Smlouvy Dotace Platy Úřady Zakázky Sponzoři & firmy PastVina 
❤ Podpořte nás Přihlásit se Registrace

Hlídač Web ÚDHPSH Detailní analýza HTTPs pro Web ÚDHPSH

Web ÚDHPSH
https://udhpsh.cz

Úřad pro dohled nad hospodařením politických stran a politických hnutí


Zabezpečení komunikace

A
Certifikát expiruje za 70 dní.

Výsledek analýzy HTTPS na udhpsh.cz ze dne 30.06.2026

Všechno je v nejlepším pořádku a web se drží doporučených postupů.


Detailní analýza

Detailní report z HTTPs analýzy pomocí nástroje testssl.sh

server udhpsh.cz/81.95.108.52
pre_128cipher INFO {
No 128 cipher limit bug
}
SSLv2 OK {
not offered
}
SSLv3 OK {
not offered
}
TLS1 INFO {
not offered
}
TLS1_1 INFO {
not offered
}
TLS1_2 OK {
offered
}
TLS1_3 OK {
offered with final
}
NPN INFO {
not offered
}
ALPN INFO {
http/1.1
}
cipherlist_NULL
zranitelnosti: CWE-327
OK {
not offered
}
cipherlist_aNULL
zranitelnosti: CWE-327
OK {
not offered
}
cipherlist_EXPORT
zranitelnosti: CWE-327
OK {
not offered
}
cipherlist_LOW
zranitelnosti: CWE-327
OK {
not offered
}
cipherlist_3DES_IDEA
zranitelnosti: CWE-310
INFO {
not offered
}
cipherlist_AVERAGE
zranitelnosti: CWE-310
INFO {
not offered
}
cipherlist_GOOD INFO {
not offered
}
cipherlist_STRONG OK {
offered
}
cipher_order HIGH {
NOT a cipher order configured
}
protocol_negotiated OK {
Default protocol TLS1.3
}
cipher_negotiated OK {
TLS_AES_256_GCM_SHA384, 253 bit ECDH (X25519)  (limited sense as client will pick)
}
cipher-tls1_2_xc030 OK {
TLSv1.2   xc030   ECDHE-RSA-AES256-GCM-SHA384       ECDH 521   AESGCM      256      TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384
}
cipher-tls1_2_x9f OK {
TLSv1.2   x9f     DHE-RSA-AES256-GCM-SHA384         DH 4096    AESGCM      256      TLS_DHE_RSA_WITH_AES_256_GCM_SHA384
}
cipher-tls1_2_xcca8 OK {
TLSv1.2   xcca8   ECDHE-RSA-CHACHA20-POLY1305       ECDH 521   ChaCha20    256      TLS_ECDHE_RSA_WITH_CHACHA20_POLY1305_SHA256
}
cipher-tls1_2_xccaa OK {
TLSv1.2   xccaa   DHE-RSA-CHACHA20-POLY1305         DH 4096    ChaCha20    256      TLS_DHE_RSA_WITH_CHACHA20_POLY1305_SHA256
}
cipher-tls1_2_xc02f OK {
TLSv1.2   xc02f   ECDHE-RSA-AES128-GCM-SHA256       ECDH 521   AESGCM      128      TLS_ECDHE_RSA_WITH_AES_128_GCM_SHA256
}
cipher-tls1_2_x9e OK {
TLSv1.2   x9e     DHE-RSA-AES128-GCM-SHA256         DH 4096    AESGCM      128      TLS_DHE_RSA_WITH_AES_128_GCM_SHA256
