You can not select more than 25 topics Topics must start with a letter or number, can include dashes ('-') and can be up to 35 characters long.

results.html 46KB

1234567891011121314151617181920212223242526272829303132333435363738394041424344454647484950515253545556575859606162636465666768697071727374757677787980818283848586878889909192939495969798991001011021031041051061071081091101111121131141151161171181191201211221231241251261271281291301311321331341351361371381391401411421431441451461471481491501511521531541551561571581591601611621631641651661671681691701711721731741751761771781791801811821831841851861871881891901911921931941951961971981992002012022032042052062072082092102112122132142152162172182192202212222232242252262272282292302312322332342352362372382392402412422432442452462472482492502512522532542552562572582592602612622632642652662672682692702712722732742752762772782792802812822832842852862872882892902912922932942952962972982993003013023033043053063073083093103113123133143153163173183193203213223233243253263273283293303313323333343353363373383393403413423433443453463473483493503513523533543553563573583593603613623633643653663673683693703713723733743753763773783793803813823833843853863873883893903913923933943953963973983994004014024034044054064074084094104114124134144154164174184194204214224234244254264274284294304314324334344354364374384394404414424434444454464474484494504514524534544554564574584594604614624634644654664674684694704714724734744754764774784794804814824834844854864874884894904914924934944954964974984995005015025035045055065075085095105115125135145155165175185195205215225235245255265275285295305315325335345355365375385395405415425435445455465475485495505515525535545555565575585595605615625635645655665675685695705715725735745755765775785795805815825835845855865875885895905915925935945955965975985996006016026036046056066076086096106116126136146156166176186196206216226236246256266276286296306316326336346356366376386396406416426436446456466476486496506516526536546556566576586596606616626636646656666676686696706716726736746756766776786796806816826836846856866876886896906916926936946956966976986997007017027037047057067077087097107117127137147157167177187197207217227237247257267277287297307317327337347357367377387397407417427437447457467477487497507517527537547557567577587597607617627637647657667677687697707717727737747757767777787797807817827837847857867877887897907917927937947957967977987998008018028038048058068078088098108118128138148158168178188198208218228238248258268278288298308318328338348358368378388398408418428438448458468478488498508518528538548558568578588598608618628638648658668678688698708718728738748758768778788798808818828838848858868878888898908918928938948958968978988999009019029039049059069079089099109119129139149159169179189199209219229239249259269279289299309319329339349359369379389399409419429439449459469479489499509519529539549559569579589599609619629639649659669679689699709719729739749759769779789799809819829839849859869879889899909919929939949959969979989991000100110021003100410051006100710081009101010111012101310141015101610171018101910201021102210231024102510261027102810291030103110321033103410351036103710381039104010411042104310441045104610471048104910501051105210531054105510561057105810591060106110621063106410651066106710681069107010711072107310741075107610771078107910801081108210831084108510861087108810891090109110921093109410951096109710981099110011011102110311041105110611071108110911101111111211131114111511161117111811191120112111221123112411251126112711281129113011311132113311341135113611371138113911401141114211431144114511461147114811491150115111521153115411551156115711581159116011611162116311641165116611671168116911701171117211731174117511761177117811791180118111821183118411851186118711881189119011911192119311941195119611971198119912001201120212031204120512061207120812091210121112121213121412151216121712181219122012211222122312241225122612271228122912301231123212331234123512361237123812391240124112421243124412451246124712481249125012511252125312541255125612571258125912601261126212631264126512661267126812691270127112721273127412751276127712781279128012811282128312841285128612871288128912901291129212931294129512961297129812991300130113021303130413051306130713081309131013111312131313141315131613171318131913201321132213231324132513261327132813291330133113321333133413351336133713381339134013411342134313441345134613471348134913501351135213531354135513561357135813591360136113621363136413651366136713681369137013711372137313741375137613771378137913801381138213831384138513861387138813891390139113921393139413951396139713981399140014011402140314041405140614071408140914101411141214131414141514161417141814191420142114221423142414251426142714281429143014311432143314341435143614371438143914401441144214431444144514461447144814491450145114521453145414551456145714581459146014611462146314641465146614671468146914701471147214731474147514761477147814791480148114821483148414851486148714881489149014911492149314941495149614971498149915001501150215031504150515061507150815091510151115121513151415151516151715181519152015211522152315241525152615271528152915301531153215331534153515361537153815391540154115421543154415451546154715481549155015511552155315541555155615571558155915601561156215631564156515661567156815691570157115721573157415751576157715781579158015811582158315841585158615871588158915901591159215931594159515961597159815991600160116021603160416051606160716081609161016111612161316141615161616171618161916201621162216231624162516261627162816291630163116321633163416351636163716381639164016411642164316441645164616471648164916501651165216531654165516561657165816591660166116621663166416651666166716681669167016711672167316741675167616771678167916801681168216831684168516861687168816891690169116921693169416951696169716981699
  1. <!DOCTYPE HTML PUBLIC "-//W3C//DTD HTML 4.01 Transitional//EN">
  2. <html>
  3. <head>
  4. <title>Qualys SSL Labs - Projects / SSL Server Test / fortuneo&#46;fr</title>
  5. <script type="text/javascript" src="/includes/jquery-1.11.0.min.js"></script>
  6. <link href="/includes/ssllabs.css" rel="styleSheet" type="text/css">
  7. <link href="/includes/report.css" rel="styleSheet" type="text/css">
  8. <meta http-equiv="Content-Type" content="text/html;charset=utf-8" />
  9. <style>
  10. .infoBox {
  11. border: 1px solid #bbbbbb;
  12. padding: 5px;
  13. background: #fffacd;
  14. margin-top: 10px;
  15. font-weight: bold;
  16. color: #222222;
  17. }
  18. .highlightBox {
  19. border: 1px solid #888888;
  20. padding: 5px;
  21. background: #7ed84d;
  22. margin-top: 10px;
  23. font-weight: bold;
  24. color: #222222;
  25. }
  26. .noticeBox {
  27. border: 1px solid #bbbbbb;
  28. padding: 5px;
  29. background: #CCEEFF;
  30. margin-top: 10px;
  31. font-weight: bold;
  32. color: #222222;
  33. }
  34. .warningBox {
  35. border: 1px solid #bbbbbb;
  36. padding: 5px;
  37. background: #FFCF79;
  38. margin-top: 10px;
  39. font-weight: bold;
  40. color: #222222;
  41. }
  42. .errorBox {
  43. border: 1px solid #bbbbbb;
  44. padding: 5px;
  45. background: #FFCCCB;
  46. margin-top: 10px;
  47. font-weight: bold;
  48. color: #222222;
  49. }
  50. </style>
  51. </head>
  52. <body>
  53. <div id="page">
  54. <div id="header">
  55. <div id="logo">
  56. <a href="/index.html"><img src="/images/qualys-ssl-labs-logo.png" width="348" height="55" alt="SSL Labs logo" title="SSL Labs logo"></a>
  57. </div>
  58. <div id="navigation">
  59. <a class="link" href="/index.html">Home</a>
  60. <a class="link" href="/projects/index.html">Projects</a>
  61. <a class="link" href="http://www.qualys.com">Qualys.com</a>
  62. <a class="link" href="/about/contact.html">Contact</a>
  63. </div>
  64. <br clear="all" />
  65. </div>
  66. <div id="breadcrumbs">
  67. <div class=real style="float: left">
  68. <b>You are here:&nbsp;</b>
  69. <a href="/index.html">Home</a> &gt; <a href="/projects/index.html">Projects</a>
  70. &gt; <a href="/ssltest/index.html">SSL Server Test</a> &gt;
  71. <a href="analyze.html?d=fortuneo.fr">fortuneo&#46;fr</a> &gt; 194&#46;51&#46;217&#46;72
  72. </div>
  73. </div>
  74. <div id="main">
  75. <div class="reportTitle">SSL Report: <span class="url">
  76. <a href="analyze.html?d=fortuneo.fr">fortuneo&#46;fr</a>
  77. </span> <span class=ip> (194&#46;51&#46;217&#46;72)</span> </div>
  78. <div class="reportTime" style="float: left">
  79. <b>Assessed on:</b>&nbsp; Wed&#32;Sep&#32;17&#32;15&#58;53&#58;51&#32;UTC&#32;2014
  80. | <a href="clearCache.html?d=fortuneo.fr">Clear cache</a>
  81. </div>
  82. <div style="float:right; font-weight: bold; font-size: 20px"><a href="/ssltest/index.html">Scan Another&nbsp;&raquo;</a></div>
  83. <br clear="all"/>
  84. <div id="appleTestDiv" style="display: none">
  85. <div class="errorBox"><center>
  86. Due to a recently discovered bug in Apple's code, your browser is exposed to MITM attacks. <a href="/ssltest/viewMyClient.html">Click here</a> for more information.
