IM Observatory client report for olea.org

Test started 2018-07-17 01:56:47 UTC .

Show server to server result | Permalink to this report | Retest

tormento.olea.org:5222
Certificate is not trusted, grade capped to F. Ignoring trust: F.
Server allows SSLv2, which is obsolete and insecure. Grade capped to F.
Server does not support TLS 1.2. Grade capped to C.
Warning: Server offers no forward-secret ciphers. Grade capped to A-.
Server supports SSL 3. Grade capped to B.
tormento.olea.org:5222
StartTLS
ALLOWED

SASL

Pre-TLS
PLAIN
Post-TLS
PLAIN

SRV records _xmpp-client._tcp.olea.org NO DNSSEC

Priority Weight Port Server
0 0 5222 tormento.olea.org

TLSA records

Certificates

Subject
commonName
tormento.olea.org
Details
Error: unable to get local issuer certificate.
Error: unable to verify the first certificate.
Signature algorithm
sha512WithRSAEncryption
Public key
2048 bit RSA
Valid from
2016-05-23 10:32:10 UTC
Valid to
2018-05-23 10:32:10 UTC
CRL
http://crl.cacert.org/class3-revoke.crl
OCSP
http://ocsp.cacert.org/
Valid for olea.org
YES
98:53:A8:76:5A:84:F4:6C:61:28:BC:CE:47:A2:F7:61:8B:6F:BB:A1
Subject Alternative Names
DNSName
tormento.olea.org
DNSName
olea.org Matches
DNSName
www.olea.org
DNSName
olea.es
DNSName
www.olea.es
DNSName
ismael.olea.org
XMPPAddr
tormento.olea.org
XMPPAddr
olea.org Matches
XMPPAddr
www.olea.org
XMPPAddr
olea.es
XMPPAddr
www.olea.es
XMPPAddr
ismael.olea.org
Subject
commonName
CAcert Class 3 Root
organizationalUnitName
http://www.CAcert.org
organizationName
CAcert Inc.
Details
Signature algorithm
sha256WithRSAEncryption
Public key
4096 bit RSA
Valid from
2011-05-23 17:48:02 UTC
Valid to
2021-05-20 17:48:02 UTC
OCSP
http://ocsp.CAcert.org/
AD:7C:3F:64:FC:44:39:FE:F4:E9:0B:E8:F4:7C:6C:FA:8A:AD:FD:CE
Subject
commonName
CA Cert Signing Authority
emailAddress
support@cacert.org
organizationalUnitName
http://www.cacert.org
organizationName
Root CA
Details
Signature algorithm
md5WithRSAEncryption INSECURE
Public key
4096 bit RSA
Valid from
2003-03-30 12:29:49 UTC
Valid to
2033-03-29 12:29:49 UTC
CRL
https://www.cacert.org/revoke.crl
13:5C:EC:36:F4:9C:B8:E9:3B:1A:B2:70:CD:80:88:46:76:CE:8F:33

Protocols

SSLv2 Yes
SSLv3 Yes
TLSv1 Yes
TLSv1.1 No
TLSv1.2 No

Ciphers

Server does respect the client's cipher ordering.

Cipher suiteBitsizeForward secrecyInfo
AES256-SHA (0x35) 256 No -
RC2-CBC-MD5 (0x30080) 128 No -
RC4-MD5 (0x10080) 128 No -
AES128-SHA (0x2f) 128 No -
RC4-SHA (0x5) 128 No -
DES-CBC3-MD5 (0x700c0) WEAK 112 No -
DES-CBC3-SHA (0xa) WEAK 112 No -
DES-CBC-MD5 (0x60040) VERY WEAK 56 No -
DES-CBC-SHA (0x9) VERY WEAK 56 No -
EXP-RC4-MD5 (0x20080) VERY WEAK 40 No -
EXP-RC2-CBC-MD5 (0x6) VERY WEAK 40 No -

Badge

xmpp.net score

Want to show this result on your webpage? Add this:

<a href='https://xmpp.net/result.php?domain=olea.org&amp;type=client'><img src='https://xmpp.net/badge.php?domain=olea.org' alt='xmpp.net score' /></a>