erectiemiddelen-erectiepillenshop.nl
Score 80/100
Web site information
Web Address
IP Address
SEO data
title
Under construction - Awesome site in the making!
robots
noindex
Protocols
SSLv2
not offered
SSLv3
not offered
TLS 1.0
not offered
TLS 1.1
not offered
TLS 1.2
offered
TLS 1.3
offered with final
ALPN HTTP2
h2
ALPN
http/1.1
Vulnerabilities
heartbleed
not vulnerable, no heartbeat extension
CCS
not vulnerable
ticketbleed
no session ticket extension
ROBOT
not vulnerable
SSL renegotiation
supported
SSL client renegotiation
not vulnerable
CRIME TLS
not vulnerable
BREACH
potentially VULNERABLE, br HTTP compression detected - only supplied '/' tested
POODLE SSL
not vulnerable, no SSLv3
fallback SCSV
no protocol below TLS 1.2 offered
SWEET32
not vulnerable
FREAK
not vulnerable
DROWN
not vulnerable on this host and port
DROWN hint
Make sure you don't use this certificate elsewhere with SSLv2 enabled services, see https://censys.io/ipv4?q=1BDF6D0FEE4E7C1EA468D8B4656B91C1DE24FB212A13D4558D2955A95C756BF3
LOGJAM
not vulnerable, no DH EXPORT ciphers,
LOGJAM-common primes
--
BEAST
not vulnerable, no SSL3 or TLS1
LUCKY13
potentially vulnerable, uses TLS CBC ciphers
RC4
not vulnerable
Header Responses
Status code
200 OK ('/')
Clock skew
0 seconds from localtime
HSTS
not offered
HPKP
No support for HTTP Public Key Pinning
Cache-Control
max-age=0,no-store
Server Defaults
TLS extensions
'renegotiation info/#65281' 'server name/#0' 'EC point formats/#11' 'supported versions/#43' 'key share/#51' 'max fragment length/#1' 'application layer protocol negotiation/#16' 'encrypt-then-mac/#22' 'extended master secret/#23'
TLS session ticket
no -- no lifetime advertised
SSL sessionID support
yes
Session Ticket Resumption
not supported
Session ID Resumption
supported
cert numbers
1
Signature algorithm
SHA256 with RSA
Key size
RSA 2048 bits
Key usage
Digital Signature, Key Encipherment
Extended key usage
No server extended key usage information
Serial number
9AD038C0B911E4C4
cert serialNumberLen
8
Fingerprint SHA1
8B18A7734123F723E45A31901612A35D4B6DBE10
Fingerprint SHA256
1BDF6D0FEE4E7C1EA468D8B4656B91C1DE24FB212A13D4558D2955A95C756BF3
Certificate details
