76/100 SECURITY SCORE

Certificate Information

Subject
CN=aujio.com
Issuer
C=US, O=Let's Encrypt, CN=R12
Valid From
May 21, 2026
Valid Until
August 19, 2026 53 days
Public Key
RSA 4096 bit Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
6A:37:0D:7F:DD:65:B3:78:8C:8F:9A:72:E9:B6:36:22:47:7B:B7:13:61:24:B7:06:F2:20:2B:00:7E:1F:28:CF
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured Analyze
Content-Security-Policy-Report-Only
Missing
Not configured Analyze
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Add Strict-Transport-Security header with max-age of at least 1 year
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

90 domains
quaug.com *.quaug.com *.93ipne.quaug.com *.access.quaug.com *.apps.quaug.com *.connect.quaug.com *.gateway.quaug.com *.gp.quaug.com *.mail.quaug.com *.ns.quaug.com *.nvcy.quaug.com *.portal.quaug.com *.postmaster.quaug.com *.rdp.quaug.com *.remoteapp.quaug.com *.remoto.quaug.com *.secure.quaug.com *.sslvpn.quaug.com *.vdi.quaug.com *.vpn.quaug.com *.vpn1.quaug.com

Other domains in certificate

*.admin.aujio.com *.api.aujio.com *.app.aujio.com *.apps.aujio.com *.assets.aujio.com aujio.com *.aujio.com *.citvq.aujio.com *.cloud.aujio.com *.console.aujio.com *.demo.aujio.com *.dev.aujio.com *.gateway.aujio.com *.kc.aujio.com *.mail.aujio.com *.n.aujio.com *.orff.aujio.com *.rd.aujio.com *.rdp.aujio.com *.rds.aujio.com *.remote.aujio.com *.sitemap.aujio.com *.staging.aujio.com *.test.aujio.com
*.admin.bagin.it *.analyze.bagin.it *.api.bagin.it *.backend.bagin.it bagin.it *.bagin.it *.bigdata.bagin.it *.dashboard.bagin.it *.demo.bagin.it *.dev.bagin.it *.forecast.bagin.it *.hostmaster.bagin.it *.mail2.bagin.it *.metric.bagin.it *.preprod-superset.bagin.it *.report.bagin.it *.staging.bagin.it *.stats.bagin.it *.superset.bagin.it *.visual.bagin.it *.webmail.bagin.it
*.admin.rent-a-villa.com *.alpha.rent-a-villa.com *.api.rent-a-villa.com *.app.rent-a-villa.com *.assets.rent-a-villa.com *.fhfbpgzfgeassets.rent-a-villa.com *.gzfgeassets.rent-a-villa.com *.hostmaster.rent-a-villa.com *.intranet.rent-a-villa.com *.m.rent-a-villa.com *.magento.rent-a-villa.com *.portal.rent-a-villa.com *.rd.rent-a-villa.com *.rds.rent-a-villa.com rent-a-villa.com *.rent-a-villa.com *.shop.rent-a-villa.com *.sslvpn.rent-a-villa.com *.store.rent-a-villa.com *.summary.rent-a-villa.com *.testing.rent-a-villa.com *.vpn.rent-a-villa.com *.wildcard.rent-a-villa.com *.www.rent-a-villa.com