DocFraggle Hi, habe deine Konfiguration übernommen und nmap über PHP eingebunden und alle Ports durchlaufen lassen und dabei folgende Ciphers eingefangen:
[ciphers] => Array
(
[TLS_DHE_RSA_WITH_AES_128_CBC_SHA256] => Weak
[TLS_DHE_RSA_WITH_AES_128_CCM] => Secure
[TLS_DHE_RSA_WITH_AES_128_GCM_SHA256] => Secure
[TLS_DHE_RSA_WITH_AES_256_CBC_SHA256] => Weak
[TLS_DHE_RSA_WITH_AES_256_CCM] => Secure
[TLS_DHE_RSA_WITH_AES_256_GCM_SHA384] => Secure
[TLS_DHE_RSA_WITH_ARIA_128_GCM_SHA256] => Secure
[TLS_DHE_RSA_WITH_ARIA_256_GCM_SHA384] => Secure
[TLS_DHE_RSA_WITH_CAMELLIA_128_CBC_SHA256] => Weak
[TLS_DHE_RSA_WITH_CAMELLIA_256_CBC_SHA256] => Weak
[TLS_DHE_RSA_WITH_CHACHA20_POLY1305_SHA256] => Secure
[TLS_ECDHE_RSA_WITH_AES_128_CBC_SHA] => Weak
[TLS_ECDHE_RSA_WITH_AES_128_CBC_SHA256] => Weak
[TLS_ECDHE_RSA_WITH_AES_128_GCM_SHA256] => Secure
[TLS_ECDHE_RSA_WITH_AES_256_CBC_SHA] => Weak
[TLS_ECDHE_RSA_WITH_AES_256_CBC_SHA384] => Weak
[TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384] => Secure
[TLS_ECDHE_RSA_WITH_ARIA_128_GCM_SHA256] => Secure
[TLS_ECDHE_RSA_WITH_ARIA_256_GCM_SHA384] => Secure
[TLS_ECDHE_RSA_WITH_CAMELLIA_128_CBC_SHA256] => Weak
[TLS_ECDHE_RSA_WITH_CAMELLIA_256_CBC_SHA384] => Weak
[TLS_ECDHE_RSA_WITH_CHACHA20_POLY1305_SHA256] => Secure
[TLS_RSA_WITH_AES_128_CBC_SHA256] => Weak
[TLS_RSA_WITH_AES_128_CCM] => Weak
[TLS_RSA_WITH_AES_128_GCM_SHA256] => Weak
[TLS_RSA_WITH_AES_256_CBC_SHA256] => Weak
[TLS_RSA_WITH_AES_256_CCM] => Weak
[TLS_RSA_WITH_AES_256_GCM_SHA384] => Weak
[TLS_RSA_WITH_ARIA_128_GCM_SHA256] => Weak
[TLS_RSA_WITH_ARIA_256_GCM_SHA384] => Weak
[TLS_RSA_WITH_CAMELLIA_128_CBC_SHA256] => Weak
[TLS_RSA_WITH_CAMELLIA_256_CBC_SHA256] => Weak
[TLS_AKE_WITH_AES_256_GCM_SHA384] => Secure
[TLS_AKE_WITH_CHACHA20_POLY1305_SHA256] => Secure
[TLS_AKE_WITH_AES_128_GCM_SHA256] => Secure
)
[ssl] => Array
(
[0] => TLSv1.2
[1] => TLSv1.3
)
Ich prüfe diese Ports :
$x->ports = [25,110,143,465,587,993,995];
Hier alle der Reihe nach geprüft:
25:
Array ( [ciphers] => Array ( ) [ssl] => Array ( ) ) Array ( )
110:
{“output”:{“ciphers”:[“TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384”,“TLS_DHE_RSA_WITH_AES_256_GCM_SHA384”,“TLS_ECDHE_RSA_WITH_CHACHA20_POLY1305_SHA256”,“TLS_DHE_RSA_WITH_CHACHA20_POLY1305_SHA256”,“TLS_DHE_RSA_WITH_AES_256_CCM”,“TLS_ECDHE_RSA_WITH_ARIA_256_GCM_SHA384”,“TLS_DHE_RSA_WITH_ARIA_256_GCM_SHA384”,“TLS_ECDHE_RSA_WITH_AES_128_GCM_SHA256”,“TLS_DHE_RSA_WITH_AES_128_GCM_SHA256”,“TLS_DHE_RSA_WITH_AES_128_CCM”,“TLS_ECDHE_RSA_WITH_ARIA_128_GCM_SHA256”,“TLS_DHE_RSA_WITH_ARIA_128_GCM_SHA256”,“TLS_ECDHE_RSA_WITH_AES_256_CBC_SHA384”,“TLS_DHE_RSA_WITH_AES_256_CBC_SHA256”,“TLS_ECDHE_RSA_WITH_CAMELLIA_256_CBC_SHA384”,“TLS_DHE_RSA_WITH_CAMELLIA_256_CBC_SHA256”,“TLS_ECDHE_RSA_WITH_AES_128_CBC_SHA256”,“TLS_DHE_RSA_WITH_AES_128_CBC_SHA256”,“TLS_ECDHE_RSA_WITH_CAMELLIA_128_CBC_SHA256”,“TLS_DHE_RSA_WITH_CAMELLIA_128_CBC_SHA256”,“TLS_ECDHE_RSA_WITH_AES_256_CBC_SHA”,“TLS_ECDHE_RSA_WITH_AES_128_CBC_SHA”,“TLS_RSA_WITH_AES_256_GCM_SHA384”,“TLS_RSA_WITH_AES_256_CCM”,“TLS_RSA_WITH_ARIA_256_GCM_SHA384”,“TLS_RSA_WITH_AES_128_GCM_SHA256”,“TLS_RSA_WITH_AES_128_CCM”,“TLS_RSA_WITH_ARIA_128_GCM_SHA256”,“TLS_RSA_WITH_AES_256_CBC_SHA256”,“TLS_RSA_WITH_CAMELLIA_256_CBC_SHA256”,“TLS_RSA_WITH_AES_128_CBC_SHA256”,“TLS_RSA_WITH_CAMELLIA_128_CBC_SHA256”,“TLS_AKE_WITH_AES_256_GCM_SHA384”,“TLS_AKE_WITH_CHACHA20_POLY1305_SHA256”,“TLS_AKE_WITH_AES_128_GCM_SHA256”],“ssl”:[“TLSv1.2”,“TLSv1.3”]},“time”:1729537159,“laufzeit”:604800,“host”:“mail.domain.de”,“port”:110}
143:
{“output”:{“ciphers”:[“TLS_AKE_WITH_AES_256_GCM_SHA384”,“TLS_AKE_WITH_CHACHA20_POLY1305_SHA256”,“TLS_AKE_WITH_AES_128_GCM_SHA256”],“ssl”:[“TLSv1.3”]},“time”:1729537327,“laufzeit”:604800,“host”:“mail.domain.de”,“port”:143}
465:
Array ( [ciphers] => Array ( ) [ssl] => Array ( ) ) Array ( )
587:
Array ( [ciphers] => Array ( ) [ssl] => Array ( ) ) Array ( )
993:
{“output”:{“ciphers”:[“TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384”,“TLS_DHE_RSA_WITH_AES_256_GCM_SHA384”,“TLS_ECDHE_RSA_WITH_CHACHA20_POLY1305_SHA256”,“TLS_DHE_RSA_WITH_CHACHA20_POLY1305_SHA256”,“TLS_DHE_RSA_WITH_AES_256_CCM”,“TLS_ECDHE_RSA_WITH_ARIA_256_GCM_SHA384”,“TLS_DHE_RSA_WITH_ARIA_256_GCM_SHA384”,“TLS_ECDHE_RSA_WITH_AES_128_GCM_SHA256”,“TLS_DHE_RSA_WITH_AES_128_GCM_SHA256”,“TLS_DHE_RSA_WITH_AES_128_CCM”,“TLS_ECDHE_RSA_WITH_ARIA_128_GCM_SHA256”,“TLS_DHE_RSA_WITH_ARIA_128_GCM_SHA256”,“TLS_ECDHE_RSA_WITH_AES_256_CBC_SHA384”,“TLS_DHE_RSA_WITH_AES_256_CBC_SHA256”,“TLS_ECDHE_RSA_WITH_CAMELLIA_256_CBC_SHA384”,“TLS_DHE_RSA_WITH_CAMELLIA_256_CBC_SHA256”,“TLS_ECDHE_RSA_WITH_AES_128_