}
supportedciphers_TLSv1_2 INFO {
ECDHE-RSA-AES256-GCM-SHA384 DHE-RSA-AES256-GCM-SHA384 ECDHE-RSA-CHACHA20-POLY1305 DHE-RSA-CHACHA20-POLY1305 ECDHE-RSA-AES128-GCM-SHA256 DHE-RSA-AES128-GCM-SHA256
}
cipher-tls1_3_x1302 OK {
TLSv1.3   x1302   TLS_AES_256_GCM_SHA384            ECDH 253   AESGCM      256      TLS_AES_256_GCM_SHA384
}
cipher-tls1_3_x1303 OK {
TLSv1.3   x1303   TLS_CHACHA20_POLY1305_SHA256      ECDH 253   ChaCha20    256      TLS_CHACHA20_POLY1305_SHA256
}
cipher-tls1_3_x1301 OK {
TLSv1.3   x1301   TLS_AES_128_GCM_SHA256            ECDH 253   AESGCM      128      TLS_AES_128_GCM_SHA256
}
supportedciphers_TLSv1_3 INFO {
TLS_AES_256_GCM_SHA384 TLS_CHACHA20_POLY1305_SHA256 TLS_AES_128_GCM_SHA256
}
FS OK {
offered
}
FS_ciphers INFO {
TLS_AES_256_GCM_SHA384 TLS_CHACHA20_POLY1305_SHA256 ECDHE-RSA-AES256-GCM-SHA384 DHE-RSA-AES256-GCM-SHA384 ECDHE-RSA-CHACHA20-POLY1305 DHE-RSA-CHACHA20-POLY1305 TLS_AES_128_GCM_SHA256 ECDHE-RSA-AES128-GCM-SHA256 DHE-RSA-AES128-GCM-SHA256
}
FS_ECDHE_curves OK {
prime256v1 secp384r1 secp521r1 X25519 X448
}
DH_groups OK {
ffdhe2048 ffdhe3072 ffdhe4096 ffdhe6144 ffdhe8192
}
TLS_extensions INFO {
'renegotiation info/#65281' 'server name/#0' 'EC point formats/#11' 'supported versions/#43' 'key share/#51' 'supported_groups/#10' 'max fragment length/#1' 'application layer protocol negotiation/#16' 'extended master secret/#23'
}
TLS_session_ticket INFO {
no -- no lifetime advertised
}
SSL_sessionID_support INFO {
yes
}
sessionresumption_ticket INFO {
not supported
}
sessionresumption_ID INFO {
supported
}
TLS_timestamp INFO {
random
}
certificate_compression INFO {
none
}
clientAuth INFO {
none
}
cert_numbers INFO {
1
}
cert_signatureAlgorithm OK {
SHA256 with RSA
}
cert_keySize OK {
RSA 4096 bits (exponent is 65537)
}
cert_keyUsage INFO {
Digital Signature, Key Encipherment
}
cert_extKeyUsage INFO {
TLS Web Server Authentication
}
cert_serialNumber INFO {
0546FD70B0CEACF7DE99009280A235890D8E
}
cert_serialNumberLen INFO {
18
}
cert_fingerprintSHA1 INFO {
EA402BE52FA9F4CC5E2183172D22DB4DB557173D
}
cert_fingerprintSHA256 INFO {
F795D69838CEB5C4E5D29861BC23A222EEE512A244E20FB8C88184377B32B48A
}
cert INFO {
