IM Observatory server report for im.filoo.de

Test started 2018-04-07 18:28:14 UTC .

Show client to server result | Permalink to this report | Retest

im.filoo.de:5269
Certificate is not trusted, grade capped to F. Ignoring trust: B.
Server uses Diffie-Hellman parameters of < 2048 bits. Grade capped to B.
im.filoo.de:5269
Version
unknown unknown
StartTLS
ALLOWED

SRV records _xmpp-server._tcp.im.filoo.de DNSSEC

Priority Weight Port Server
10 0 5269 im.filoo.de

TLSA records

Certificates

Subject
commonName
*.filoo.de
Details
Error: unable to get local issuer certificate.
Error: unable to verify the first certificate.
Signature algorithm
sha256WithRSAEncryption
Public key
2048 bit RSA
Valid from
2016-02-11 02:23:56 UTC
Valid to
2018-04-14 11:24:36 UTC
CRL
http://gv.symcb.com/gv.crl
OCSP
http://gv.symcd.com
Valid for im.filoo.de
YES
58:14:88:63:55:21:C3:BA:AF:6B:D9:BF:CC:17:B9:F6:15:F4:17:D8
Subject Alternative Names
DNSName
*.filoo.de
DNSName
filoo.de
Subject
commonName
RapidSSL SHA256 CA - G3
countryName
US
organizationName
GeoTrust Inc.
Details
Signature algorithm
sha256WithRSAEncryption
Public key
2048 bit RSA
Valid from
2014-08-29 21:39:32 UTC
Valid to
2022-05-20 21:39:32 UTC
CRL
http://g.symcb.com/crls/gtglobal.crl
OCSP
http://g.symcd.com
0E:34:14:18:46:E7:42:3D:37:F2:0D:C0:AB:06:C9:BB:D8:43:DC:24
Subject
commonName
GeoTrust Global CA
countryName
US
organizationName
GeoTrust Inc.
Details
Signature algorithm
sha1WithRSAEncryption
Public key
2048 bit RSA
Valid from
2002-05-21 04:00:00 UTC
Valid to
2018-08-21 04:00:00 UTC
CRL
http://crl.geotrust.com/crls/secureca.crl
73:59:75:5C:6D:F9:A0:AB:C3:06:0B:CE:36:95:64:C8:EC:45:42:A3
Subject
countryName
US
organizationName
Equifax
organizationalUnitName
Equifax Secure Certificate Authority
Details
Signature algorithm
sha1WithRSAEncryption
Public key
1024 bit RSA WEAK
Valid from
1998-08-22 16:41:51 UTC
Valid to
2018-08-22 16:41:51 UTC
D2:32:09:AD:23:D3:14:23:21:74:E4:0D:7F:9D:62:13:97:86:63:3A

Protocols

SSLv2 No
SSLv3 No
TLSv1 Yes
TLSv1.1 Yes
TLSv1.2 Yes

Ciphers

Server does respect the client's cipher ordering.

Cipher suiteBitsizeForward secrecyInfo
ECDHE-RSA-AES256-SHA384 (0xc028) 256 Yes Curve: prime256v1
ECDHE-RSA-AES256-SHA (0xc014) 256 Yes Curve: prime256v1
DHE-RSA-AES256-SHA256 (0x6b) 256 Yes Diffie-Hellman:
Group: RFC 2409 First Oakley Default Group
Bitsize: 1024
DHE-DSS-AES256-SHA256 (0x6a) 256 Yes Diffie-Hellman:
Group: RFC 2409 First Oakley Default Group
Bitsize: 1024
DHE-RSA-AES256-SHA (0x39) 256 Yes Diffie-Hellman:
Group: RFC 2409 First Oakley Default Group
Bitsize: 1024
DHE-DSS-AES256-SHA (0x38) 256 Yes Diffie-Hellman:
Group: RFC 2409 First Oakley Default Group
Bitsize: 1024
AES256-SHA256 (0x3d) 256 No -
AES256-SHA (0x35) 256 No -
ECDHE-RSA-AES128-SHA256 (0xc027) 128 Yes Curve: prime256v1
ECDHE-RSA-AES128-SHA (0xc013) 128 Yes Curve: prime256v1
DHE-RSA-AES128-SHA256 (0x67) 128 Yes Diffie-Hellman:
Group: RFC 2409 First Oakley Default Group
Bitsize: 1024
DHE-DSS-AES128-SHA256 (0x40) 128 Yes Diffie-Hellman:
Group: RFC 2409 First Oakley Default Group
Bitsize: 1024
DHE-RSA-AES128-SHA (0x33) 128 Yes Diffie-Hellman:
Group: RFC 2409 First Oakley Default Group
Bitsize: 1024
DHE-DSS-AES128-SHA (0x32) 128 Yes Diffie-Hellman:
Group: RFC 2409 First Oakley Default Group
Bitsize: 1024
AES128-SHA256 (0x3c) 128 No -
AES128-SHA (0x2f) 128 No -
ECDHE-RSA-DES-CBC3-SHA (0xc012) WEAK 112 Yes Curve: prime256v1
EDH-RSA-DES-CBC3-SHA (0x16) WEAK 112 Yes Diffie-Hellman:
Group: RFC 2409 First Oakley Default Group
Bitsize: 1024
EDH-DSS-DES-CBC3-SHA (0x13) WEAK 112 Yes Diffie-Hellman:
Group: RFC 2409 First Oakley Default Group
Bitsize: 1024
DES-CBC3-SHA (0xa) WEAK 112 No -

Badge

IM observatory score

Want to show this result on your webpage? Add this:

<a href='https://check.messaging.one/result.php?domain=im.filoo.de&amp;type=server'>
  <img src='https://check.messaging.one/badge.php?domain=im.filoo.de' alt='IM observatory score' />
</a>