CBC_SHA256”,“TLS_DHE_RSA_WITH_AES_128_CBC_SHA256”,“TLS_ECDHE_RSA_WITH_CAMELLIA_128_CBC_SHA256”,“TLS_DHE_RSA_WITH_CAMELLIA_128_CBC_SHA256”,“TLS_ECDHE_RSA_WITH_AES_256_CBC_SHA”,“TLS_ECDHE_RSA_WITH_AES_128_CBC_SHA”,“TLS_RSA_WITH_AES_256_GCM_SHA384”,“TLS_RSA_WITH_AES_256_CCM”,“TLS_RSA_WITH_ARIA_256_GCM_SHA384”,“TLS_RSA_WITH_AES_128_GCM_SHA256”,“TLS_RSA_WITH_AES_128_CCM”,“TLS_RSA_WITH_ARIA_128_GCM_SHA256”,“TLS_RSA_WITH_AES_256_CBC_SHA256”,“TLS_RSA_WITH_CAMELLIA_256_CBC_SHA256”,“TLS_RSA_WITH_AES_128_CBC_SHA256”,“TLS_RSA_WITH_CAMELLIA_128_CBC_SHA256”,“TLS_AKE_WITH_AES_256_GCM_SHA384”,“TLS_AKE_WITH_CHACHA20_POLY1305_SHA256”,“TLS_AKE_WITH_AES_128_GCM_SHA256”],“ssl”:[“TLSv1.2”,“TLSv1.3”]},“time”:1729537569,“laufzeit”:604800,“host”:“mail.domain.de”,“port”:993}
995:
{“output”:{“ciphers”:[“TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384”,“TLS_DHE_RSA_WITH_AES_256_GCM_SHA384”,“TLS_ECDHE_RSA_WITH_CHACHA20_POLY1305_SHA256”,“TLS_DHE_RSA_WITH_CHACHA20_POLY1305_SHA256”,“TLS_DHE_RSA_WITH_AES_256_CCM”,“TLS_ECDHE_RSA_WITH_ARIA_256_GCM_SHA384”,“TLS_DHE_RSA_WITH_ARIA_256_GCM_SHA384”,“TLS_ECDHE_RSA_WITH_AES_128_GCM_SHA256”,“TLS_DHE_RSA_WITH_AES_128_GCM_SHA256”,“TLS_DHE_RSA_WITH_AES_128_CCM”,“TLS_ECDHE_RSA_WITH_ARIA_128_GCM_SHA256”,“TLS_DHE_RSA_WITH_ARIA_128_GCM_SHA256”,“TLS_ECDHE_RSA_WITH_AES_256_CBC_SHA384”,“TLS_DHE_RSA_WITH_AES_256_CBC_SHA256”,“TLS_ECDHE_RSA_WITH_CAMELLIA_256_CBC_SHA384”,“TLS_DHE_RSA_WITH_CAMELLIA_256_CBC_SHA256”,“TLS_ECDHE_RSA_WITH_AES_128_CBC_SHA256”,“TLS_DHE_RSA_WITH_AES_128_CBC_SHA256”,“TLS_ECDHE_RSA_WITH_CAMELLIA_128_CBC_SHA256”,“TLS_DHE_RSA_WITH_CAMELLIA_128_CBC_SHA256”,“TLS_ECDHE_RSA_WITH_AES_256_CBC_SHA”,“TLS_ECDHE_RSA_WITH_AES_128_CBC_SHA”,“TLS_RSA_WITH_AES_256_GCM_SHA384”,“TLS_RSA_WITH_AES_256_CCM”,“TLS_RSA_WITH_ARIA_256_GCM_SHA384”,“TLS_RSA_WITH_AES_128_GCM_SHA256”,“TLS_RSA_WITH_AES_128_CCM”,“TLS_RSA_WITH_ARIA_128_GCM_SHA256”,“TLS_RSA_WITH_AES_256_CBC_SHA256”,“TLS_RSA_WITH_CAMELLIA_256_CBC_SHA256”,“TLS_RSA_WITH_AES_128_CBC_SHA256”,“TLS_RSA_WITH_CAMELLIA_128_CBC_SHA256”,“TLS_AKE_WITH_AES_256_GCM_SHA384”,“TLS_AKE_WITH_CHACHA20_POLY1305_SHA256”,“TLS_AKE_WITH_AES_128_GCM_SHA256”],“ssl”:[“TLSv1.2”,“TLSv1.3”]},“time”:1729537649,“laufzeit”:604800,“host”:“mail.domain.de”,“port”:995}
Wirkt die extra.cf bug-bedingt nicht auf alle Ports?
Gruß
Thor