-----BEGIN CERTIFICATE----- MIIGLTCCBRWgAwIBAgISBUb9cLDOrPfemQCSgKI1iQ2OMA0GCSqGSIb3DQEBCwUA MDMxCzAJBgNVBAYTAlVTMRYwFAYDVQQKEw1MZXQncyBFbmNyeXB0MQwwCgYDVQQD EwNZUjIwHhcNMjYwNjEyMTY1NDM2WhcNMjYwOTEwMTY1NDM1WjAVMRMwEQYDVQQD Ewp1ZGguZ292LmN6MIICIjANBgkqhkiG9w0BAQEFAAOCAg8AMIICCgKCAgEAvG/9 IqvfYuCMoE1VkTuvhFbXjogvoU6q5ObgnYCIiGJ2QnVPSYkB6pYMW0p2M0Y/agH+ glHbln0IPFeyx6QnjWzG2skxdPAsu2GlLVfXDK4GbjMvk8i+VFx/CfROq51QhgVP no9MzLtsufornySJgiR53cj2rulhi1vJAtsRcomJabD2SP/A5t00YeTGvOjFhFjZ pkTIyLl89JvTAnDZjtD7er6dg80OaP3F4YrrPpKZKWBi9tFhxtUSgrUj3y02bSNL hOivni8ZZYYqmaw7Q99BcozCFdN9bFKaJT5V/9eMhOaWhxGVzWTPI+3OScDoiBty WO7Xl0uqqY9yNTnIPGE90YPOse82302uTay8A7ZQ0dODjay190YTZCee749tO1hy c8mI3yew+VE/tt740KyZJ/diSfBHefnehIWPY9tkp+s2PDjHPlT9j5uPMNtYSZWP iZc2wTG20aTpp9GzQpc49QWC4PqVoxm7o+MU9+iNGM5pcILPakIe8+3kas1aiKF+ nUXEJlhuZz5xkU7sizz+fcNfFrDBUChBFn3CwSkrYkbf3n1piMtARanxNBUsev6v ujnzk6IT2HTvJA4dMncb64OMs8fZXcJj0GR46J7z7NjTQEP/SST39Sc+eZBupV0U lFj4vzIvETquWJzzfbt3rgVaZapT6B1WLWedLecCAwEAAaOCAlcwggJTMA4GA1Ud DwEB/wQEAwIFoDATBgNVHSUEDDAKBggrBgEFBQcDATAMBgNVHRMBAf8EAjAAMB0G A1UdDgQWBBQ6DFY3zVlOzYJKxCb/Z/pQqWudnDAfBgNVHSMEGDAWgBRAFS0mee0y IJ7fmnId1jIfgQyBDDAzBggrBgEFBQcBAQQnMCUwIwYIKwYBBQUHMAKGF2h0dHA6 Ly95cjIuaS5sZW5jci5vcmcvMFUGA1UdEQROMEyCFHJlZ2lzdHJhY2UudWRocHNo LmN6ggp1ZGguZ292LmN6ggl1ZGhwc2guY3qCDnd3dy51ZGguZ292LmN6gg13d3cu dWRocHNoLmN6MBMGA1UdIAQMMAowCAYGZ4EMAQIBMC4GA1UdHwQnMCUwI6AhoB+G HWh0dHA6Ly95cjIuYy5sZW5jci5vcmcvMTUuY3JsMIIBCwYKKwYBBAHWeQIEAgSB /ASB+QD3AHYA2AlVO5RPev/IFhlvlE+Fq7D4/F6HVSYPFdEucrtFSxQAAAGevPdY JQAABAMARzBFAiEA8L9Kqn7CAHPfiDdA+zZZKSoegW+X+90Gju7pccYaeUcCIFO4 gl6lxOHnPxT4Uerm3HCDLh/fDBag4uX2JBkoC8eqAH0AqCbL4wrGNRJGUz/gZfFP GdluGQgTxB3ZbXkAsxI8VScAAAGevPdbagAIAAAFAA8119cEAwBGMEQCIFxSyYUE yIFsC6uHYjHGexRDAHsaZReveioGWIbizKxbAiABCmY5LioIf4r/oN9c5ApP5OyO /aTRxPen6Sl7cu+vgzANBgkqhkiG9w0BAQsFAAOCAQEAvQrF8Dz/uP8NiIKoQOlu HnTYdWJtwDvtHTTJO1yXRu6zkDsGVe508o3WQ8Jo5FdxHuGJE5qEV8/idUdsdLvq AF4KMrduyvC1H3NumICvQVTx8dQ+4lkIqpcv3Z8N38B3SyqQcgBbWQg1JKEZ79JW hKrU5bLC7KYoFYxxPBLbG9ngSjvctYAlrEWZVCIb1ilLxyEKYI4V6voNT18mWlO1 09Ryazo61dlr+bAVkmEj6CN10eSv1ubfPI3h+Nlog47bSrcEITgopFXvjjy8H0GM Bixk+RjWT7OJgvuiRaTjCRNFvZzLCoH2KPK6KbR1412yKM1iOdjNGUvByrhhLp4e /g== -----END CERTIFICATE-----
}
cert_commonName OK {
udh.gov.cz
}
cert_commonName_wo_SNI INFO {
udh.gov.cz
}
cert_subjectAltName INFO {
registrace.udhpsh.cz udh.gov.cz udhpsh.cz www.udh.gov.cz www.udhpsh.cz
}
cert_trust OK {
Ok via SAN (same w/o SNI)
}
cert_chain_of_trust OK {
passed.
