SSL Security Test of
rs002687.fastrootserver.de

Test the SSL/TLS stack of your web or email server for security, cryptographic flaws and misconfigurations, and compliance with NIST & HIPAA
Free online tool with PDF report
  • Web Server SSL/TLS Security
  • Post-Quantum Cryptography (PQC) Readiness
  • Email Server SSL/TLS Security
  • PCI DSS, GDPR, HIPAA & NIST Compliance
  • SSL Certificate Validity
  • Best-Practices Compliance
Free online tool with PDF report
185,756,576 tests performed
Provided "as is" without any warranty of any kind
241
tests
running
84,922
tests
in 24 hours
Tests in 24 Hours
Share this report:

Summary of rs002687.fastrootserver.de:143 (IMAP) SSL Security Test

Provided "as is" without any warranty of any kind.
This test was made 2804 days ago and may be outdated
Refresh Test
Date/Time:Dec 27th, 2018 02:39 GMT+0
Source IP/Port:89.163.227.202:143
Protocol:IMAP
Location:Kassel, GermanyGermany
Your final score:
  • A
  • B
  • C
  • F
F

Test Results Summary for rs002687.fastrootserver.de

  • SSL/TLS Certificate Analysis
    1 SSL/TLS end-entity certificate detected: the first certificate is an untrusted RSA 2048 bits certificate with unknown issuer valid until October 21, 2019. 1 certificate chain detected. Show details.
  • PCI DSS Compliance Test
    All 32 supported cipher suites are compliant with PCI DSS. The server supports PCI DSS compliant protocols (TLSv1.1 and TLSv1.2) as well as non-compliant protocols (TLSv1.0). All supported elliptic curves are compliant with PCI DSS: P-384. There are 2 more issues which make the server non-compliant with PCI DSS: certificates are untrusted, diffie-hellman parameter weak. Show details.
  • NIST and HIPAA Compliance Test
    14 of 32 supported cipher suites are not compliant with HIPAA requirements (Ref. NIST SP 800-52). The server supports only HIPAA compliant protocols: TLSv1.0, TLSv1.1 and TLSv1.2. All supported elliptic curves are compliant with HIPAA: P-384. There are 4 more issues which make the server non-compliant with HIPAA: X.509 certificates are not in version 3, certificates are self-signed, certificate does not provide OCSP revocation information, diffie-hellman parameter weak. Show details.
  • Industry Best Practices Test
    1 issue related to industry best practices was identified: server does not support TLS 1.3. Show details.

Compliance Summary for rs002687.fastrootserver.de

  • PCI DSS Compliance Failed: All 32 supported cipher suites are compliant with PCI DSS. The server supports PCI DSS compliant protocols (TLSv1.1 and TLSv1.2) as well as non-compliant protocols (TLSv1.0). All supported elliptic curves are compliant with PCI DSS: P-384. There are 2 more issues which make the server non-compliant with PCI DSS: certificates are untrusted, diffie-hellman parameter weak.
  • HIPAA Compliance Failed: 14 of 32 supported cipher suites are not compliant with HIPAA requirements (Ref. NIST SP 800-52). The server supports only HIPAA compliant protocols: TLSv1.0, TLSv1.1 and TLSv1.2. All supported elliptic curves are compliant with HIPAA: P-384. There are 4 more issues which make the server non-compliant with HIPAA: X.509 certificates are not in version 3, certificates are self-signed, certificate does not provide OCSP revocation information, diffie-hellman parameter weak.
  • GDPR Compliance Failed: All 32 supported cipher suites are compliant with GDPR. The server supports GDPR compliant protocols (TLSv1.1 and TLSv1.2) as well as non-compliant protocols (TLSv1.0). All supported elliptic curves are compliant with GDPR: P-384. There are 2 more issues which make the server non-compliant with GDPR: certificates are untrusted, diffie-hellman parameter weak.
Please wait. Data is loading...
Share this report: