IM Observatory client report for lz5.at

Test started 2018-04-17 02:58:22 UTC .

Show server to server result | Permalink to this report | Retest

lz5.at:5222
Certificate is not trusted, grade capped to F. Ignoring trust: C.
Warning: Server allows RC4 when using TLS 1.1 and/or TLS 1.2. Grade capped to C.
Server uses Diffie-Hellman parameters of < 2048 bits. Grade capped to B.
lz5.at:5222
StartTLS
ALLOWED

SASL

Pre-TLS
PLAIN
Post-TLS
PLAIN

SRV records _xmpp-client._tcp.lz5.at NO DNSSEC

Priority Weight Port Server

TLSA records

Certificates

Subject
commonName
mail.lz5.at
countryName
AT
Details
Signature algorithm
sha256WithRSAEncryption
Public key
4096 bit RSA
Valid from
2016-10-08 14:03:37 UTC
Valid to
2019-10-08 14:03:37 UTC
CRL
http://crl.startssl.com/sca-server1.crl
OCSP
http://ocsp.startssl.com
Valid for lz5.at
NO
17:80:AA:DD:22:74:E5:4C:3E:35:0B:55:F2:51:A1:1E:41:86:D1:C2
Subject Alternative Names
DNSName
mail.lz5.at
Subject
commonName
StartCom Class 1 DV Server CA
countryName
IL
organizationalUnitName
StartCom Certification Authority
organizationName
StartCom Ltd.
Details
Signature algorithm
sha256WithRSAEncryption
Public key
2048 bit RSA
Valid from
2015-12-16 01:00:05 UTC
Valid to
2030-12-16 01:00:05 UTC
CRL
http://crl.startssl.com/sfsca.crl
OCSP
http://ocsp.startssl.com
39:8E:19:36:63:9B:A5:20:6D:F5:17:9B:FB:B7:01:09:33:96:94:00
Subject
commonName
StartCom Certification Authority
countryName
IL
organizationalUnitName
Secure Digital Certificate Signing
organizationName
StartCom Ltd.
Details
Error: self signed certificate in certificate chain.
Signature algorithm
sha1WithRSAEncryption
Public key
4096 bit RSA
Valid from
2006-09-17 19:46:36 UTC
Valid to
2036-09-17 19:46:36 UTC
CRL
http://crl.startcom.org/sfsca-crl.crl
3E:2B:F7:F2:03:1B:96:F3:8C:E6:C4:D8:A8:5D:3E:2D:58:47:6A:0F

Protocols

SSLv2 No
SSLv3 No
TLSv1 Yes
TLSv1.1 Yes
TLSv1.2 Yes

Ciphers

Server does respect the client's cipher ordering.

Cipher suiteBitsizeForward secrecyInfo
DHE-RSA-AES256-GCM-SHA384 (0x9f) 256 Yes Diffie-Hellman:
Bitsize: 1025
DHE-RSA-CAMELLIA256-SHA (0x88) 256 Yes Diffie-Hellman:
Bitsize: 1025
DHE-RSA-AES256-SHA256 (0x6b) 256 Yes Diffie-Hellman:
Bitsize: 1025
DHE-RSA-AES256-SHA (0x39) 256 Yes Diffie-Hellman:
Bitsize: 1025
ADH-AES256-GCM-SHA384 (0xa7) 256 No Diffie-Hellman:
Bitsize: 1025
AES256-GCM-SHA384 (0x9d) 256 No -
ADH-CAMELLIA256-SHA (0x89) 256 No Diffie-Hellman:
Bitsize: 1025
CAMELLIA256-SHA (0x84) 256 No -
ADH-AES256-SHA256 (0x6d) 256 No Diffie-Hellman:
Bitsize: 1025
AES256-SHA256 (0x3d) 256 No -
ADH-AES256-SHA (0x3a) 256 No Diffie-Hellman:
Bitsize: 1025
AES256-SHA (0x35) 256 No -
DHE-RSA-AES128-GCM-SHA256 (0x9e) 128 Yes Diffie-Hellman:
Bitsize: 1025
DHE-RSA-SEED-SHA (0x9a) 128 Yes Diffie-Hellman:
Bitsize: 1025
DHE-RSA-AES128-SHA256 (0x67) 128 Yes Diffie-Hellman:
Bitsize: 1025
DHE-RSA-CAMELLIA128-SHA (0x45) 128 Yes Diffie-Hellman:
Bitsize: 1025
DHE-RSA-AES128-SHA (0x33) 128 Yes Diffie-Hellman:
Bitsize: 1025
ADH-AES128-GCM-SHA256 (0xa6) 128 No Diffie-Hellman:
Bitsize: 1025
AES128-GCM-SHA256 (0x9c) 128 No -
ADH-SEED-SHA (0x9b) 128 No Diffie-Hellman:
Bitsize: 1025
SEED-SHA (0x96) 128 No -
ADH-AES128-SHA256 (0x6c) 128 No Diffie-Hellman:
Bitsize: 1025
ADH-CAMELLIA128-SHA (0x46) 128 No Diffie-Hellman:
Bitsize: 1025
CAMELLIA128-SHA (0x41) 128 No -
AES128-SHA256 (0x3c) 128 No -
ADH-AES128-SHA (0x34) 128 No Diffie-Hellman:
Bitsize: 1025
AES128-SHA (0x2f) 128 No -
RC4-SHA (0x5) 128 No -
EDH-RSA-DES-CBC3-SHA (0x16) WEAK 112 Yes Diffie-Hellman:
Bitsize: 1025
ADH-DES-CBC3-SHA (0x1b) WEAK 112 No Diffie-Hellman:
Bitsize: 1025
DES-CBC3-SHA (0xa) WEAK 112 No -

Badge

xmpp.net score

Want to show this result on your webpage? Add this:

<a href='https://xmpp.net/result.php?domain=lz5.at&amp;type=client'><img src='https://xmpp.net/badge.php?domain=lz5.at' alt='xmpp.net score' /></a>