IM Observatory client report for unix-ag.uni-kl.de

Test started 2019-02-11 09:09:52 UTC .

Show server to server result | Permalink to this report |

sushi.unix-ag.uni-kl.de:5222
Certificate is not trusted, grade capped to F. Ignoring trust: B.
Server uses Diffie-Hellman parameters of < 2048 bits. Grade capped to B.
sushi.unix-ag.uni-kl.de:5222
StartTLS
ALLOWED

SASL

Pre-TLS
PLAIN
SCRAM-SHA-1
X-OAUTH2
Post-TLS
PLAIN
SCRAM-SHA-1
X-OAUTH2

SRV records _xmpp-client._tcp.unix-ag.uni-kl.de DNSSEC

Priority Weight Port Server
0 0 5222 sushi.unix-ag.uni-kl.de

TLSA records

Certificates

Subject
commonName
sushi.unix-ag.uni-kl.de
countryName
DE
localityName
Kaiserslautern
organizationalUnitName
Regionales Hochschulrechenzentrum Kaiserslautern
organizationalUnitName
Unix-AG
organizationName
Technische Universitaet Kaiserslautern
stateOrProvinceName
Rheinland-Pfalz
Details
Signature algorithm
sha256WithRSAEncryption
Public key
2048 bit RSA
Valid from
2016-10-18 12:48:41 UTC
Valid to
2019-07-09 23:59:00 UTC
CRL
http://cdp2.pca.dfn.de/rhrk-ca/pub/crl/g_cacrl.crl
OCSP
http://ocsp.pca.dfn.de/OCSP-Server/OCSP
Valid for unix-ag.uni-kl.de
NO
B5:54:03:53:5F:7F:23:29:7C:A2:BD:44:7C:DE:7B:1A:84:0D:F5:17
Subject Alternative Names
DNSName
sushi.unix-ag.uni-kl.de
Subject
commonName
RHRK-CA - G02
countryName
DE
emailAddress
ca@rhrk.uni-kl.de
organizationName
Regionales Hochschulrechenzentrum Kaiserslautern
Details
Signature algorithm
sha256WithRSAEncryption
Public key
2048 bit RSA
Valid from
2014-05-19 15:24:58 UTC
Valid to
2019-07-09 23:59:00 UTC
CRL
http://cdp2.pca.dfn.de/global-root-ca/pub/crl/cacrl.crl
OCSP
http://ocsp.pca.dfn.de/OCSP-Server/OCSP
CE:97:10:E7:3E:24:0C:F3:A7:B5:B5:C1:47:6A:DF:E0:2B:B6:21:2A
Subject
commonName
DFN-Verein PCA Global - G01
countryName
DE
organizationalUnitName
DFN-PKI
organizationName
DFN-Verein
Details
Signature algorithm
sha256WithRSAEncryption
Public key
2048 bit RSA
Valid from
2014-07-22 12:08:26 UTC
Valid to
2019-07-09 23:59:00 UTC
CRL
http://pki0336.telesec.de/rl/DT_ROOT_CA_2.crl
OCSP
http://ocsp0336.telesec.de/ocspr
F4:C5:38:C3:BB:99:4F:13:F8:FD:C2:40:B6:79:A6:4B:19:34:A1:B5
Subject
commonName
Deutsche Telekom Root CA 2
countryName
DE
organizationalUnitName
T-TeleSec Trust Center
organizationName
Deutsche Telekom AG
Details
Signature algorithm
sha1WithRSAEncryption
Public key
2048 bit RSA
Valid from
1999-07-09 12:11:00 UTC
Valid to
2019-07-09 23:59:00 UTC
85:A4:08:C0:9C:19:3E:5D:51:58:7D:CD:D6:13:30:FD:8C:DE:37:BF

Protocols

SSLv2 No
SSLv3 No
TLSv1 Yes
TLSv1.1 Yes
TLSv1.2 Yes

Ciphers

Server does respect the client's cipher ordering.

