You can not select more than 25 topics
Topics must start with a letter or number, can include dashes ('-') and can be up to 35 characters long.
1699 lines
46 KiB
1699 lines
46 KiB
<!DOCTYPE HTML PUBLIC "-//W3C//DTD HTML 4.01 Transitional//EN">
|
|
|
|
<html>
|
|
<head>
|
|
<title>Qualys SSL Labs - Projects / SSL Server Test / fortuneo.fr</title>
|
|
<script type="text/javascript" src="/includes/jquery-1.11.0.min.js"></script>
|
|
<link href="/includes/ssllabs.css" rel="styleSheet" type="text/css">
|
|
<link href="/includes/report.css" rel="styleSheet" type="text/css">
|
|
|
|
<meta http-equiv="Content-Type" content="text/html;charset=utf-8" />
|
|
|
|
<style>
|
|
|
|
.infoBox {
|
|
border: 1px solid #bbbbbb;
|
|
padding: 5px;
|
|
background: #fffacd;
|
|
margin-top: 10px;
|
|
font-weight: bold;
|
|
color: #222222;
|
|
}
|
|
|
|
.highlightBox {
|
|
border: 1px solid #888888;
|
|
padding: 5px;
|
|
background: #7ed84d;
|
|
margin-top: 10px;
|
|
font-weight: bold;
|
|
color: #222222;
|
|
}
|
|
|
|
.noticeBox {
|
|
border: 1px solid #bbbbbb;
|
|
padding: 5px;
|
|
background: #CCEEFF;
|
|
margin-top: 10px;
|
|
font-weight: bold;
|
|
color: #222222;
|
|
}
|
|
|
|
.warningBox {
|
|
border: 1px solid #bbbbbb;
|
|
padding: 5px;
|
|
background: #FFCF79;
|
|
margin-top: 10px;
|
|
font-weight: bold;
|
|
color: #222222;
|
|
}
|
|
|
|
.errorBox {
|
|
border: 1px solid #bbbbbb;
|
|
padding: 5px;
|
|
background: #FFCCCB;
|
|
margin-top: 10px;
|
|
font-weight: bold;
|
|
color: #222222;
|
|
}
|
|
|
|
</style>
|
|
</head>
|
|
|
|
<body>
|
|
|
|
|
|
<div id="page">
|
|
|
|
|
|
<div id="header">
|
|
|
|
<div id="logo">
|
|
<a href="/index.html"><img src="/images/qualys-ssl-labs-logo.png" width="348" height="55" alt="SSL Labs logo" title="SSL Labs logo"></a>
|
|
</div>
|
|
|
|
<div id="navigation">
|
|
<a class="link" href="/index.html">Home</a>
|
|
<a class="link" href="/projects/index.html">Projects</a>
|
|
<a class="link" href="http://www.qualys.com">Qualys.com</a>
|
|
<a class="link" href="/about/contact.html">Contact</a>
|
|
</div>
|
|
|
|
<br clear="all" />
|
|
</div>
|
|
|
|
<div id="breadcrumbs">
|
|
<div class=real style="float: left">
|
|
<b>You are here: </b>
|
|
<a href="/index.html">Home</a> > <a href="/projects/index.html">Projects</a>
|
|
> <a href="/ssltest/index.html">SSL Server Test</a> >
|
|
<a href="analyze.html?d=fortuneo.fr">fortuneo.fr</a> > 194.51.217.72
|
|
</div>
|
|
|
|
</div>
|
|
|
|
<div id="main">
|
|
<div class="reportTitle">SSL Report: <span class="url">
|
|
<a href="analyze.html?d=fortuneo.fr">fortuneo.fr</a>
|
|
</span> <span class=ip> (194.51.217.72)</span> </div>
|
|
<div class="reportTime" style="float: left">
|
|
<b>Assessed on:</b> Wed Sep 17 15:53:51 UTC 2014
|
|
|
|
| <a href="clearCache.html?d=fortuneo.fr">Clear cache</a>
|
|
</div>
|
|
|
|
<div style="float:right; font-weight: bold; font-size: 20px"><a href="/ssltest/index.html">Scan Another »</a></div>
|
|
<br clear="all"/>
|
|
|
|
<div id="appleTestDiv" style="display: none">
|
|
<div class="errorBox"><center>
|
|
Due to a recently discovered bug in Apple's code, your browser is exposed to MITM attacks. <a href="/ssltest/viewMyClient.html">Click here</a> for more information.
|
|
</center></div><br>
|
|
</div>
|
|
|
|
|
|
|
|
<div align="center">
|
|
|
|
|
|
<div class="reportSection">
|
|
<div class="sectionTitle">Summary</div>
|
|
<div class="sectionBody">
|
|
|
|
<div id="rating">
|
|
<div class="ratingTitle">Overall Rating</div>
|
|
|
|
<div class="rating_a" style="margin-bottom: 8px">
|
|
B
|
|
</div>
|
|
|
|
|
|
|
|
|
|
|
|
|
|
</div>
|
|
|
|
<div id="chart">
|
|
|
|
<div class="chartScale">
|
|
<div class="chartScaleDiv"></div>
|
|
<div class="chartScaleDiv"></div>
|
|
<div class="chartScaleDiv"></div>
|
|
<div class="chartScaleDiv"></div>
|
|
<div class="chartScaleDiv"></div>
|
|
<div class="chartScaleDiv" style="margin:0px"></div>
|
|
<div class="chartScaleLabelRow">
|
|
<div class="chartScaleLabel">0</div>
|
|
<div class="chartScaleLabel">20</div>
|
|
<div class="chartScaleLabel">40</div>
|
|
<div class="chartScaleLabel">60</div>
|
|
<div class="chartScaleLabel">80</div>
|
|
<div class="chartScaleLabel">100</div>
|
|
</div>
|
|
</div>
|
|
|
|
<div class="chartBody">
|
|
<div class="chartRow">
|
|
<div class="chartLabel">Certificate</div>
|
|
<div class="chartBar_g" style="width:300px"> </div>
|
|
<div class="chartValue g">100</div>
|
|
</div>
|
|
|
|
<div class="chartRow">
|
|
<div class="chartLabel">Protocol Support</div>
|
|
<div class="chartBar_a" style="width:210px"> </div>
|
|
<div class="chartValue a">70</div>
|
|
</div>
|
|
|
|
<div class="chartRow">
|
|
<div class="chartLabel">Key Exchange</div>
|
|
<div class="chartBar_g" style="width:240px"> </div>
|
|
<div class="chartValue g">80</div>
|
|
</div>
|
|
|
|
<div class="chartRow">
|
|
<div class="chartLabel">Cipher Strength</div>
|
|
<div class="chartBar_g" style="width:270px"> </div>
|
|
<div class="chartValue g">90</div>
|
|
</div>
|
|
</div>
|
|
|
|
</div>
|
|
|
|
<br clear="all">
|
|
|
|
<div class="infoBox">
|
|
Visit our <a href="/projects/documentation/index.html">documentation page</a>
|
|
for more information, configuration guides, and books. Known issues are documented
|
|
<a href="https://community.qualys.com/docs/DOC-4865">here</a>.
|
|
</div>
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
<div class="warningBox">
|
|
Certificate uses SHA1. When renewing, ensure you upgrade to SHA256.
|
|
<a href="https://community.qualys.com/blogs/securitylabs/2014/09/09/sha1-deprecation-what-you-need-to-know"><span class="moreInfo">MORE INFO »</span></a>
|
|
</div>
|
|
|
|
|
|
<div class="warningBox">
|
|
The server supports only older protocols, but not the current best TLS 1.2. Grade capped to B.
