TLS score
F

SSL/TLS configuration assessment

Certificates

As pem
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
Issuer
countryName=US, organizationName=DigiCert Inc, commonName=DigiCert SHA2 Secure Server CA
Subject
countryName=DE, stateOrProvinceName=Berlin, localityName=Berlin, organizationName=Zalando SE, organizationalUnitName=Technology, commonName=*.ztat.net
Hpkp pin
qxs/xJWs32gX6gDsTS4/Ed0Vq+LzGwGSLA12EJCvX/Y=
NotAfter
2020-03-25 12:00:00
NotBefore
2018-12-25 00:00:00
PublicKey
Size
2048
Exponent
65537
Algorithm
RSA
SerialNumber
1714888362262749753856193298103195727
SignatureAlgorithm
sha256
SubjectAlternativeName
DNS
  • *.ztat.net
  • ztat.net
As pem
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
Issuer
countryName=US, organizationName=DigiCert Inc, organizationalUnitName=www.digicert.com, commonName=DigiCert Global Root CA
Subject
countryName=US, organizationName=DigiCert Inc, commonName=DigiCert SHA2 Secure Server CA
Hpkp pin
5kJvNEMw0KjrCAu7eXY5HZdvyCS13BbA0VJG1RSP91w=
NotAfter
2023-03-08 12:00:00
NotBefore
2013-03-08 12:00:00
PublicKey
Size
2048
Exponent
65537
Algorithm
RSA
SerialNumber
2646203786665923649276728595390119057
SignatureAlgorithm
sha256

Ciphersuites

Key size
256
Ssl version
TLSV1
Is anonymous
False
Openssl name
AES256-SHA
Post handshake response
-
Key size
128
Ssl version
TLSV1
Is anonymous
False
Openssl name
AES128-SHA
Post handshake response
-
Key size
112
Ssl version
TLSV1
Is anonymous
False
Openssl name
DES-CBC3-SHA
Post handshake response
-
Key size
256
Ssl version
TLSV1
Is anonymous
False
Openssl name
ECDHE-RSA-AES256-SHA
Post handshake response
-
Key size
128
Ssl version
TLSV1
Is anonymous
False
Openssl name
ECDHE-RSA-AES128-SHA
Post handshake response
-
Key size
256
Ssl version
TLSV1_1
Is anonymous
False
Openssl name
AES256-SHA
Post handshake response
-
Key size
128
Ssl version
TLSV1_1
Is anonymous
False
Openssl name
AES128-SHA
Post handshake response
-
Key size
112
Ssl version
TLSV1_1
Is anonymous
False
Openssl name
DES-CBC3-SHA
Post handshake response
-
Key size
256
Ssl version
TLSV1_1
Is anonymous
False
Openssl name
ECDHE-RSA-AES256-SHA
Post handshake response
-
Key size
128
Ssl version
TLSV1_1
Is anonymous
False
Openssl name
ECDHE-RSA-AES128-SHA
Post handshake response
-
Key size
256
Ssl version
TLSV1_2
Is anonymous
False
Openssl name
AES256-GCM-SHA384
Post handshake response
-
Key size
256
Ssl version
TLSV1_2
Is anonymous
False
Openssl name
AES256-SHA256
Post handshake response
-
Key size
256
Ssl version
TLSV1_2
Is anonymous
False
Openssl name
AES256-SHA
Post handshake response
-
Key size
128
Ssl version
TLSV1_2
Is anonymous
False
Openssl name
AES128-GCM-SHA256
Post handshake response
-
Key size
128
Ssl version
TLSV1_2
Is anonymous
False
Openssl name
AES128-SHA256
Post handshake response
-
Key size
128
Ssl version
TLSV1_2
Is anonymous
False
Openssl name
AES128-SHA
Post handshake response
-
Key size
112
Ssl version
TLSV1_2
Is anonymous
False
Openssl name
DES-CBC3-SHA
Post handshake response
-
Key size
256
Ssl version
TLSV1_2
Is anonymous
False
Openssl name
ECDHE-RSA-CHACHA20-POLY1305
Post handshake response
-
Key size
256
Ssl version
TLSV1_2
Is anonymous
False
Openssl name
ECDHE-RSA-AES256-GCM-SHA384
Post handshake response
-
Key size
256
Ssl version
TLSV1_2
Is anonymous
False
Openssl name
ECDHE-RSA-AES256-SHA384
Post handshake response
-
Key size
256
Ssl version
TLSV1_2
Is anonymous
False
Openssl name
ECDHE-RSA-AES256-SHA
Post handshake response
-
Key size
128
Ssl version
TLSV1_2
Is anonymous
False
Openssl name
ECDHE-RSA-AES128-GCM-SHA256
Post handshake response
-
Key size
128
Ssl version
TLSV1_2
Is anonymous
False
Openssl name
ECDHE-RSA-AES128-SHA256
Post handshake response
-
Key size
128
Ssl version
TLSV1_2
Is anonymous
False
Openssl name
ECDHE-RSA-AES128-SHA
Post handshake response
-
We use and contribute to the great sslyze open source project!
Fully automated RESTful API is now available. Subscribe for your free trial today!