SSL-Check von mn-neumann.de

NEU Du kannst auch mehrere Server auf einmal prüfen.

Erfahre hier, ob die Mailserver für mn-neumann.de über eine sichere Verbindung erreichbar sind.

Für eine sichere Verschlüsselung muss ein Mailserver neben STARTTLS (SSL) über ein vertrauenswürdiges SSL-Zertifikat verfügen, den Diffie-Hellman-Algorithmus für Perfect Forward Secrecy (Folgenlosigkeit) unterstützen und darf nicht für anfällig für den Heartbleed Angriff sein. Zusätzlich empfehlen wir eine Ende-zu-Ende-Verschlüsselung mit GnuPG.

Zusammenfassung

Prüfbericht vom Sonntag, 09. August 2026, 00:30 Uhr

Die Mailserver für mn-neumann.de sind über eine sichere Verbindung erreichbar.

Server

eingehende Mails

Diese Server nehmen E-Mails für @mn-neumann.de-Adressen entgegen.

Hostname / IP-Adresse Priorität STARTTLS Zertifikate Protokoll
mxext3.mailbox.org
2001:67c:2050:104::3:25:1
10
unterstützt
*.mailbox.org
DANE
gültig
PFS
unterstützt
Heartbleed
nicht verwundbar
Schwache Algorithmen
nicht gefunden
  • TLSv1.2
  • SSLv3
2 s
mxext3.mailbox.org
80.241.60.216
10
unterstützt
*.mailbox.org
DANE
gültig
PFS
unterstützt
Heartbleed
nicht verwundbar
Schwache Algorithmen
nicht gefunden
  • TLSv1.2
  • SSLv3
1 s
mxext1.mailbox.org
2001:67c:2050:104::1:25:1
10
unterstützt
*.mailbox.org
DANE
gültig
PFS
unterstützt
Heartbleed
nicht verwundbar
Schwache Algorithmen
nicht gefunden
  • TLSv1.2
  • SSLv3
2 s
mxext1.mailbox.org
80.241.60.212
10
unterstützt
*.mailbox.org
DANE
gültig
PFS
unterstützt
Heartbleed
nicht verwundbar
Schwache Algorithmen
nicht gefunden
  • TLSv1.2
  • SSLv3
1 s
mxext2.mailbox.org
2001:67c:2050:104::2:25:1
10
unterstützt
*.mailbox.org
DANE
gültig
PFS
unterstützt
Heartbleed
nicht verwundbar
Schwache Algorithmen
nicht gefunden
  • TLSv1.2
  • SSLv3
2 s
mxext2.mailbox.org
80.241.60.215
10
unterstützt
*.mailbox.org
DANE
gültig
PFS
unterstützt
Heartbleed
nicht verwundbar
Schwache Algorithmen
nicht gefunden
  • TLSv1.2
  • SSLv3
1 s
mxext4.mailbox.org
2001:67c:2050:104::4:25:1
10
unterstützt
*.mailbox.org
DANE
gültig
PFS
unterstützt
Heartbleed
nicht verwundbar
Schwache Algorithmen
nicht gefunden
  • TLSv1.2
  • SSLv3
2 s
mxext4.mailbox.org
80.241.60.217
10
unterstützt
*.mailbox.org
DANE
gültig
PFS
unterstützt
Heartbleed
nicht verwundbar
Schwache Algorithmen