|
|
</div>
|
|
|
|
|
|
|
|
|
|
<div class="warningBox">
|
|
The server does not support Forward Secrecy with the reference browsers.
|
|
<a href="https://en.wikipedia.org/wiki/Forward_secrecy"><span class="moreInfo">MORE INFO »</span></a>
|
|
</div>
|
|
|
|
|
|
|
|
|
|
|
|
|
|
</div>
|
|
</div>
|
|
|
|
|
|
|
|
|
|
<div class="reportSection">
|
|
<div class="sectionTitle">Authentication</div>
|
|
<div class="sectionBody">
|
|
|
|
<!-- CERTIFICATE -->
|
|
<img class="tIcon" src="/images/icon-certificate.gif" width="65" height="50" alt="">
|
|
<table class="reportTable">
|
|
<thead>
|
|
<tr>
|
|
<td class="tableHead" colspan="2">Server Key and Certificate #1</td>
|
|
</tr>
|
|
</thead>
|
|
<tbody>
|
|
|
|
<tr class="tableRow">
|
|
<td class="tableLabel">Common names</td>
|
|
<td class="tableCell">www.fortuneo.fr</td>
|
|
</tr>
|
|
|
|
<tr class="tableRow">
|
|
<td class="tableLabelTop">Alternative names</td>
|
|
<td class="tableCell"> www.fortuneo.fr </td>
|
|
</tr>
|
|
|
|
<tr class="tableRow">
|
|
<td class="tableLabel">Prefix handling</td>
|
|
<td class="tableCell"><font color=#F88017>Not valid for "fortuneo.fr" <b>CONFUSING</b></font></td>
|
|
</tr>
|
|
|
|
|
|
|
|
|
|
<tr class="tableRow">
|
|
<td class="tableLabel">Valid from</td>
|
|
<td class="tableCell">Mon Jan 06 00:00:00 UTC 2014</td>
|
|
</tr>
|
|
|
|
<tr class="tableRow">
|
|
<td class="tableLabel">Valid until</td>
|
|
<td class="tableCell">Mon Feb 16 23:59:59 UTC 2015 (expires in 4 months and 32 days)</td>
|
|
</tr>
|
|
|
|
<tr class="tableRow">
|
|
<td class="tableLabel">Key</td>
|
|
<td class="tableCell">RSA 2048 bits</td>
|
|
</tr>
|
|
|
|
|
|
|
|
<tr class="tableRow">
|
|
<td class="tableLabel"> Weak key (Debian) </td>
|
|
<td class="tableCell"> No </td>
|
|
</tr>
|
|
|
|
<tr class="tableRow">
|
|
<td class="tableLabel">Issuer</td>
|
|
<td class="tableCell">VeriSign Class 3 Secure Server CA - G3</td>
|
|
</tr>
|
|
|
|
<tr class="tableRow">
|
|
<td class="tableLabel"><font color=#F88017>Signature algorithm</font></td>
|
|
<td class="tableCell"><font color=#F88017>SHA1withRSA <b>WEAK</b></font></td>
|
|
</tr>
|
|
|
|
<tr class="tableRow">
|
|
<td class="tableLabel">Extended Validation</td>
|
|
<td class="tableCell">No</td>
|
|
</tr>
|
|
|
|
<tr class="tableRow">
|
|
<td class="tableLabel">Revocation information</td>
|
|
<td class="tableCell">
|
|
CRL, OCSP </td>
|
|
</tr>
|
|
|
|
<tr class="tableRow">
|
|
<td class="tableLabel">Revocation status</td>
|
|
<td class="tableCell">Good (not revoked)</td>
|
|
</tr>
|
|
|
|
<tr class="tableRow">
|
|
<td class="tableLabel"><font color=green>Trusted</font></td>
|
|
<td class="tableCell"><font color=green><b>Yes</b></font></td>
|
|
</tr>
|
|
|
|
</tbody>
|
|
</table>
|
|
|
|
<br><br>
|
|
|
|
<img class="tIcon" src="/images/icon-certificates.png" width="65" height="50" alt="">
|
|
<table class="reportTable">
|
|
<thead>
|
|
<tr>
|
|
<td class="tableHead" colspan="2">Additional Certificates (if supplied)</td>
|
|
</tr>
|
|
</thead>
|
|
<tbody>
|
|
|
|
<tr class="tableRow">
|
|
<td class="tableLabel">Certificates provided</td>
|
|
<td class="tableCell">3 (4100 bytes)</td>
|
|
</tr>
|
|
|
|
<tr class="tableRow">
|
|
<td class="tableLabel">Chain issues</td>
|
|
<td class="tableCell">None</font></td>
|
|
</tr>
|
|
|
|
<tr class="tableSeparator"><td class="tableSubHead" colspan="2">#2</td></tr>
|
|
|
|
<tr class="tableRow">
|
|
<td class="tableLabel">Subject</td>
|
|
<td class="tableCell">VeriSign Class 3 Secure Server CA - G3 <br>
|
|
<span style="color: grey">SHA1: 5deb8f339e264c19f6686f5f8f32b54a4c46b476</span></td>
|
|
</tr>
|
|
<tr class="tableRow">
|
|
<td class="tableLabel">Valid until</td>
|
|
<td class="tableCell">Fri Feb 07 23:59:59 UTC 2020 (expires in 5 years and 4 months)</td>
|
|
</tr>
|
|
<tr class="tableRow">
|
|
<td class="tableLabel">Key</td>
|
|
<td class="tableCell">RSA 2048 bits</td>
|
|
</tr>
|
|
<tr>
|
|
<td class="tableLabel">Issuer</td>
|
|
<td class="tableCell">VeriSign Class 3 Public Primary Certification Authority - G5</td>
|
|
</tr>
|
|
|
|
<tr class="tableRow">
|
|
<td class="tableLabel"><font color=#F88017>Signature algorithm</font></td>
|
|
<td class="tableCell"><font color=#F88017>SHA1withRSA
|
|
<b>WEAK</b></font></td>
|
|
|
|
<tr class="tableSeparator"><td class="tableSubHead" colspan="2">#3</td></tr>
|
|
|
|
<tr class="tableRow">
|
|
<td class="tableLabel">Subject</td>
|
|
<td class="tableCell">VeriSign Class 3 Public Primary Certification Authority - G5 <br>
|
|
<span style="color: grey">SHA1: f4a80a0cd1e6cf190b8cbc6fbc991711d482c9d0</span></td>
|
|
</tr>
|
|
<tr class="tableRow">
|
|
<td class="tableLabel">Valid until</td>
|
|
<td class="tableCell">Sun Nov 07 23:59:59 UTC 2021 (expires in 7 years and 1 month)</td>
|
|
</tr>
|
|
<tr class="tableRow">
|
|
<td class="tableLabel">Key</td>
|
|
<td class="tableCell">RSA 2048 bits</td>
|
|
</tr>
|
|
<tr>
|
|
<td class="tableLabel">Issuer</td>
|
|
<td class="tableCell">VeriSign / Class 3 Public Primary Certification Authority</td>
|
|
</tr>
|
|
|
|
<tr class="tableRow">
|
|
<td class="tableLabel"><font color=#F88017>Signature algorithm</font></td>
|
|
<td class="tableCell"><font color=#F88017>SHA1withRSA
|
|
<b>WEAK</b></font></td>
|
|
|
|
|
|
</tbody>