  87. </center></div><br>
  88. </div>
  89. <div align="center">
  90. <div class="reportSection">
  91. <div class="sectionTitle">Summary</div>
  92. <div class="sectionBody">
  93. <div id="rating">
  94. <div class="ratingTitle">Overall Rating</div>
  95. <div class="rating_a" style="margin-bottom: 8px">
  96. B
  97. </div>
  98. </div>
  99. <div id="chart">
  100. <div class="chartScale">
  101. <div class="chartScaleDiv"></div>
  102. <div class="chartScaleDiv"></div>
  103. <div class="chartScaleDiv"></div>
  104. <div class="chartScaleDiv"></div>
  105. <div class="chartScaleDiv"></div>
  106. <div class="chartScaleDiv" style="margin:0px"></div>
  107. <div class="chartScaleLabelRow">
  108. <div class="chartScaleLabel">0</div>
  109. <div class="chartScaleLabel">20</div>
  110. <div class="chartScaleLabel">40</div>
  111. <div class="chartScaleLabel">60</div>
  112. <div class="chartScaleLabel">80</div>
  113. <div class="chartScaleLabel">100</div>
  114. </div>
  115. </div>
  116. <div class="chartBody">
  117. <div class="chartRow">
  118. <div class="chartLabel">Certificate</div>
  119. <div class="chartBar_g" style="width:300px">&nbsp;</div>
  120. <div class="chartValue g">100</div>
  121. </div>
  122. <div class="chartRow">
  123. <div class="chartLabel">Protocol Support</div>
  124. <div class="chartBar_a" style="width:210px">&nbsp;</div>
  125. <div class="chartValue a">70</div>
  126. </div>
  127. <div class="chartRow">
  128. <div class="chartLabel">Key Exchange</div>
  129. <div class="chartBar_g" style="width:240px">&nbsp;</div>
  130. <div class="chartValue g">80</div>
  131. </div>
  132. <div class="chartRow">
  133. <div class="chartLabel">Cipher Strength</div>
  134. <div class="chartBar_g" style="width:270px">&nbsp;</div>
  135. <div class="chartValue g">90</div>
  136. </div>
  137. </div>
  138. </div>
  139. <br clear="all">
  140. <div class="infoBox">
  141. Visit our <a href="/projects/documentation/index.html">documentation page</a>
  142. for more information, configuration guides, and books. Known issues are documented
  143. <a href="https://community.qualys.com/docs/DOC-4865">here</a>.
  144. </div>
  145. <div class="warningBox">
  146. Certificate uses SHA1. When renewing, ensure you upgrade to SHA256.
  147. &nbsp;<a href="https://community.qualys.com/blogs/securitylabs/2014/09/09/sha1-deprecation-what-you-need-to-know"><span class="moreInfo">MORE&nbsp;INFO&nbsp;&raquo;</span></a>
  148. </div>
  149. <div class="warningBox">
  150. The server supports only older protocols, but not the current best TLS 1.2. Grade capped to B.
  151. </div>
  152. <div class="warningBox">
  153. The server does not support Forward Secrecy with the reference browsers.
  154. &nbsp;<a href="https://en.wikipedia.org/wiki/Forward_secrecy"><span class="moreInfo">MORE&nbsp;INFO&nbsp;&raquo;</span></a>
  155. </div>
  156. </div>
  157. </div>
  158. <div class="reportSection">
  159. <div class="sectionTitle">Authentication</div>
  160. <div class="sectionBody">
  161. <!-- CERTIFICATE -->
  162. <img class="tIcon" src="/images/icon-certificate.gif" width="65" height="50" alt="">
  163. <table class="reportTable">
  164. <thead>
  165. <tr>
  166. <td class="tableHead" colspan="2">Server Key and Certificate #1</td>
  167. </tr>
  168. </thead>
  169. <tbody>
  170. <tr class="tableRow">
  171. <td class="tableLabel">Common names</td>
  172. <td class="tableCell">www&#46;fortuneo&#46;fr</td>
  173. </tr>
  174. <tr class="tableRow">
  175. <td class="tableLabelTop">Alternative names</td>
  176. <td class="tableCell"> www&#46;fortuneo&#46;fr </td>
  177. </tr>
  178. <tr class="tableRow">
  179. <td class="tableLabel">Prefix handling</td>
  180. <td class="tableCell"><font color=#F88017>Not valid for "fortuneo&#46;fr" &nbsp; <b>CONFUSING</b></font></td>
  181. </tr>
  182. <tr class="tableRow">
  183. <td class="tableLabel">Valid from</td>
  184. <td class="tableCell">Mon&#32;Jan&#32;06&#32;00&#58;00&#58;00&#32;UTC&#32;2014</td>
  185. </tr>
  186. <tr class="tableRow">
  187. <td class="tableLabel">Valid until</td>
  188. <td class="tableCell">Mon&#32;Feb&#32;16&#32;23&#58;59&#58;59&#32;UTC&#32;2015 (expires in 4 months and 32 days)</td>
  189. </tr>
  190. <tr class="tableRow">
  191. <td class="tableLabel">Key</td>
  192. <td class="tableCell">RSA 2048 bits</td>
  193. </tr>
  194. <tr class="tableRow">
  195. <td class="tableLabel"> Weak key (Debian) </td>
  196. <td class="tableCell"> No </td>
  197. </tr>
  198. <tr class="tableRow">
  199. <td class="tableLabel">Issuer</td>
  200. <td class="tableCell">VeriSign&#32;Class&#32;3&#32;Secure&#32;Server&#32;CA&#32;&#45;&#32;G3</td>
  201. </tr>
  202. <tr class="tableRow">
  203. <td class="tableLabel"><font color=#F88017>Signature algorithm</font></td>
  204. <td class="tableCell"><font color=#F88017>SHA1withRSA &nbsp; <b>WEAK</b></font></td>
  205. </tr>
  206. <tr class="tableRow">
  207. <td class="tableLabel">Extended Validation</td>
  208. <td class="tableCell">No</td>
  209. </tr>
  210. <tr class="tableRow">
  211. <td class="tableLabel">Revocation information</td>
  212. <td class="tableCell">
  213. CRL, OCSP </td>
  214. </tr>
  215. <tr class="tableRow">
  216. <td class="tableLabel">Revocation status</td>
  217. <td class="tableCell">Good (not revoked)</td>
  218. </tr>
  219. <tr class="tableRow">
  220. <td class="tableLabel"><font color=green>Trusted</font></td>
  221. <td class="tableCell"><font color=green><b>Yes</b></font></td>
  222. </tr>
  223. </tbody>
  224. </table>
  225. <br><br>
  226. <img class="tIcon" src="/images/icon-certificates.png" width="65" height="50" alt="">
  227. <table class="reportTable">
  228. <thead>
  229. <tr>
  230. <td class="tableHead" colspan="2">Additional Certificates (if supplied)</td>
  231. </tr>
  232. </thead>
  233. <tbody>
  234. <tr class="tableRow">
  235. <td class="tableLabel">Certificates provided</td>
  236. <td class="tableCell">3 (4100 bytes)</td>
  237. </tr>
  238. <tr class="tableRow">
  239. <td class="tableLabel">Chain issues</td>
  240. <td class="tableCell">None</font></td>
  241. </tr>
  242. <tr class="tableSeparator"><td class="tableSubHead" colspan="2">#2</td></tr>
