IM Observatory server report for ludost.net

Test started 2021-01-26 15:56:02 UTC .

Show client to server result | Permalink to this report |

tryler.ludost.net:5269
Grade T: Certificate is not trusted, but ignoring trust would score an A.
tryler.ludost.net:5269
StartTLS
ALLOWED
Peer certificate
The server requires incoming s2s connections to present a peer certificate.

SRV records _xmpp-server._tcp.ludost.net DNSSEC

Priority Weight Port Server
5 0 5269 tryler.ludost.net

TLSA records

Certificates

Subject
commonName
ludost.net
Details
Error: unable to get local issuer certificate.
Error: unable to verify the first certificate.
Signature algorithm
sha256WithRSAEncryption
Public key
4096 bit RSA
Valid from
2021-01-05 11:04:14 UTC
Valid to
2021-04-05 11:04:14 UTC
OCSP
http://r3.o.lencr.org
Valid for ludost.net
YES
A2:7A:2C:94:46:BA:4D:BC:FB:68:8E:9F:A3:2D:1C:0B:29:8A:EC:71
Subject Alternative Names
DNSName
ludost.net Matches
DNSName
tyler.ludost.net
Subject
commonName
R3
countryName
US
organizationName
Let's Encrypt
Details
Signature algorithm
sha256WithRSAEncryption
Public key
2048 bit RSA
Valid from
2020-09-04 00:00:00 UTC
Valid to
2025-09-15 16:00:00 UTC
CRL
http://x1.c.lencr.org/
A0:53:37:5B:FE:84:E8:B7:48:78:2C:7C:EE:15:82:7A:6A:F5:A4:05
Subject
commonName
ISRG Root X1
countryName
US
organizationName
Internet Security Research Group
Details
Signature algorithm
sha256WithRSAEncryption
Public key
4096 bit RSA
Valid from
2015-06-04 11:04:38 UTC
Valid to
2035-06-04 11:04:38 UTC
CA:BD:2A:79:A1:07:6A:31:F2:1D:25:36:35:CB:03:9D:43:29:A5:E8
Subject
commonName
Let's Encrypt Authority X3
countryName
US
organizationName
Let's Encrypt
Details
Warning: Certificate is unused.
Signature algorithm
sha256WithRSAEncryption
Public key
2048 bit RSA
Valid from
2016-03-17 16:40:46 UTC
Valid to
2021-03-17 16:40:46 UTC
CRL
http://crl.identrust.com/DSTROOTCAX3CRL.crl
OCSP
http://isrg.trustid.ocsp.identrust.com
E6:A3:B4:5B:06:2D:50:9B:33:82:28:2D:19:6E:FE:97:D5:95:6C:CB

Protocols

SSLv2 No
SSLv3 No
TLSv1 No
TLSv1.1 No
TLSv1.2 Yes

Ciphers

Server does not respect the client's cipher ordering.

Cipher suiteBitsizeForward secrecyInfo
ECDHE-RSA-AES256-GCM-SHA384 (0xc030) 256 Yes Curve: secp384r1
ECDHE-RSA-AES128-GCM-SHA256 (0xc02f) 128 Yes Curve: secp384r1
ECDHE-RSA-AES256-SHA384 (0xc028) 256 Yes Curve: secp384r1
ECDHE-RSA-AES128-SHA256 (0xc027) 128 Yes Curve: secp384r1
ECDHE-RSA-AES256-SHA (0xc014) 256 Yes Curve: secp384r1
ECDHE-RSA-AES128-SHA (0xc013) 128 Yes Curve: secp384r1
AES256-GCM-SHA384 (0x9d) 256 No -
AES128-GCM-SHA256 (0x9c) 128 No -
AES256-SHA256 (0x3d) 256 No -
AES128-SHA256 (0x3c) 128 No -
AES256-SHA (0x35) 256 No -
CAMELLIA256-SHA (0x84) 256 No -
AES128-SHA (0x2f) 128 No -
CAMELLIA128-SHA (0x41) 128 No -

Badge

xmpp.net score

Want to show this result on your webpage? Add this:

<a href='https://xmpp.net/result.php?domain=ludost.net&amp;type=server'><img src='https://xmpp.net/badge.php?domain=ludost.net' alt='xmpp.net score' /></a>