|
|
</table>
|
|
|
|
<br><br>
|
|
|
|
<img class="tIcon" src="/images/icon-chain.gif" width="65" height="50" alt="">
|
|
<table class="reportTable">
|
|
<thead>
|
|
<tr>
|
|
<td class="tableHead" colspan="3">Certification Paths</td>
|
|
</tr>
|
|
</thead>
|
|
<tbody>
|
|
|
|
<tr class="tableSeparator"><td class="tableSubHead" colspan="3">Path #1: Trusted </td></tr>
|
|
|
|
<tr class="tableRow">
|
|
<td class="tableCell" style="width: 75; text-align: right"><b>1</b></td>
|
|
|
|
<td class="tableCell" style="width: 125; text-align: center; padding-left: 10px; padding-right: 10px; font-size: 11px">
|
|
|
|
Sent by server
|
|
</td>
|
|
|
|
<td class="tableCell">www.fortuneo.fr
|
|
|
|
|
|
<br>
|
|
<span style="color: grey">SHA1: 68b4a2cb9c42d19e5ff46036374191b88e2c80b4</span>
|
|
<br>
|
|
|
|
RSA 2048 bits
|
|
/
|
|
<font color=#F88017>SHA1withRSA</font>
|
|
|
|
|
|
|
|
|
|
<br><font color=#F88017><b>WEAK SIGNATURE</b></font> </td>
|
|
</tr>
|
|
<tr class="tableRow">
|
|
<td class="tableCell" style="width: 75; text-align: right"><b>2</b></td>
|
|
|
|
<td class="tableCell" style="width: 125; text-align: center; padding-left: 10px; padding-right: 10px; font-size: 11px">
|
|
|
|
Sent by server
|
|
</td>
|
|
|
|
<td class="tableCell">VeriSign Class 3 Secure Server CA - G3
|
|
|
|
|
|
<br>
|
|
<span style="color: grey">SHA1: 5deb8f339e264c19f6686f5f8f32b54a4c46b476</span>
|
|
<br>
|
|
|
|
RSA 2048 bits
|
|
/
|
|
<font color=#F88017>SHA1withRSA</font>
|
|
|
|
|
|
|
|
|
|
<br><font color=#F88017><b>WEAK SIGNATURE</b></font> </td>
|
|
</tr>
|
|
<tr class="tableRow">
|
|
<td class="tableCell" style="width: 75; text-align: right"><b>3</b></td>
|
|
|
|
<td class="tableCell" style="width: 125; text-align: center; padding-left: 10px; padding-right: 10px; font-size: 11px">
|
|
|
|
<font color=green>In trust store</font>
|
|
</td>
|
|
|
|
<td class="tableCell">VeriSign Class 3 Public Primary Certification Authority - G5
|
|
|
|
|
|
<br>
|
|
<span style="color: grey">SHA1: 4eb6d578499b1ccf5f581ead56be3d9b6744a5e5</span>
|
|
<br>
|
|
|
|
RSA 2048 bits
|
|
/
|
|
SHA1withRSA
|
|
|
|
|
|
|
|
|
|
<br><font color="gray">Weak or insecure signature, but no impact on root certificates</b></font> </td>
|
|
</tr>
|
|
|
|
|
|
|
|
</tbody>
|
|
</table>
|
|
|
|
</div>
|
|
</div>
|
|
|
|
|
|
<div class="reportSection">
|
|
<div class="sectionTitle">Configuration</div>
|
|
<div class="sectionBody">
|
|
|
|
<!-- PROTOCOLS -->
|
|
<img class="tIcon" src="/images/icon-protocol.gif" width="65" height="50" alt="">
|
|
<table class="reportTable">
|
|
<thead>
|
|
<tr>
|
|
<td class="tableHead" colspan="2">Protocols</td>
|
|
</tr>
|
|
</thead>
|
|
<tbody>
|
|
<tr class="tableRow">
|
|
<td class="tableLeft"><font color="#F88017">TLS 1.2</font></td>
|
|
<td class="tableRight"><font color="#F88017">No</font></td>
|
|
</tr>
|
|
|
|
<tr class="tableRow">
|
|
<td class="tableLeft">TLS 1.1</td>
|
|
<td class="tableRight"> No </td>
|
|
</tr>
|
|
<tr class="tableRow">
|
|
<td class="tableLeft">TLS 1.0</td>
|
|
<td class="tableRight"> Yes </td>
|
|
</tr>
|
|
|
|
<tr class="tableRow">
|
|
<td class="tableLeft">SSL 3</td>
|
|
<td class="tableRight">Yes</td>
|
|
</tr>
|
|
|
|
<tr class="tableRow">
|
|
<td class="tableLeft">SSL 2</td>
|
|
<td class="tableRight">No</td>
|
|
</tr>
|
|
|
|
|
|
|
|
|
|
</tbody>
|
|
</table>
|
|
|
|
<br><br>
|
|
|
|
<img class="tIcon" src="/images/icon-cipher.gif" width="65" height="50" alt="">
|
|
<table class="reportTable">
|
|
|
|
<thead>
|
|
<tr>
|
|
<td class="tableHead" colspan="3">Cipher Suites (sorted by strength; the server has no preference)</td>
|
|
</tr>
|
|
</thead>
|
|
|
|
<tbody>
|
|
|
|
<tr class="tableRow">
|
|
<td class="tableLeft">TLS_RSA_WITH_RC4_128_MD5 (<code>0x4</code>)
|
|
|
|
</td>
|
|
<td class="tableRight">128</td>
|
|
</tr>
|
|
<tr class="tableRow">
|
|
<td class="tableLeft">TLS_RSA_WITH_RC4_128_SHA (<code>0x5</code>)
|
|
|
|
</td>
|
|
<td class="tableRight">128</td>
|
|
</tr>
|
|
<tr class="tableRow">
|
|
<td class="tableLeft">TLS_RSA_WITH_IDEA_CBC_SHA (<code>0x7</code>)
|
|
|
|
</td>
|
|
<td class="tableRight">128</td>
|
|
</tr>
|
|
<tr class="tableRow">
|
|
<td class="tableLeft">TLS_RSA_WITH_AES_128_CBC_SHA (<code>0x2f</code>)
|
|
|
|
</td>
|
|
<td class="tableRight">128</td>
|
|
</tr>
|
|
<tr class="tableRow">
|
|
<td class="tableLeft">TLS_DHE_RSA_WITH_AES_128_CBC_SHA (<code>0x33</code>)
|
|
<span class=dhParams>DH 1024 bits (p: 128, g: 1, Ys: 128) FS</span>
|
|
</td>
|
|
<td class="tableRight">128</td>
|
|
</tr>
|
|
<tr class="tableRow">
|
|
<td class="tableLeft">TLS_RSA_WITH_3DES_EDE_CBC_SHA (<code>0xa</code>)
|
|
|
|
</td>
|
|
<td class="tableRight">112</td>
|
|
</tr>
|
|
<tr class="tableRow">
|
|
<td class="tableLeft">TLS_DHE_RSA_WITH_3DES_EDE_CBC_SHA (<code>0x16</code>)
|
|
<span class=dhParams>DH 1024 bits (p: 128, g: 1, Ys: 128) FS</span>
|
|
</td>
|
|
<td class="tableRight">112</td>
|
|
</tr>
|
|
<tr class="tableRow">
|
|
<td class="tableLeft">TLS_RSA_WITH_AES_256_CBC_SHA (<code>0x35</code>)
|
|
|
|
</td>
|
|
<td class="tableRight">256</td>
|
|
</tr>
|
|
<tr class="tableRow">
|
|
<td class="tableLeft">TLS_DHE_RSA_WITH_AES_256_CBC_SHA (<code>0x39</code>)
|
|
<span class=dhParams>DH 1024 bits (p: 128, g: 1, Ys: 128) FS</span>
