IM Observatory server report for phcn.de

Test started 2020-02-19 15:43:12 UTC .

Show client to server result | Permalink to this report |

jabber1.phcn.de:5269
Certificate is not trusted, grade capped to F. Ignoring trust: B.
Server uses Diffie-Hellman parameters of < 2048 bits. Grade capped to B.
jabber2.phcn.de:5269
Certificate is not trusted, grade capped to F. Ignoring trust: B.
Server uses Diffie-Hellman parameters of < 2048 bits. Grade capped to B.
jabber.phcn.de:5269
Certificate is not trusted, grade capped to F. Ignoring trust: B.
Server uses Diffie-Hellman parameters of < 2048 bits. Grade capped to B.
jabber3.phcn.de:5269
Error: Test failed.

Show all 4 SRV targets

jabber1.phcn.de:5269
StartTLS
ALLOWED

jabber2.phcn.de:5269
StartTLS
ALLOWED

jabber.phcn.de:5269
StartTLS
ALLOWED

jabber3.phcn.de:5269
StartTLS
ALLOWED

Show all 4 SRV targets

SRV records _xmpp-server._tcp.phcn.de NO DNSSEC

Priority Weight Port Server
0 0 5269 jabber1.phcn.de
0 0 5269 jabber2.phcn.de
0 0 5269 jabber.phcn.de
0 0 5269 jabber3.phcn.de

TLSA records

Show all 4 SRV targets

Certificates

Subject
commonName
phcn.de
countryName
DE
emailAddress
admin@phcn.de
localityName
Munich
organizationalUnitName
Public Service
organizationName
[PHCN]
stateOrProvinceName
Bavaria
Details
Error: unable to get local issuer certificate.
Error: unable to verify the first certificate.
Signature algorithm
sha256WithRSAEncryption
Public key
4096 bit RSA
Valid from
2016-02-03 00:12:00 UTC
Valid to
2021-02-01 00:12:00 UTC
Valid for phcn.de
YES
24:19:1E:28:4F:07:64:B1:3A:B9:7C:E9:20:79:A7:4E:3A:42:5A:62
Subject
commonName
[PHCN] Root CA
countryName
DE
emailAddress
root@phcn.de
organizationName
[PHCN]
stateOrProvinceName
Bavaria
Details
Signature algorithm
sha1WithRSAEncryption
Public key
8192 bit RSA
Valid from
2013-10-31 13:12:22 UTC
Valid to
2043-10-24 13:12:22 UTC
57:28:C3:20:C9:9B:1A:C6:6A:09:0E:51:F2:86:95:FB:78:FE:65:B2

Protocols

SSLv2 No
SSLv3 No
TLSv1 Yes
TLSv1.1 Yes
TLSv1.2 Yes

Ciphers

Server does respect the client's cipher ordering.

