IM Observatory client report for stangnet.de

Test started 2021-04-06 18:41:55 UTC .

Show server to server result | Permalink to this report |

stangnet.de:5222
Server uses Diffie-Hellman parameters of < 2048 bits. Grade capped to B.
stangnet.de:5222
StartTLS
ALLOWED

SASL

Pre-TLS

None

Post-TLS
PLAIN

SRV records _xmpp-client._tcp.stangnet.de NO DNSSEC

Priority Weight Port Server

TLSA records

Certificates

Subject
commonName
mail.stangnet.de
Details
Signature algorithm
sha256WithRSAEncryption
Public key
4096 bit RSA
Valid from
2021-03-27 22:42:53 UTC
Valid to
2021-06-25 22:42:53 UTC
OCSP
http://r3.o.lencr.org
Valid for stangnet.de
YES
EF:C0:86:48:E5:BD:30:71:03:A6:FA:FA:B6:FF:36:51:FE:34:BC:36
Subject Alternative Names
DNSName
imap.stangnet.de
DNSName
mail.stangnet.de
DNSName
smtp.stangnet.de
DNSName
stangnet.de Matches
DNSName
www.stangnet.de
Subject
commonName
R3
countryName
US
organizationName
Let's Encrypt
Details
Signature algorithm
sha256WithRSAEncryption
Public key
2048 bit RSA
Valid from
2020-10-07 19:21:40 UTC
Valid to
2021-09-29 19:21:40 UTC
CRL
http://crl.identrust.com/DSTROOTCAX3CRL.crl
48:50:4E:97:4C:0D:AC:5B:5C:D4:76:C8:20:22:74:B2:4C:8C:71:72
Subject
commonName
DST Root CA X3
organizationName
Digital Signature Trust Co.
Details
Signature algorithm
sha1WithRSAEncryption
Public key
2048 bit RSA
Valid from
2000-09-30 21:12:19 UTC
Valid to
2021-09-30 14:01:15 UTC
DA:C9:02:4F:54:D8:F6:DF:94:93:5F:B1:73:26:38:CA:6A:D7:7C:13

Protocols

SSLv2 No
SSLv3 No
TLSv1 Yes
TLSv1.1 Yes
TLSv1.2 Yes

Ciphers

Server does not respect the client's cipher ordering.

Cipher suiteBitsizeForward secrecyInfo
ECDHE-RSA-AES256-SHA384 (0xc028) 256 Yes Curve: sect571r1
AES256-SHA256 (0x3d) 256 No -
DHE-RSA-AES256-SHA256 (0x6b) 256 Yes Diffie-Hellman:
Group: RFC 2409 First Oakley Default Group
Bitsize: 1024
ECDHE-RSA-AES256-SHA (0xc014) 256 Yes Curve: sect571r1
AES256-SHA (0x35) 256 No -
DHE-RSA-AES256-SHA (0x39) 256 Yes Diffie-Hellman:
Group: RFC 2409 First Oakley Default Group
Bitsize: 1024
ECDHE-RSA-AES128-SHA256 (0xc027) 128 Yes Curve: sect571r1
AES128-SHA256 (0x3c) 128 No -
DHE-RSA-AES128-SHA256 (0x67) 128 Yes Diffie-Hellman:
Group: RFC 2409 First Oakley Default Group
Bitsize: 1024
ECDHE-RSA-AES128-SHA (0xc013) 128 Yes Curve: sect571r1
AES128-SHA (0x2f) 128 No -
DHE-RSA-AES128-SHA (0x33) 128 Yes Diffie-Hellman:
Group: RFC 2409 First Oakley Default Group
Bitsize: 1024
ECDHE-RSA-AES256-GCM-SHA384 (0xc030) 256 Yes Curve: sect571r1
AES256-GCM-SHA384 (0x9d) 256 No -
DHE-RSA-AES256-GCM-SHA384 (0x9f) 256 Yes Diffie-Hellman:
Group: RFC 2409 First Oakley Default Group
Bitsize: 1024
ECDHE-RSA-AES128-GCM-SHA256 (0xc02f) 128 Yes Curve: sect571r1
AES128-GCM-SHA256 (0x9c) 128 No -
DHE-RSA-AES128-GCM-SHA256 (0x9e) 128 Yes Diffie-Hellman:
Group: RFC 2409 First Oakley Default Group
Bitsize: 1024
ECDHE-RSA-DES-CBC3-SHA (0xc012) WEAK 112 Yes Curve: sect571r1
DES-CBC3-SHA (0xa) WEAK 112 No -
EDH-RSA-DES-CBC3-SHA (0x16) WEAK 112 Yes Diffie-Hellman:
Group: RFC 2409 First Oakley Default Group
Bitsize: 1024
ADH-AES256-GCM-SHA384 (0xa7) 256 No Diffie-Hellman:
Group: RFC 2409 First Oakley Default Group
Bitsize: 1024
ADH-AES128-GCM-SHA256 (0xa6) 128 No Diffie-Hellman:
Group: RFC 2409 First Oakley Default Group
Bitsize: 1024
ADH-AES256-SHA256 (0x6d) 256 No Diffie-Hellman:
Group: RFC 2409 First Oakley Default Group
Bitsize: 1024
AECDH-AES256-SHA (0xc019) 256 No Curve: sect571r1
ADH-AES256-SHA (0x3a) 256 No Diffie-Hellman:
Group: RFC 2409 First Oakley Default Group
Bitsize: 1024
ADH-AES128-SHA256 (0x6c) 128 No Diffie-Hellman:
Group: RFC 2409 First Oakley Default Group
Bitsize: 1024
AECDH-AES128-SHA (0xc018) 128 No Curve: sect571r1
ADH-AES128-SHA (0x34) 128 No Diffie-Hellman:
Group: RFC 2409 First Oakley Default Group
Bitsize: 1024
AECDH-DES-CBC3-SHA (0xc017) WEAK 112 No Curve: sect571r1
ADH-DES-CBC3-SHA (0x1b) WEAK 112 No Diffie-Hellman:
Group: RFC 2409 First Oakley Default Group
Bitsize: 1024
NULL-SHA256 (0x3b) VERY WEAK 0 No -
ECDHE-RSA-NULL-SHA (0xc010) VERY WEAK 0 Yes Curve: sect571r1
NULL-SHA (0x2) VERY WEAK 0 No -
AECDH-NULL-SHA (0xc015) VERY WEAK 0 No Curve: sect571r1
NULL-MD5 (0x1) VERY WEAK 0 No -
DES-CBC-SHA (0x9) VERY WEAK 56 No -
EDH-RSA-DES-CBC-SHA (0x15) VERY WEAK 56 Yes Diffie-Hellman:
Group: RFC 2409 First Oakley Default Group
Bitsize: 1024
ADH-DES-CBC-SHA (0x1a) VERY WEAK 56 No Diffie-Hellman:
Group: RFC 2409 First Oakley Default Group
Bitsize: 1024
EXP-DES-CBC-SHA (0x8) VERY WEAK 40 No -

Badge

xmpp.net score

Want to show this result on your webpage? Add this:

<a href='https://xmpp.net/result.php?domain=stangnet.de&amp;type=client'><img src='https://xmpp.net/badge.php?domain=stangnet.de' alt='xmpp.net score' /></a>