|
|
</td>
|
|
<td class="tableRight">256</td>
|
|
</tr>
|
|
<tr class="tableRow">
|
|
<td class="tableLeft">TLS_RSA_WITH_IDEA_CBC_SHA (<code>0x7</code>)
|
|
|
|
</td>
|
|
<td class="tableRight">128</td>
|
|
</tr>
|
|
|
|
|
|
|
|
</tbody>
|
|
</table>
|
|
|
|
<br><br>
|
|
|
|
<img class="tIcon" src="/images/icon-cipher.gif" width="65" height="50" alt="">
|
|
<table class="reportTable">
|
|
<thead>
|
|
<tr>
|
|
<td class="tableHead" colspan="4">Handshake Simulation</td>
|
|
</tr>
|
|
</thead>
|
|
<tbody>
|
|
|
|
|
|
<tr>
|
|
|
|
<td class="tableLeft" width="180">
|
|
<a href="viewClient.html?name=Android&version=2.3.7">Android 2.3.7</a>
|
|
<span class="dhParams" style="color: #F88017; cursor: help"
|
|
title="Browser does not support Server Name Indication.">No SNI <sup>2</sup></span> </td>
|
|
|
|
|
|
<td class="tableLeft" width="60">
|
|
TLS 1.0
|
|
</td>
|
|
|
|
<td class="tableLeft"><span style="font-size: 11px">
|
|
TLS_RSA_WITH_RC4_128_MD5 (<code>0x4</code>)
|
|
<span class="dhParams">
|
|
<font color="#F88017">No FS</font>
|
|
<font color="#F88017"> RC4</font>
|
|
</span></span>
|
|
</td>
|
|
|
|
<td class="tableRight">
|
|
128
|
|
</td>
|
|
|
|
|
|
</tr>
|
|
<tr>
|
|
|
|
<td class="tableLeft" width="180">
|
|
<a href="viewClient.html?name=Android&version=4.0.4">Android 4.0.4</a>
|
|
</td>
|
|
|
|
|
|
<td class="tableLeft" width="60">
|
|
TLS 1.0
|
|
</td>
|
|
|
|
<td class="tableLeft"><span style="font-size: 11px">
|
|
TLS_DHE_RSA_WITH_AES_256_CBC_SHA (<code>0x39</code>)
|
|
<span class="dhParams">
|
|
<span class="highlight">FS</span>
|
|
</span></span>
|
|
</td>
|
|
|
|
<td class="tableRight">
|
|
256
|
|
</td>
|
|
|
|
|
|
</tr>
|
|
<tr>
|
|
|
|
<td class="tableLeft" width="180">
|
|
<a href="viewClient.html?name=Android&version=4.1.1">Android 4.1.1</a>
|
|
</td>
|
|
|
|
|
|
<td class="tableLeft" width="60">
|
|
TLS 1.0
|
|
</td>
|
|
|
|
<td class="tableLeft"><span style="font-size: 11px">
|
|
TLS_DHE_RSA_WITH_AES_256_CBC_SHA (<code>0x39</code>)
|
|
<span class="dhParams">
|
|
<span class="highlight">FS</span>
|
|
</span></span>
|
|
</td>
|
|
|
|
<td class="tableRight">
|
|
256
|
|
</td>
|
|
|
|
|
|
</tr>
|
|
<tr>
|
|
|
|
<td class="tableLeft" width="180">
|
|
<a href="viewClient.html?name=Android&version=4.2.2">Android 4.2.2</a>
|
|
</td>
|
|
|
|
|
|
<td class="tableLeft" width="60">
|
|
TLS 1.0
|
|
</td>
|
|
|
|
<td class="tableLeft"><span style="font-size: 11px">
|
|
TLS_DHE_RSA_WITH_AES_256_CBC_SHA (<code>0x39</code>)
|
|
<span class="dhParams">
|
|
<span class="highlight">FS</span>
|
|
</span></span>
|
|
</td>
|
|
|
|
<td class="tableRight">
|
|
256
|
|
</td>
|
|
|
|
|
|
</tr>
|
|
<tr>
|
|
|
|
<td class="tableLeft" width="180">
|
|
<a href="viewClient.html?name=Android&version=4.3">Android 4.3</a>
|
|
</td>
|
|
|
|
|
|
<td class="tableLeft" width="60">
|
|
TLS 1.0
|
|
</td>
|
|
|
|
<td class="tableLeft"><span style="font-size: 11px">
|
|
TLS_DHE_RSA_WITH_AES_256_CBC_SHA (<code>0x39</code>)
|
|
<span class="dhParams">
|
|
<span class="highlight">FS</span>
|
|
</span></span>
|
|
</td>
|
|
|
|
<td class="tableRight">
|
|
256
|
|
</td>
|
|
|
|
|
|
</tr>
|
|
<tr>
|
|
|
|
<td class="tableLeft" width="180">
|
|
<a href="viewClient.html?name=Android&version=4.4.2">Android 4.4.2</a>
|
|
</td>
|
|
|
|
|
|
<td class="tableLeft" width="60">
|
|
TLS 1.0
|
|
</td>
|
|
|
|
<td class="tableLeft"><span style="font-size: 11px">
|
|
TLS_DHE_RSA_WITH_AES_256_CBC_SHA (<code>0x39</code>)
|
|
<span class="dhParams">
|
|
<span class="highlight">FS</span>
|
|
</span></span>
|
|
</td>
|
|
|
|
<td class="tableRight">
|
|
256
|
|
</td>
|
|
|
|
|
|
</tr>
|
|
<tr>
|
|
|
|
<td class="tableLeft" width="180">
|
|
<a href="viewClient.html?name=BingBot&version=Dec%202013">BingBot Dec 2013</a>
|
|
<span class="dhParams" style="color: #F88017; cursor: help"
|
|
title="Browser does not support Server Name Indication.">No SNI <sup>2</sup></span> </td>
|
|
|
|
|
|
<td class="tableLeft" width="60">
|
|
TLS 1.0
|
|
</td>
|
|
|
|
<td class="tableLeft"><span style="font-size: 11px">
|
|
TLS_RSA_WITH_AES_128_CBC_SHA (<code>0x2f</code>)
|
|
<span class="dhParams">
|
|
<font color="#F88017">No FS</font>
|
|
</span></span>
|
|
</td>
|
|
|
|
<td class="tableRight">
|
|
128
|
|
</td>
|
|
|
|
|
|
</tr>
|
|
<tr>
|
|
|
|
<td class="tableLeft" width="180">
|
|
<a href="viewClient.html?name=BingPreview&version=Jun%202014">BingPreview Jun 2014</a>
|
|
</td>
|
|
|
|
|
|
<td class="tableLeft" width="60">
|
|
TLS 1.0
|
|
</td>
|
|
|
|
<td class="tableLeft"><span style="font-size: 11px">
|
|
TLS_DHE_RSA_WITH_AES_256_CBC_SHA (<code>0x39</code>)
|
|
<span class="dhParams">
|
|
<span class="highlight">FS</span>
|
|
</span></span>
|
|
</td>
|
|
|
|
<td class="tableRight">
|
|
256
|
|
</td>
|
|
|
|
|
|
</tr>
|
|
<tr>
|
|
|
|
<td class="tableLeft" width="180">
|
|
<a href="viewClient.html?name=Chrome&version=37&platform=OS%20X">Chrome 37 / OS X</a>
|
|
<span class="dhParams"><font color=green>R</font></span> </td>
|
|
|
|
|
|
<td class="tableLeft" width="60">
|
|
TLS 1.0
|
|
</td>
|
|
|
|
<td class="tableLeft"><span style="font-size: 11px">
|
|
TLS_DHE_RSA_WITH_AES_128_CBC_SHA (<code>0x33</code>)
|
|
<span class="dhParams">
|
|
<span class="highlight">FS</span>
|
