IM Observatory client report for incenp.org

Test started 2018-01-20 21:44:21 UTC .

Show server to server result | Permalink to this report | Retest

im.incenp.org:5222
Grade T: Certificate is not trusted, but ignoring trust would score an A.
im.incenp.org:5222
Version
Prosody 0.9.12
StartTLS
REQUIRED

SASL

Pre-TLS

None

Post-TLS
DIGEST-MD5
PLAIN
SCRAM-SHA-1

SRV records _xmpp-client._tcp.incenp.org DNSSEC

Priority Weight Port Server
0 5 5222 im.incenp.org

TLSA records

Verified Usage Selector Match Data
NO domain-issued certificate SPKI SHA-256
4D:09:F6:1B:A9:87:CE:BD:F8:83:F2:7F:01:CF:53:A1:20:FB:3F:37:7D:C3:9F:CA:FD:7D:20:47:28:B0:EF:38
YES domain-issued certificate SPKI SHA-256
98:3E:46:CB:36:DA:AC:46:4B:CA:D4:F1:CF:D8:7F:B5:F4:F2:5B:7D:F8:96:12:67:0C:AA:13:75:3A:09:F3:AC
NO domain-issued certificate SPKI SHA-256
34:2A:4A:9D:99:CB:24:6D:48:AE:A8:A2:29:36:EC:7E:68:CE:A6:EE:B0:A4:82:79:BF:61:C3:8A:CD:A5:4A:04

Certificates

Subject
commonName
Incenp.org Instant Messaging Server
countryName
FR
organizationName
Incenp.org
Details
Signature algorithm
sha256WithRSAEncryption
Public key
2048 bit RSA
Valid from
2018-01-19 22:04:25 UTC
Valid to
2021-01-18 22:04:25 UTC
CRL
http://www.incenp.org/srv/ca/server.crl
Valid for incenp.org
YES
5A:5A:AB:D4:55:04:9E:25:78:F5:31:E8:D2:EB:EA:6C:B3:BE:A9:60
Subject Alternative Names
DNSName
im.incenp.org
SRVName
_xmpp-server.incenp.org
SRVName
_xmpp-client.incenp.org Matches
Subject
commonName
Incenp.org Server Authority
countryName
FR
organizationName
Incenp.org
organizationalUnitName
Certification Service
Details
Signature algorithm
sha256WithRSAEncryption
Public key
4096 bit RSA
Valid from
2014-09-10 00:11:54 UTC
Valid to
2024-09-07 00:11:54 UTC
CRL
http://www.incenp.org/srv/ca/server.crl
16:B5:E4:3F:8D:13:04:3F:54:2A:0C:98:37:C8:63:F2:68:A2:09:FE
Subject
commonName
Incenp.org Root Authority
countryName
FR
organizationName
Incenp.org
organizationalUnitName
Certification Service
Details
Error: self signed certificate in certificate chain.
Signature algorithm
sha256WithRSAEncryption
Public key
4096 bit RSA
Valid from
2014-09-10 00:01:07 UTC
Valid to
2044-09-02 00:01:07 UTC
E0:19:87:B2:F3:60:BB:DF:EC:99:C3:19:64:51:AA:1E:33:80:8F:98

Protocols

SSLv2 No
SSLv3 No
TLSv1 No
TLSv1.1 Yes
TLSv1.2 Yes

Ciphers

Server does not respect the client's cipher ordering.

Cipher suiteBitsizeForward secrecyInfo
ECDHE-RSA-AES256-GCM-SHA384 (0xc030) 256 Yes Curve: secp384r1
ECDHE-RSA-AES128-GCM-SHA256 (0xc02f) 128 Yes Curve: secp384r1
ECDHE-RSA-AES256-SHA384 (0xc028) 256 Yes Curve: secp384r1
ECDHE-RSA-AES128-SHA256 (0xc027) 128 Yes Curve: secp384r1
ECDHE-RSA-AES256-SHA (0xc014) 256 Yes Curve: secp384r1
ECDHE-RSA-AES128-SHA (0xc013) 128 Yes Curve: secp384r1
AES256-GCM-SHA384 (0x9d) 256 No -
AES128-GCM-SHA256 (0x9c) 128 No -
AES256-SHA256 (0x3d) 256 No -
AES128-SHA256 (0x3c) 128 No -
AES256-SHA (0x35) 256 No -
CAMELLIA256-SHA (0x84) 256 No -
AES128-SHA (0x2f) 128 No -
CAMELLIA128-SHA (0x41) 128 No -

Badge

IM observatory score

Want to show this result on your webpage? Add this:

<a href='https://check.messaging.one/result.php?domain=incenp.org&amp;type=client'>
  <img src='https://check.messaging.one/badge.php?domain=incenp.org' alt='IM observatory score' />
</a>