73/100 SECURITY SCORE

Certificate Information

Subject
CN=www.cs.wisc.edu
Issuer
C=US, O=Amazon, CN=Amazon RSA 2048 M01
Valid From
October 13, 2025
Valid Until
November 11, 2026 341 days
Public Key
RSA 2048 bit Adequate
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
3F:6F:A5:22:D0:53:01:F0:B3:97:E1:CB:D1:03:60:CF:D5:B2:E1:A1:D2:22:07:59:38:BA:77:DA:E6:88:5B:F0
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2
Forward Secrecy
Limited (Check cipher configuration)
Warnings
  • TLS 1.3 is not supported (recommended)

HTTP Security Headers

Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Add Strict-Transport-Security header with max-age of at least 1 year
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

74 domains
centerforrarediseases.wisc.edu computing.wisc.edu currielab.wisc.edu polarvr.wisc.edu precisionmedicine.wisc.edu scotus-diversity.wisc.edu stat.wisc.edu teo.wisc.edu *.centerforrarediseases.wisc.edu *.computing.wisc.edu *.currielab.wisc.edu *.iea.wisc.edu *.polarvr.wisc.edu *.precisionmedicine.wisc.edu *.psych.wisc.edu *.scotus-diversity.wisc.edu *.stat.wisc.edu *.teo.wisc.edu bmi775.sites.wisc.edu careercenter.education.wisc.edu danlab.bact.wisc.edu dvimont.aos.wisc.edu eces.it.wisc.edu echo.engr.wisc.edu global.cals.wisc.edu hauserlab.cals.wisc.edu hci.cs.wisc.edu insectfarming.cals.wisc.edu ipc.cals.wisc.edu janechurpek.labs.wisc.edu markleylab.biochem.wisc.edu medesignlab.me.wisc.edu mmil.engr.wisc.edu mvp.virology.wisc.edu neuroland.waisman.wisc.edu ohgroup.engr.wisc.edu pierrelab.cals.wisc.edu residents.housing.wisc.edu rhodeslab.engr.wisc.edu rienstralab.biochem.wisc.edu schrodilab.genetics.wisc.edu summercamp.recwell.wisc.edu summerlaunch.engineering.wisc.edu thestudiouw.arts.wisc.edu wece.engr.wisc.edu wings.cs.wisc.edu www.cs.wisc.edu *.bmi775.sites.wisc.edu *.careercenter.education.wisc.edu *.danlab.bact.wisc.edu *.dvimont.aos.wisc.edu *.eces.it.wisc.edu *.echo.engr.wisc.edu *.global.cals.wisc.edu *.hauserlab.cals.wisc.edu *.hci.cs.wisc.edu *.insectfarming.cals.wisc.edu *.ipc.cals.wisc.edu *.janechurpek.labs.wisc.edu *.markleylab.biochem.wisc.edu *.medesignlab.me.wisc.edu *.mmil.engr.wisc.edu *.mvp.virology.wisc.edu *.neuroland.waisman.wisc.edu *.pierrelab.cals.wisc.edu *.residents.housing.wisc.edu *.rhodeslab.engr.wisc.edu *.rienstralab.biochem.wisc.edu *.schrodilab.genetics.wisc.edu *.summercamp.recwell.wisc.edu *.summerlaunch.engineering.wisc.edu *.thestudiouw.arts.wisc.edu *.wece.engr.wisc.edu *.wings.cs.wisc.edu