IM Observatory client report for in.tum.de

Test started 2018-03-06 23:32:52 UTC .

Show server to server result | Permalink to this report | Retest

xmpp.in.tum.de:5222
Certificate is not trusted, grade capped to F. Ignoring trust: F.
Server allows SSLv2, which is obsolete and insecure. Grade capped to F.
Server does not support TLS 1.2. Grade capped to C.
Warning: Server offers no forward-secret ciphers. Grade capped to A-.
Server supports SSL 3. Grade capped to B.
xmpp.in.tum.de:5222
StartTLS
REQUIRED

SASL

Pre-TLS
PLAIN
Post-TLS
PLAIN

SRV records _xmpp-client._tcp.in.tum.de NO DNSSEC

Priority Weight Port Server
0 0 5222 xmpp.in.tum.de

TLSA records

Certificates

Subject
commonName
xmpp.tum.de
countryName
DE
localityName
Muenchen
organizationalUnitName
Fakultaet fuer Informatik
organizationName
Technische Universitaet Muenchen
stateOrProvinceName
Bayern
Details
Error: unable to get local issuer certificate.
Error: unable to verify the first certificate.
Signature algorithm
sha256WithRSAEncryption
Public key
2048 bit RSA
Valid from
2016-05-09 12:55:41 UTC
Valid to
2018-06-01 02:00:00 UTC
CRL
http://cdp2.pca.dfn.de/tum-ca/pub/crl/cacrl.crl
OCSP
http://ocsp.pca.dfn.de/OCSP-Server/OCSP
Valid for in.tum.de
YES
95:67:1A:59:CA:48:18:81:3B:1C:0C:A9:15:97:D9:53:48:86:3B:DE
Subject Alternative Names
DNSName
talk.tum.de
DNSName
in.tum.de Matches
DNSName
xmpp.cs.tum.edu
DNSName
chat.mytum.de
DNSName
xmpp.ch.tum.de
DNSName
jabber.tum.de
DNSName
talk.mytum.de
DNSName
chat.tum.de
DNSName
talk.ch.tum.de
DNSName
xmpp.tum.de
DNSName
tum.de
DNSName
jabber.ch.tum.de
DNSName
xmpp.in.tum.de
DNSName
jabber.informatik.tu-muenchen.de
DNSName
talk.cs.tum.edu
DNSName
jabber.mytum.de
DNSName
talk.informatik.tu-muenchen.de
DNSName
talk.in.tum.de
DNSName
xmpp.informatik.tu-muenchen.de
DNSName
chat.informatik.tu-muenchen.de
DNSName
xmpp.mytum.de
DNSName
chat.cs.tum.edu
DNSName
jabber.in.tum.de
DNSName
jabber.cs.tum.edu
DNSName
chat.ch.tum.de
DNSName
mytum.de
DNSName
chat.in.tum.de
Subject
commonName
Zertifizierungsstelle der TUM
countryName
DE
organizationName
Technische Universitaet Muenchen
Details
Signature algorithm
sha1WithRSAEncryption
Public key
2048 bit RSA
Valid from
2007-02-13 10:03:01 UTC
Valid to
2019-02-12 00:00:00 UTC
CRL
http://cdp2.pca.dfn.de/global-root-ca/pub/crl/cacrl.crl
9A:9C:C8:BC:85:8E:6A:3D:D6:C1:6A:D7:3B:24:B8:45:09:B2:63:0A
Subject
commonName
DFN-Verein PCA Global - G01
countryName
DE
organizationalUnitName
DFN-PKI
organizationName
DFN-Verein
Details
Signature algorithm
sha1WithRSAEncryption
Public key
2048 bit RSA
Valid from
2006-12-19 10:29:00 UTC
Valid to
2019-06-30 23:59:00 UTC
CRL
http://pki.telesec.de/cgi-bin/service/af_DownloadARL.crl?-crl_format=X_509&-issuer=DT_ROOT_CA_2
F0:28:8F:DA:C6:3A:F7:9A:31:9A:E9:72:F3:95:09:0E:A3:EF:E9:45
Subject
commonName
Deutsche Telekom Root CA 2
countryName
DE
organizationalUnitName
T-TeleSec Trust Center
organizationName
Deutsche Telekom AG
Details
Signature algorithm
sha1WithRSAEncryption
Public key
2048 bit RSA
Valid from
1999-07-09 12:11:00 UTC
Valid to
2019-07-09 23:59:00 UTC
85:A4:08:C0:9C:19:3E:5D:51:58:7D:CD:D6:13:30:FD:8C:DE:37:BF

Protocols

SSLv2 Yes
SSLv3 Yes
TLSv1 Yes
TLSv1.1 No
TLSv1.2 No

Ciphers

Server does respect the client's cipher ordering.

Cipher suiteBitsizeForward secrecyInfo
AES256-SHA (0x35) 256 No -
RC2-CBC-MD5 (0x30080) 128 No -
RC4-MD5 (0x10080) 128 No -
AES128-SHA (0x2f) 128 No -
RC4-SHA (0x5) 128 No -
DES-CBC3-MD5 (0x700c0) WEAK 112 No -
DES-CBC3-SHA (0xa) WEAK 112 No -
DES-CBC-MD5 (0x60040) VERY WEAK 56 No -
DES-CBC-SHA (0x9) VERY WEAK 56 No -
EXP-RC4-MD5 (0x20080) VERY WEAK 40 No -
EXP-RC2-CBC-MD5 (0x6) VERY WEAK 40 No -

Badge

xmpp.net score

Want to show this result on your webpage? Add this:

<a href='https://xmpp.net/result.php?domain=in.tum.de&amp;type=client'><img src='https://xmpp.net/badge.php?domain=in.tum.de' alt='xmpp.net score' /></a>