Cipher suiteBitsizeForward secrecyInfo
ECDHE-RSA-AES256-GCM-SHA384 (0xc030) 256 Yes Curve: secp521r1
ECDHE-RSA-AES256-SHA384 (0xc028) 256 Yes Curve: secp521r1
ECDHE-RSA-AES256-SHA (0xc014) 256 Yes Curve: secp521r1
DHE-DSS-AES256-GCM-SHA384 (0xa3) 256 Yes Diffie-Hellman:
Group: RFC 2409 First Oakley Default Group
Bitsize: 1024
DHE-RSA-AES256-GCM-SHA384 (0x9f) 256 Yes Diffie-Hellman:
Group: RFC 2409 First Oakley Default Group
Bitsize: 1024
DHE-RSA-AES256-SHA256 (0x6b) 256 Yes Diffie-Hellman:
Group: RFC 2409 First Oakley Default Group
Bitsize: 1024
DHE-DSS-AES256-SHA256 (0x6a) 256 Yes Diffie-Hellman:
Group: RFC 2409 First Oakley Default Group
Bitsize: 1024
DHE-RSA-AES256-SHA (0x39) 256 Yes Diffie-Hellman:
Group: RFC 2409 First Oakley Default Group
Bitsize: 1024
DHE-DSS-AES256-SHA (0x38) 256 Yes Diffie-Hellman:
Group: RFC 2409 First Oakley Default Group
Bitsize: 1024
AES256-GCM-SHA384 (0x9d) 256 No -
AES256-SHA256 (0x3d) 256 No -
AES256-SHA (0x35) 256 No -
ECDHE-RSA-AES128-GCM-SHA256 (0xc02f) 128 Yes Curve: secp521r1
ECDHE-RSA-AES128-SHA256 (0xc027) 128 Yes Curve: secp521r1
ECDHE-RSA-AES128-SHA (0xc013) 128 Yes Curve: secp521r1
DHE-DSS-AES128-GCM-SHA256 (0xa2) 128 Yes Diffie-Hellman:
Group: RFC 2409 First Oakley Default Group
Bitsize: 1024
DHE-RSA-AES128-GCM-SHA256 (0x9e) 128 Yes Diffie-Hellman:
Group: RFC 2409 First Oakley Default Group
Bitsize: 1024
DHE-RSA-AES128-SHA256 (0x67) 128 Yes Diffie-Hellman:
Group: RFC 2409 First Oakley Default Group
Bitsize: 1024
DHE-DSS-AES128-SHA256 (0x40) 128 Yes Diffie-Hellman:
Group: RFC 2409 First Oakley Default Group
Bitsize: 1024
DHE-RSA-AES128-SHA (0x33) 128 Yes Diffie-Hellman:
Group: RFC 2409 First Oakley Default Group
Bitsize: 1024
DHE-DSS-AES128-SHA (0x32) 128 Yes Diffie-Hellman:
Group: RFC 2409 First Oakley Default Group
Bitsize: 1024
AES128-GCM-SHA256 (0x9c) 128 No -
AES128-SHA256 (0x3c) 128 No -
AES128-SHA (0x2f) 128 No -

Certificates

Subject
commonName
phcn.de
countryName
DE
emailAddress
admin@phcn.de
localityName
Munich
organizationalUnitName
Public Service
organizationName
[PHCN]
stateOrProvinceName
Bavaria
Details
Error: unable to get local issuer certificate.
Error: unable to verify the first certificate.
Signature algorithm
sha256WithRSAEncryption
Public key
4096 bit RSA
Valid from
2016-02-03 00:12:00 UTC
Valid to
2021-02-01 00:12:00 UTC
24:19:1E:28:4F:07:64:B1:3A:B9:7C:E9:20:79:A7:4E:3A:42:5A:62
Subject
commonName
[PHCN] Root CA
countryName
DE
emailAddress
root@phcn.de
organizationName
[PHCN]
stateOrProvinceName
Bavaria
Details
Signature algorithm
sha1WithRSAEncryption
Public key
8192 bit RSA
Valid from
2013-10-31 13:12:22 UTC
Valid to
2043-10-24 13:12:22 UTC
57:28:C3:20:C9:9B:1A:C6:6A:09:0E:51:F2:86:95:FB:78:FE:65:B2

Protocols

SSLv2 No
SSLv3 No
TLSv1 Yes
TLSv1.1 Yes
TLSv1.2 Yes

Ciphers

Server does respect the client's cipher ordering.