  243. <tr class="tableRow">
  244. <td class="tableLabel">Subject</td>
  245. <td class="tableCell">VeriSign&#32;Class&#32;3&#32;Secure&#32;Server&#32;CA&#32;&#45;&#32;G3 <br>
  246. <span style="color: grey">SHA1: 5deb8f339e264c19f6686f5f8f32b54a4c46b476</span></td>
  247. </tr>
  248. <tr class="tableRow">
  249. <td class="tableLabel">Valid until</td>
  250. <td class="tableCell">Fri&#32;Feb&#32;07&#32;23&#58;59&#58;59&#32;UTC&#32;2020 (expires in 5 years and 4 months)</td>
  251. </tr>
  252. <tr class="tableRow">
  253. <td class="tableLabel">Key</td>
  254. <td class="tableCell">RSA 2048 bits</td>
  255. </tr>
  256. <tr>
  257. <td class="tableLabel">Issuer</td>
  258. <td class="tableCell">VeriSign&#32;Class&#32;3&#32;Public&#32;Primary&#32;Certification&#32;Authority&#32;&#45;&#32;G5</td>
  259. </tr>
  260. <tr class="tableRow">
  261. <td class="tableLabel"><font color=#F88017>Signature algorithm</font></td>
  262. <td class="tableCell"><font color=#F88017>SHA1withRSA
  263. &nbsp; <b>WEAK</b></font></td>
  264. <tr class="tableSeparator"><td class="tableSubHead" colspan="2">#3</td></tr>
  265. <tr class="tableRow">
  266. <td class="tableLabel">Subject</td>
  267. <td class="tableCell">VeriSign&#32;Class&#32;3&#32;Public&#32;Primary&#32;Certification&#32;Authority&#32;&#45;&#32;G5 <br>
  268. <span style="color: grey">SHA1: f4a80a0cd1e6cf190b8cbc6fbc991711d482c9d0</span></td>
  269. </tr>
  270. <tr class="tableRow">
  271. <td class="tableLabel">Valid until</td>
  272. <td class="tableCell">Sun&#32;Nov&#32;07&#32;23&#58;59&#58;59&#32;UTC&#32;2021 (expires in 7 years and 1 month)</td>
  273. </tr>
  274. <tr class="tableRow">
  275. <td class="tableLabel">Key</td>
  276. <td class="tableCell">RSA 2048 bits</td>
  277. </tr>
  278. <tr>
  279. <td class="tableLabel">Issuer</td>
  280. <td class="tableCell">VeriSign&#32;&#47;&#32;Class&#32;3&#32;Public&#32;Primary&#32;Certification&#32;Authority</td>
  281. </tr>
  282. <tr class="tableRow">
  283. <td class="tableLabel"><font color=#F88017>Signature algorithm</font></td>
  284. <td class="tableCell"><font color=#F88017>SHA1withRSA
  285. &nbsp; <b>WEAK</b></font></td>
  286. </tbody>
  287. </table>
  288. <br><br>
  289. <img class="tIcon" src="/images/icon-chain.gif" width="65" height="50" alt="">
  290. <table class="reportTable">
  291. <thead>
  292. <tr>
  293. <td class="tableHead" colspan="3">Certification Paths</td>
  294. </tr>
  295. </thead>
  296. <tbody>
  297. <tr class="tableSeparator"><td class="tableSubHead" colspan="3">Path #1: Trusted </td></tr>
  298. <tr class="tableRow">
  299. <td class="tableCell" style="width: 75; text-align: right"><b>1</b></td>
  300. <td class="tableCell" style="width: 125; text-align: center; padding-left: 10px; padding-right: 10px; font-size: 11px">
  301. Sent by server
  302. </td>
  303. <td class="tableCell">www&#46;fortuneo&#46;fr
  304. <br>
  305. <span style="color: grey">SHA1: 68b4a2cb9c42d19e5ff46036374191b88e2c80b4</span>
  306. <br>
  307. RSA 2048 bits
  308. /
  309. <font color=#F88017>SHA1withRSA</font>
  310. <br><font color=#F88017><b>WEAK SIGNATURE</b></font> </td>
  311. </tr>
  312. <tr class="tableRow">
  313. <td class="tableCell" style="width: 75; text-align: right"><b>2</b></td>
  314. <td class="tableCell" style="width: 125; text-align: center; padding-left: 10px; padding-right: 10px; font-size: 11px">
  315. Sent by server
  316. </td>
  317. <td class="tableCell">VeriSign&#32;Class&#32;3&#32;Secure&#32;Server&#32;CA&#32;&#45;&#32;G3
  318. <br>
  319. <span style="color: grey">SHA1: 5deb8f339e264c19f6686f5f8f32b54a4c46b476</span>
  320. <br>
  321. RSA 2048 bits
  322. /
  323. <font color=#F88017>SHA1withRSA</font>
  324. <br><font color=#F88017><b>WEAK SIGNATURE</b></font> </td>
  325. </tr>
  326. <tr class="tableRow">
  327. <td class="tableCell" style="width: 75; text-align: right"><b>3</b></td>
  328. <td class="tableCell" style="width: 125; text-align: center; padding-left: 10px; padding-right: 10px; font-size: 11px">
  329. <font color=green>In trust store</font>
  330. </td>
  331. <td class="tableCell">VeriSign&#32;Class&#32;3&#32;Public&#32;Primary&#32;Certification&#32;Authority&#32;&#45;&#32;G5
  332. <br>
  333. <span style="color: grey">SHA1: 4eb6d578499b1ccf5f581ead56be3d9b6744a5e5</span>
  334. <br>
  335. RSA 2048 bits
  336. /
  337. SHA1withRSA
  338. <br><font color="gray">Weak or insecure signature, but no impact on root certificates</b></font> </td>
  339. </tr>
  340. </tbody>
  341. </table>
  342. </div>
  343. </div>
  344. <div class="reportSection">
  345. <div class="sectionTitle">Configuration</div>
  346. <div class="sectionBody">
  347. <!-- PROTOCOLS -->
  348. <img class="tIcon" src="/images/icon-protocol.gif" width="65" height="50" alt="">
  349. <table class="reportTable">
  350. <thead>
  351. <tr>
  352. <td class="tableHead" colspan="2">Protocols</td>
  353. </tr>
  354. </thead>
  355. <tbody>
  356. <tr class="tableRow">
  357. <td class="tableLeft"><font color="#F88017">TLS 1.2</font></td>
  358. <td class="tableRight"><font color="#F88017">No</font></td>
  359. </tr>
  360. <tr class="tableRow">
  361. <td class="tableLeft">TLS 1.1</td>
  362. <td class="tableRight"> No </td>
  363. </tr>
  364. <tr class="tableRow">
  365. <td class="tableLeft">TLS 1.0</td>
  366. <td class="tableRight"> Yes </td>
  367. </tr>
  368. <tr class="tableRow">
  369. <td class="tableLeft">SSL 3</td>
  370. <td class="tableRight">Yes</td>
  371. </tr>
  372. <tr class="tableRow">
  373. <td class="tableLeft">SSL 2</td>
  374. <td class="tableRight">No</td>
  375. </tr>
  376. </tbody>
  377. </table>
  378. <br><br>
  379. <img class="tIcon" src="/images/icon-cipher.gif" width="65" height="50" alt="">
  380. <table class="reportTable">
  381. <thead>
  382. <tr>
  383. <td class="tableHead" colspan="3">Cipher Suites (sorted by strength; the server has no preference)</td>
  384. </tr>
  385. </thead>
  386. <tbody>
  387. <tr class="tableRow">
  388. <td class="tableLeft">TLS&#95;RSA&#95;WITH&#95;RC4&#95;128&#95;MD5 (<code>0x4</code>)
  389. </td>
  390. <td class="tableRight">128</td>
  391. </tr>
  392. <tr class="tableRow">