-----BEGIN CERTIFICATE----- MIIDqTCCApGgAwIBAgIJAJrQOMC5EeTEMA0GCSqGSIb3DQEBCwUAMHYxCzAJBgNV BAYTAkJHMREwDwYDVQQIDAhCdWxnYXJpYTEOMAwGA1UEBwwFU29maWExEzARBgNV BAoMClNpdGVHcm91bmQxGTAXBgNVBAsMEE9wZXJhdGlvbnMgRGVwdC4xFDASBgNV BAMMC2V4YW1wbGUuY29tMB4XDTE4MDgxNjE0MTUxNFoXDTI4MDgxMzE0MTUxNFow djELMAkGA1UEBhMCQkcxETAPBgNVBAgMCEJ1bGdhcmlhMQ4wDAYDVQQHDAVTb2Zp YTETMBEGA1UECgwKU2l0ZUdyb3VuZDEZMBcGA1UECwwQT3BlcmF0aW9ucyBEZXB0 LjEUMBIGA1UEAwwLZXhhbXBsZS5jb20wggEiMA0GCSqGSIb3DQEBAQUAA4IBDwAw ggEKAoIBAQDMVc+8twALdNG4NCrUX8zltJ9u8Ut61NV5iuG7+l3hDaCKF1mOG0Kg eHhwk67LJNxAxTiJpTq0qT8sD2v9NpV1wuGWzS00Nv9QJ+E/pWTYjJaKfxattMHg bpZBS+WXgxPk83Vy/JYTwqTPLXNEK+TicVdxgNH3giDfXqSu8L9TcaPh77vPVofz /QUR8NYJaTPt4r37baYOpg8ubnwbvjwz1zEKUVZvZ9hBxVOu4wETMVgy1USVXD9U Q2KWZ9zO7tEiso7ZgxPpMN/NpHYhvTPQJxbcxKh3t5t078WRvbAWIJvFLNuOwaA3 5Oene4e4l6Ija5YQJwDxJfm0NjGekr2DAgMBAAGjOjA4MAsGA1UdDwQEAwIFoDAp BgNVHREEIjAggg93d3cuZXhhbXBsZS5jb22CDSouZXhhbXBsZS5jb20wDQYJKoZI hvcNAQELBQADggEBAB+J54ZFxYQPDIZsmvrMLZxJjghpYHtIz+NAAdCVc7l1EV1s IkAZtcG1MQ6TmWa3Yq7bU+hIRZOwDKEU7U7UgBrUl+GBuGFSoXm/FzUxYvjV7iuI /yQiW+Exj7gXby410eFwrsKZfQv7UqZRJLK5HflvQELOVAQzj4YSEDljicvvTWt1 ZtJrjZ1PcfyuwRLoFB8Qy3A/DajNIf8cN8+A1e0C1OzLr5Ushhu5JGjT9iowTh31 FrING+HrSDghR4MG3SMo+ORKjTJwh4Lao/oQuhuZgUY17BcMNRfTaWc5itoEsaRQ lzg3mKmb0GW3axQLUlrODJh2I7RI5Cbj913R43Q= -----END CERTIFICATE-----
Common names
example.com
Service Name Indication
c117730.sgvps.net
SubjectAlternative Name
www.example.com *.example.com
Certificate authority issuers
example.com (SiteGround from BG)
Certificate trusted
certificate does not match supplied URI (same w/o SNI)
Certificate chain trusted
failed (chain incomplete).
Is certificate Extended Validation
no
cert eTLS
not present
cert expirationStatus
1747 >= 60 days
Valid from
2018-08-16 14:15
Valid until
2028-08-13 14:15
cert validityPeriod
3650 days
Chain
2
certs list ordering problem
yes
cert crlDistributionPoints
--
Online Certificate Status Protocol URL
--
cert revocation
Neither CRL nor OCSP URI provided
OCSP stapling
not offered
cert mustStapleExtension
--
DNS CAArecord
--
certificate transparency
--
Server Preferences
order
server
Which protocol negotiated
Default protocol TLS1.3
negotiated
TLS_AES_256_GCM_SHA384, 384 bit ECDH (P-384)
order TLSv1 2
ECDHE-RSA-AES256-GCM-SHA384
Perfect Forward Secrecy
PFS
offered
PFS s