Cipher suiteBitsizeForward secrecyInfo
ECDHE-RSA-AES256-GCM-SHA384 (0xc030) 256 Yes Curve: secp521r1
ECDHE-RSA-AES256-SHA384 (0xc028) 256 Yes Curve: secp521r1
ECDHE-RSA-AES256-SHA (0xc014) 256 Yes Curve: secp521r1
DHE-DSS-AES256-GCM-SHA384 (0xa3) 256 Yes Diffie-Hellman:
Group: RFC 2409 First Oakley Default Group
Bitsize: 1024
DHE-RSA-AES256-GCM-SHA384 (0x9f) 256 Yes Diffie-Hellman:
Group: RFC 2409 First Oakley Default Group
Bitsize: 1024
DHE-RSA-AES256-SHA256 (0x6b) 256 Yes Diffie-Hellman:
Group: RFC 2409 First Oakley Default Group
Bitsize: 1024
DHE-DSS-AES256-SHA256 (0x6a) 256 Yes Diffie-Hellman:
Group: RFC 2409 First Oakley Default Group
Bitsize: 1024
DHE-RSA-AES256-SHA (0x39) 256 Yes Diffie-Hellman:
Group: RFC 2409 First Oakley Default Group
Bitsize: 1024
DHE-DSS-AES256-SHA (0x38) 256 Yes Diffie-Hellman:
Group: RFC 2409 First Oakley Default Group
Bitsize: 1024
AES256-GCM-SHA384 (0x9d) 256 No -
AES256-SHA256 (0x3d) 256 No -
AES256-SHA (0x35) 256 No -
ECDHE-RSA-AES128-GCM-SHA256 (0xc02f) 128 Yes Curve: secp521r1
ECDHE-RSA-AES128-SHA256 (0xc027) 128 Yes Curve: secp521r1
ECDHE-RSA-AES128-SHA (0xc013) 128 Yes Curve: secp521r1
DHE-DSS-AES128-GCM-SHA256 (0xa2) 128 Yes Diffie-Hellman:
Group: RFC 2409 First Oakley Default Group
Bitsize: 1024
DHE-RSA-AES128-GCM-SHA256 (0x9e) 128 Yes Diffie-Hellman:
Group: RFC 2409 First Oakley Default Group
Bitsize: 1024
DHE-RSA-AES128-SHA256 (0x67) 128 Yes Diffie-Hellman:
Group: RFC 2409 First Oakley Default Group
Bitsize: 1024
DHE-DSS-AES128-SHA256 (0x40) 128 Yes Diffie-Hellman:
Group: RFC 2409 First Oakley Default Group
Bitsize: 1024
DHE-RSA-AES128-SHA (0x33) 128 Yes Diffie-Hellman:
Group: RFC 2409 First Oakley Default Group
Bitsize: 1024
DHE-DSS-AES128-SHA (0x32) 128 Yes Diffie-Hellman:
Group: RFC 2409 First Oakley Default Group
Bitsize: 1024
AES128-GCM-SHA256 (0x9c) 128 No -
AES128-SHA256 (0x3c) 128 No -
AES128-SHA (0x2f) 128 No -

Certificates

Subject
commonName
phcn.de
countryName
DE
emailAddress
admin@phcn.de
localityName
Munich
organizationalUnitName
Public Service
organizationName
[PHCN]
stateOrProvinceName
Bavaria
Details
Error: unable to get local issuer certificate.
Error: unable to verify the first certificate.
Signature algorithm
sha256WithRSAEncryption
Public key
4096 bit RSA
Valid from
2016-02-03 00:12:00 UTC
Valid to
2021-02-01 00:12:00 UTC
24:19:1E:28:4F:07:64:B1:3A:B9:7C:E9:20:79:A7:4E:3A:42:5A:62
Subject
commonName
[PHCN] Root CA
countryName
DE
emailAddress
root@phcn.de
organizationName
[PHCN]
stateOrProvinceName
Bavaria
Details
Signature algorithm
sha1WithRSAEncryption
Public key
8192 bit RSA
Valid from
2013-10-31 13:12:22 UTC
Valid to
2043-10-24 13:12:22 UTC
57:28:C3:20:C9:9B:1A:C6:6A:09:0E:51:F2:86:95:FB:78:FE:65:B2

Protocols

SSLv2 No
SSLv3 No
TLSv1 Yes
TLSv1.1 Yes
TLSv1.2 Yes

Ciphers

Server does respect the client's cipher ordering.