|
</span></span>
|
|
</td>
|
|
|
|
<td class="tableRight">
|
|
128
|
|
</td>
|
|
|
|
|
|
</tr>
|
|
<tr>
|
|
|
|
<td class="tableLeft" width="180">
|
|
<a href="viewClient.html?name=Firefox&version=24.2.0%20ESR&platform=Win%207">Firefox 24.2.0 ESR / Win 7</a>
|
|
</td>
|
|
|
|
|
|
<td class="tableLeft" width="60">
|
|
TLS 1.0
|
|
</td>
|
|
|
|
<td class="tableLeft"><span style="font-size: 11px">
|
|
TLS_DHE_RSA_WITH_AES_256_CBC_SHA (<code>0x39</code>)
|
|
<span class="dhParams">
|
|
<span class="highlight">FS</span>
|
|
</span></span>
|
|
</td>
|
|
|
|
<td class="tableRight">
|
|
256
|
|
</td>
|
|
|
|
|
|
</tr>
|
|
<tr>
|
|
|
|
<td class="tableLeft" width="180">
|
|
<a href="viewClient.html?name=Firefox&version=32&platform=OS%20X">Firefox 32 / OS X</a>
|
|
<span class="dhParams"><font color=green>R</font></span> </td>
|
|
|
|
|
|
<td class="tableLeft" width="60">
|
|
TLS 1.0
|
|
</td>
|
|
|
|
<td class="tableLeft"><span style="font-size: 11px">
|
|
TLS_DHE_RSA_WITH_AES_128_CBC_SHA (<code>0x33</code>)
|
|
<span class="dhParams">
|
|
<span class="highlight">FS</span>
|
|
</span></span>
|
|
</td>
|
|
|
|
<td class="tableRight">
|
|
128
|
|
</td>
|
|
|
|
|
|
</tr>
|
|
<tr>
|
|
|
|
<td class="tableLeft" width="180">
|
|
<a href="viewClient.html?name=Googlebot&version=Jun%202014">Googlebot Jun 2014</a>
|
|
</td>
|
|
|
|
|
|
<td class="tableLeft" width="60">
|
|
TLS 1.0
|
|
</td>
|
|
|
|
<td class="tableLeft"><span style="font-size: 11px">
|
|
TLS_RSA_WITH_RC4_128_SHA (<code>0x5</code>)
|
|
<span class="dhParams">
|
|
<font color="#F88017">No FS</font>
|
|
<font color="#F88017"> RC4</font>
|
|
</span></span>
|
|
</td>
|
|
|
|
<td class="tableRight">
|
|
128
|
|
</td>
|
|
|
|
|
|
</tr>
|
|
<tr>
|
|
|
|
<td class="tableLeft" width="180">
|
|
<a href="viewClient.html?name=IE&version=6&platform=XP">IE 6 / XP</a>
|
|
<span class="dhParams" style="color: #F88017; cursor: help"
|
|
title="Browser effectively does not support Forward Secrecy.">No FS <sup>1</sup></span> <span class="dhParams" style="color: #F88017; cursor: help"
|
|
title="Browser does not support Server Name Indication.">No SNI <sup>2</sup></span> </td>
|
|
|
|
|
|
<td class="tableLeft" width="60">
|
|
SSL 3
|
|
</td>
|
|
|
|
<td class="tableLeft"><span style="font-size: 11px">
|
|
TLS_RSA_WITH_RC4_128_MD5 (<code>0x4</code>)
|
|
<span class="dhParams">
|
|
<font color="grey">No FS</font>
|
|
<font color="#F88017"> RC4</font>
|
|
</span></span>
|
|
</td>
|
|
|
|
<td class="tableRight">
|
|
128
|
|
</td>
|
|
|
|
|
|
</tr>
|
|
<tr>
|
|
|
|
<td class="tableLeft" width="180">
|
|
<a href="viewClient.html?name=IE&version=7&platform=Vista">IE 7 / Vista</a>
|
|
</td>
|
|
|
|
|
|
<td class="tableLeft" width="60">
|
|
TLS 1.0
|
|
</td>
|
|
|
|
<td class="tableLeft"><span style="font-size: 11px">
|
|
TLS_RSA_WITH_AES_128_CBC_SHA (<code>0x2f</code>)
|
|
<span class="dhParams">
|
|
<font color="#F88017">No FS</font>
|
|
</span></span>
|
|
</td>
|
|
|
|
<td class="tableRight">
|
|
128
|
|
</td>
|
|
|
|
|
|
</tr>
|
|
<tr>
|
|
|
|
<td class="tableLeft" width="180">
|
|
<a href="viewClient.html?name=IE&version=8&platform=XP">IE 8 / XP</a>
|
|
<span class="dhParams" style="color: #F88017; cursor: help"
|
|
title="Browser effectively does not support Forward Secrecy.">No FS <sup>1</sup></span> <span class="dhParams" style="color: #F88017; cursor: help"
|
|
title="Browser does not support Server Name Indication.">No SNI <sup>2</sup></span> </td>
|
|
|
|
|
|
<td class="tableLeft" width="60">
|
|
TLS 1.0
|
|
</td>
|
|
|
|
<td class="tableLeft"><span style="font-size: 11px">
|
|
TLS_RSA_WITH_RC4_128_MD5 (<code>0x4</code>)
|
|
<span class="dhParams">
|
|
<font color="grey">No FS</font>
|
|
<font color="#F88017"> RC4</font>
|
|
</span></span>
|
|
</td>
|
|
|
|
<td class="tableRight">
|
|
128
|
|
</td>
|
|
|
|
|
|
</tr>
|
|
<tr>
|
|
|
|
<td class="tableLeft" width="180">
|
|
<a href="viewClient.html?name=IE&version=8%2d10&platform=Win%207">IE 8-10 / Win 7</a>
|
|
<span class="dhParams"><font color=green>R</font></span> </td>
|
|
|
|
|
|
<td class="tableLeft" width="60">
|
|
TLS 1.0
|
|
</td>
|
|
|
|
<td class="tableLeft"><span style="font-size: 11px">
|
|
TLS_RSA_WITH_AES_128_CBC_SHA (<code>0x2f</code>)
|
|
<span class="dhParams">
|
|
<font color="#F88017">No FS</font>
|
|
</span></span>
|
|
</td>
|
|
|
|
<td class="tableRight">
|
|
128
|
|
</td>
|
|
|
|
|
|
</tr>
|
|
<tr>
|
|
|
|
<td class="tableLeft" width="180">
|
|
<a href="viewClient.html?name=IE&version=11&platform=Win%207">IE 11 / Win 7</a>
|
|
<span class="dhParams"><font color=green>R</font></span> </td>
|
|
|
|
|
|
<td class="tableLeft" width="60">
|
|
TLS 1.0
|
|
</td>
|
|
|
|
<td class="tableLeft"><span style="font-size: 11px">
|
|
TLS_RSA_WITH_AES_128_CBC_SHA (<code>0x2f</code>)
|
|
<span class="dhParams">
|
|
<font color="#F88017">No FS</font>
|
|
</span></span>
|
|
</td>
|
|
|
|
<td class="tableRight">
|
|
128
|
|
</td>
|
|
|
|
|
|
</tr>
|
|
<tr>
|
|
|
|
<td class="tableLeft" width="180">
|
|
<a href="viewClient.html?name=IE&version=11&platform=Win%208.1">IE 11 / Win 8.1</a>
|
|
<span class="dhParams"><font color=green>R</font></span> </td>
|
|
|
|
|
|
<td class="tableLeft" width="60">
|
|
TLS 1.0
|
|
</td>
|
|
|
|
