IM Observatory server report for gsimmons.org

Test started 2018-08-16 01:13:04 UTC .

Show client to server result | Permalink to this report | Retest

dc-5e447f55bc69.gsimmons.org:5269
Grade T: Certificate is not trusted, but ignoring trust would score an A.
dc-5e447f55bc69.gsimmons.org:5269
Version
Prosody 0.9.7
StartTLS
ALLOWED

SRV records _xmpp-server._tcp.gsimmons.org DNSSEC

Priority Weight Port Server
0 5 5269 dc-5e447f55bc69.gsimmons.org

TLSA records

Certificates

Subject
commonName
gsimmons.org
organizationalUnitName
Domain Control Validated
organizationalUnitName
PositiveSSL
Details
Error: certificate has expired.
Signature algorithm
sha256WithRSAEncryption
Public key
2048 bit RSA
Valid from
2015-11-08 00:00:00 UTC
Valid to
2016-11-07 23:59:59 UTC
CRL
http://crl.comodoca.com/COMODORSADomainValidationSecureServerCA.crl
OCSP
http://ocsp.comodoca.com
Valid for gsimmons.org
YES
F8:2F:1F:E8:50:F2:DD:F2:B6:F1:94:F7:6F:C5:E2:11:C5:02:F4:D1
Subject Alternative Names
DNSName
gsimmons.org Matches
DNSName
www.gsimmons.org
Subject
commonName
COMODO RSA Domain Validation Secure Server CA
countryName
GB
localityName
Salford
organizationName
COMODO CA Limited
stateOrProvinceName
Greater Manchester
Details
Signature algorithm
sha384WithRSAEncryption
Public key
2048 bit RSA
Valid from
2014-02-12 00:00:00 UTC
Valid to
2029-02-11 23:59:59 UTC
CRL
http://crl.comodoca.com/COMODORSACertificationAuthority.crl
OCSP
http://ocsp.comodoca.com
33:9C:DD:57:CF:D5:B1:41:16:9B:61:5F:F3:14:28:78:2D:1D:A6:39
Subject
commonName
COMODO RSA Certification Authority
countryName
GB
localityName
Salford
organizationName
COMODO CA Limited
stateOrProvinceName
Greater Manchester
Details
Signature algorithm
sha384WithRSAEncryption
Public key
4096 bit RSA
Valid from
2000-05-30 10:48:38 UTC
Valid to
2020-05-30 10:48:38 UTC
CRL
http://crl.usertrust.com/AddTrustExternalCARoot.crl
OCSP
http://ocsp.usertrust.com
F5:AD:0B:CC:1A:D5:6C:D1:50:72:5B:1C:86:6C:30:AD:92:EF:21:B0
Subject
commonName
AddTrust External CA Root
countryName
SE
organizationName
AddTrust AB
organizationalUnitName
AddTrust External TTP Network
Details
Signature algorithm
sha1WithRSAEncryption
Public key
2048 bit RSA
Valid from
2000-05-30 10:48:38 UTC
Valid to
2020-05-30 10:48:38 UTC
02:FA:F3:E2:91:43:54:68:60:78:57:69:4D:F5:E4:5B:68:85:18:68

Protocols

SSLv2 No
SSLv3 No
TLSv1 Yes
TLSv1.1 Yes
TLSv1.2 Yes

Ciphers

Server does not respect the client's cipher ordering.

Cipher suiteBitsizeForward secrecyInfo
DHE-RSA-AES256-GCM-SHA384 (0x9f) 256 Yes Diffie-Hellman:
Bitsize: 2048
DHE-RSA-AES256-SHA256 (0x6b) 256 Yes Diffie-Hellman:
Bitsize: 2048
DHE-RSA-AES256-SHA (0x39) 256 Yes Diffie-Hellman:
Bitsize: 2048
DHE-RSA-CAMELLIA256-SHA (0x88) 256 Yes Diffie-Hellman:
Bitsize: 2048
DHE-RSA-AES128-GCM-SHA256 (0x9e) 128 Yes Diffie-Hellman:
Bitsize: 2048
DHE-RSA-AES128-SHA256 (0x67) 128 Yes Diffie-Hellman:
Bitsize: 2048
DHE-RSA-AES128-SHA (0x33) 128 Yes Diffie-Hellman:
Bitsize: 2048
DHE-RSA-CAMELLIA128-SHA (0x45) 128 Yes Diffie-Hellman:
Bitsize: 2048
ECDHE-RSA-AES256-GCM-SHA384 (0xc030) 256 Yes Curve: secp384r1
ECDHE-RSA-AES256-SHA384 (0xc028) 256 Yes Curve: secp384r1
ECDHE-RSA-AES256-SHA (0xc014) 256 Yes Curve: secp384r1
ECDHE-RSA-AES128-GCM-SHA256 (0xc02f) 128 Yes Curve: secp384r1
ECDHE-RSA-AES128-SHA256 (0xc027) 128 Yes Curve: secp384r1
ECDHE-RSA-AES128-SHA (0xc013) 128 Yes Curve: secp384r1
AES256-GCM-SHA384 (0x9d) 256 No -
AES256-SHA256 (0x3d) 256 No -
AES256-SHA (0x35) 256 No -
CAMELLIA256-SHA (0x84) 256 No -
AES128-GCM-SHA256 (0x9c) 128 No -
AES128-SHA256 (0x3c) 128 No -
AES128-SHA (0x2f) 128 No -
CAMELLIA128-SHA (0x41) 128 No -

Badge

IM observatory score

Want to show this result on your webpage? Add this:

<a href='https://check.messaging.one/result.php?domain=gsimmons.org&amp;type=server'>
  <img src='https://check.messaging.one/badge.php?domain=gsimmons.org' alt='IM observatory score' />
</a>