IM Observatory client report for viktorka.net

Test started 2019-06-27 08:48:59 UTC .

Show server to server result | Permalink to this report |

openfire01.viktorka.net:5222
Certificate is not trusted, grade capped to F. Ignoring trust: B.
Server uses Diffie-Hellman parameters of < 2048 bits. Grade capped to B.
openfire01.viktorka.net:5222
StartTLS
REQUIRED

SASL

Pre-TLS
PLAIN
Post-TLS
PLAIN

SRV records _xmpp-client._tcp.viktorka.net DNSSEC

Priority Weight Port Server
0 5 5222 openfire01.viktorka.net

TLSA records

Certificates

Subject
commonName
openfire01.viktorka.net
countryName
52
localityName
bb
organizationalUnitName
open
organizationName
net
stateOrProvinceName
bb
Details
Signature algorithm
sha256WithRSAEncryption
Public key
4096 bit RSA
Valid from
2018-05-31 11:20:42 UTC
Valid to
2028-05-28 11:20:42 UTC
CRL
ldap:///CN=CA01-CA,CN=ca01,CN=CDP,CN=Public%20Key%20Services,CN=Services,CN=Configuration,DC=open,DC=inet?certificateRevocationList?base?objectClass=cRLDistributionPoint
Valid for viktorka.net
YES
A8:44:BA:0F:E9:1B:F9:54:D9:7F:F1:70:47:87:99:17:A6:64:0C:80
Subject Alternative Names
DNSName
openfire01.viktorka.net
DNSName
viktorka.net Matches
Subject
commonName
CA01-CA
domainComponent
inet
domainComponent
open
Details
Error: self signed certificate in certificate chain.
Signature algorithm
sha256WithRSAEncryption
Public key
4096 bit RSA
Valid from
2018-05-28 15:18:44 UTC
Valid to
2068-05-28 15:28:42 UTC
6D:45:A6:A2:1F:62:62:94:90:6B:83:FC:7A:D7:5E:68:58:DF:BF:09

Protocols

SSLv2 No
SSLv3 No
TLSv1 No
TLSv1.1 No
TLSv1.2 Yes

Ciphers

Server does respect the client's cipher ordering.

Cipher suiteBitsizeForward secrecyInfo
ECDHE-RSA-AES256-GCM-SHA384 (0xc030) 256 Yes Curve: sect571r1
ECDHE-RSA-AES256-SHA384 (0xc028) 256 Yes Curve: sect571r1
ECDHE-RSA-AES256-SHA (0xc014) 256 Yes Curve: sect571r1
DHE-RSA-AES256-GCM-SHA384 (0x9f) 256 Yes Diffie-Hellman:
Group: RFC 2409 First Oakley Default Group
Bitsize: 1024
DHE-RSA-AES256-SHA256 (0x6b) 256 Yes Diffie-Hellman:
Group: RFC 2409 First Oakley Default Group
Bitsize: 1024
DHE-RSA-AES256-SHA (0x39) 256 Yes Diffie-Hellman:
Group: RFC 2409 First Oakley Default Group
Bitsize: 1024
AES256-GCM-SHA384 (0x9d) 256 No -
AES256-SHA256 (0x3d) 256 No -
AES256-SHA (0x35) 256 No -
ECDHE-RSA-AES128-GCM-SHA256 (0xc02f) 128 Yes Curve: sect571r1
ECDHE-RSA-AES128-SHA256 (0xc027) 128 Yes Curve: sect571r1
ECDHE-RSA-AES128-SHA (0xc013) 128 Yes Curve: sect571r1
DHE-RSA-AES128-GCM-SHA256 (0x9e) 128 Yes Diffie-Hellman:
Group: RFC 2409 First Oakley Default Group
Bitsize: 1024
DHE-RSA-AES128-SHA256 (0x67) 128 Yes Diffie-Hellman:
Group: RFC 2409 First Oakley Default Group
Bitsize: 1024
DHE-RSA-AES128-SHA (0x33) 128 Yes Diffie-Hellman:
Group: RFC 2409 First Oakley Default Group
Bitsize: 1024
AES128-GCM-SHA256 (0x9c) 128 No -
AES128-SHA256 (0x3c) 128 No -
AES128-SHA (0x2f) 128 No -
ECDHE-RSA-DES-CBC3-SHA (0xc012) WEAK 112 Yes Curve: sect571r1
EDH-RSA-DES-CBC3-SHA (0x16) WEAK 112 Yes Diffie-Hellman:
Group: RFC 2409 First Oakley Default Group
Bitsize: 1024
DES-CBC3-SHA (0xa) WEAK 112 No -

Badge

xmpp.net score

Want to show this result on your webpage? Add this:

<a href='https://xmpp.net/result.php?domain=viktorka.net&amp;type=client'><img src='https://xmpp.net/badge.php?domain=viktorka.net' alt='xmpp.net score' /></a>