IM Observatory client report for xclient.blah.cz

Test started 2020-06-25 15:18:28 UTC .

Show server to server result | Permalink to this report |

xclient.blah.cz:5222
Certificate is not trusted, grade capped to F. Ignoring trust: C.
Warning: Server allows RC4 when using TLS 1.1 and/or TLS 1.2. Grade capped to C.
xclient.blah.cz:5222
StartTLS
REQUIRED

SASL

Pre-TLS

None

Post-TLS
DIGEST-MD5
EXTERNAL
PLAIN

SRV records _xmpp-client._tcp.xclient.blah.cz NO DNSSEC

Priority Weight Port Server

TLSA records

Certificates

Subject
commonName
spacewalk.sell
countryName
CZ
emailAddress
admin@casolut.io
organizationalUnitName
spacewalk.sell
organizationName
casolut.io
stateOrProvinceName
CZ
Details
Signature algorithm
sha256WithRSAEncryption
Public key
2048 bit RSA
Valid from
2019-07-17 22:05:01 UTC
Valid to
2036-07-19 22:05:01 UTC
Valid for xclient.blah.cz
NO
81:62:90:E6:B7:0E:40:17:23:7F:4B:F6:03:00:9B:80:01:89:77:34
Subject Alternative Names
DNSName
spacewalk.sell
DNSName
space.sell
DNSName
sw.sell
Subject
commonName
spacewalk.sell
countryName
CZ
localityName
Prague
organizationalUnitName
spacewalk.sell
organizationName
casolut.io
stateOrProvinceName
CZ
Details
Error: self signed certificate in certificate chain.
Signature algorithm
sha256WithRSAEncryption
Public key
2048 bit RSA
Valid from
2019-07-24 22:04:58 UTC
Valid to
2036-07-19 22:04:58 UTC
F1:05:22:56:46:2B:C6:E0:56:24:58:7A:6C:2D:13:BD:A5:5A:04:BC

Protocols

SSLv2 No
SSLv3 No
TLSv1 Yes
TLSv1.1 Yes
TLSv1.2 Yes

Ciphers

Server does respect the client's cipher ordering.

Cipher suiteBitsizeForward secrecyInfo
ECDHE-RSA-AES256-GCM-SHA384 (0xc030) 256 Yes Curve: secp521r1
ECDHE-RSA-AES256-SHA384 (0xc028) 256 Yes Curve: secp521r1
ECDHE-RSA-AES256-SHA (0xc014) 256 Yes Curve: secp521r1
DHE-RSA-AES256-GCM-SHA384 (0x9f) 256 Yes Diffie-Hellman:
Group: RFC 3526 2048-bit MODP Group
Bitsize: 2048
DHE-RSA-CAMELLIA256-SHA (0x88) 256 Yes Diffie-Hellman:
Group: RFC 3526 2048-bit MODP Group
Bitsize: 2048
DHE-RSA-AES256-SHA256 (0x6b) 256 Yes Diffie-Hellman:
Group: RFC 3526 2048-bit MODP Group
Bitsize: 2048
DHE-RSA-AES256-SHA (0x39) 256 Yes Diffie-Hellman:
Group: RFC 3526 2048-bit MODP Group
Bitsize: 2048
AES256-GCM-SHA384 (0x9d) 256 No -
CAMELLIA256-SHA (0x84) 256 No -
AES256-SHA256 (0x3d) 256 No -
AES256-SHA (0x35) 256 No -
ECDHE-RSA-AES128-GCM-SHA256 (0xc02f) 128 Yes Curve: secp521r1
ECDHE-RSA-AES128-SHA256 (0xc027) 128 Yes Curve: secp521r1
ECDHE-RSA-AES128-SHA (0xc013) 128 Yes Curve: secp521r1
ECDHE-RSA-RC4-SHA (0xc011) 128 Yes Curve: secp521r1
DHE-RSA-AES128-GCM-SHA256 (0x9e) 128 Yes Diffie-Hellman:
Group: RFC 3526 2048-bit MODP Group
Bitsize: 2048
DHE-RSA-SEED-SHA (0x9a) 128 Yes Diffie-Hellman:
Group: RFC 3526 2048-bit MODP Group
Bitsize: 2048
DHE-RSA-AES128-SHA256 (0x67) 128 Yes Diffie-Hellman:
Group: RFC 3526 2048-bit MODP Group
Bitsize: 2048
DHE-RSA-CAMELLIA128-SHA (0x45) 128 Yes Diffie-Hellman:
Group: RFC 3526 2048-bit MODP Group
Bitsize: 2048
DHE-RSA-AES128-SHA (0x33) 128 Yes Diffie-Hellman:
Group: RFC 3526 2048-bit MODP Group
Bitsize: 2048
RC4-MD5 (0x10080) 128 No -
AES128-GCM-SHA256 (0x9c) 128 No -
SEED-SHA (0x96) 128 No -
CAMELLIA128-SHA (0x41) 128 No -
AES128-SHA256 (0x3c) 128 No -
AES128-SHA (0x2f) 128 No -
IDEA-CBC-SHA (0x7) 128 No -
RC4-SHA (0x5) 128 No -
ECDHE-RSA-DES-CBC3-SHA (0xc012) WEAK 112 Yes Curve: secp521r1
EDH-RSA-DES-CBC3-SHA (0x16) WEAK 112 Yes Diffie-Hellman:
Group: RFC 3526 2048-bit MODP Group
Bitsize: 2048
DES-CBC3-SHA (0xa) WEAK 112 No -

Badge

xmpp.net score

Want to show this result on your webpage? Add this:

<a href='https://xmpp.net/result.php?domain=xclient.blah.cz&amp;type=client'><img src='https://xmpp.net/badge.php?domain=xclient.blah.cz' alt='xmpp.net score' /></a>