nicht gefunden
  • TLSv1.2
  • SSLv3
2 s
mx01.mail.icloud.com
17.42.251.62
80
unterstützt
mx01.mail.icloud.com
DANE
fehlt
PFS
unterstützt
Heartbleed
nicht verwundbar
Schwache Algorithmen
nicht gefunden
  • TLSv1.2
  • SSLv3
5 s
mx01.mail.icloud.com
17.57.154.33
80
unterstützt
mx01.mail.icloud.com
DANE
fehlt
PFS
unterstützt
Heartbleed
nicht verwundbar
Schwache Algorithmen
nicht gefunden
  • TLSv1.2
  • SSLv3
6 s
mx01.mail.icloud.com
17.57.156.30
80
unterstützt
mx01.mail.icloud.com
DANE
fehlt
PFS
unterstützt
Heartbleed
nicht verwundbar
Schwache Algorithmen
nicht gefunden
  • TLSv1.2
  • SSLv3
5 s
mx01.mail.icloud.com
17.57.155.25
80
unterstützt
mx01.mail.icloud.com
DANE
fehlt
PFS
unterstützt
Heartbleed
nicht verwundbar
Schwache Algorithmen
nicht gefunden
  • TLSv1.2
  • SSLv3
5 s
mx01.mail.icloud.com
17.57.152.5
80
unterstützt
mx01.mail.icloud.com
DANE
fehlt
PFS
unterstützt
Heartbleed
nicht verwundbar
Schwache Algorithmen
nicht gefunden
  • TLSv1.2
  • SSLv3
6 s
mx01.mail.icloud.com
17.56.9.31
80
unterstützt
mx01.mail.icloud.com
DANE
fehlt
PFS
unterstützt
Heartbleed
nicht verwundbar
Schwache Algorithmen
nicht gefunden
  • TLSv1.2
  • SSLv3
6 s
mx02.mail.icloud.com
17.57.152.5
80
unterstützt
mx01.mail.icloud.com
DANE
fehlt
PFS
unterstützt
Heartbleed
nicht verwundbar
Schwache Algorithmen
nicht gefunden
  • TLSv1.2
  • SSLv3
6 s
mx02.mail.icloud.com
17.56.9.31
80
unterstützt
mx01.mail.icloud.com
DANE
fehlt
PFS
unterstützt
Heartbleed
nicht verwundbar
Schwache Algorithmen
nicht gefunden
  • TLSv1.2
  • SSLv3
6 s
mx02.mail.icloud.com
17.42.251.62
80
unterstützt
mx01.mail.icloud.com
DANE
fehlt
PFS
unterstützt
Heartbleed
nicht verwundbar
Schwache Algorithmen
nicht gefunden
  • TLSv1.2
  • SSLv3
5 s
mx02.mail.icloud.com
17.57.154.33
80
unterstützt
mx01.mail.icloud.com
DANE
fehlt
PFS
unterstützt
Heartbleed
nicht verwundbar
Schwache Algorithmen
nicht gefunden
  • TLSv1.2
  • SSLv3
6 s
mx02.mail.icloud.com
17.57.156.30
80
unterstützt
mx01.mail.icloud.com
DANE
fehlt
PFS
unterstützt
Heartbleed
nicht verwundbar
Schwache Algorithmen
nicht gefunden
  • TLSv1.2
  • SSLv3
5 s
mx02.mail.icloud.com
17.57.155.25
80
unterstützt
mx01.mail.icloud.com
DANE
fehlt
PFS
unterstützt
Heartbleed
nicht verwundbar
Schwache Algorithmen
nicht gefunden
  • TLSv1.2
  • SSLv3
4 s

