IM Observatory server report for vrcshop.com

Test started 2019-03-12 22:36:02 UTC .

Show client to server result | Permalink to this report |

xmpp.vrcshop.com:5269
Certificate is not trusted, grade capped to F. Ignoring trust: B.
Server uses Diffie-Hellman parameters of < 2048 bits. Grade capped to B.
xmpp.vrcshop.com:5269
StartTLS
ALLOWED

SRV records _xmpp-server._tcp.vrcshop.com NO DNSSEC

Priority Weight Port Server
0 0 5269 xmpp.vrcshop.com

TLSA records

Certificates

Subject
commonName
vrcshop.com
countryName
ID
Details
Signature algorithm
sha256WithRSAEncryption
Public key
2048 bit RSA
Valid from
2017-02-26 15:32:28 UTC
Valid to
2020-02-26 15:32:28 UTC
CRL
http://crl.startssl.com/sca-server1.crl
OCSP
http://ocsp.startssl.com
Valid for vrcshop.com
YES
AF:07:2B:55:81:14:CA:C9:30:82:90:30:4D:8D:F3:60:0D:B4:00:B4
Subject Alternative Names
DNSName
vrcshop.com Matches
DNSName
www.vrcshop.com
DNSName
login.vrcshop.com
DNSName
xmpp.vrcshop.com
Subject
commonName
StartCom Class 1 DV Server CA
countryName
IL
organizationalUnitName
StartCom Certification Authority
organizationName
StartCom Ltd.
Details
Signature algorithm
sha256WithRSAEncryption
Public key
2048 bit RSA
Valid from
2015-12-16 01:00:05 UTC
Valid to
2030-12-16 01:00:05 UTC
CRL
http://crl.startssl.com/sfsca.crl
OCSP
http://ocsp.startssl.com
39:8E:19:36:63:9B:A5:20:6D:F5:17:9B:FB:B7:01:09:33:96:94:00
Subject
commonName
StartCom Certification Authority
countryName
IL
organizationalUnitName
Secure Digital Certificate Signing
organizationName
StartCom Ltd.
Details
Signature algorithm
sha256WithRSAEncryption
Public key
4096 bit RSA
Valid from
2006-09-17 19:46:37 UTC
Valid to
2036-09-17 19:46:37 UTC
CRL
http://crl.startssl.com/ca-g2.crl
OCSP
http://ocsp.startssl.com/ca-g2
14:E8:0D:AF:47:BB:F6:44:5D:21:F2:2F:C1:8C:B4:56:93:3F:56:8D
Subject
commonName
StartCom Certification Authority G2
countryName
IL
organizationName
StartCom Ltd.
Details
Signature algorithm
sha256WithRSAEncryption
Public key
4096 bit RSA
Valid from
2010-01-01 01:00:00 UTC
Valid to
2039-12-31 23:59:00 UTC
BB:25:A3:D8:49:30:0F:2E:87:9F:74:36:43:6D:12:94:4A:F5:5A:DA
Subject
commonName
StartCom Certification Authority
countryName
IL
organizationalUnitName
Secure Digital Certificate Signing
organizationName
StartCom Ltd.
Details
Warning: Certificate is unused.
Error: self signed certificate in certificate chain.
Signature algorithm
sha1WithRSAEncryption
Public key
4096 bit RSA
Valid from
2006-09-17 19:46:36 UTC
Valid to
2036-09-17 19:46:36 UTC
CRL
http://crl.startcom.org/sfsca-crl.crl
3E:2B:F7:F2:03:1B:96:F3:8C:E6:C4:D8:A8:5D:3E:2D:58:47:6A:0F

Protocols

SSLv2 No
SSLv3 No
TLSv1 Yes
TLSv1.1 Yes
TLSv1.2 Yes

Ciphers

Server does respect the client's cipher ordering.

Cipher suiteBitsizeForward secrecyInfo
ECDHE-RSA-AES128-GCM-SHA256 (0xc02f) 128 Yes Curve: sect571r1
ECDHE-RSA-AES128-SHA256 (0xc027) 128 Yes Curve: sect571r1
ECDHE-RSA-AES128-SHA (0xc013) 128 Yes Curve: sect571r1
DHE-RSA-AES128-GCM-SHA256 (0x9e) 128 Yes Diffie-Hellman:
Group: RFC 2409 First Oakley Default Group
Bitsize: 1024
DHE-RSA-AES128-SHA256 (0x67) 128 Yes Diffie-Hellman:
Group: RFC 2409 First Oakley Default Group
Bitsize: 1024
DHE-RSA-AES128-SHA (0x33) 128 Yes Diffie-Hellman:
Group: RFC 2409 First Oakley Default Group
Bitsize: 1024
AES128-GCM-SHA256 (0x9c) 128 No -
AES128-SHA256 (0x3c) 128 No -
AES128-SHA (0x2f) 128 No -
ECDHE-RSA-DES-CBC3-SHA (0xc012) WEAK 112 Yes Curve: sect571r1
EDH-RSA-DES-CBC3-SHA (0x16) WEAK 112 Yes Diffie-Hellman:
Group: RFC 2409 First Oakley Default Group
Bitsize: 1024
DES-CBC3-SHA (0xa) WEAK 112 No -

Badge

xmpp.net score

Want to show this result on your webpage? Add this:

<a href='https://xmpp.net/result.php?domain=vrcshop.com&amp;type=server'><img src='https://xmpp.net/badge.php?domain=vrcshop.com' alt='xmpp.net score' /></a>