IM Observatory client report for rerubabs.nl

Test started 2018-02-28 11:48:07 UTC .

Show server to server result | Permalink to this report | Retest

rerubabs.nl:5222
Certificate is not trusted, grade capped to F. Ignoring trust: C.
Warning: Server allows RC4 when using TLS 1.1 and/or TLS 1.2. Grade capped to C.
Server uses Diffie-Hellman parameters of < 2048 bits. Grade capped to B.
rerubabs.nl:5222
StartTLS
ALLOWED

SASL

Pre-TLS
CRAM-MD5
DIGEST-MD5
PLAIN
SCRAM-SHA-1
Post-TLS
CRAM-MD5
DIGEST-MD5
PLAIN
SCRAM-SHA-1

SRV records _xmpp-client._tcp.rerubabs.nl DNSSEC

Priority Weight Port Server
0 5 5222 rerubabs.nl

TLSA records

Certificates

Subject
commonName
rerubabs.nl
organizationalUnitName
Domain Control Validated
organizationalUnitName
PositiveSSL Multi-Domain
Details
Error: unable to get local issuer certificate.
Error: unable to verify the first certificate.
Signature algorithm
sha256WithRSAEncryption
Public key
4096 bit RSA
Valid from
2017-04-07 00:00:00 UTC
Valid to
2020-04-06 23:59:59 UTC
CRL
http://crl.comodoca.com/COMODORSADomainValidationSecureServerCA.crl
OCSP
http://ocsp.comodoca.com
Valid for rerubabs.nl
YES
C1:86:6D:F3:E3:5C:2F:10:C6:E7:6F:52:17:6E:74:12:0D:82:2B:CF
Subject Alternative Names
DNSName
rerubabs.nl Matches
DNSName
home.rerubabs.nl
DNSName
public.rerubabs.nl
Subject
commonName
COMODO RSA Domain Validation Secure Server CA
countryName
GB
localityName
Salford
organizationName
COMODO CA Limited
stateOrProvinceName
Greater Manchester
Details
Signature algorithm
sha384WithRSAEncryption
Public key
2048 bit RSA
Valid from
2014-02-12 00:00:00 UTC
Valid to
2029-02-11 23:59:59 UTC
CRL
http://crl.comodoca.com/COMODORSACertificationAuthority.crl
OCSP
http://ocsp.comodoca.com
33:9C:DD:57:CF:D5:B1:41:16:9B:61:5F:F3:14:28:78:2D:1D:A6:39
Subject
commonName
COMODO RSA Certification Authority
countryName
GB
localityName
Salford
organizationName
COMODO CA Limited
stateOrProvinceName
Greater Manchester
Details
Signature algorithm
sha384WithRSAEncryption
Public key
4096 bit RSA
Valid from
2000-05-30 10:48:38 UTC
Valid to
2020-05-30 10:48:38 UTC
CRL
http://crl.usertrust.com/AddTrustExternalCARoot.crl
OCSP
http://ocsp.usertrust.com
F5:AD:0B:CC:1A:D5:6C:D1:50:72:5B:1C:86:6C:30:AD:92:EF:21:B0
Subject
commonName
AddTrust External CA Root
countryName
SE
organizationalUnitName
AddTrust External TTP Network
organizationName
AddTrust AB
Details
Signature algorithm
sha1WithRSAEncryption
Public key
2048 bit RSA
Valid from
1999-06-24 18:57:21 UTC
Valid to
2019-06-24 19:06:30 UTC
CRL
http://crl.usertrust.com/UTN-DATACorpSGC.crl
OCSP
http://ocsp.usertrust.com
53:84:5E:9F:D0:70:B7:AA:36:97:6F:53:6F:F1:44:1C:57:8C:63:D2
Subject
commonName
UTN - DATACorp SGC
countryName
US
localityName
Salt Lake City
organizationalUnitName
http://www.usertrust.com
organizationName
The USERTRUST Network
stateOrProvinceName
UT
Details
Signature algorithm
sha1WithRSAEncryption
Public key
2048 bit RSA
Valid from
1999-06-24 18:57:21 UTC
Valid to
2019-06-24 19:06:30 UTC
CRL
http://crl.usertrust.com/UTN-DATACorpSGC.crl
58:11:9F:0E:12:82:87:EA:50:FD:D9:87:45:6F:4F:78:DC:FA:D6:D4

Protocols

SSLv2 No
SSLv3 No
TLSv1 No
TLSv1.1 Yes
TLSv1.2 Yes

Ciphers

Server does respect the client's cipher ordering.

Cipher suiteBitsizeForward secrecyInfo
ECDHE-RSA-AES128-GCM-SHA256 (0xc02f) 128 Yes Curve: sect571r1
ECDHE-RSA-AES128-SHA256 (0xc027) 128 Yes Curve: sect571r1
ECDHE-RSA-AES128-SHA (0xc013) 128 Yes Curve: sect571r1
ECDHE-RSA-RC4-SHA (0xc011) 128 Yes Curve: sect571r1
DHE-RSA-AES128-GCM-SHA256 (0x9e) 128 Yes Diffie-Hellman:
Group: Java sun.security.provider default 1024-bit prime
Bitsize: 1024
DHE-RSA-AES128-SHA256 (0x67) 128 Yes Diffie-Hellman:
Group: Java sun.security.provider default 1024-bit prime
Bitsize: 1024
DHE-RSA-AES128-SHA (0x33) 128 Yes Diffie-Hellman:
Group: Java sun.security.provider default 1024-bit prime
Bitsize: 1024
RC4-MD5 (0x10080) 128 No -
AES128-GCM-SHA256 (0x9c) 128 No -
AES128-SHA256 (0x3c) 128 No -
AES128-SHA (0x2f) 128 No -
RC4-SHA (0x5) 128 No -
ECDHE-RSA-DES-CBC3-SHA (0xc012) WEAK 112 Yes Curve: sect571r1
EDH-RSA-DES-CBC3-SHA (0x16) WEAK 112 Yes Diffie-Hellman:
Group: Java sun.security.provider default 1024-bit prime
Bitsize: 1024
DES-CBC3-SHA (0xa) WEAK 112 No -

Badge

xmpp.net score

Want to show this result on your webpage? Add this:

<a href='https://xmpp.net/result.php?domain=rerubabs.nl&amp;type=client'><img src='https://xmpp.net/badge.php?domain=rerubabs.nl' alt='xmpp.net score' /></a>