  393. <td class="tableLeft">TLS&#95;RSA&#95;WITH&#95;RC4&#95;128&#95;SHA (<code>0x5</code>)
  394. </td>
  395. <td class="tableRight">128</td>
  396. </tr>
  397. <tr class="tableRow">
  398. <td class="tableLeft">TLS&#95;RSA&#95;WITH&#95;IDEA&#95;CBC&#95;SHA (<code>0x7</code>)
  399. </td>
  400. <td class="tableRight">128</td>
  401. </tr>
  402. <tr class="tableRow">
  403. <td class="tableLeft">TLS&#95;RSA&#95;WITH&#95;AES&#95;128&#95;CBC&#95;SHA (<code>0x2f</code>)
  404. </td>
  405. <td class="tableRight">128</td>
  406. </tr>
  407. <tr class="tableRow">
  408. <td class="tableLeft">TLS&#95;DHE&#95;RSA&#95;WITH&#95;AES&#95;128&#95;CBC&#95;SHA (<code>0x33</code>)
  409. &nbsp; <span class=dhParams>DH 1024 bits (p: 128, g: 1, Ys: 128) &nbsp; FS</span>
  410. </td>
  411. <td class="tableRight">128</td>
  412. </tr>
  413. <tr class="tableRow">
  414. <td class="tableLeft">TLS&#95;RSA&#95;WITH&#95;3DES&#95;EDE&#95;CBC&#95;SHA (<code>0xa</code>)
  415. </td>
  416. <td class="tableRight">112</td>
  417. </tr>
  418. <tr class="tableRow">
  419. <td class="tableLeft">TLS&#95;DHE&#95;RSA&#95;WITH&#95;3DES&#95;EDE&#95;CBC&#95;SHA (<code>0x16</code>)
  420. &nbsp; <span class=dhParams>DH 1024 bits (p: 128, g: 1, Ys: 128) &nbsp; FS</span>
  421. </td>
  422. <td class="tableRight">112</td>
  423. </tr>
  424. <tr class="tableRow">
  425. <td class="tableLeft">TLS&#95;RSA&#95;WITH&#95;AES&#95;256&#95;CBC&#95;SHA (<code>0x35</code>)
  426. </td>
  427. <td class="tableRight">256</td>
  428. </tr>
  429. <tr class="tableRow">
  430. <td class="tableLeft">TLS&#95;DHE&#95;RSA&#95;WITH&#95;AES&#95;256&#95;CBC&#95;SHA (<code>0x39</code>)
  431. &nbsp; <span class=dhParams>DH 1024 bits (p: 128, g: 1, Ys: 128) &nbsp; FS</span>
  432. </td>
  433. <td class="tableRight">256</td>
  434. </tr>
  435. <tr class="tableRow">
  436. <td class="tableLeft">TLS&#95;RSA&#95;WITH&#95;IDEA&#95;CBC&#95;SHA (<code>0x7</code>)
  437. </td>
  438. <td class="tableRight">128</td>
  439. </tr>
  440. </tbody>
  441. </table>
  442. <br><br>
  443. <img class="tIcon" src="/images/icon-cipher.gif" width="65" height="50" alt="">
  444. <table class="reportTable">
  445. <thead>
  446. <tr>
  447. <td class="tableHead" colspan="4">Handshake Simulation</td>
  448. </tr>
  449. </thead>
  450. <tbody>
  451. <tr>
  452. <td class="tableLeft" width="180">
  453. <a href="viewClient.html?name=Android&amp;version=2.3.7">Android 2&#46;3&#46;7</a>
  454. &nbsp; <span class="dhParams" style="color: #F88017; cursor: help"
  455. title="Browser does not support Server Name Indication.">No SNI <sup>2</sup></span> </td>
  456. <td class="tableLeft" width="60">
  457. TLS&#32;1&#46;0
  458. </td>
  459. <td class="tableLeft"><span style="font-size: 11px">
  460. TLS&#95;RSA&#95;WITH&#95;RC4&#95;128&#95;MD5 (<code>0x4</code>)
  461. &nbsp;<span class="dhParams">
  462. <font color="#F88017">No FS</font>
  463. &nbsp;<font color="#F88017"> RC4</font>
  464. </span></span>
  465. </td>
  466. <td class="tableRight">
  467. 128
  468. </td>
  469. </tr>
  470. <tr>
  471. <td class="tableLeft" width="180">
  472. <a href="viewClient.html?name=Android&amp;version=4.0.4">Android 4&#46;0&#46;4</a>
  473. </td>
  474. <td class="tableLeft" width="60">
  475. TLS&#32;1&#46;0
  476. </td>
  477. <td class="tableLeft"><span style="font-size: 11px">
  478. TLS&#95;DHE&#95;RSA&#95;WITH&#95;AES&#95;256&#95;CBC&#95;SHA (<code>0x39</code>)
  479. &nbsp;<span class="dhParams">
  480. <span class="highlight">FS</span>
  481. </span></span>
  482. </td>
  483. <td class="tableRight">
  484. 256
  485. </td>
  486. </tr>
  487. <tr>
  488. <td class="tableLeft" width="180">
  489. <a href="viewClient.html?name=Android&amp;version=4.1.1">Android 4&#46;1&#46;1</a>
  490. </td>
  491. <td class="tableLeft" width="60">
  492. TLS&#32;1&#46;0
  493. </td>
  494. <td class="tableLeft"><span style="font-size: 11px">
  495. TLS&#95;DHE&#95;RSA&#95;WITH&#95;AES&#95;256&#95;CBC&#95;SHA (<code>0x39</code>)
  496. &nbsp;<span class="dhParams">
  497. <span class="highlight">FS</span>
  498. </span></span>
  499. </td>
  500. <td class="tableRight">
  501. 256
  502. </td>
  503. </tr>
  504. <tr>
  505. <td class="tableLeft" width="180">
  506. <a href="viewClient.html?name=Android&amp;version=4.2.2">Android 4&#46;2&#46;2</a>
  507. </td>
  508. <td class="tableLeft" width="60">
  509. TLS&#32;1&#46;0
  510. </td>
  511. <td class="tableLeft"><span style="font-size: 11px">
  512. TLS&#95;DHE&#95;RSA&#95;WITH&#95;AES&#95;256&#95;CBC&#95;SHA (<code>0x39</code>)
  513. &nbsp;<span class="dhParams">
  514. <span class="highlight">FS</span>
  515. </span></span>
  516. </td>
  517. <td class="tableRight">
  518. 256
  519. </td>
  520. </tr>
  521. <tr>
  522. <td class="tableLeft" width="180">
  523. <a href="viewClient.html?name=Android&amp;version=4.3">Android 4&#46;3</a>
  524. </td>
  525. <td class="tableLeft" width="60">
  526. TLS&#32;1&#46;0
  527. </td>
  528. <td class="tableLeft"><span style="font-size: 11px">
  529. TLS&#95;DHE&#95;RSA&#95;WITH&#95;AES&#95;256&#95;CBC&#95;SHA (<code>0x39</code>)
  530. &nbsp;<span class="dhParams">
  531. <span class="highlight">FS</span>
  532. </span></span>
  533. </td>
  534. <td class="tableRight">
  535. 256
  536. </td>
  537. </tr>
  538. <tr>
  539. <td class="tableLeft" width="180">
  540. <a href="viewClient.html?name=Android&amp;version=4.4.2">Android 4&#46;4&#46;2</a>
  541. </td>
  542. <td class="tableLeft" width="60">
  543. TLS&#32;1&#46;0
  544. </td>
  545. <td class="tableLeft"><span style="font-size: 11px">
  546. TLS&#95;DHE&#95;RSA&#95;WITH&#95;AES&#95;256&#95;CBC&#95;SHA (<code>0x39</code>)
  547. &nbsp;<span class="dhParams">
  548. <span class="highlight">FS</span>
  549. </span></span>
  550. </td>
  551. <td class="tableRight">
  552. 256
  553. </td>
  554. </tr>
  555. <tr>
  556. <td class="tableLeft" width="180">
  557. <a href="viewClient.html?name=BingBot&amp;version=Dec%202013">BingBot Dec&#32;2013</a>
  558. &nbsp; <span class="dhParams" style="color: #F88017; cursor: help"
  559. title="Browser does not support Server Name Indication.">No SNI <sup>2</sup></span> </td>
  560. <td class="tableLeft" width="60">