}
cert_certificatePolicies_EV INFO {
no
}
cert_expirationStatus OK {
71 >= 30 days
}
cert_notBefore INFO {
2026-06-12 16:54
}
cert_notAfter OK {
2026-09-10 16:54
}
cert_extlifeSpan OK {
certificate has no extended life time according to browser forum
}
cert_eTLS INFO {
not present
}
cert_crlDistributionPoints INFO {
http://yr2.c.lencr.org/15.crl
}
cert_ocspURL INFO {
--
}
OCSP_stapling INFO {
not offered
}
cert_mustStapleExtension INFO {
--
}
DNS_CAArecord LOW {
--
}
certificate_transparency OK {
yes (certificate extension)
}
certs_countServer INFO {
3
}
certs_list_ordering_problem INFO {
no
}
cert_caIssuers INFO {
YR2 (Let's Encrypt from US)
}
intermediate_cert <#1> INFO {
-----BEGIN CERTIFICATE----- MIIE2jCCAsKgAwIBAgIQTr0klH4k05SALYSlL9WzGTANBgkqhkiG9w0BAQsFADAu MQswCQYDVQQGEwJVUzENMAsGA1UEChMESVNSRzEQMA4GA1UEAxMHUm9vdCBZUjAe Fw0yNTA5MDMwMDAwMDBaFw0yODA5MDIyMzU5NTlaMDMxCzAJBgNVBAYTAlVTMRYw FAYDVQQKEw1MZXQncyBFbmNyeXB0MQwwCgYDVQQDEwNZUjIwggEiMA0GCSqGSIb3 DQEBAQUAA4IBDwAwggEKAoIBAQDZ0LxwBppqh84luqMerV/eeL/fXQ7mLQQv1Lnp WKZbyvGpx6wh6AfnslAnF6ewTkcHA+gSOoBvm3Dfm06AuGiF+KRut4fAcowqnAQQ CW98+QPP/eOv/wug7Iyk4NkOxf2I6g2f55T6nJoOTLFcukeRq80JGQEYan+dPFr9 OGUgQK2hGKgNkW87pappsOAuUJcroYhRt5uUis4qaZireiseu32gzDJNBAiKtsvd 6HX4v25bpkRNcS/B/Gtc9kVbUpD+2PLPxdei3Tim55k4tfAEXwD2qyiPTxrTNq6l N+AMr5g2c1dNqkOTwjxeV6L5lpP1rGiYvLnRaPlOqyZRPW+5AgMBAAGjge4wgesw DgYDVR0PAQH/BAQDAgGGMBMGA1UdJQQMMAoGCCsGAQUFBwMBMBIGA1UdEwEB/wQI MAYBAf8CAQAwHQYDVR0OBBYEFEAVLSZ57TIgnt+ach3WMh+BDIEMMB8GA1UdIwQY MBaAFN7nW2DQIm1AKH0/DQH+pLVStFGUMDIGCCsGAQUFBwEBBCYwJDAiBggrBgEF BQcwAoYWaHR0cDovL3lyLmkubGVuY3Iub3JnLzATBgNVHSAEDDAKMAgGBmeBDAEC ATAnBgNVHR8EIDAeMBygGqAYhhZodHRwOi8veXIuYy5sZW5jci5vcmcvMA0GCSqG SIb3DQEBCwUAA4ICAQB0ZUQWZ9/Yn9COEpo+JfecMnB0h0vwDm/M66IqXqw3LoaL mx9lZvRTeDIS67PUeI3yCA2W6PKRD0/FE/G57lOmS+Xy5AaaL00ICGOqjNcCaMWW 8o8nevHOd4i4lqgtznE/28QwlcdJyF8yBiWHpnyjhEpmNWJURgOCOg2xpwRMBCsj MScqYPtOhBeuYQvSwAEeTML2Ukh6uGuX4E14q65Ja8cdjF5bAldnP1eE4FBaAwsZ G2fOqqrKV03Y85Nw2btedP1AtliQuJZs/Jo/gXxXdc7LrH3McgnpnbTiAncX7yES hP6kzQejllqMCIt52HOjxDGWafS7Xw+DKwqmH+Eqy8dcbOuag/1AYlQoKNVK3F5q