IM Observatory client report for tdis.sk

Test started 2019-07-01 10:50:22 UTC .

Show server to server result | Permalink to this report |

openfire01.tdis.sk:5222
Certificate is not trusted, grade capped to F. Ignoring trust: B.
Server uses Diffie-Hellman parameters of < 2048 bits. Grade capped to B.
openfire01.tdis.sk:5222
StartTLS
REQUIRED

SASL

Pre-TLS
PLAIN
Post-TLS
PLAIN

SRV records _xmpp-client._tcp.tdis.sk NO DNSSEC

Priority Weight Port Server
0 0 5222 openfire01.tdis.sk

TLSA records

Certificates

Subject
commonName
tdis.sk
countryName
SK
localityName
BA
organizationalUnitName
TDIS
organizationName
SK
stateOrProvinceName
SK
Details
Signature algorithm
sha256WithRSAEncryption
Public key
2048 bit RSA
Valid from
2019-06-21 13:46:03 UTC
Valid to
2024-06-19 13:46:03 UTC
CRL
http://ca02.internet.inet/CertEnroll/CA02(3).crl
Valid for tdis.sk
YES
3F:00:C5:52:56:45:36:0A:D1:C1:2C:11:D3:CB:5B:C3:3C:6B:6F:C2
Subject Alternative Names
DNSName
tdis.sk Matches
DNSName
*.tdis.sk
DNSName
openfire01
Subject
commonName
CA02
domainComponent
inet
domainComponent
internet
Details
Error: unable to get local issuer certificate.
Signature algorithm
sha256WithRSAEncryption
Public key
4096 bit RSA
Valid from
2016-06-24 12:35:25 UTC
Valid to
2026-06-24 12:45:25 UTC
CRL
http://ca02.internet.inet/CertEnroll/ca01(1).crl
15:24:F9:D3:86:14:6A:6F:3F:A3:F8:91:98:91:D6:34:41:87:F9:18

Protocols

SSLv2 No
SSLv3 No
TLSv1 No
TLSv1.1 No
TLSv1.2 Yes

Ciphers

Server does respect the client's cipher ordering.

Cipher suiteBitsizeForward secrecyInfo
ECDHE-RSA-AES256-GCM-SHA384 (0xc030) 256 Yes Curve: sect571r1
ECDHE-RSA-AES256-SHA (0xc014) 256 Yes Curve: sect571r1
DHE-RSA-AES256-GCM-SHA384 (0x9f) 256 Yes Diffie-Hellman:
Group: RFC 2409 First Oakley Default Group
Bitsize: 1024
DHE-RSA-AES256-SHA256 (0x6b) 256 Yes Diffie-Hellman:
Group: RFC 2409 First Oakley Default Group
Bitsize: 1024
DHE-RSA-AES256-SHA (0x39) 256 Yes Diffie-Hellman:
Group: RFC 2409 First Oakley Default Group
Bitsize: 1024
AES256-GCM-SHA384 (0x9d) 256 No -
AES256-SHA256 (0x3d) 256 No -
AES256-SHA (0x35) 256 No -
ECDHE-RSA-AES128-GCM-SHA256 (0xc02f) 128 Yes Curve: sect571r1
ECDHE-RSA-AES128-SHA256 (0xc027) 128 Yes Curve: sect571r1
ECDHE-RSA-AES128-SHA (0xc013) 128 Yes Curve: sect571r1
DHE-RSA-AES128-GCM-SHA256 (0x9e) 128 Yes Diffie-Hellman:
Group: RFC 2409 First Oakley Default Group
Bitsize: 1024
DHE-RSA-AES128-SHA256 (0x67) 128 Yes Diffie-Hellman:
Group: RFC 2409 First Oakley Default Group
Bitsize: 1024
DHE-RSA-AES128-SHA (0x33) 128 Yes Diffie-Hellman:
Group: RFC 2409 First Oakley Default Group
Bitsize: 1024
AES128-GCM-SHA256 (0x9c) 128 No -
AES128-SHA256 (0x3c) 128 No -
AES128-SHA (0x2f) 128 No -

Badge

xmpp.net score

Want to show this result on your webpage? Add this:

<a href='https://xmpp.net/result.php?domain=tdis.sk&amp;type=client'><img src='https://xmpp.net/badge.php?domain=tdis.sk' alt='xmpp.net score' /></a>