  561. TLS&#32;1&#46;0
  562. </td>
  563. <td class="tableLeft"><span style="font-size: 11px">
  564. TLS&#95;RSA&#95;WITH&#95;AES&#95;128&#95;CBC&#95;SHA (<code>0x2f</code>)
  565. &nbsp;<span class="dhParams">
  566. <font color="#F88017">No FS</font>
  567. </span></span>
  568. </td>
  569. <td class="tableRight">
  570. 128
  571. </td>
  572. </tr>
  573. <tr>
  574. <td class="tableLeft" width="180">
  575. <a href="viewClient.html?name=BingPreview&amp;version=Jun%202014">BingPreview Jun&#32;2014</a>
  576. </td>
  577. <td class="tableLeft" width="60">
  578. TLS&#32;1&#46;0
  579. </td>
  580. <td class="tableLeft"><span style="font-size: 11px">
  581. TLS&#95;DHE&#95;RSA&#95;WITH&#95;AES&#95;256&#95;CBC&#95;SHA (<code>0x39</code>)
  582. &nbsp;<span class="dhParams">
  583. <span class="highlight">FS</span>
  584. </span></span>
  585. </td>
  586. <td class="tableRight">
  587. 256
  588. </td>
  589. </tr>
  590. <tr>
  591. <td class="tableLeft" width="180">
  592. <a href="viewClient.html?name=Chrome&amp;version=37&amp;platform=OS%20X">Chrome 37 / OS&#32;X</a>
  593. &nbsp;<span class="dhParams"><font color=green>R</font></span> </td>
  594. <td class="tableLeft" width="60">
  595. TLS&#32;1&#46;0
  596. </td>
  597. <td class="tableLeft"><span style="font-size: 11px">
  598. TLS&#95;DHE&#95;RSA&#95;WITH&#95;AES&#95;128&#95;CBC&#95;SHA (<code>0x33</code>)
  599. &nbsp;<span class="dhParams">
  600. <span class="highlight">FS</span>
  601. </span></span>
  602. </td>
  603. <td class="tableRight">
  604. 128
  605. </td>
  606. </tr>
  607. <tr>
  608. <td class="tableLeft" width="180">
  609. <a href="viewClient.html?name=Firefox&amp;version=24.2.0%20ESR&amp;platform=Win%207">Firefox 24&#46;2&#46;0&#32;ESR / Win&#32;7</a>
  610. </td>
  611. <td class="tableLeft" width="60">
  612. TLS&#32;1&#46;0
  613. </td>
  614. <td class="tableLeft"><span style="font-size: 11px">
  615. TLS&#95;DHE&#95;RSA&#95;WITH&#95;AES&#95;256&#95;CBC&#95;SHA (<code>0x39</code>)
  616. &nbsp;<span class="dhParams">
  617. <span class="highlight">FS</span>
  618. </span></span>
  619. </td>
  620. <td class="tableRight">
  621. 256
  622. </td>
  623. </tr>
  624. <tr>
  625. <td class="tableLeft" width="180">
  626. <a href="viewClient.html?name=Firefox&amp;version=32&amp;platform=OS%20X">Firefox 32 / OS&#32;X</a>
  627. &nbsp;<span class="dhParams"><font color=green>R</font></span> </td>
  628. <td class="tableLeft" width="60">
  629. TLS&#32;1&#46;0
  630. </td>
  631. <td class="tableLeft"><span style="font-size: 11px">
  632. TLS&#95;DHE&#95;RSA&#95;WITH&#95;AES&#95;128&#95;CBC&#95;SHA (<code>0x33</code>)
  633. &nbsp;<span class="dhParams">
  634. <span class="highlight">FS</span>
  635. </span></span>
  636. </td>
  637. <td class="tableRight">
  638. 128
  639. </td>
  640. </tr>
  641. <tr>
  642. <td class="tableLeft" width="180">
  643. <a href="viewClient.html?name=Googlebot&amp;version=Jun%202014">Googlebot Jun&#32;2014</a>
  644. </td>
  645. <td class="tableLeft" width="60">
  646. TLS&#32;1&#46;0
  647. </td>
  648. <td class="tableLeft"><span style="font-size: 11px">
  649. TLS&#95;RSA&#95;WITH&#95;RC4&#95;128&#95;SHA (<code>0x5</code>)
  650. &nbsp;<span class="dhParams">
  651. <font color="#F88017">No FS</font>
  652. &nbsp;<font color="#F88017"> RC4</font>
  653. </span></span>
  654. </td>
  655. <td class="tableRight">
  656. 128
  657. </td>
  658. </tr>
  659. <tr>
  660. <td class="tableLeft" width="180">
  661. <a href="viewClient.html?name=IE&amp;version=6&amp;platform=XP">IE 6 / XP</a>
  662. &nbsp; <span class="dhParams" style="color: #F88017; cursor: help"
  663. title="Browser effectively does not support Forward Secrecy.">No FS <sup>1</sup></span> &nbsp; <span class="dhParams" style="color: #F88017; cursor: help"
  664. title="Browser does not support Server Name Indication.">No SNI <sup>2</sup></span> </td>
  665. <td class="tableLeft" width="60">
  666. SSL&#32;3
  667. </td>
  668. <td class="tableLeft"><span style="font-size: 11px">
  669. TLS&#95;RSA&#95;WITH&#95;RC4&#95;128&#95;MD5 (<code>0x4</code>)
  670. &nbsp;<span class="dhParams">
  671. <font color="grey">No FS</font>
  672. &nbsp;<font color="#F88017"> RC4</font>
  673. </span></span>
  674. </td>
  675. <td class="tableRight">
  676. 128
  677. </td>
  678. </tr>
  679. <tr>
  680. <td class="tableLeft" width="180">
  681. <a href="viewClient.html?name=IE&amp;version=7&amp;platform=Vista">IE 7 / Vista</a>
  682. </td>
  683. <td class="tableLeft" width="60">
  684. TLS&#32;1&#46;0
  685. </td>
  686. <td class="tableLeft"><span style="font-size: 11px">
  687. TLS&#95;RSA&#95;WITH&#95;AES&#95;128&#95;CBC&#95;SHA (<code>0x2f</code>)
  688. &nbsp;<span class="dhParams">
  689. <font color="#F88017">No FS</font>
  690. </span></span>
  691. </td>
  692. <td class="tableRight">
  693. 128
  694. </td>
  695. </tr>
  696. <tr>
  697. <td class="tableLeft" width="180">
  698. <a href="viewClient.html?name=IE&amp;version=8&amp;platform=XP">IE 8 / XP</a>
  699. &nbsp; <span class="dhParams" style="color: #F88017; cursor: help"
  700. title="Browser effectively does not support Forward Secrecy.">No FS <sup>1</sup></span> &nbsp; <span class="dhParams" style="color: #F88017; cursor: help"
  701. title="Browser does not support Server Name Indication.">No SNI <sup>2</sup></span> </td>
  702. <td class="tableLeft" width="60">
  703. TLS&#32;1&#46;0
  704. </td>
  705. <td class="tableLeft"><span style="font-size: 11px">
  706. TLS&#95;RSA&#95;WITH&#95;RC4&#95;128&#95;MD5 (<code>0x4</code>)
  707. &nbsp;<span class="dhParams">
  708. <font color="grey">No FS</font>
  709. &nbsp;<font color="#F88017"> RC4</font>
  710. </span></span>
  711. </td>
  712. <td class="tableRight">
  713. 128
  714. </td>
  715. </tr>
  716. <tr>
  717. <td class="tableLeft" width="180">
  718. <a href="viewClient.html?name=IE&amp;version=8%2d10&amp;platform=Win%207">IE 8&#45;10 / Win&#32;7</a>
  719. &nbsp;<span class="dhParams"><font color=green>R</font></span> </td>
  720. <td class="tableLeft" width="60">
  721. TLS&#32;1&#46;0
  722. </td>
  723. <td class="tableLeft"><span style="font-size: 11px">
  724. TLS&#95;RSA&#95;WITH&#95;AES&#95;128&#95;CBC&#95;SHA (<code>0x2f</code>)