Hh6tEDiMqQcLIibGKteE6iHo4A/bIScbzrhXUYuism42ZYzmc48FMVIH3qy4L84E TdAH2gtxw0PAhvRVXp8HP7wfngpzsN/8xOTpeRSbM4+Qbc56G6+Bifmv6sk1ieQb NA3wJdl4DDUuQSV8hBgx6zoI1ZSGORprDFux7c6rhc77QZMSRrEgomBeklervEve 86ylWmZ3WWHV6RLMi8xNvjd71r4EPIGgY7BZU/VPBkq+uA7Gb6mbJnFgV43uh3xy LRFgxIAphIukwTGSMZZR+AI+Qnp0BYTWovHXozOf3H8r6hozEoT02JHn0AeTfA== -----END CERTIFICATE-----
}
intermediate_cert_fingerprintSHA256 <#1> INFO {
238B85A0099C65B970477D5724F1A1D475CE5058CFFE4EFA8733899BDB863C47
}
intermediate_cert_notBefore <#1> INFO {
2025-09-03 00:00
}
intermediate_cert_notAfter <#1> OK {
2028-09-02 23:59
}
intermediate_cert_expiration <#1> OK {
ok > 40 days
}
intermediate_cert_chain <#1> INFO {
YR2 <-- Root YR
}
intermediate_cert <#2> INFO {
-----BEGIN CERTIFICATE----- MIIF9DCCA9ygAwIBAgIRAPJLbRf52a18scn+p4eCaZ8wDQYJKoZIhvcNAQELBQAw TzELMAkGA1UEBhMCVVMxKTAnBgNVBAoTIEludGVybmV0IFNlY3VyaXR5IFJlc2Vh cmNoIEdyb3VwMRUwEwYDVQQDEwxJU1JHIFJvb3QgWDEwHhcNMjYwNTEzMDAwMDAw WhcNMzIwOTAyMjM1OTU5WjAuMQswCQYDVQQGEwJVUzENMAsGA1UEChMESVNSRzEQ MA4GA1UEAxMHUm9vdCBZUjCCAiIwDQYJKoZIhvcNAQEBBQADggIPADCCAgoCggIB ANvGJnN78CTJdWL3+eGfsLN5TrNBJs+VH9hRXqRbwxu9sGNiB0BD1fcOxbSUQCJI M1xE13Db+5Cw1w0s0EBYsvuIP/6joF0w8cuImbgR1OGgYbSQ4OpzI+DG8SGuTlcE 873OCS+kh3srlo6vl43M5OJg4Aeo1sfHp6kTJDoIiFBNJAY+OKfX/FUvYKuhjT+n o49lmqmupSBI5PkBQiqrEGtWU5uxU/cQWHGu8jSjFBznZqvbNPLMXMLFxCb3WTfr JBXXjqvWG+v4bjzxjjeAtOlU7qarRDvNOyAuQYLln904M+faKx8hnLCpJ15ZqaEg cNlY+9MMWcC5yvL2A2j3l9+2buggZX+dOE91zYmIdawTvSZuVvlbRrAlLxIB6pwM BjneXCjYQ8+3BCCjssbSNpZU3hTcBDdhfAlEDlYr6pEatnMdmDT5BqnKC92bd0Eh M1fbLHioLccLCuievT8ZkPhZrq7Mii7gNXAcUEAR8+lzYal+9zTg7C5DALyVOeG/ CqfRAMn1KSHCR0NSA6P8tn/mGRlnCct5rtVCLnVySVpU6H1qGg3DgTOuskf8eahT MiYbI5ezPJmO5ertalskQ1utp74+eDy92PI4ftHKTbq9IWhH4YZKh3WnJEIt+oQv lYZbY8tpEroKrFB6PFGzrJIDRyts4HqvuH52RFj2zv/BAgMBAAGjgeswgegwDgYD VR0PAQH/BAQDAgEGMBMGA1UdJQQMMAoGCCsGAQUFBwMBMA8GA1UdEwEB/wQFMAMB Af8wHQYDVR0OBBYEFN7nW2DQIm1AKH0/DQH+pLVStFGUMB8GA1UdIwQYMBaAFHm0 WeZ7tuXkAXOACIjIGlj26ZtuMDIGCCsGAQUFBwEBBCYwJDAiBggrBgEFBQcwAoYW aHR0cDovL3gxLmkubGVuY3Iub3JnLzATBgNVHSAEDDAKMAgGBmeBDAECATAnBgNV HR8EIDAeMBygGqAYhhZodHRwOi8veDEuYy5sZW5jci5vcmcvMA0GCSqGSIb3DQEB