DHE-RSA-AES128-GCM-SHA256 DHE-RSA-AES128-SHA256 DHE-RSA-AES128-SHA DHE-RSA-AES256-GCM-SHA384 DHE-RSA-AES256-SHA256 DHE-RSA-AES256-SHA DHE-RSA-CAMELLIA128-SHA256 DHE-RSA-CAMELLIA128-SHA DHE-RSA-CAMELLIA256-SHA256 DHE-RSA-CAMELLIA256-SHA ECDHE-RSA-AES128-GCM-SHA256 ECDHE-RSA-AES128-SHA256 ECDHE-RSA-AES128-SHA ECDHE-RSA-AES256-GCM-SHA384 ECDHE-RSA-AES256-SHA384 ECDHE-RSA-AES256-SHA ECDHE-RSA-CAMELLIA128-SHA256 ECDHE-RSA-CAMELLIA256-SHA384
PFS ECDHE curves
secp384r1
Ciphers
ECDHE-RSA-AES256-GCM-SHA384 ECDH 384 AESGCM 256 TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384
(0xc030)
ECDHE-RSA-AES256-SHA384 ECDH 384 AES 256 TLS_ECDHE_RSA_WITH_AES_256_CBC_SHA384
(0xc028)
ECDHE-RSA-AES256-SHA ECDH 384 AES 256 TLS_ECDHE_RSA_WITH_AES_256_CBC_SHA
(0xc014)
DHE-RSA-AES256-GCM-SHA384 DH 4096 AESGCM 256 TLS_DHE_RSA_WITH_AES_256_GCM_SHA384
(0x9f)
DHE-RSA-AES256-SHA256 DH 4096 AES 256 TLS_DHE_RSA_WITH_AES_256_CBC_SHA256
(0x6b)
DHE-RSA-AES256-SHA DH 4096 AES 256 TLS_DHE_RSA_WITH_AES_256_CBC_SHA
(0x39)
ECDHE-RSA-CAMELLIA256-SHA384 ECDH 384 Camellia 256 TLS_ECDHE_RSA_WITH_CAMELLIA_256_CBC_SHA384
(0xc077)
DHE-RSA-CAMELLIA256-SHA256 DH 4096 Camellia 256 TLS_DHE_RSA_WITH_CAMELLIA_256_CBC_SHA256
(0xc4)
DHE-RSA-CAMELLIA256-SHA DH 4096 Camellia 256 TLS_DHE_RSA_WITH_CAMELLIA_256_CBC_SHA
(0x88)
AES256-GCM-SHA384 RSA AESGCM 256 TLS_RSA_WITH_AES_256_GCM_SHA384
(0x9d)
AES256-SHA256 RSA AES 256 TLS_RSA_WITH_AES_256_CBC_SHA256
(0x3d)
AES256-SHA RSA AES 256 TLS_RSA_WITH_AES_256_CBC_SHA
(0x35)
CAMELLIA256-SHA256 RSA Camellia 256 TLS_RSA_WITH_CAMELLIA_256_CBC_SHA256
(0xc0)
CAMELLIA256-SHA RSA Camellia 256 TLS_RSA_WITH_CAMELLIA_256_CBC_SHA
(0x84)
ECDHE-RSA-AES128-GCM-SHA256 ECDH 384 AESGCM 128 TLS_ECDHE_RSA_WITH_AES_128_GCM_SHA256
(0xc02f)
ECDHE-RSA-AES128-SHA256 ECDH 384 AES 128 TLS_ECDHE_RSA_WITH_AES_128_CBC_SHA256
(0xc027)
ECDHE-RSA-AES128-SHA ECDH 384 AES 128 TLS_ECDHE_RSA_WITH_AES_128_CBC_SHA
(0xc013)
DHE-RSA-AES128-GCM-SHA256 DH 4096 AESGCM 128 TLS_DHE_RSA_WITH_AES_128_GCM_SHA256
(0x9e)
DHE-RSA-AES128-SHA256 DH 4096 AES 128 TLS_DHE_RSA_WITH_AES_128_CBC_SHA256
(0x67)
DHE-RSA-AES128-SHA DH 4096 AES 128 TLS_DHE_RSA_WITH_AES_128_CBC_SHA
(0x33)
ECDHE-RSA-CAMELLIA128-SHA256 ECDH 384 Camellia 128 TLS_ECDHE_RSA_WITH_CAMELLIA_128_CBC_SHA256
(0xc076)
DHE-RSA-CAMELLIA128-SHA256 DH 4096 Camellia 128 TLS_DHE_RSA_WITH_CAMELLIA_128_CBC_SHA256
(0xbe)
DHE-RSA-CAMELLIA128-SHA DH 4096 Camellia 128 TLS_DHE_RSA_WITH_CAMELLIA_128_CBC_SHA
(0x45)
AES128-GCM-SHA256 RSA AESGCM 128 TLS_RSA_WITH_AES_128_GCM_SHA256
(0x9c)
AES128-SHA256 RSA AES 128 TLS_RSA_WITH_AES_128_CBC_SHA256