<td class="tableLeft"><span style="font-size: 11px">
|
|
TLS_RSA_WITH_AES_256_CBC_SHA (<code>0x35</code>)
|
|
<span class="dhParams">
|
|
<font color="#F88017">No FS</font>
|
|
</span></span>
|
|
</td>
|
|
|
|
<td class="tableRight">
|
|
256
|
|
</td>
|
|
|
|
|
|
</tr>
|
|
<tr>
|
|
|
|
<td class="tableLeft" width="180">
|
|
<a href="viewClient.html?name=IE%20Mobile&version=10&platform=Win%20Phone%208.0">IE Mobile 10 / Win Phone 8.0</a>
|
|
</td>
|
|
|
|
|
|
<td class="tableLeft" width="60">
|
|
TLS 1.0
|
|
</td>
|
|
|
|
<td class="tableLeft"><span style="font-size: 11px">
|
|
TLS_RSA_WITH_AES_128_CBC_SHA (<code>0x2f</code>)
|
|
<span class="dhParams">
|
|
<font color="#F88017">No FS</font>
|
|
</span></span>
|
|
</td>
|
|
|
|
<td class="tableRight">
|
|
128
|
|
</td>
|
|
|
|
|
|
</tr>
|
|
<tr>
|
|
|
|
<td class="tableLeft" width="180">
|
|
<a href="viewClient.html?name=IE%20Mobile&version=11&platform=Win%20Phone%208.1">IE Mobile 11 / Win Phone 8.1</a>
|
|
</td>
|
|
|
|
|
|
<td class="tableLeft" width="60">
|
|
TLS 1.0
|
|
</td>
|
|
|
|
<td class="tableLeft"><span style="font-size: 11px">
|
|
TLS_RSA_WITH_AES_128_CBC_SHA (<code>0x2f</code>)
|
|
<span class="dhParams">
|
|
<font color="#F88017">No FS</font>
|
|
</span></span>
|
|
</td>
|
|
|
|
<td class="tableRight">
|
|
128
|
|
</td>
|
|
|
|
|
|
</tr>
|
|
<tr>
|
|
|
|
<td class="tableLeft" width="180">
|
|
<a href="viewClient.html?name=Java&version=6u45">Java 6u45</a>
|
|
<span class="dhParams" style="color: #F88017; cursor: help"
|
|
title="Browser does not support Server Name Indication.">No SNI <sup>2</sup></span> </td>
|
|
|
|
|
|
<td class="tableLeft" width="60">
|
|
TLS 1.0
|
|
</td>
|
|
|
|
<td class="tableLeft"><span style="font-size: 11px">
|
|
TLS_RSA_WITH_RC4_128_MD5 (<code>0x4</code>)
|
|
<span class="dhParams">
|
|
<font color="#F88017">No FS</font>
|
|
<font color="#F88017"> RC4</font>
|
|
</span></span>
|
|
</td>
|
|
|
|
<td class="tableRight">
|
|
128
|
|
</td>
|
|
|
|
|
|
</tr>
|
|
<tr>
|
|
|
|
<td class="tableLeft" width="180">
|
|
<a href="viewClient.html?name=Java&version=7u25">Java 7u25</a>
|
|
</td>
|
|
|
|
|
|
<td class="tableLeft" width="60">
|
|
TLS 1.0
|
|
</td>
|
|
|
|
<td class="tableLeft"><span style="font-size: 11px">
|
|
TLS_RSA_WITH_AES_128_CBC_SHA (<code>0x2f</code>)
|
|
<span class="dhParams">
|
|
<font color="#F88017">No FS</font>
|
|
</span></span>
|
|
</td>
|
|
|
|
<td class="tableRight">
|
|
128
|
|
</td>
|
|
|
|
|
|
</tr>
|
|
<tr>
|
|
|
|
<td class="tableLeft" width="180">
|
|
<a href="viewClient.html?name=Java&version=8b132">Java 8b132</a>
|
|
</td>
|
|
|
|
|
|
<td class="tableLeft" width="60">
|
|
TLS 1.0
|
|
</td>
|
|
|
|
<td class="tableLeft"><span style="font-size: 11px">
|
|
TLS_RSA_WITH_AES_128_CBC_SHA (<code>0x2f</code>)
|
|
<span class="dhParams">
|
|
<font color="#F88017">No FS</font>
|
|
</span></span>
|
|
</td>
|
|
|
|
<td class="tableRight">
|
|
128
|
|
</td>
|
|
|
|
|
|
</tr>
|
|
<tr>
|
|
|
|
<td class="tableLeft" width="180">
|
|
<a href="viewClient.html?name=OpenSSL&version=0.9.8y">OpenSSL 0.9.8y</a>
|
|
</td>
|
|
|
|
|
|
<td class="tableLeft" width="60">
|
|
TLS 1.0
|
|
</td>
|
|
|
|
<td class="tableLeft"><span style="font-size: 11px">
|
|
TLS_DHE_RSA_WITH_AES_256_CBC_SHA (<code>0x39</code>)
|
|
<span class="dhParams">
|
|
<span class="highlight">FS</span>
|
|
</span></span>
|
|
</td>
|
|
|
|
<td class="tableRight">
|
|
256
|
|
</td>
|
|
|
|
|
|
</tr>
|
|
<tr>
|
|
|
|
<td class="tableLeft" width="180">
|
|
<a href="viewClient.html?name=OpenSSL&version=1.0.1h">OpenSSL 1.0.1h</a>
|
|
</td>
|
|
|
|
|
|
<td class="tableLeft" width="60">
|
|
TLS 1.0
|
|
</td>
|
|
|
|
<td class="tableLeft"><span style="font-size: 11px">
|
|
TLS_DHE_RSA_WITH_AES_256_CBC_SHA (<code>0x39</code>)
|
|
<span class="dhParams">
|
|
<span class="highlight">FS</span>
|
|
</span></span>
|
|
</td>
|
|
|
|
<td class="tableRight">
|
|
256
|
|
</td>
|
|
|
|
|
|
</tr>
|
|
<tr>
|
|
|
|
<td class="tableLeft" width="180">
|
|
<a href="viewClient.html?name=Safari&version=5.1.9&platform=OS%20X%2010.6.8">Safari 5.1.9 / OS X 10.6.8</a>
|
|
</td>
|
|
|
|
|
|
<td class="tableLeft" width="60">
|
|
TLS 1.0
|
|
</td>
|
|
|
|
<td class="tableLeft"><span style="font-size: 11px">
|
|
TLS_RSA_WITH_AES_128_CBC_SHA (<code>0x2f</code>)
|
|
<span class="dhParams">
|
|
<font color="#F88017">No FS</font>
|
|
</span></span>
|
|
</td>
|
|
|
|
<td class="tableRight">
|
|
128
|
|
</td>
|
|
|
|
|
|
</tr>
|
|
<tr>
|
|
|
|
<td class="tableLeft" width="180">
|
|
<a href="viewClient.html?name=Safari&version=6&platform=iOS%206.0.1">Safari 6 / iOS 6.0.1</a>
|
|
<span class="dhParams"><font color=green>R</font></span> </td>
|
|
|
|
|
|
<td class="tableLeft" width="60">
|
|
TLS 1.0
|
|
</td>
|
|
|
|
<td class="tableLeft"><span style="font-size: 11px">
|
|
TLS_RSA_WITH_AES_128_CBC_SHA (<code>0x2f</code>)
|
|
<span class="dhParams">
|
|
<font color="#F88017">No FS</font>
|
|
</span></span>
|
|
</td>
|
|
|
|
<td class="tableRight">
|
|
128
|
|
</td>
|
|
|
|
|
|
</tr>
|
|
<tr>
|
|
|
|
<td class="tableLeft" width="180">
|
|
<a href="viewClient.html?name=Safari&version=7&platform=iOS%207.1">Safari 7 / iOS 7.1</a>
|
|
<span class="dhParams"><font color=green>R</font></span> </td>
|
|
|
|
|
|
<td class="tableLeft" width="60">