Cipher suiteBitsizeForward secrecyInfo
ECDHE-RSA-AES256-GCM-SHA384 (0xc030) 256 Yes Curve: prime256v1
ECDHE-RSA-AES256-SHA384 (0xc028) 256 Yes Curve: prime256v1
ECDHE-RSA-AES256-SHA (0xc014) 256 Yes Curve: prime256v1
DHE-RSA-AES256-GCM-SHA384 (0x9f) 256 Yes Diffie-Hellman:
Group: RFC 5114 1024-bit MODP Group with 160-bit Prime Order Subgroup
Bitsize: 1024
DHE-RSA-CAMELLIA256-SHA (0x88) 256 Yes Diffie-Hellman:
Group: RFC 5114 1024-bit MODP Group with 160-bit Prime Order Subgroup
Bitsize: 1024
DHE-RSA-AES256-SHA256 (0x6b) 256 Yes Diffie-Hellman:
Group: RFC 5114 1024-bit MODP Group with 160-bit Prime Order Subgroup
Bitsize: 1024
DHE-RSA-AES256-SHA (0x39) 256 Yes Diffie-Hellman:
Group: RFC 5114 1024-bit MODP Group with 160-bit Prime Order Subgroup
Bitsize: 1024
AES256-GCM-SHA384 (0x9d) 256 No -
CAMELLIA256-SHA (0x84) 256 No -
AES256-SHA256 (0x3d) 256 No -
AES256-SHA (0x35) 256 No -
ECDHE-RSA-AES128-GCM-SHA256 (0xc02f) 128 Yes Curve: prime256v1
ECDHE-RSA-AES128-SHA256 (0xc027) 128 Yes Curve: prime256v1
ECDHE-RSA-AES128-SHA (0xc013) 128 Yes Curve: prime256v1
DHE-RSA-AES128-GCM-SHA256 (0x9e) 128 Yes Diffie-Hellman:
Group: RFC 5114 1024-bit MODP Group with 160-bit Prime Order Subgroup
Bitsize: 1024
DHE-RSA-SEED-SHA (0x9a) 128 Yes Diffie-Hellman:
Group: RFC 5114 1024-bit MODP Group with 160-bit Prime Order Subgroup
Bitsize: 1024
DHE-RSA-AES128-SHA256 (0x67) 128 Yes Diffie-Hellman:
Group: RFC 5114 1024-bit MODP Group with 160-bit Prime Order Subgroup
Bitsize: 1024
DHE-RSA-CAMELLIA128-SHA (0x45) 128 Yes Diffie-Hellman:
Group: RFC 5114 1024-bit MODP Group with 160-bit Prime Order Subgroup
Bitsize: 1024
DHE-RSA-AES128-SHA (0x33) 128 Yes Diffie-Hellman:
Group: RFC 5114 1024-bit MODP Group with 160-bit Prime Order Subgroup
Bitsize: 1024
AES128-GCM-SHA256 (0x9c) 128 No -
SEED-SHA (0x96) 128 No -
CAMELLIA128-SHA (0x41) 128 No -
AES128-SHA256 (0x3c) 128 No -
AES128-SHA (0x2f) 128 No -
ECDHE-RSA-DES-CBC3-SHA (0xc012) WEAK 112 Yes Curve: prime256v1
EDH-RSA-DES-CBC3-SHA (0x16) WEAK 112 Yes Diffie-Hellman:
Group: RFC 5114 1024-bit MODP Group with 160-bit Prime Order Subgroup
Bitsize: 1024
DES-CBC3-SHA (0xa) WEAK 112 No -

Badge

xmpp.net score

Want to show this result on your webpage? Add this:

<a href='https://xmpp.net/result.php?domain=unix-ag.uni-kl.de&amp;type=client'><img src='https://xmpp.net/badge.php?domain=unix-ag.uni-kl.de' alt='xmpp.net score' /></a>