IM Observatory server report for liberty420.org

Test started 2018-04-17 05:36:59 UTC .

Show client to server result | Permalink to this report | Retest

chat.liberty420.org:5269
Grade T: Certificate is not trusted, but ignoring trust would score an A.
chat.liberty420.org:5269
Version
Prosody 0.9.12
StartTLS
ALLOWED
Peer certificate
The server requires incoming s2s connections to present a peer certificate.

SRV records _xmpp-server._tcp.liberty420.org NO DNSSEC

Priority Weight Port Server
0 5 5269 chat.liberty420.org

TLSA records

Certificates

Subject
commonName
liberty420.org
Details
Error: unable to get local issuer certificate.
Error: unable to verify the first certificate.
Signature algorithm
sha256WithRSAEncryption
Public key
2048 bit RSA
Valid from
2018-03-22 00:00:00 UTC
Valid to
2018-06-20 23:59:59 UTC
CRL
http://crl.comodoca.com/cPanelIncCertificationAuthority.crl
OCSP
http://ocsp.comodoca.com
Valid for liberty420.org
YES
74:3D:8F:FD:3A:D9:D2:63:E9:5F:58:16:BB:B8:56:43:B5:6B:E9:28
Subject Alternative Names
DNSName
liberty420.org Matches
DNSName
autodiscover.liberty420.org
DNSName
cpanel.liberty420.org
DNSName
mail.liberty420.org
DNSName
webdisk.liberty420.org
DNSName
webmail.liberty420.org
DNSName
www.liberty420.org
Subject
commonName
cPanel, Inc. Certification Authority
countryName
US
localityName
Houston
organizationName
cPanel, Inc.
stateOrProvinceName
TX
Details
Signature algorithm
sha384WithRSAEncryption
Public key
2048 bit RSA
Valid from
2015-05-18 00:00:00 UTC
Valid to
2025-05-17 23:59:59 UTC
CRL
http://crl.comodoca.com/COMODORSACertificationAuthority.crl
OCSP
http://ocsp.comodoca.com
76:4D:2F:A5:9E:D1:23:F9:C9:55:70:C4:03:C9:2F:EF:33:8E:A7:45
Subject
commonName
COMODO RSA Certification Authority
countryName
GB
localityName
Salford
organizationName
COMODO CA Limited
stateOrProvinceName
Greater Manchester
Details
Signature algorithm
sha384WithRSAEncryption
Public key
4096 bit RSA
Valid from
2000-05-30 10:48:38 UTC
Valid to
2020-05-30 10:48:38 UTC
CRL
http://crl.usertrust.com/AddTrustExternalCARoot.crl
OCSP
http://ocsp.usertrust.com
F5:AD:0B:CC:1A:D5:6C:D1:50:72:5B:1C:86:6C:30:AD:92:EF:21:B0
Subject
commonName
AddTrust External CA Root
countryName
SE
organizationName
AddTrust AB
organizationalUnitName
AddTrust External TTP Network
Details
Signature algorithm
sha1WithRSAEncryption
Public key
2048 bit RSA
Valid from
2000-05-30 10:48:38 UTC
Valid to
2020-05-30 10:48:38 UTC
02:FA:F3:E2:91:43:54:68:60:78:57:69:4D:F5:E4:5B:68:85:18:68
Subject
commonName
Let's Encrypt Authority X3
countryName
US
organizationName
Let's Encrypt
Details
Warning: Certificate is unused.
Signature algorithm
sha256WithRSAEncryption
Public key
2048 bit RSA
Valid from
2016-03-17 16:40:46 UTC
Valid to
2021-03-17 16:40:46 UTC
CRL
http://crl.identrust.com/DSTROOTCAX3CRL.crl
OCSP
http://isrg.trustid.ocsp.identrust.com
E6:A3:B4:5B:06:2D:50:9B:33:82:28:2D:19:6E:FE:97:D5:95:6C:CB

Protocols

SSLv2 No
SSLv3 No
TLSv1 Yes
TLSv1.1 Yes
TLSv1.2 Yes

Ciphers

Server does not respect the client's cipher ordering.

Cipher suiteBitsizeForward secrecyInfo
ECDHE-RSA-AES256-GCM-SHA384 (0xc030) 256 Yes Curve: secp384r1
ECDHE-RSA-AES256-SHA384 (0xc028) 256 Yes Curve: secp384r1
ECDHE-RSA-AES256-SHA (0xc014) 256 Yes Curve: secp384r1
ECDHE-RSA-AES128-GCM-SHA256 (0xc02f) 128 Yes Curve: secp384r1
ECDHE-RSA-AES128-SHA256 (0xc027) 128 Yes Curve: secp384r1
ECDHE-RSA-AES128-SHA (0xc013) 128 Yes Curve: secp384r1
AES256-GCM-SHA384 (0x9d) 256 No -
AES256-SHA256 (0x3d) 256 No -
AES256-SHA (0x35) 256 No -
CAMELLIA256-SHA (0x84) 256 No -
AES128-GCM-SHA256 (0x9c) 128 No -
AES128-SHA256 (0x3c) 128 No -
AES128-SHA (0x2f) 128 No -
CAMELLIA128-SHA (0x41) 128 No -

Badge

IM observatory score

Want to show this result on your webpage? Add this:

<a href='https://check.messaging.one/result.php?domain=liberty420.org&amp;type=server'>
  <img src='https://check.messaging.one/badge.php?domain=liberty420.org' alt='IM observatory score' />
</a>