CwUAA4ICAQA8spSI95KKfn2W6GMmDpHBJSPaLbsS3W93cijJCRCYAc1fsJgL1FIL 7C0C9ecPOdcwB2fi0Dk2p94j9iTJCxmt5CFSKLRWwnXT2MMSXexVxqoVB79BdWPx VXETkVme/qYSAuKVHh5Ps+5BixgmwS1JkjSAc+MfrUbNssVEEnH0aEiAh+rotXAV JSP/Ye7LJPEwD9DWG72vVWbhAcuOf5OLjz57Ctk7MgQHynZ7+PlHJtajroCaIbtC r6tcZZaAwUQm+jQyeWdV+2hv9deOYFmKeQyjjcSrN5Nadrw+L9DZJLbA1HqeNvLh BgqpP0fvJq2N6EtD574N6eMI7uMsJTnji2UDz9el5XLSv9fqJMuDQtYVb2oTNoKp oUqhxPVC0aq4eG5MESaIdn8b5ZGSSeAJLMHXljEdlNza+ncfkviXk1POLnnFdvx8 /gk6M374WbLWFXw8N141B/Rl/tINGfl1TxOIiqtiMYkL02RSGb1kq34BL9NPP27z RGMuHGnzS3hFIrRTfKxrzUZ9RzQWzEG3K6fJ3r2nqSltkeytis9DIBoFY9VmVyjL M71DMi+y1+TRSJVClEMwvA4yL++7q9XZx5r5wBRWB4kQTKH5qyoZnDw7iiuh1lID yDFx8r7i9vIJU5HS3moZLkYWAOilMaV9N56A9Bgb6dNcHkvg3NoaYA== -----END CERTIFICATE-----
}
intermediate_cert_fingerprintSHA256 <#2> INFO {
072639D0B140D5BFFAE16AD9C3F6CC6086040621F51EE61A6D46A8915C07CF76
}
intermediate_cert_notBefore <#2> INFO {
2026-05-13 00:00
}
intermediate_cert_notAfter <#2> OK {
2032-09-02 23:59
}
intermediate_cert_expiration <#2> OK {
ok > 40 days
}
intermediate_cert_chain <#2> INFO {
Root YR <-- ISRG Root X1
}
intermediate_cert_badOCSP OK {
intermediate certificate(s) is/are ok
}
HTTP_status_code INFO {
301 Moved Permanently ('/')
}
HTTP_clock_skew INFO {
0 seconds from localtime
}
HTTP_headerTime INFO {
1782850012
}
HSTS LOW {
not offered
}
HPKP INFO {
No support for HTTP Public Key Pinning
}
banner_server INFO {
Apache
}
banner_application INFO {
No application banner found
}
cookie_count INFO {
0 at '/' (30x detected, better try target URL of 30x)
}
security_headers MEDIUM {
--
}
banner_reverseproxy
zranitelnosti: CWE-200
INFO {
--
}
heartbleed
zranitelnosti: CVE-2014-0160 CWE-119
OK {
not vulnerable, no heartbeat extension
}
CCS
zranitelnosti: CVE-2014-0224 CWE-310
OK {
not vulnerable
}
ticketbleed
zranitelnosti: CVE-2016-9244 CWE-200
OK {
no session ticket extension
}
ROBOT OK {
not vulnerable, no RSA key transport cipher
}
secure_renego
zranitelnosti: CWE-310
OK {
supported
}
secure_client_renego
zranitelnosti: CVE-2011-1473 CWE-310
OK {
not vulnerable
}