  725. &nbsp;<span class="dhParams">
  726. <font color="#F88017">No FS</font>
  727. </span></span>
  728. </td>
  729. <td class="tableRight">
  730. 128
  731. </td>
  732. </tr>
  733. <tr>
  734. <td class="tableLeft" width="180">
  735. <a href="viewClient.html?name=IE&amp;version=11&amp;platform=Win%207">IE 11 / Win&#32;7</a>
  736. &nbsp;<span class="dhParams"><font color=green>R</font></span> </td>
  737. <td class="tableLeft" width="60">
  738. TLS&#32;1&#46;0
  739. </td>
  740. <td class="tableLeft"><span style="font-size: 11px">
  741. TLS&#95;RSA&#95;WITH&#95;AES&#95;128&#95;CBC&#95;SHA (<code>0x2f</code>)
  742. &nbsp;<span class="dhParams">
  743. <font color="#F88017">No FS</font>
  744. </span></span>
  745. </td>
  746. <td class="tableRight">
  747. 128
  748. </td>
  749. </tr>
  750. <tr>
  751. <td class="tableLeft" width="180">
  752. <a href="viewClient.html?name=IE&amp;version=11&amp;platform=Win%208.1">IE 11 / Win&#32;8&#46;1</a>
  753. &nbsp;<span class="dhParams"><font color=green>R</font></span> </td>
  754. <td class="tableLeft" width="60">
  755. TLS&#32;1&#46;0
  756. </td>
  757. <td class="tableLeft"><span style="font-size: 11px">
  758. TLS&#95;RSA&#95;WITH&#95;AES&#95;256&#95;CBC&#95;SHA (<code>0x35</code>)
  759. &nbsp;<span class="dhParams">
  760. <font color="#F88017">No FS</font>
  761. </span></span>
  762. </td>
  763. <td class="tableRight">
  764. 256
  765. </td>
  766. </tr>
  767. <tr>
  768. <td class="tableLeft" width="180">
  769. <a href="viewClient.html?name=IE%20Mobile&amp;version=10&amp;platform=Win%20Phone%208.0">IE&#32;Mobile 10 / Win&#32;Phone&#32;8&#46;0</a>
  770. </td>
  771. <td class="tableLeft" width="60">
  772. TLS&#32;1&#46;0
  773. </td>
  774. <td class="tableLeft"><span style="font-size: 11px">
  775. TLS&#95;RSA&#95;WITH&#95;AES&#95;128&#95;CBC&#95;SHA (<code>0x2f</code>)
  776. &nbsp;<span class="dhParams">
  777. <font color="#F88017">No FS</font>
  778. </span></span>
  779. </td>
  780. <td class="tableRight">
  781. 128
  782. </td>
  783. </tr>
  784. <tr>
  785. <td class="tableLeft" width="180">
  786. <a href="viewClient.html?name=IE%20Mobile&amp;version=11&amp;platform=Win%20Phone%208.1">IE&#32;Mobile 11 / Win&#32;Phone&#32;8&#46;1</a>
  787. </td>
  788. <td class="tableLeft" width="60">
  789. TLS&#32;1&#46;0
  790. </td>
  791. <td class="tableLeft"><span style="font-size: 11px">
  792. TLS&#95;RSA&#95;WITH&#95;AES&#95;128&#95;CBC&#95;SHA (<code>0x2f</code>)
  793. &nbsp;<span class="dhParams">
  794. <font color="#F88017">No FS</font>
  795. </span></span>
  796. </td>
  797. <td class="tableRight">
  798. 128
  799. </td>
  800. </tr>
  801. <tr>
  802. <td class="tableLeft" width="180">
  803. <a href="viewClient.html?name=Java&amp;version=6u45">Java 6u45</a>
  804. &nbsp; <span class="dhParams" style="color: #F88017; cursor: help"
  805. title="Browser does not support Server Name Indication.">No SNI <sup>2</sup></span> </td>
  806. <td class="tableLeft" width="60">
  807. TLS&#32;1&#46;0
  808. </td>
  809. <td class="tableLeft"><span style="font-size: 11px">
  810. TLS&#95;RSA&#95;WITH&#95;RC4&#95;128&#95;MD5 (<code>0x4</code>)
  811. &nbsp;<span class="dhParams">
  812. <font color="#F88017">No FS</font>
  813. &nbsp;<font color="#F88017"> RC4</font>
  814. </span></span>
  815. </td>
  816. <td class="tableRight">
  817. 128
  818. </td>
  819. </tr>
  820. <tr>
  821. <td class="tableLeft" width="180">
  822. <a href="viewClient.html?name=Java&amp;version=7u25">Java 7u25</a>
  823. </td>
  824. <td class="tableLeft" width="60">
  825. TLS&#32;1&#46;0
  826. </td>
  827. <td class="tableLeft"><span style="font-size: 11px">
  828. TLS&#95;RSA&#95;WITH&#95;AES&#95;128&#95;CBC&#95;SHA (<code>0x2f</code>)
  829. &nbsp;<span class="dhParams">
  830. <font color="#F88017">No FS</font>
  831. </span></span>
  832. </td>
  833. <td class="tableRight">
  834. 128
  835. </td>
  836. </tr>
  837. <tr>
  838. <td class="tableLeft" width="180">
  839. <a href="viewClient.html?name=Java&amp;version=8b132">Java 8b132</a>
  840. </td>
  841. <td class="tableLeft" width="60">
  842. TLS&#32;1&#46;0
  843. </td>
  844. <td class="tableLeft"><span style="font-size: 11px">
  845. TLS&#95;RSA&#95;WITH&#95;AES&#95;128&#95;CBC&#95;SHA (<code>0x2f</code>)
  846. &nbsp;<span class="dhParams">
  847. <font color="#F88017">No FS</font>
  848. </span></span>
  849. </td>
  850. <td class="tableRight">
  851. 128
  852. </td>
  853. </tr>
  854. <tr>
  855. <td class="tableLeft" width="180">
  856. <a href="viewClient.html?name=OpenSSL&amp;version=0.9.8y">OpenSSL 0&#46;9&#46;8y</a>
  857. </td>
  858. <td class="tableLeft" width="60">
  859. TLS&#32;1&#46;0
  860. </td>
  861. <td class="tableLeft"><span style="font-size: 11px">
  862. TLS&#95;DHE&#95;RSA&#95;WITH&#95;AES&#95;256&#95;CBC&#95;SHA (<code>0x39</code>)
  863. &nbsp;<span class="dhParams">
  864. <span class="highlight">FS</span>
  865. </span></span>
  866. </td>
  867. <td class="tableRight">
  868. 256
  869. </td>
  870. </tr>
  871. <tr>
  872. <td class="tableLeft" width="180">
  873. <a href="viewClient.html?name=OpenSSL&amp;version=1.0.1h">OpenSSL 1&#46;0&#46;1h</a>
  874. </td>
  875. <td class="tableLeft" width="60">
  876. TLS&#32;1&#46;0
  877. </td>
  878. <td class="tableLeft"><span style="font-size: 11px">
  879. TLS&#95;DHE&#95;RSA&#95;WITH&#95;AES&#95;256&#95;CBC&#95;SHA (<code>0x39</code>)
  880. &nbsp;<span class="dhParams">
  881. <span class="highlight">FS</span>
  882. </span></span>
  883. </td>
  884. <td class="tableRight">
  885. 256
  886. </td>
  887. </tr>
  888. <tr>
  889. <td class="tableLeft" width="180">
  890. <a href="viewClient.html?name=Safari&amp;version=5.1.9&amp;platform=OS%20X%2010.6.8">Safari 5&#46;1&#46;9 / OS&#32;X&#32;10&#46;6&#46;8</a>
  891. </td>
  892. <td class="tableLeft" width="60">
  893. TLS&#32;1&#46;0
  894. </td>
  895. <td class="tableLeft"><span style="font-size: 11px">
  896. TLS&#95;RSA&#95;WITH&#95;AES&#95;128&#95;CBC&#95;SHA (<code>0x2f</code>)
  897. &nbsp;<span class="dhParams">
  898. <font color="#F88017">No FS</font>
  899. </span></span>
  900. </td>
  901. <td class="tableRight">