|
|
TLS 1.0
|
|
</td>
|
|
|
|
<td class="tableLeft"><span style="font-size: 11px">
|
|
TLS_RSA_WITH_AES_128_CBC_SHA (<code>0x2f</code>)
|
|
<span class="dhParams">
|
|
<font color="#F88017">No FS</font>
|
|
</span></span>
|
|
</td>
|
|
|
|
<td class="tableRight">
|
|
128
|
|
</td>
|
|
|
|
|
|
</tr>
|
|
<tr>
|
|
|
|
<td class="tableLeft" width="180">
|
|
<a href="viewClient.html?name=Safari&version=8&platform=iOS%208.0%20Beta">Safari 8 / iOS 8.0 Beta</a>
|
|
<span class="dhParams"><font color=green>R</font></span> </td>
|
|
|
|
|
|
<td class="tableLeft" width="60">
|
|
TLS 1.0
|
|
</td>
|
|
|
|
<td class="tableLeft"><span style="font-size: 11px">
|
|
TLS_DHE_RSA_WITH_AES_256_CBC_SHA (<code>0x39</code>)
|
|
<span class="dhParams">
|
|
<span class="highlight">FS</span>
|
|
</span></span>
|
|
</td>
|
|
|
|
<td class="tableRight">
|
|
256
|
|
</td>
|
|
|
|
|
|
</tr>
|
|
<tr>
|
|
|
|
<td class="tableLeft" width="180">
|
|
<a href="viewClient.html?name=Safari&version=6.0.4&platform=OS%20X%2010.8.4">Safari 6.0.4 / OS X 10.8.4</a>
|
|
<span class="dhParams"><font color=green>R</font></span> </td>
|
|
|
|
|
|
<td class="tableLeft" width="60">
|
|
TLS 1.0
|
|
</td>
|
|
|
|
<td class="tableLeft"><span style="font-size: 11px">
|
|
TLS_RSA_WITH_AES_128_CBC_SHA (<code>0x2f</code>)
|
|
<span class="dhParams">
|
|
<font color="#F88017">No FS</font>
|
|
</span></span>
|
|
</td>
|
|
|
|
<td class="tableRight">
|
|
128
|
|
</td>
|
|
|
|
|
|
</tr>
|
|
<tr>
|
|
|
|
<td class="tableLeft" width="180">
|
|
<a href="viewClient.html?name=Safari&version=7&platform=OS%20X%2010.9">Safari 7 / OS X 10.9</a>
|
|
<span class="dhParams"><font color=green>R</font></span> </td>
|
|
|
|
|
|
<td class="tableLeft" width="60">
|
|
TLS 1.0
|
|
</td>
|
|
|
|
<td class="tableLeft"><span style="font-size: 11px">
|
|
TLS_RSA_WITH_AES_128_CBC_SHA (<code>0x2f</code>)
|
|
<span class="dhParams">
|
|
<font color="#F88017">No FS</font>
|
|
</span></span>
|
|
</td>
|
|
|
|
<td class="tableRight">
|
|
128
|
|
</td>
|
|
|
|
|
|
</tr>
|
|
<tr>
|
|
|
|
<td class="tableLeft" width="180">
|
|
<a href="viewClient.html?name=Yahoo%20Slurp&version=Jun%202014">Yahoo Slurp Jun 2014</a>
|
|
<span class="dhParams" style="color: #F88017; cursor: help"
|
|
title="Browser does not support Server Name Indication.">No SNI <sup>2</sup></span> </td>
|
|
|
|
|
|
<td class="tableLeft" width="60">
|
|
TLS 1.0
|
|
</td>
|
|
|
|
<td class="tableLeft"><span style="font-size: 11px">
|
|
TLS_DHE_RSA_WITH_AES_256_CBC_SHA (<code>0x39</code>)
|
|
<span class="dhParams">
|
|
<span class="highlight">FS</span>
|
|
</span></span>
|
|
</td>
|
|
|
|
<td class="tableRight">
|
|
256
|
|
</td>
|
|
|
|
|
|
</tr>
|
|
<tr>
|
|
|
|
<td class="tableLeft" width="180">
|
|
<a href="viewClient.html?name=YandexBot&version=Sep%202014">YandexBot Sep 2014</a>
|
|
</td>
|
|
|
|
|
|
<td class="tableLeft" width="60">
|
|
TLS 1.0
|
|
</td>
|
|
|
|
<td class="tableLeft"><span style="font-size: 11px">
|
|
TLS_DHE_RSA_WITH_AES_256_CBC_SHA (<code>0x39</code>)
|
|
<span class="dhParams">
|
|
<span class="highlight">FS</span>
|
|
</span></span>
|
|
</td>
|
|
|
|
<td class="tableRight">
|
|
256
|
|
</td>
|
|
|
|
|
|
</tr>
|
|
|
|
<tr><td colspan="4">
|
|
<font color=grey>(1) Clients that do not support Forward Secrecy (FS) are excluded when determining support for it.</font>
|
|
</td></tr>
|
|
|
|
<tr><td colspan="4">
|
|
<font color=grey>(2) No support for virtual SSL hosting (SNI). Connects to the default site if the server uses SNI.</font>
|
|
</td></tr>
|
|
|
|
|
|
<tr><td colspan="4">
|
|
<font color=grey>(R) Denotes a reference browser or client, with which we expect better effective security.</font>
|
|
</td></tr>
|
|
|
|
<tr><td colspan="4">
|
|
<font color=grey>(All) We use defaults, but some platforms do not use their best protocols and features (e.g., Java 6 & 7, older IE).</font>
|
|
</td></tr>
|
|
|
|
</tbody>
|
|
</table>
|
|
|
|
|
|
|
|
<br><br>
|
|
|
|
<img class="tIcon" src="/images/icon-protocol-details.gif" width="65" height="50" alt="">
|
|
<table class="reportTable">
|
|
<thead>
|
|
<tr>
|
|
<td class="tableHead" colspan="2">Protocol Details</td>
|
|
</tr>
|
|
</thead>
|
|
<tbody>
|
|
|
|
|
|
<tr class="tableRow">
|
|
<td class="tableLabel"><font color=green>Secure Renegotiation</font></td>
|
|
<td class="tableCell"><font color=green><b>Supported</b></font></td>
|
|
</tr>
|
|
|
|
<tr class="tableRow">
|
|
<td class="tableLabel">Secure Client-Initiated Renegotiation</td>
|
|
<td class="tableCell">No</td>
|
|
</tr>
|
|
|
|
<tr class="tableRow">
|
|
<td class="tableLabel">Insecure Client-Initiated Renegotiation</td>
|
|
<td class="tableCell">No</td>
|
|
</tr>
|
|
|
|
|
|
|
|
<tr class="tableRow">
|
|
<td class="tableLabel">BEAST attack</td>
|
|
<td class="tableCell">
|
|
Not mitigated server-side (<a href="https://community.qualys.com/blogs/securitylabs/2013/09/10/is-beast-still-a-threat">more info</a>)
|
|
<span class=dhParams> SSL 3: <code>0x7</code>, TLS 1.0: <code>0x7</code></span>
|
|
</td>
|
|
</tr>
|
|
|
|
|
|
|
|
<tr class="tableRow">
|
|
<td class="tableLabel">TLS compression</td>
|
|
<td class="tableCell">No</td>
|
|
</tr>
|
|
|
|
<tr class="tableRow">
|
|
<td class="tableLabel">RC4</td>
|
|