ausgehende Mails

Wir haben noch keine E-Mail von einer @mn-neumann.de-Adresse erhalten. Mailzustellung testen

Zertifikate

Zuerst gesehen:

CN=*.mailbox.org

Zertifikatskette
Subjekt
Common Name (CN)
  • *.mailbox.org
Alternative Namen
  • *.mailbox.org
  • mailbox.org
Aussteller
Land (C)
  • US
Organisation (O)
  • DigiCert Inc
Abteilung (OU)
  • www.digicert.com
Common Name (CN)
  • Thawte TLS RSA CA G1
Gültigkeit
Nicht gültig vor
18.05.2026
Nicht gültig nach
02.12.2026
Mit diesem Zertifikat sind folgende Nutzungsformen erlaubt:
  • Digital Signature
  • Key Encipherment
  • TLS Web Server Authentication
  • TLS Web Client Authentication
Fingerprints
SHA256
6D:CC:7C:CA:D5:87:5F:92:6C:0E:CD:35:DA:5D:A9:77:50:95:55:F6:1D:18:93:29:C5:C0:01:52:36:BA:EB:53
SHA1
82:84:59:94:83:CB:73:13:7E:68:C9:06:12:56:A9:D5:42:4C:98:C2
X509v3 Erweiterungen
authorityKeyIdentifier
  • keyid:A5:8C:FE:32:CC:EB:0F:2C:D4:19:C6:08:B8:00:24:88:5D:C3:C5:B7
subjectKeyIdentifier
  • 67:75:75:39:E5:87:FF:BB:FA:13:96:E9:08:A1:B5:55:C8:61:AA:08
certificatePolicies
  • Policy: 2.23.140.1.2.1
  • CPS: http://www.digicert.com/CPS
crlDistributionPoints
  • Full Name:
  • URI:http://cdp.thawte.com/ThawteTLSRSACAG1.crl
authorityInfoAccess
  • OCSP - URI:http://status.thawte.com
  • CA Issuers - URI:http://cacerts.thawte.com/ThawteTLSRSACAG1.crt
ct_precert_scts
  • Signed Certificate Timestamp:
  • Version : v1 (0x0)
  • Log ID : C2:31:7E:57:45:19:A3:45:EE:7F:38:DE:B2:90:41:EB:
  • C7:C2:21:5A:22:BF:7F:D5:B5:AD:76:9A:D9:0E:52:CD
  • Timestamp : May 18 10:42:09.043 2026 GMT
  • Extensions: none
  • Signature : ecdsa-with-SHA256
  • 30:46:02:21:00:A0:D4:1E:CA:67:A4:70:EC:09:FC:11:
  • 07:E6:97:A4:DE:1D:9F:38:1F:D1:A2:A4:97:D0:A7:F2:
  • 19:E1:AC:58:D0:02:21:00:E4:4C:51:2D:16:F0:2C:C0:
  • 3A:01:CC:48:1E:2D:3D:36:FA:5A:4F:C4:F8:67:6F:1B:
  • 0C:F2:52:94:7D:25:0E:8A
  • Signed Certificate Timestamp:
  • Version : v1 (0x0)
  • Log ID : D8:09:55:3B:94:4F:7A:FF:C8:16:19:6F:94:4F:85:AB:
  • B0:F8:FC:5E:87:55:26:0F:15:D1:2E:72:BB:45:4B:14
  • Timestamp : May 18 10:42:09.122 2026 GMT
  • Extensions: none
  • Signature : ecdsa-with-SHA256
  • 30:45:02:20:61:6E:FB:14:BC:C7:08:3A:D6:03:F1:C6:
  • 3C:D3:3E:70:AF:27:CB:91:29:11:CC:3F:16:F8:A3:92:
  • 6B:C4:5E:3D:02:21:00:C9:5F:B1:04:24:9A:8E:A9:9D:
  • A2:43:79:FD:03:CE:1B:53:E6:FB:3D:3F:A7:F2:1D:B1:
  • AD:2E:4D:32:D5:A6:85
  • Signed Certificate Timestamp:
  • Version : v1 (0x0)
  • Log ID : 94:4E:43:87:FA:EC:C1:EF:81:F3:19:24:26:A8:18:65:
  • 01:C7:D3:5F:38:02:01:3F:72:67:7D:55:37:2E:19:D8
  • Timestamp : May 18 10:42:09.057 2026 GMT
  • Extensions: none
  • Signature : ecdsa-with-SHA256
  • 30:45:02:21:00:92:69:73:48:F9:EE:80:3C:CA:86:90:
  • 11:5D:55:4B:9F:23:76:1F:2A:0B:4D:F6:44:58:7C:E4:
  • 79:B7:E2:8F:57:02:20:2B:23:CC:E7:6D:D2:3D:AD:EA:
  • 66:37:4C:F5:61:AC:FE:08:E3:33:FE:10:AA:AD:A2:87:
  • 0F:E5:2F:F9:00:3D:50
Zuerst gesehen:

CN=mx01.mail.icloud.com,O=Apple Inc.,ST=California,C=US

Zertifikatskette
Subjekt
Land (C)
  • US
Bundesland/Provinz (ST)
  • California
Organisation (O)
  • Apple Inc.
Common Name (CN)
  • mx01.mail.icloud.com
Alternative Namen
  • mx02.mail.icloud.com
  • mx01.mail.icloud.com
  • mx3.mail.icloud.com
Aussteller
Common Name (CN)
  • Apple Public Server RSA CA 11 - G1
Organisation (O)
  • Apple Inc.
Bundesland/Provinz (ST)
  • California
Land (C)
  • US
Gültigkeit
Nicht gültig vor
25.06.2026
Nicht gültig nach
17.09.2026
Mit diesem Zertifikat sind folgende Nutzungsformen erlaubt:
  • Digital Signature
  • Key Encipherment
  • TLS Web Server Authentication
Fingerprints
SHA256
70:51:D4:FC:40:1B:B9:28:AE:41:EF:66:CE:DE:6C:50:DB:5C:EF:D7:90:6B:B1:57:12:DF:D8:BD:0B:E8:3D:AF
SHA1
18:F2:CB:3F:7D:37:05:EC:86:ED:A8:90:01:37:D0:A5:DA:91:1B:85
X509v3 Erweiterungen
authorityKeyIdentifier
  • keyid:50:02:B8:13:2C:15:83:D1:41:C3:11:8A:8B:42:3B:01:23:43:A9:56
authorityInfoAccess
  • CA Issuers - URI:http://certs.apple.com/apsrsaca11g1.der
  • OCSP - URI:http://ocsp.apple.com/ocsp03-apsrsaca11g1
certificatePolicies
  • Policy: 2.23.140.1.2.2
  • CPS: https://www.apple.com/certificateauthority/public
  • Policy: 1.2.840.113635.100.5.11.4
crlDistributionPoints
  • Full Name:
  • URI:http://crl.apple.com/apsrsaca11g1.crl
subjectKeyIdentifier
  • 85:01:49:05:19:87:0B:5C:3B:19:D2:BD:F3:57:8F:EC:9C:E4:C5:FB
1_2_840_113635_100_6_86
  • ..
ct_precert_scts
  • Signed Certificate Timestamp:
  • Version : v1 (0x0)
  • Log ID : 94:4E:43:87:FA:EC:C1:EF:81:F3:19:24:26:A8:18:65:
  • 01:C7:D3:5F:38:02:01:3F:72:67:7D:55:37:2E:19:D8
  • Timestamp : Jun 25 00:29:45.755 2026 GMT
  • Extensions: none
  • Signature : ecdsa-with-SHA256
  • 30:44:02:20:56:BF:A7:4C:64:47:31:B2:48:B9:0E:80:
  • 36:5E:DF:F7:D4:36:85:31:5C:FC:F6:71:0E:44:50:3F:
  • 7F:6A:D0:0F:02:20:60:AE:D0:D9:91:63:91:44:B8:D1:
  • 7D:8A:92:38:E9:63:6A:26:DE:C3:49:F1:FC:8B:25:43:
  • BC:57:E7:A9:FE:80
  • Signed Certificate Timestamp:
  • Version : v1 (0x0)
  • Log ID : C8:A3:C4:7F:C7:B3:AD:B9:35:6B:01:3F:6A:7A:12:6D:
  • E3:3A:4E:43:A5:C6:46:F9:97:AD:39:75:99:1D:CF:9A
  • Timestamp : Jun 25 00:29:45.783 2026 GMT
  • Extensions: none
  • Signature : ecdsa-with-SHA256
  • 30:46:02:21:00:9E:48:61:1E:4B:EE:87:32:D1:54:01:
  • EA:31:89:FE:8C:60:CB:95:73:7F:95:41:48:2E:B0:30:
  • E5:01:FD:B4:1D:02:21:00:BC:16:F8:6E:9D:4B:A7:77:
  • E1:50:5F:4C:41:B1:92:95:55:FD:D6:C2:9F:54:92:65:
  • 7E:28:E0:84:CE:70:18:27
  • Signed Certificate Timestamp:
  • Version : v1 (0x0)
  • Log ID : D7:6D:7D:10:D1:A7:F5:77:C2:C7:E9:5F:D7:00:BF:F9:
  • 82:C9:33:5A:65:E1:D0:B3:01:73:17:C0:C8:C5:69:77
  • Timestamp : Jun 25 00:29:45.736 2026 GMT
  • Extensions: none
  • Signature : ecdsa-with-SHA256
  • 30:45:02:20:0F:AA:8D:B0:57:95:09:2A:06:E5:EB:A9:
  • 05:37:08:B5:7F:ED:3E:C8:01:E3:26:D9:F8:19:B2:A2:
  • 55:EE:2F:5F:02:21:00:DE:30:BA:90:DD:1E:C1:FA:4F:
  • F8:97:67:0E:64:55:35:E8:9E:CE:E5:0F:3B:01:09:18:
  • 33:D4:E6:E7:45:86:73
  • Signed Certificate Timestamp:
  • Version : v1 (0x0)
  • Log ID : CB:38:F7:15:89:7C:84:A1:44:5F:5B:C1:DD:FB:C9:6E:
  • F2:9A:59:CD:47:0A:69:05:85:B0:CB:14:C3:14:58:E7
  • Timestamp : Jun 25 00:29:45.746 2026 GMT
  • Extensions: none
  • Signature : ecdsa-with-SHA256
  • 30:46:02:21:00:8D:EB:F3:DC:CA:8A:99:83:92:D3:26:
  • 7E:8A:20:3B:D2:E8:69:12:9F:A4:E5:34:64:FB:08:34:
  • F8:4E:96:F2:0F:02:21:00:B1:78:75:17:59:A8:4C:4E:
  • 75:EB:6B:E7:43:87:1E:37:DC:8E:51:BF:26:55:8B:A9:
  • 01:D7:23:97:5B:EE:9C:43