CRIME_TLS
zranitelnosti: CVE-2012-4929 CWE-310
OK {
not vulnerable
}
BREACH
zranitelnosti: CVE-2013-3587 CWE-310
OK {
not vulnerable, no gzip/deflate/compress/br HTTP compression  - only supplied '/' tested
}
POODLE_SSL
zranitelnosti: CVE-2014-3566 CWE-310
OK {
not vulnerable, no SSLv3
}
fallback_SCSV OK {
no protocol below TLS 1.2 offered
}
SWEET32 OK {
not vulnerable
}
FREAK
zranitelnosti: CVE-2015-0204 CWE-310
OK {
not vulnerable
}
DROWN OK {
not vulnerable on this host and port
}
DROWN_hint INFO {
Make sure you don't use this certificate elsewhere with SSLv2 enabled services, see https://censys.io/ipv4?q=F795D69838CEB5C4E5D29861BC23A222EEE512A244E20FB8C88184377B32B48A
}
LOGJAM-common_primes
zranitelnosti: CVE-2015-4000 CWE-310
INFO {
RFC3526/Oakley Group 16
}
LOGJAM
zranitelnosti: CVE-2015-4000 CWE-310
OK {
not vulnerable, no DH EXPORT ciphers,
}
BEAST
zranitelnosti: CVE-2011-3389 CWE-20
OK {
not vulnerable, no SSL3 or TLS1
}
LUCKY13
zranitelnosti: CVE-2013-0169 CWE-310
OK {
not vulnerable
}
winshock
zranitelnosti: CVE-2014-6321 CWE-94
OK {
not vulnerable
}
RC4 OK {
not vulnerable
}
clientsimulation-android_442 INFO {
TLSv1.2 ECDHE-RSA-AES256-GCM-SHA384
}
clientsimulation-android_500 INFO {
TLSv1.2 ECDHE-RSA-AES128-GCM-SHA256
}
clientsimulation-android_60 INFO {
TLSv1.2 ECDHE-RSA-AES128-GCM-SHA256
}
clientsimulation-android_70 INFO {
TLSv1.2 ECDHE-RSA-AES128-GCM-SHA256
}
clientsimulation-android_81 INFO {
TLSv1.2 ECDHE-RSA-AES128-GCM-SHA256
}
clientsimulation-android_90 INFO {
TLSv1.3 TLS_AES_128_GCM_SHA256
}
clientsimulation-android_X INFO {
TLSv1.3 TLS_AES_128_GCM_SHA256
}
clientsimulation-chrome_74_win10 INFO {
TLSv1.3 TLS_AES_128_GCM_SHA256
}
clientsimulation-chrome_79_win10 INFO {
TLSv1.3 TLS_AES_128_GCM_SHA256
}
clientsimulation-firefox_66_win81 INFO {
TLSv1.3 TLS_AES_128_GCM_SHA256
}
clientsimulation-firefox_71_win10 INFO {
TLSv1.3 TLS_AES_128_GCM_SHA256
}
clientsimulation-ie_6_xp INFO {
No connection
}
clientsimulation-ie_8_win7 INFO {
No connection
}
clientsimulation-ie_8_xp INFO {
No connection
}
clientsimulation-ie_11_win7 INFO {
