IM Observatory server report for oessi.eu

Test started 2018-08-05 01:51:13 UTC .

Show client to server result | Permalink to this report | Retest

oessi.eu:5269
Grade T: Certificate is not trusted, but ignoring trust would score an A.
oessi.eu:5269
Version
Prosody 0.10.2
StartTLS
ALLOWED

SRV records _xmpp-server._tcp.oessi.eu BOGUS DNSSEC

Priority Weight Port Server

TLSA records

Verified Usage Selector Match Data
YES domain-issued certificate full SHA-256
11:88:41:5A:B3:4D:05:48:70:7B:DD:DA:A9:FE:77:DA:DD:89:84:65:57:C3:88:58:B7:B9:22:5A:BA:AE:B0:83

Certificates

Subject
commonName
oessi.eu
commonName
*.oessi.eu
commonName
conference.oessi.eu
countryName
DE
emailAddress
oessi@oessi.eu
localityName
Bocholt
stateOrProvinceName
Germany
Details
Signature algorithm
sha256WithRSAEncryption
Public key
4096 bit RSA
Valid from
2016-01-19 12:31:57 UTC
Valid to
2026-01-16 12:31:57 UTC
CRL
http://certs.oessi.eu/oessi.crl
Valid for oessi.eu
YES
5F:E5:50:55:96:40:73:35:E7:EB:A4:41:96:CC:CD:65:56:44:EE:A9
Subject Alternative Names
DNSName
www.oessi.eu
DNSName
oessi.eu Matches
DNSName
*.oessi.eu
Subject
commonName
Oessis Server CA
countryName
DE
emailAddress
oessi@oessi.eu
localityName
Bocholt
stateOrProvinceName
Germany
Details
Signature algorithm
sha512WithRSAEncryption
Public key
8192 bit RSA
Valid from
2015-01-20 19:12:24 UTC
Valid to
2035-01-15 19:12:24 UTC
CRL
http://certs.oessi.eu/oessi.crl
60:4D:E8:2E:B2:66:1C:82:2F:E8:FF:DE:CF:29:87:7B:41:9E:D9:C5
Subject
commonName
Oessis Root CA
countryName
DE
emailAddress
oessi@oessi.eu
localityName
Bocholt
stateOrProvinceName
Germany
Details
Error: self signed certificate in certificate chain.
Signature algorithm
sha512WithRSAEncryption
Public key
8192 bit RSA
Valid from
2015-01-20 18:58:04 UTC
Valid to
2035-01-15 18:58:04 UTC
CRL
http://certs.oessi.eu/oessi.crl
8F:1E:9E:61:C4:0F:C5:D1:D2:C3:C3:77:27:1A:52:58:CA:B1:29:36

Protocols

SSLv2 No
SSLv3 No
TLSv1 Yes
TLSv1.1 Yes
TLSv1.2 Yes

Ciphers

Server does not respect the client's cipher ordering.

Cipher suiteBitsizeForward secrecyInfo
ECDHE-RSA-AES256-GCM-SHA384 (0xc030) 256 Yes Curve: secp384r1
ECDHE-RSA-AES256-SHA384 (0xc028) 256 Yes Curve: secp384r1
ECDHE-RSA-AES256-SHA (0xc014) 256 Yes Curve: secp384r1
ECDHE-RSA-AES128-GCM-SHA256 (0xc02f) 128 Yes Curve: secp384r1
ECDHE-RSA-AES128-SHA256 (0xc027) 128 Yes Curve: secp384r1
ECDHE-RSA-AES128-SHA (0xc013) 128 Yes Curve: secp384r1
AES256-GCM-SHA384 (0x9d) 256 No -
AES256-SHA256 (0x3d) 256 No -
AES256-SHA (0x35) 256 No -
CAMELLIA256-SHA (0x84) 256 No -
AES128-GCM-SHA256 (0x9c) 128 No -
AES128-SHA256 (0x3c) 128 No -
AES128-SHA (0x2f) 128 No -
CAMELLIA128-SHA (0x41) 128 No -

Badge

IM observatory score

Want to show this result on your webpage? Add this:

<a href='https://check.messaging.one/result.php?domain=oessi.eu&amp;type=server'>
  <img src='https://check.messaging.one/badge.php?domain=oessi.eu' alt='IM observatory score' />
</a>