(0x3c)
AES128-SHA RSA AES 128 TLS_RSA_WITH_AES_128_CBC_SHA
(0x2f)
CAMELLIA128-SHA256 RSA Camellia 128 TLS_RSA_WITH_CAMELLIA_128_CBC_SHA256
(0xba)
CAMELLIA128-SHA RSA Camellia 128 TLS_RSA_WITH_CAMELLIA_128_CBC_SHA
(0x41)
Browser Simulations
Android 4.4.2
TLSv1.2 ECDHE-RSA-AES256-GCM-SHA384
Android 5.0.0
TLSv1.2 ECDHE-RSA-AES128-GCM-SHA256
Android 6.0
TLSv1.2 ECDHE-RSA-AES128-GCM-SHA256
Android 7.0
TLSv1.2 AES128-SHA
clientsimulation-android 81
TLSv1.2 ECDHE-RSA-CHACHA20-POLY1305
clientsimulation-android 90
TLSv1.3 TLS_AES_256_GCM_SHA384
clientsimulation-android X
TLSv1.3 TLS_AES_256_GCM_SHA384
clientsimulation-chrome 74 win10
TLSv1.3 TLS_AES_256_GCM_SHA384
clientsimulation-chrome 79 win10
TLSv1.3 TLS_AES_256_GCM_SHA384
clientsimulation-firefox 66 win81
TLSv1.3 TLS_AES_256_GCM_SHA384
clientsimulation-firefox 71 win10
TLSv1.3 TLS_AES_256_GCM_SHA384
Windows XP Internet Explorer 6
No connection
Windows 7 Internet Explorer 8
No connection
Windows XP Internet Explorer 8
No connection
Windows 7 Internet Explorer 11
TLSv1.2 ECDHE-RSA-AES256-SHA384
Windows 8.1 Internet Explorer 11
TLSv1.2 ECDHE-RSA-AES256-SHA384
clientsimulation-ie 11 winphone81
TLSv1.2 ECDHE-RSA-AES128-SHA256
Windows 10 Internet Explorer 11
TLSv1.2 ECDHE-RSA-AES256-GCM-SHA384
clientsimulation-edge 15 win10
TLSv1.2 ECDHE-RSA-AES256-GCM-SHA384
clientsimulation-edge 17 win10
TLSv1.2 ECDHE-RSA-AES256-GCM-SHA384
clientsimulation-opera 66 win10
TLSv1.3 TLS_AES_256_GCM_SHA384
clientsimulation-safari 9 ios9
TLSv1.2 ECDHE-RSA-AES256-GCM-SHA384
MacOSX 10.11 Safari 9
TLSv1.2 ECDHE-RSA-AES256-GCM-SHA384
MacOSX 10.12 Safari 10
TLSv1.2 ECDHE-RSA-AES256-GCM-SHA384
clientsimulation-safari 121 ios 122
TLSv1.3 TLS_AES_256_GCM_SHA384
clientsimulation-safari 130 osx 10146
TLSv1.3 TLS_AES_256_GCM_SHA384
iOS 9 App Transport Security 9
TLSv1.2 ECDHE-RSA-AES256-GCM-SHA384
Java 6 update 45
No connection
Java 7 update 25
No connection
clientsimulation-java 8u161
TLSv1.2 ECDHE-RSA-AES256-GCM-SHA384
clientsimulation-java1102
TLSv1.3 TLS_AES_256_GCM_SHA384
clientsimulation-java1201
TLSv1.3 TLS_AES_256_GCM_SHA384
OpenSSL 1.0.2e
TLSv1.2 ECDHE-RSA-AES256-GCM-SHA384
clientsimulation-openssl 110l
TLSv1.2 ECDHE-RSA-CHACHA20-POLY1305
clientsimulation-openssl 111d
TLSv1.3 TLS_AES_256_GCM_SHA384
clientsimulation-thunderbird 68 3 1
TLSv1.3 TLS_AES_256_GCM_SHA384