  902. 128
  903. </td>
  904. </tr>
  905. <tr>
  906. <td class="tableLeft" width="180">
  907. <a href="viewClient.html?name=Safari&amp;version=6&amp;platform=iOS%206.0.1">Safari 6 / iOS&#32;6&#46;0&#46;1</a>
  908. &nbsp;<span class="dhParams"><font color=green>R</font></span> </td>
  909. <td class="tableLeft" width="60">
  910. TLS&#32;1&#46;0
  911. </td>
  912. <td class="tableLeft"><span style="font-size: 11px">
  913. TLS&#95;RSA&#95;WITH&#95;AES&#95;128&#95;CBC&#95;SHA (<code>0x2f</code>)
  914. &nbsp;<span class="dhParams">
  915. <font color="#F88017">No FS</font>
  916. </span></span>
  917. </td>
  918. <td class="tableRight">
  919. 128
  920. </td>
  921. </tr>
  922. <tr>
  923. <td class="tableLeft" width="180">
  924. <a href="viewClient.html?name=Safari&amp;version=7&amp;platform=iOS%207.1">Safari 7 / iOS&#32;7&#46;1</a>
  925. &nbsp;<span class="dhParams"><font color=green>R</font></span> </td>
  926. <td class="tableLeft" width="60">
  927. TLS&#32;1&#46;0
  928. </td>
  929. <td class="tableLeft"><span style="font-size: 11px">
  930. TLS&#95;RSA&#95;WITH&#95;AES&#95;128&#95;CBC&#95;SHA (<code>0x2f</code>)
  931. &nbsp;<span class="dhParams">
  932. <font color="#F88017">No FS</font>
  933. </span></span>
  934. </td>
  935. <td class="tableRight">
  936. 128
  937. </td>
  938. </tr>
  939. <tr>
  940. <td class="tableLeft" width="180">
  941. <a href="viewClient.html?name=Safari&amp;version=8&amp;platform=iOS%208.0%20Beta">Safari 8 / iOS&#32;8&#46;0&#32;Beta</a>
  942. &nbsp;<span class="dhParams"><font color=green>R</font></span> </td>
  943. <td class="tableLeft" width="60">
  944. TLS&#32;1&#46;0
  945. </td>
  946. <td class="tableLeft"><span style="font-size: 11px">
  947. TLS&#95;DHE&#95;RSA&#95;WITH&#95;AES&#95;256&#95;CBC&#95;SHA (<code>0x39</code>)
  948. &nbsp;<span class="dhParams">
  949. <span class="highlight">FS</span>
  950. </span></span>
  951. </td>
  952. <td class="tableRight">
  953. 256
  954. </td>
  955. </tr>
  956. <tr>
  957. <td class="tableLeft" width="180">
  958. <a href="viewClient.html?name=Safari&amp;version=6.0.4&amp;platform=OS%20X%2010.8.4">Safari 6&#46;0&#46;4 / OS&#32;X&#32;10&#46;8&#46;4</a>
  959. &nbsp;<span class="dhParams"><font color=green>R</font></span> </td>
  960. <td class="tableLeft" width="60">
  961. TLS&#32;1&#46;0
  962. </td>
  963. <td class="tableLeft"><span style="font-size: 11px">
  964. TLS&#95;RSA&#95;WITH&#95;AES&#95;128&#95;CBC&#95;SHA (<code>0x2f</code>)
  965. &nbsp;<span class="dhParams">
  966. <font color="#F88017">No FS</font>
  967. </span></span>
  968. </td>
  969. <td class="tableRight">
  970. 128
  971. </td>
  972. </tr>
  973. <tr>
  974. <td class="tableLeft" width="180">
  975. <a href="viewClient.html?name=Safari&amp;version=7&amp;platform=OS%20X%2010.9">Safari 7 / OS&#32;X&#32;10&#46;9</a>
  976. &nbsp;<span class="dhParams"><font color=green>R</font></span> </td>
  977. <td class="tableLeft" width="60">
  978. TLS&#32;1&#46;0
  979. </td>
  980. <td class="tableLeft"><span style="font-size: 11px">
  981. TLS&#95;RSA&#95;WITH&#95;AES&#95;128&#95;CBC&#95;SHA (<code>0x2f</code>)
  982. &nbsp;<span class="dhParams">
  983. <font color="#F88017">No FS</font>
  984. </span></span>
  985. </td>
  986. <td class="tableRight">
  987. 128
  988. </td>
  989. </tr>
  990. <tr>
  991. <td class="tableLeft" width="180">
  992. <a href="viewClient.html?name=Yahoo%20Slurp&amp;version=Jun%202014">Yahoo&#32;Slurp Jun&#32;2014</a>
  993. &nbsp; <span class="dhParams" style="color: #F88017; cursor: help"
  994. title="Browser does not support Server Name Indication.">No SNI <sup>2</sup></span> </td>
  995. <td class="tableLeft" width="60">
  996. TLS&#32;1&#46;0
  997. </td>
  998. <td class="tableLeft"><span style="font-size: 11px">
  999. TLS&#95;DHE&#95;RSA&#95;WITH&#95;AES&#95;256&#95;CBC&#95;SHA (<code>0x39</code>)
  1000. &nbsp;<span class="dhParams">
  1001. <span class="highlight">FS</span>
  1002. </span></span>
  1003. </td>
  1004. <td class="tableRight">
  1005. 256
  1006. </td>
  1007. </tr>
  1008. <tr>
  1009. <td class="tableLeft" width="180">
  1010. <a href="viewClient.html?name=YandexBot&amp;version=Sep%202014">YandexBot Sep&#32;2014</a>
  1011. </td>
  1012. <td class="tableLeft" width="60">
  1013. TLS&#32;1&#46;0
  1014. </td>
  1015. <td class="tableLeft"><span style="font-size: 11px">
  1016. TLS&#95;DHE&#95;RSA&#95;WITH&#95;AES&#95;256&#95;CBC&#95;SHA (<code>0x39</code>)
  1017. &nbsp;<span class="dhParams">
  1018. <span class="highlight">FS</span>
  1019. </span></span>
  1020. </td>
  1021. <td class="tableRight">
  1022. 256
  1023. </td>
  1024. </tr>
  1025. <tr><td colspan="4">
  1026. <font color=grey>(1) Clients that do not support Forward Secrecy (FS) are excluded when determining support for it.</font>
  1027. </td></tr>
  1028. <tr><td colspan="4">
  1029. <font color=grey>(2) No support for virtual SSL hosting (SNI). Connects to the default site if the server uses SNI.</font>
  1030. </td></tr>
  1031. <tr><td colspan="4">
  1032. <font color=grey>(R) Denotes a reference browser or client, with which we expect better effective security.</font>
  1033. </td></tr>
  1034. <tr><td colspan="4">
  1035. <font color=grey>(All) We use defaults, but some platforms do not use their best protocols and features (e.g., Java 6 & 7, older IE).</font>
  1036. </td></tr>
  1037. </tbody>
  1038. </table>
  1039. <br><br>
  1040. <img class="tIcon" src="/images/icon-protocol-details.gif" width="65" height="50" alt="">
  1041. <table class="reportTable">
  1042. <thead>
  1043. <tr>
  1044. <td class="tableHead" colspan="2">Protocol Details</td>
  1045. </tr>
  1046. </thead>
  1047. <tbody>
  1048. <tr class="tableRow">
  1049. <td class="tableLabel"><font color=green>Secure Renegotiation</font></td>
  1050. <td class="tableCell"><font color=green><b>Supported</b></font></td>
  1051. </tr>
  1052. <tr class="tableRow">
  1053. <td class="tableLabel">Secure Client-Initiated Renegotiation</td>
  1054. <td class="tableCell">No</td>
  1055. </tr>
  1056. <tr class="tableRow">
  1057. <td class="tableLabel">Insecure Client-Initiated Renegotiation</td>
  1058. <td class="tableCell">No</td>