TLSv1.2 DHE-RSA-AES256-GCM-SHA384
}
clientsimulation-ie_11_win81 INFO {
TLSv1.2 DHE-RSA-AES256-GCM-SHA384
}
clientsimulation-ie_11_winphone81 INFO {
No connection
}
clientsimulation-ie_11_win10 INFO {
TLSv1.2 ECDHE-RSA-AES256-GCM-SHA384
}
clientsimulation-edge_15_win10 INFO {
TLSv1.2 ECDHE-RSA-AES256-GCM-SHA384
}
clientsimulation-edge_17_win10 INFO {
TLSv1.2 ECDHE-RSA-AES256-GCM-SHA384
}
clientsimulation-opera_66_win10 INFO {
TLSv1.3 TLS_AES_128_GCM_SHA256
}
clientsimulation-safari_9_ios9 INFO {
TLSv1.2 ECDHE-RSA-AES256-GCM-SHA384
}
clientsimulation-safari_9_osx1011 INFO {
TLSv1.2 ECDHE-RSA-AES256-GCM-SHA384
}
clientsimulation-safari_10_osx1012 INFO {
TLSv1.2 ECDHE-RSA-AES256-GCM-SHA384
}
clientsimulation-safari_121_ios_122 INFO {
TLSv1.3 TLS_CHACHA20_POLY1305_SHA256
}
clientsimulation-safari_130_osx_10146 INFO {
TLSv1.3 TLS_CHACHA20_POLY1305_SHA256
}
clientsimulation-apple_ats_9_ios9 INFO {
TLSv1.2 ECDHE-RSA-AES256-GCM-SHA384
}
clientsimulation-java_6u45 INFO {
No connection
}
clientsimulation-java_7u25 INFO {
No connection
}
clientsimulation-java_8u161 INFO {
TLSv1.2 ECDHE-RSA-AES256-GCM-SHA384
}
clientsimulation-java1102 INFO {
TLSv1.3 TLS_AES_128_GCM_SHA256
}
clientsimulation-java1201 INFO {
TLSv1.3 TLS_AES_128_GCM_SHA256
}
clientsimulation-openssl_102e INFO {
TLSv1.2 ECDHE-RSA-AES256-GCM-SHA384
}
clientsimulation-openssl_110l INFO {
TLSv1.2 ECDHE-RSA-AES256-GCM-SHA384
}
clientsimulation-openssl_111d INFO {
TLSv1.3 TLS_AES_256_GCM_SHA384
}
clientsimulation-thunderbird_68_3_1 INFO {
TLSv1.3 TLS_AES_128_GCM_SHA256
}
rating_spec INFO {
SSL Labs's 'SSL Server Rating Guide' (version 2009q from 2020-01-30)
}
rating_doc INFO {
https://github.com/ssllabs/research/wiki/SSL-Server-Rating-Guide
}
protocol_support_score INFO {
100
}
protocol_support_score_weighted INFO {
30
}
key_exchange_score INFO {
100
}
key_exchange_score_weighted INFO {
30
}
cipher_strength_score INFO {
90
}
cipher_strength_score_weighted INFO {
36
}
final_score INFO {
96
}
overall_grade OK {
A
}
grade_cap_reason_1 INFO {
Grade capped to A. HSTS is not offered
}
scanTime INFO {
88
}