IM Observatory server report for faui2k11.de

Test started 2018-01-03 23:24:28 UTC .

Show client to server result | Permalink to this report | Retest

faui2k11.de:5269
Server uses Diffie-Hellman parameters of < 2048 bits. Grade capped to B.
faui2k11.de:5269
Version
ejabberd 17.12
StartTLS
REQUIRED

SRV records _xmpp-server._tcp.faui2k11.de DNSSEC

Priority Weight Port Server
10 0 5269 faui2k11.de

TLSA records

Verified Usage Selector Match Data
NO domain-issued certificate SPKI SHA-256
EB:07:20:7A:94:62:3C:EA:9C:80:5F:EE:D7:6B:39:17:74:DD:CE:CE:FA:2F:54:84:7D:61:F8:75:DF:2A:EA:06

Certificates

Subject
commonName
conference.faui2k11.de
Details
Signature algorithm
sha256WithRSAEncryption
Public key
4096 bit RSA
Valid from
2017-11-21 12:52:53 UTC
Valid to
2018-02-19 12:52:53 UTC
OCSP
http://ocsp.int-x3.letsencrypt.org
Valid for faui2k11.de
YES
BE:6A:01:A1:91:64:0F:05:3E:66:B9:7A:35:DD:D1:0C:8F:6F:80:3E
Subject Alternative Names
DNSName
conference.faui2k11.de
DNSName
conference.paulus.xyz
DNSName
faui2k11.de Matches
DNSName
irc.faui2k11.de
DNSName
paulus.xyz
DNSName
pubsub.faui2k11.de
DNSName
pubsub.paulus.xyz
DNSName
www.faui2k11.de
DNSName
xmpp.faui2k11.de
DNSName
xmpp.paulus.xyz
Subject
commonName
Let's Encrypt Authority X3
countryName
US
organizationName
Let's Encrypt
Details
Signature algorithm
sha256WithRSAEncryption
Public key
2048 bit RSA
Valid from
2016-03-17 16:40:46 UTC
Valid to
2021-03-17 16:40:46 UTC
CRL
http://crl.identrust.com/DSTROOTCAX3CRL.crl
OCSP
http://isrg.trustid.ocsp.identrust.com
E6:A3:B4:5B:06:2D:50:9B:33:82:28:2D:19:6E:FE:97:D5:95:6C:CB
Subject
commonName
DST Root CA X3
organizationName
Digital Signature Trust Co.
Details
Signature algorithm
sha1WithRSAEncryption
Public key
2048 bit RSA
Valid from
2000-09-30 21:12:19 UTC
Valid to
2021-09-30 14:01:15 UTC
DA:C9:02:4F:54:D8:F6:DF:94:93:5F:B1:73:26:38:CA:6A:D7:7C:13

Protocols

SSLv2 No
SSLv3 No
TLSv1 No
TLSv1.1 Yes
TLSv1.2 Yes

Ciphers

Server does not respect the client's cipher ordering.

Cipher suiteBitsizeForward secrecyInfo
ECDHE-RSA-AES256-GCM-SHA384 (0xc030) 256 Yes Curve: prime256v1
DHE-RSA-AES256-GCM-SHA384 (0x9f) 256 Yes Diffie-Hellman:
Group: RFC 5114 1024-bit MODP Group with 160-bit Prime Order Subgroup
Bitsize: 1024
ECDHE-RSA-AES128-GCM-SHA256 (0xc02f) 128 Yes Curve: prime256v1
DHE-RSA-AES128-GCM-SHA256 (0x9e) 128 Yes Diffie-Hellman:
Group: RFC 5114 1024-bit MODP Group with 160-bit Prime Order Subgroup
Bitsize: 1024
ECDHE-RSA-AES256-SHA384 (0xc028) 256 Yes Curve: prime256v1
DHE-RSA-AES256-SHA256 (0x6b) 256 Yes Diffie-Hellman:
Group: RFC 5114 1024-bit MODP Group with 160-bit Prime Order Subgroup
Bitsize: 1024
ECDHE-RSA-AES128-SHA256 (0xc027) 128 Yes Curve: prime256v1
DHE-RSA-AES128-SHA256 (0x67) 128 Yes Diffie-Hellman:
Group: RFC 5114 1024-bit MODP Group with 160-bit Prime Order Subgroup
Bitsize: 1024
ECDHE-RSA-AES256-SHA (0xc014) 256 Yes Curve: prime256v1
DHE-RSA-AES256-SHA (0x39) 256 Yes Diffie-Hellman:
Group: RFC 5114 1024-bit MODP Group with 160-bit Prime Order Subgroup
Bitsize: 1024
ECDHE-RSA-AES128-SHA (0xc013) 128 Yes Curve: prime256v1
DHE-RSA-AES128-SHA (0x33) 128 Yes Diffie-Hellman:
Group: RFC 5114 1024-bit MODP Group with 160-bit Prime Order Subgroup
Bitsize: 1024
AES256-GCM-SHA384 (0x9d) 256 No -
AES128-GCM-SHA256 (0x9c) 128 No -
AES256-SHA256 (0x3d) 256 No -
AES128-SHA256 (0x3c) 128 No -
AES256-SHA (0x35) 256 No -
AES128-SHA (0x2f) 128 No -

Badge

IM observatory score

Want to show this result on your webpage? Add this:

<a href='https://check.messaging.one/result.php?domain=faui2k11.de&amp;type=server'>
  <img src='https://check.messaging.one/badge.php?domain=faui2k11.de' alt='IM observatory score' />
</a>