DANE

DNS-based Authentication of Named Entities (DANE) ist ein Protokoll um X.509-Zertifikate mit TLSA-Einträgen im DNS zu verknüpfen und per DNSSEC abzusichern.

Name Options DNSSEC Matches
_25._tcp.mxext4.mailbox.org
  • DANE-EE: Domain Issued Certificate
  • Use subject public key
  • SHA-256 Hash
gültig
_25._tcp.mxext4.mailbox.org
  • DANE-EE: Domain Issued Certificate
  • Use subject public key
  • SHA-256 Hash
gültig
_25._tcp.mxext4.mailbox.org
  • DANE-EE: Domain Issued Certificate
  • Use subject public key
  • SHA-256 Hash
gültig
gültig
_25._tcp.mxext3.mailbox.org
  • DANE-EE: Domain Issued Certificate
  • Use subject public key
  • SHA-256 Hash
gültig
_25._tcp.mxext3.mailbox.org
  • DANE-EE: Domain Issued Certificate
  • Use subject public key
  • SHA-256 Hash
gültig
_25._tcp.mxext3.mailbox.org
  • DANE-EE: Domain Issued Certificate
  • Use subject public key
  • SHA-256 Hash
gültig
gültig
_25._tcp.mxext2.mailbox.org
  • DANE-EE: Domain Issued Certificate
  • Use subject public key
  • SHA-256 Hash
gültig
_25._tcp.mxext2.mailbox.org
  • DANE-EE: Domain Issued Certificate
  • Use subject public key
  • SHA-256 Hash
gültig
_25._tcp.mxext2.mailbox.org
  • DANE-EE: Domain Issued Certificate
  • Use subject public key
  • SHA-256 Hash
gültig
gültig
_25._tcp.mxext1.mailbox.org
  • DANE-EE: Domain Issued Certificate
  • Use subject public key
  • SHA-256 Hash
gültig
_25._tcp.mxext1.mailbox.org
  • DANE-EE: Domain Issued Certificate
  • Use subject public key
  • SHA-256 Hash
gültig
_25._tcp.mxext1.mailbox.org
  • DANE-EE: Domain Issued Certificate
  • Use subject public key
  • SHA-256 Hash
gültig
gültig