<td class="tableCell">Yes (not with TLS 1.1 and newer) (<a href="https://community.qualys.com/blogs/securitylabs/2013/03/19/rc4-in-tls-is-broken-now-what">more info</a>)</font>
|
|
</font></td>
|
|
</tr>
|
|
|
|
<tr class="tableRow">
|
|
<td class="tableLabel">Heartbeat (extension)</td>
|
|
<td class="tableCell">No</td>
|
|
</tr>
|
|
|
|
<tr class="tableRow">
|
|
<td class="tableLabel">Heartbleed (vulnerability)</td>
|
|
<td class="tableCell">No (<a href="https://community.qualys.com/blogs/securitylabs/2014/04/08/ssl-labs-test-for-the-heartbleed-attack">more info</a>)</td>
|
|
</tr>
|
|
|
|
<tr class="tableRow">
|
|
<td class="tableLabel"><font color=#F88017>OpenSSL CCS vuln. (CVE-2014-0224)</font></td>
|
|
<td class="tableCell"><font color=#F88017><b>Inconclusive</b> (requires investigation) (<a style="color: #F88017" href="https://community.qualys.com/blogs/securitylabs/2014/06/13/ssl-pulse-49-vulnerable-to-cve-2014-0224-14-exploitable">more info</a>)</font></td>
|
|
</tr>
|
|
|
|
<tr class="tableRow">
|
|
<td class="tableLabel"><font color=#F88017>Forward Secrecy</font></td>
|
|
<td class="tableCell"><font color=#F88017><b>With some browsers</b> (<a style="color: #F88017" href="https://community.qualys.com/blogs/securitylabs/2013/06/25/ssl-labs-deploying-forward-secrecy">more info</a>)</font></td>
|
|
</tr>
|
|
|
|
|
|
<tr class="tableRow">
|
|
<td class="tableLabel">Next Protocol Negotiation</td>
|
|
<td class="tableCell">No</td>
|
|
</tr>
|
|
|
|
|
|
|
|
|
|
<tr class="tableRow">
|
|
<td class="tableLabel"><font color=#F88017>Session resumption (caching)</font></td>
|
|
<td class="tableCell"><font color=#F88017><b>No (IDs empty)</b></font></td>
|
|
</tr>
|
|
|
|
|
|
|
|
<tr class="tableRow">
|
|
<td class="tableLabel">Session resumption (tickets)</td>
|
|
<td class="tableCell">Yes</td>
|
|
</tr>
|
|
|
|
|
|
<tr class="tableRow">
|
|
<td class="tableLabel">OCSP stapling</td>
|
|
<td class="tableCell">No</td>
|
|
</tr>
|
|
|
|
|
|
<tr class="tableRow">
|
|
|
|
|
|
<td class="tableLabel">Strict Transport Security (HSTS)</td>
|
|
<td class="tableCell">No</td>
|
|
|
|
|
|
</tr>
|
|
|
|
|
|
|
|
|
|
<tr class="tableRow">
|
|
<td class="tableLabel">Long handshake intolerance</td>
|
|
<td class="tableCell">No</td>
|
|
</tr>
|
|
|
|
|
|
<tr class="tableRow">
|
|
<td class="tableLabel">TLS extension intolerance</td>
|
|
<td class="tableCell">No</td>
|
|
</tr>
|
|
|
|
|
|
|
|
|
|
<tr class="tableRow">
|
|
<td class="tableLabel">TLS version intolerance</td>
|
|
<td class="tableCell">
|
|
<b><font color="#F88017">
|
|
</font>
|
|
|
|
<font color="#666666">
|
|
TLS 2.98 </font></b>
|
|
</td>
|
|
</tr>
|
|
|
|
<tr class="tableRow">
|
|
<td class="tableLabel">SSL 2 handshake compatibility</td>
|
|
<td class="tableCell"> Yes </td>
|
|
</tr>
|
|
|
|
</tbody>
|
|
</table>
|
|
|
|
|
|
<br><br>
|
|
|
|
<img class="tIcon" src="/images/icon-misc.png" width="65" height="50" alt="">
|
|
<table class="reportTable">
|
|
<thead>
|
|
<tr>
|
|
<td class="tableHead" colspan="2">Miscellaneous</td>
|
|
</tr>
|
|
</thead>
|
|
<tbody>
|
|
<tr class="tableRow">
|
|
<td class="tableLabel">Test date</td>
|
|
<td class="tableCell">Wed Sep 17 15:52:24 UTC 2014</td>
|
|
</tr>
|
|
<tr class="tableRow">
|
|
<td class="tableLabel">Test duration</td>
|
|
<td class="tableCell">86.537 seconds</td>
|
|
</tr>
|
|
|
|
<tr class="tableRow">
|
|
<td class="tableLabel">HTTP status code</td>
|
|
<td class="tableCell">
|
|
301
|
|
</td>
|
|
</tr>
|
|
|
|
<tr class="tableRow">
|
|
<td class="tableLabel">HTTP forwarding</td>
|
|
<td class="tableCell">http://www.fortuneo.fr</td>
|
|
</tr>
|
|
|
|
<tr class="tableRow">
|
|
<td class="tableLabel">HTTP server signature</td>
|
|
<td class="tableCell">Apache</td>
|
|
</tr>
|
|
|
|
<tr class="tableRow">
|
|
<td class="tableLabel">Server hostname</td>
|
|
<td class="tableCell"> WWW.FORTUNEO.FR </td>
|
|
</tr>
|
|
|
|
<tr class="tableRow">
|
|
<td class="tableLabel">PCI compliant</td>
|
|
<td class="tableCell"> Yes </td>
|
|
</tr>
|
|
|
|
<tr class="tableRow">
|
|
<td class="tableLabel">FIPS-ready</td>
|
|
<td class="tableCell"> No </td>
|
|
</tr>
|
|
|
|
</tbody>
|
|
</table>
|
|
|
|
<br><br>
|
|
|
|
</div>
|
|
</div>
|
|
|
|
|
|
|
|
</div>
|
|
|
|
|
|
<p class="grayText">SSL Report v1.10.31</p>
|
|
|
|
</div>
|
|
|
|
|
|
|
|
</div>
|
|
|
|
<div id="pageEnd">
|
|
<div id="copyright">
|
|
<table width=910 border=0 cellpadding=5 cellspacing=0><tr>
|
|
<td style="font-size: 12px">
|
|
Copyright © 2009-2014 <a href="https://www.qualys.com">Qualys, Inc</A>. All Rights Reserved.
|
|
</td><td align=right style="font-size: 12px">
|
|
<a href="/about/terms.html">Terms and Conditions</a>
|
|
</td>
|
|
</tr></table>
|
|
</div>
|
|
</div>
|
|
|
|
<script type="text/javascript">
|
|
|
|
var _gaq = _gaq || [];
|
|
_gaq.push(['_setAccount', 'UA-9372751-1']);
|
|
_gaq.push(['_trackPageview']);
|
|
|
|
(function() {
|
|
var ga = document.createElement('script'); ga.type = 'text/javascript'; ga.async = true;
|
|
ga.src = ('https:' == document.location.protocol ? 'https://ssl' : 'http://www') + '.google-analytics.com/ga.js';
|
|
var s = document.getElementsByTagName('script')[0]; s.parentNode.insertBefore(ga, s);
|
|
})();
|
|
|
|
</script>
|
|
|
|
</body>
|
|
</html> |