IM Observatory client report for tum.de

Test started 2018-06-22 10:37:09 UTC .

Show server to server result | Permalink to this report | Retest

xmpp.tum.de:5222
Certificate is not trusted, grade capped to F. Ignoring trust: F.
Server allows SSLv2, which is obsolete and insecure. Grade capped to F.
Server does not support TLS 1.2. Grade capped to C.
Warning: Server offers no forward-secret ciphers. Grade capped to A-.
Server supports SSL 3. Grade capped to B.
xmpp.tum.de:5222
Version
unknown unknown
StartTLS
REQUIRED

SASL

Pre-TLS
PLAIN
Post-TLS
PLAIN

SRV records _xmpp-client._tcp.tum.de DNSSEC

Priority Weight Port Server
0 0 5222 xmpp.tum.de

TLSA records

Certificates

Subject
commonName
xmpp.in.tum.de
countryName
DE
localityName
Muenchen
organizationName
Technische Universitaet Muenchen
organizationalUnitName
Fakultaet fuer Informatik
stateOrProvinceName
Bayern
Details
Error: unable to get local issuer certificate.
Error: unable to verify the first certificate.
Signature algorithm
sha256WithRSAEncryption
Public key
2048 bit RSA
Valid from
2018-05-25 10:22:31 UTC
Valid to
2020-06-01 02:00:00 UTC
CRL
http://cdp2.pca.dfn.de/dfn-ca-global-g2/pub/crl/cacrl.crl
OCSP
http://ocsp.pca.dfn.de/OCSP-Server/OCSP
Valid for tum.de
NO
2B:9F:52:A4:EF:53:53:BC:86:A2:21:D6:97:87:17:82:C7:23:A7:E8
Subject Alternative Names
DNSName
conference.in.tum.de
DNSName
conference.cs.tum.edu
DNSName
chat.cs.tum.edu
DNSName
jabber.in.tum.de
DNSName
xmpp.in.tum.de
DNSName
jabber.informatik.tu-muenchen.de
DNSName
talk.cs.tum.edu
DNSName
jabber.cs.tum.edu
DNSName
xmpp.cs.tum.edu
DNSName
talk.informatik.tu-muenchen.de
DNSName
chat.in.tum.de
DNSName
talk.in.tum.de
DNSName
xmpp.informatik.tu-muenchen.de
DNSName
chat.informatik.tu-muenchen.de
DNSName
conference.informatik.tu-muenchen.de
Subject
commonName
DFN-Verein Global Issuing CA
countryName
DE
organizationName
Verein zur Foerderung eines Deutschen Forschungsnetzes e. V.
organizationalUnitName
DFN-PKI
Details
Signature algorithm
sha256WithRSAEncryption
Public key
2048 bit RSA
Valid from
2016-05-24 11:38:40 UTC
Valid to
2031-02-22 23:59:59 UTC
CRL
http://cdp2.pca.dfn.de/global-root-g2-ca/pub/crl/cacrl.crl
OCSP
http://ocsp.pca.dfn.de/OCSP-Server/OCSP
C9:DC:B0:47:AC:8C:5F:09:05:ED:77:52:8C:BD:4B:84:D9:46:3C:45
Subject
commonName
DFN-Verein Certification Authority 2
countryName
DE
organizationName
Verein zur Foerderung eines Deutschen Forschungsnetzes e. V.
organizationalUnitName
DFN-PKI
Details
Signature algorithm
sha256WithRSAEncryption
Public key
2048 bit RSA
Valid from
2016-02-22 13:38:22 UTC
Valid to
2031-02-22 23:59:59 UTC
CRL
http://pki0336.telesec.de/rl/TeleSec_GlobalRoot_Class_2.crl
OCSP
http://ocsp0336.telesec.de/ocspr
E2:24:BE:F6:D7:86:22:0D:26:2B:B8:07:AB:6D:AC:F9:D3:A8:9A:93
Subject
commonName
T-TeleSec GlobalRoot Class 2
countryName
DE
organizationName
T-Systems Enterprise Services GmbH
organizationalUnitName
T-Systems Trust Center
Details
Signature algorithm
sha256WithRSAEncryption
Public key
2048 bit RSA
Valid from
2008-10-01 10:40:14 UTC
Valid to
2033-10-01 23:59:59 UTC
59:0D:2D:7D:88:4F:40:2E:61:7E:A5:62:32:17:65:CF:17:D8:94:E9

Protocols

SSLv2 Yes
SSLv3 Yes
TLSv1 Yes
TLSv1.1 No
TLSv1.2 No

Ciphers

Server does respect the client's cipher ordering.

Cipher suiteBitsizeForward secrecyInfo
AES256-SHA (0x35) 256 No -
RC2-CBC-MD5 (0x30080) 128 No -
AES128-SHA (0x2f) 128 No -
RC4-SHA (0x5) 128 No -
RC4-MD5 (0x4) 128 No -
DES-CBC3-MD5 (0x700c0) WEAK 112 No -
DES-CBC3-SHA (0xa) WEAK 112 No -

Badge

IM observatory score

Want to show this result on your webpage? Add this:

<a href='https://check.messaging.one/result.php?domain=tum.de&amp;type=client'>
  <img src='https://check.messaging.one/badge.php?domain=tum.de' alt='IM observatory score' />
</a>