA (0x84) 256 No -
AES256-SHA256 (0x3d) 256 No -
AES256-SHA (0x35) 256 No -
ECDHE-RSA-AES128-GCM-SHA256 (0xc02f) 128 Yes Curve: prime256v1
ECDHE-RSA-AES128-SHA256 (0xc027) 128 Yes Curve: prime256v1
ECDHE-RSA-AES128-SHA (0xc013) 128 Yes Curve: prime256v1
ECDHE-RSA-RC4-SHA (0xc011) 128 Yes Curve: prime256v1
DHE-RSA-AES128-GCM-SHA256 (0x9e) 128 Yes Diffie-Hellman:
Group: RFC 2409 First Oakley Default Group
Bitsize: 1024
DHE-RSA-SEED-SHA (0x9a) 128 Yes Diffie-Hellman:
Group: RFC 2409 First Oakley Default Group
Bitsize: 1024
DHE-RSA-AES128-SHA256 (0x67) 128 Yes Diffie-Hellman:
Group: RFC 2409 First Oakley Default Group
Bitsize: 1024
DHE-RSA-CAMELLIA128-SHA (0x45) 128 Yes Diffie-Hellman:
Group: RFC 2409 First Oakley Default Group
Bitsize: 1024
DHE-RSA-AES128-SHA (0x33) 128 Yes Diffie-Hellman:
Group: RFC 2409 First Oakley Default Group
Bitsize: 1024
RC4-MD5 (0x10080) 128 No -
AES128-GCM-SHA256 (0x9c) 128 No -
SEED-SHA (0x96) 128 No -
CAMELLIA128-SHA (0x41) 128 No -
AES128-SHA256 (0x3c) 128 No -
AES128-SHA (0x2f) 128 No -
IDEA-CBC-SHA (0x7) 128 No -
RC4-SHA (0x5) 128 No -
ECDHE-RSA-DES-CBC3-SHA (0xc012) WEAK 112 Yes Curve: prime256v1
EDH-RSA-DES-CBC3-SHA (0x16) WEAK 112 Yes Diffie-Hellman:
Group: RFC 2409 First Oakley Default Group
Bitsize: 1024
DES-CBC3-SHA (0xa) WEAK 112 No -

Badge

xmpp.net score

Want to show this result on your webpage? Add this:

<a href='https://xmpp.net/result.php?domain=jabber.fit.vutbr.cz&amp;type=server'><img src='https://xmpp.net/badge.php?domain=jabber.fit.vutbr.cz' alt='xmpp.net score' /></a>