Cipher suiteBitsizeForward secrecyInfo
ECDHE-RSA-AES256-GCM-SHA384 (0xc030) 256 Yes Curve: secp521r1
ECDHE-RSA-AES256-SHA384 (0xc028) 256 Yes Curve: secp521r1
ECDHE-RSA-AES256-SHA (0xc014) 256 Yes Curve: secp521r1
DHE-DSS-AES256-GCM-SHA384 (0xa3) 256 Yes Diffie-Hellman:
Group: RFC 2409 First Oakley Default Group
Bitsize: 1024
DHE-RSA-AES256-GCM-SHA384 (0x9f) 256 Yes Diffie-Hellman:
Group: RFC 2409 First Oakley Default Group
Bitsize: 1024
DHE-RSA-AES256-SHA256 (0x6b) 256 Yes Diffie-Hellman:
Group: RFC 2409 First Oakley Default Group
Bitsize: 1024
DHE-DSS-AES256-SHA256 (0x6a) 256 Yes Diffie-Hellman:
Group: RFC 2409 First Oakley Default Group
Bitsize: 1024
DHE-RSA-AES256-SHA (0x39) 256 Yes Diffie-Hellman:
Group: RFC 2409 First Oakley Default Group
Bitsize: 1024
DHE-DSS-AES256-SHA (0x38) 256 Yes Diffie-Hellman:
Group: RFC 2409 First Oakley Default Group
Bitsize: 1024
AES256-GCM-SHA384 (0x9d) 256 No -
AES256-SHA256 (0x3d) 256 No -
AES256-SHA (0x35) 256 No -
ECDHE-RSA-AES128-GCM-SHA256 (0xc02f) 128 Yes Curve: secp521r1
ECDHE-RSA-AES128-SHA256 (0xc027) 128 Yes Curve: secp521r1
ECDHE-RSA-AES128-SHA (0xc013) 128 Yes Curve: secp521r1
DHE-DSS-AES128-GCM-SHA256 (0xa2) 128 Yes Diffie-Hellman:
Group: RFC 2409 First Oakley Default Group
Bitsize: 1024
DHE-RSA-AES128-GCM-SHA256 (0x9e) 128 Yes Diffie-Hellman:
Group: RFC 2409 First Oakley Default Group
Bitsize: 1024
DHE-RSA-AES128-SHA256 (0x67) 128 Yes Diffie-Hellman:
Group: RFC 2409 First Oakley Default Group
Bitsize: 1024
DHE-DSS-AES128-SHA256 (0x40) 128 Yes Diffie-Hellman:
Group: RFC 2409 First Oakley Default Group
Bitsize: 1024
DHE-RSA-AES128-SHA (0x33) 128 Yes Diffie-Hellman:
Group: RFC 2409 First Oakley Default Group
Bitsize: 1024
DHE-DSS-AES128-SHA (0x32) 128 Yes Diffie-Hellman:
Group: RFC 2409 First Oakley Default Group
Bitsize: 1024
AES128-GCM-SHA256 (0x9c) 128 No -
AES128-SHA256 (0x3c) 128 No -
AES128-SHA (0x2f) 128 No -

Certificates

Subject
commonName
phcn.de
countryName
DE
emailAddress
admin@phcn.de
localityName
Munich
organizationalUnitName
Public Service
organizationName
[PHCN]
stateOrProvinceName
Bavaria
Details
Error: unable to get local issuer certificate.
Error: unable to verify the first certificate.
Signature algorithm
sha256WithRSAEncryption
Public key
4096 bit RSA
Valid from
2016-02-03 00:12:00 UTC
Valid to
2021-02-01 00:12:00 UTC
24:19:1E:28:4F:07:64:B1:3A:B9:7C:E9:20:79:A7:4E:3A:42:5A:62
Subject
commonName
[PHCN] Root CA
countryName
DE
emailAddress
root@phcn.de
organizationName
[PHCN]
stateOrProvinceName
Bavaria
Details
Signature algorithm
sha1WithRSAEncryption
Public key
8192 bit RSA
Valid from
2013-10-31 13:12:22 UTC
Valid to
2043-10-24 13:12:22 UTC
57:28:C3:20:C9:9B:1A:C6:6A:09:0E:51:F2:86:95:FB:78:FE:65:B2

Protocols

SSLv2 No
SSLv3 No
TLSv1 Yes
TLSv1.1 Yes
TLSv1.2 Yes

Ciphers

Warning: Still in progress.

Show all 4 SRV targets

Badge

xmpp.net score

Want to show this result on your webpage? Add this:

<a href='https://xmpp.net/result.php?domain=phcn.de&amp;type=server'><img src='https://xmpp.net/badge.php?domain=phcn.de' alt='xmpp.net score' /></a>