IM Observatory client report for laiho.me

Test started 2021-10-14 11:23:09 UTC .

Show server to server result | Permalink to this report |

xmpp2.laiho.me:993
Grade T: Certificate is not trusted, but ignoring trust would score an A.
xmpp2.laiho.me:993
StartTLS
REQUIRED

SASL

Pre-TLS

None

Post-TLS
DIGEST-MD5
PLAIN
SCRAM-SHA-1
SCRAM-SHA-1-PLUS
SCRAM-SHA-256
SCRAM-SHA-256-PLUS
SCRAM-SHA-512
SCRAM-SHA-512-PLUS
X-OAUTH2

SRV records _xmpp-client._tcp.laiho.me NO DNSSEC

Priority Weight Port Server
5 1 993 xmpp2.laiho.me

TLSA records

Certificates

Subject
commonName
laiho.me
Details
Error: certificate has expired.
Signature algorithm
sha256WithRSAEncryption
Public key
4096 bit RSA
Valid from
2021-07-16 11:11:59 UTC
Valid to
2021-10-14 11:11:57 UTC
OCSP
http://r3.o.lencr.org
Valid for laiho.me
YES
90:10:76:11:6D:19:65:65:F0:26:92:6A:E3:89:CB:53:7A:6F:2E:0F
Subject Alternative Names
DNSName
laiho.me Matches
Subject
commonName
R3
countryName
US
organizationName
Let's Encrypt
Details
Signature algorithm
sha256WithRSAEncryption
Public key
2048 bit RSA
Valid from
2020-09-04 00:00:00 UTC
Valid to
2025-09-15 16:00:00 UTC
CRL
http://x1.c.lencr.org/
A0:53:37:5B:FE:84:E8:B7:48:78:2C:7C:EE:15:82:7A:6A:F5:A4:05
Subject
commonName
ISRG Root X1
countryName
US
organizationName
Internet Security Research Group
Details
Signature algorithm
sha256WithRSAEncryption
Public key
4096 bit RSA
Valid from
2021-01-20 19:14:03 UTC
Valid to
2024-09-30 18:14:03 UTC
CRL
http://crl.identrust.com/DSTROOTCAX3CRL.crl
93:3C:6D:DE:E9:5C:9C:41:A4:0F:9F:50:49:3D:82:BE:03:AD:87:BF
Subject
commonName
DST Root CA X3
organizationName
Digital Signature Trust Co.
Details
Signature algorithm
sha1WithRSAEncryption
Public key
2048 bit RSA
Valid from
2000-09-30 21:12:19 UTC
Valid to
2021-09-30 14:01:15 UTC
DA:C9:02:4F:54:D8:F6:DF:94:93:5F:B1:73:26:38:CA:6A:D7:7C:13

Protocols

SSLv2 No
SSLv3 No
TLSv1 Yes
TLSv1.1 Yes
TLSv1.2 Yes

Ciphers

Server does not respect the client's cipher ordering.

Cipher suiteBitsizeForward secrecyInfo
ECDHE-RSA-AES256-GCM-SHA384 (0xc030) 256 Yes Curve: prime256v1
ECDHE-RSA-AES256-SHA384 (0xc028) 256 Yes Curve: prime256v1
ECDHE-RSA-AES256-SHA (0xc014) 256 Yes Curve: prime256v1
DHE-RSA-AES256-GCM-SHA384 (0x9f) 256 Yes Diffie-Hellman:
Group: RFC 5114 2048-bit MODP Group with 256-bit Prime Order Subgroup
Bitsize: 2048
DHE-RSA-AES256-SHA256 (0x6b) 256 Yes Diffie-Hellman:
Group: RFC 5114 2048-bit MODP Group with 256-bit Prime Order Subgroup
Bitsize: 2048
DHE-RSA-AES256-SHA (0x39) 256 Yes Diffie-Hellman:
Group: RFC 5114 2048-bit MODP Group with 256-bit Prime Order Subgroup
Bitsize: 2048
DHE-RSA-CAMELLIA256-SHA (0x88) 256 Yes Diffie-Hellman:
Group: RFC 5114 2048-bit MODP Group with 256-bit Prime Order Subgroup
Bitsize: 2048
AES256-GCM-SHA384 (0x9d) 256 No -
AES256-SHA256 (0x3d) 256 No -
AES256-SHA (0x35) 256 No -
CAMELLIA256-SHA (0x84) 256 No -
ECDHE-RSA-AES128-GCM-SHA256 (0xc02f) 128 Yes Curve: prime256v1
ECDHE-RSA-AES128-SHA256 (0xc027) 128 Yes Curve: prime256v1
ECDHE-RSA-AES128-SHA (0xc013) 128 Yes Curve: prime256v1
DHE-RSA-AES128-GCM-SHA256 (0x9e) 128 Yes Diffie-Hellman:
Group: RFC 5114 2048-bit MODP Group with 256-bit Prime Order Subgroup
Bitsize: 2048
DHE-RSA-AES128-SHA256 (0x67) 128 Yes Diffie-Hellman:
Group: RFC 5114 2048-bit MODP Group with 256-bit Prime Order Subgroup
Bitsize: 2048
DHE-RSA-AES128-SHA (0x33) 128 Yes Diffie-Hellman:
Group: RFC 5114 2048-bit MODP Group with 256-bit Prime Order Subgroup
Bitsize: 2048
DHE-RSA-CAMELLIA128-SHA (0x45) 128 Yes Diffie-Hellman:
Group: RFC 5114 2048-bit MODP Group with 256-bit Prime Order Subgroup
Bitsize: 2048
AES128-GCM-SHA256 (0x9c) 128 No -
AES128-SHA256 (0x3c) 128 No -
AES128-SHA (0x2f) 128 No -
CAMELLIA128-SHA (0x41) 128 No -

Badge

xmpp.net score

Want to show this result on your webpage? Add this:

<a href='https://xmpp.net/result.php?domain=laiho.me&amp;type=client'><img src='https://xmpp.net/badge.php?domain=laiho.me' alt='xmpp.net score' /></a>