IM Observatory client report for kempass.de
Test started 2019-05-10 16:07:23 UTC .
Show server to server result | Permalink to this report
|
hermes.xmpp.kserver.org:5222
Grade T: Certificate is not trusted, but ignoring trust would score an A.
iris.xmpp.kserver.org:5222
Grade T: Certificate is not trusted, but ignoring trust would score an A.
Show all 2 SRV targets
hermes.xmpp.kserver.org:5222
- StartTLS
- REQUIRED
SASL
Pre-TLS
None
Post-TLS
DIGEST-MD5 |
PLAIN |
SCRAM-SHA-1 |
X-OAUTH2 |
iris.xmpp.kserver.org:5222
- StartTLS
- REQUIRED
SASL
Pre-TLS
None
Post-TLS
DIGEST-MD5 |
PLAIN |
SCRAM-SHA-1 |
X-OAUTH2 |
Show all 2 SRV targets
SRV records
_xmpp-client._tcp.kempass.de DNSSEC
Priority |
Weight |
Port |
Server |
1 |
60 |
5222 |
hermes.xmpp.kserver.org |
1 |
40 |
5222 |
iris.xmpp.kserver.org |
TLSA records
Certificates
Subject
- commonName
- kserver.org
Details
- Signature algorithm
- sha256WithRSAEncryption
- Public key
- 4096 bit RSA
- Valid from
- 2019-04-01 01:00:38 UTC
- Valid to
- 2019-06-30 01:00:38 UTC
- OCSP
- http://ocsp.int-x3.letsencrypt.org
- Valid for kempass.de
- NO
-
70:06:B0:7A:5F:19:7E:13:21:27:9C:86:95:60:14:BA:74:19:CB:B5
Subject Alternative Names
- DNSName
- hermes.jabber.kserver.org
- DNSName
- hermes.xmpp.kserver.org
- DNSName
- iris.jabber.kserver.org
- DNSName
- iris.xmpp.kserver.org
- DNSName
- jabber.kserver.org
- DNSName
- kserver.org
- DNSName
- www.jabber.kserver.org
- DNSName
- www.xmpp.kserver.org
- DNSName
- xmpp.kserver.org
Subject
- commonName
- Let's Encrypt Authority X3
- countryName
- US
- organizationName
- Let's Encrypt
Details
- Signature algorithm
- sha256WithRSAEncryption
- Public key
- 2048 bit RSA
- Valid from
- 2016-03-17 16:40:46 UTC
- Valid to
- 2021-03-17 16:40:46 UTC
- CRL
- http://crl.identrust.com/DSTROOTCAX3CRL.crl
- OCSP
- http://isrg.trustid.ocsp.identrust.com
-
E6:A3:B4:5B:06:2D:50:9B:33:82:28:2D:19:6E:FE:97:D5:95:6C:CB
Subject
- commonName
- DST Root CA X3
- organizationName
- Digital Signature Trust Co.
Details
- Signature algorithm
- sha1WithRSAEncryption
- Public key
- 2048 bit RSA
- Valid from
- 2000-09-30 21:12:19 UTC
- Valid to
- 2021-09-30 14:01:15 UTC
-
DA:C9:02:4F:54:D8:F6:DF:94:93:5F:B1:73:26:38:CA:6A:D7:7C:13
Protocols
SSLv2 |
No |
SSLv3 |
No |
TLSv1 |
No |
TLSv1.1 |
No |
TLSv1.2 |
Yes |
Ciphers
Server does respect the client's cipher ordering.
Cipher suite | Bitsize | Forward secrecy | Info |
ECDHE-RSA-AES256-GCM-SHA384 (0xc030) |
256
|
Yes
|
Curve: secp521r1
|
ECDHE-RSA-AES256-SHA384 (0xc028) |
256
|
Yes
|
Curve: secp521r1
|
ECDHE-RSA-AES128-GCM-SHA256 (0xc02f) |
128
|
Yes
|
Curve: secp521r1
|
ECDHE-RSA-AES128-SHA256 (0xc027) |
128
|
Yes
|
Curve: secp521r1
|
Certificates
Subject
- commonName
- kserver.org
Details
- Signature algorithm
- sha256WithRSAEncryption
- Public key
- 4096 bit RSA
- Valid from
- 2019-04-01 01:00:38 UTC
- Valid to
- 2019-06-30 01:00:38 UTC
- OCSP
- http://ocsp.int-x3.letsencrypt.org
-
70:06:B0:7A:5F:19:7E:13:21:27:9C:86:95:60:14:BA:74:19:CB:B5
Subject Alternative Names
- DNSName
- hermes.jabber.kserver.org
- DNSName
- hermes.xmpp.kserver.org
- DNSName
- iris.jabber.kserver.org
- DNSName
- iris.xmpp.kserver.org
- DNSName
- jabber.kserver.org
- DNSName
- kserver.org
- DNSName
- www.jabber.kserver.org
- DNSName
- www.xmpp.kserver.org
- DNSName
- xmpp.kserver.org
Subject
- commonName
- Let's Encrypt Authority X3
- countryName
- US
- organizationName
- Let's Encrypt
Details
- Signature algorithm
- sha256WithRSAEncryption
- Public key
- 2048 bit RSA
- Valid from
- 2016-03-17 16:40:46 UTC
- Valid to
- 2021-03-17 16:40:46 UTC
- CRL
- http://crl.identrust.com/DSTROOTCAX3CRL.crl
- OCSP
- http://isrg.trustid.ocsp.identrust.com
-
E6:A3:B4:5B:06:2D:50:9B:33:82:28:2D:19:6E:FE:97:D5:95:6C:CB
Subject
- commonName
- DST Root CA X3
- organizationName
- Digital Signature Trust Co.
Details
- Signature algorithm
- sha1WithRSAEncryption
- Public key
- 2048 bit RSA
- Valid from
- 2000-09-30 21:12:19 UTC
- Valid to
- 2021-09-30 14:01:15 UTC
-
DA:C9:02:4F:54:D8:F6:DF:94:93:5F:B1:73:26:38:CA:6A:D7:7C:13
Protocols
SSLv2 |
No |
SSLv3 |
No |
TLSv1 |
No |
TLSv1.1 |
No |
TLSv1.2 |
Yes |
Ciphers
Server does respect the client's cipher ordering.
Cipher suite | Bitsize | Forward secrecy | Info |
ECDHE-RSA-AES256-GCM-SHA384 (0xc030) |
256
|
Yes
|
Curve: secp521r1
|
ECDHE-RSA-AES256-SHA384 (0xc028) |
256
|
Yes
|
Curve: secp521r1
|
ECDHE-RSA-AES128-GCM-SHA256 (0xc02f) |
128
|
Yes
|
Curve: secp521r1
|
ECDHE-RSA-AES128-SHA256 (0xc027) |
128
|
Yes
|
Curve: secp521r1
|
Show all 2 SRV targets
Badge
Want to show this result on your webpage? Add this:
<a href='https://xmpp.net/result.php?domain=kempass.de&type=client'><img src='https://xmpp.net/badge.php?domain=kempass.de' alt='xmpp.net score' /></a>