  1059. </tr>
  1060. <tr class="tableRow">
  1061. <td class="tableLabel">BEAST attack</td>
  1062. <td class="tableCell">
  1063. Not mitigated server-side (<a href="https://community.qualys.com/blogs/securitylabs/2013/09/10/is-beast-still-a-threat">more info</a>)
  1064. &nbsp;<span class=dhParams>&nbsp;SSL 3: <code>0x7</code>,&nbsp;TLS 1.0: <code>0x7</code></span>
  1065. </td>
  1066. </tr>
  1067. <tr class="tableRow">
  1068. <td class="tableLabel">TLS compression</td>
  1069. <td class="tableCell">No</td>
  1070. </tr>
  1071. <tr class="tableRow">
  1072. <td class="tableLabel">RC4</td>
  1073. <td class="tableCell">Yes (not with TLS 1.1 and newer) (<a href="https://community.qualys.com/blogs/securitylabs/2013/03/19/rc4-in-tls-is-broken-now-what">more info</a>)</font>
  1074. </font></td>
  1075. </tr>
  1076. <tr class="tableRow">
  1077. <td class="tableLabel">Heartbeat (extension)</td>
  1078. <td class="tableCell">No</td>
  1079. </tr>
  1080. <tr class="tableRow">
  1081. <td class="tableLabel">Heartbleed (vulnerability)</td>
  1082. <td class="tableCell">No (<a href="https://community.qualys.com/blogs/securitylabs/2014/04/08/ssl-labs-test-for-the-heartbleed-attack">more info</a>)</td>
  1083. </tr>
  1084. <tr class="tableRow">
  1085. <td class="tableLabel"><font color=#F88017>OpenSSL CCS vuln. (CVE-2014-0224)</font></td>
  1086. <td class="tableCell"><font color=#F88017><b>Inconclusive</b> (requires investigation) (<a style="color: #F88017" href="https://community.qualys.com/blogs/securitylabs/2014/06/13/ssl-pulse-49-vulnerable-to-cve-2014-0224-14-exploitable">more info</a>)</font></td>
  1087. </tr>
  1088. <tr class="tableRow">
  1089. <td class="tableLabel"><font color=#F88017>Forward Secrecy</font></td>
  1090. <td class="tableCell"><font color=#F88017><b>With some browsers</b> (<a style="color: #F88017" href="https://community.qualys.com/blogs/securitylabs/2013/06/25/ssl-labs-deploying-forward-secrecy">more info</a>)</font></td>
  1091. </tr>
  1092. <tr class="tableRow">
  1093. <td class="tableLabel">Next Protocol Negotiation</td>
  1094. <td class="tableCell">No</td>
  1095. </tr>
  1096. <tr class="tableRow">
  1097. <td class="tableLabel"><font color=#F88017>Session resumption (caching)</font></td>
  1098. <td class="tableCell"><font color=#F88017><b>No (IDs empty)</b></font></td>
  1099. </tr>
  1100. <tr class="tableRow">
  1101. <td class="tableLabel">Session resumption (tickets)</td>
  1102. <td class="tableCell">Yes</td>
  1103. </tr>
  1104. <tr class="tableRow">
  1105. <td class="tableLabel">OCSP stapling</td>
  1106. <td class="tableCell">No</td>
  1107. </tr>
  1108. <tr class="tableRow">
  1109. <td class="tableLabel">Strict Transport Security (HSTS)</td>
  1110. <td class="tableCell">No</td>
  1111. </tr>
  1112. <tr class="tableRow">
  1113. <td class="tableLabel">Long handshake intolerance</td>
  1114. <td class="tableCell">No</td>
  1115. </tr>
  1116. <tr class="tableRow">
  1117. <td class="tableLabel">TLS extension intolerance</td>
  1118. <td class="tableCell">No</td>
  1119. </tr>
  1120. <tr class="tableRow">
  1121. <td class="tableLabel">TLS version intolerance</td>
  1122. <td class="tableCell">
  1123. <b><font color="#F88017">
  1124. </font>
  1125. <font color="#666666">
  1126. TLS 2.98&nbsp; </font></b>
  1127. </td>
  1128. </tr>
  1129. <tr class="tableRow">
  1130. <td class="tableLabel">SSL 2 handshake compatibility</td>
  1131. <td class="tableCell"> Yes </td>
  1132. </tr>
  1133. </tbody>
  1134. </table>
  1135. <br><br>
  1136. <img class="tIcon" src="/images/icon-misc.png" width="65" height="50" alt="">
  1137. <table class="reportTable">
  1138. <thead>
  1139. <tr>
  1140. <td class="tableHead" colspan="2">Miscellaneous</td>
  1141. </tr>
  1142. </thead>
  1143. <tbody>
  1144. <tr class="tableRow">
  1145. <td class="tableLabel">Test date</td>
  1146. <td class="tableCell">Wed&#32;Sep&#32;17&#32;15&#58;52&#58;24&#32;UTC&#32;2014</td>
  1147. </tr>
  1148. <tr class="tableRow">
  1149. <td class="tableLabel">Test duration</td>
  1150. <td class="tableCell">86.537 seconds</td>
  1151. </tr>
  1152. <tr class="tableRow">
  1153. <td class="tableLabel">HTTP status code</td>
  1154. <td class="tableCell">
  1155. 301
  1156. </td>
  1157. </tr>
  1158. <tr class="tableRow">
  1159. <td class="tableLabel">HTTP forwarding</td>
  1160. <td class="tableCell">http&#58;&#47;&#47;www&#46;fortuneo&#46;fr</td>
  1161. </tr>
  1162. <tr class="tableRow">
  1163. <td class="tableLabel">HTTP server signature</td>
  1164. <td class="tableCell">Apache</td>
  1165. </tr>
  1166. <tr class="tableRow">
  1167. <td class="tableLabel">Server hostname</td>
  1168. <td class="tableCell"> WWW&#46;FORTUNEO&#46;FR </td>
  1169. </tr>
  1170. <tr class="tableRow">
  1171. <td class="tableLabel">PCI compliant</td>
  1172. <td class="tableCell"> Yes </td>
  1173. </tr>
  1174. <tr class="tableRow">
  1175. <td class="tableLabel">FIPS-ready</td>
  1176. <td class="tableCell"> No </td>
  1177. </tr>
  1178. </tbody>
  1179. </table>
  1180. <br><br>
  1181. </div>
  1182. </div>
  1183. </div>
  1184. <p class="grayText">SSL Report v1&#46;10&#46;31</p>
  1185. </div>
  1186. </div>
  1187. <div id="pageEnd">
  1188. <div id="copyright">
  1189. <table width=910 border=0 cellpadding=5 cellspacing=0><tr>
  1190. <td style="font-size: 12px">
  1191. Copyright &copy; 2009-2014 <a href="https://www.qualys.com">Qualys, Inc</A>. All Rights Reserved.
  1192. </td><td align=right style="font-size: 12px">
  1193. <a href="/about/terms.html">Terms and Conditions</a>
  1194. </td>
  1195. </tr></table>
  1196. </div>
  1197. </div>
  1198. <script type="text/javascript">
  1199. var _gaq = _gaq || [];
  1200. _gaq.push(['_setAccount', 'UA-9372751-1']);
  1201. _gaq.push(['_trackPageview']);
  1202. (function() {
  1203. var ga = document.createElement('script'); ga.type = 'text/javascript'; ga.async = true;
  1204. ga.src = ('https:' == document.location.protocol ? 'https://ssl' : 'http://www') + '.google-analytics.com/ga.js';
  1205. var s = document.getElementsByTagName('script')[0]; s.parentNode.insertBefore(ga, s);
  1206. })();
  1207. </script>
  1208. </body>
  1209. </html>