Open Cached · 11h ago
83/100 SECURITY SCORE

Certificate Information

Subject
C=US, ST=California, L=Redwood City, O=Oracle Corporation, CN=www-legacy-4.oracle.com
Issuer
C=US, O=DigiCert Inc, CN=DigiCert TLS RSA SHA256 2020 CA1
Valid From
November 14, 2024
Valid Until
November 14, 2025 11 days
Public Key
ECDSA 256 bit (P-256) Adequate
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
2E:E8:15:22:88:A3:2A:DE:01:38:C0:A5:DD:40:5F:BF:31:07:0B:44:BF:E5:CA:B6:00:13:A7:37:37:08:45:59
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Good
max-age=31536000; includeSubDomains
Content-Security-Policy
Weak
frame-ancestors
X-Frame-Options
Good
sameorigin
X-Content-Type-Options
Good
nosniff
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Consider adding 'preload' to HSTS for maximum security
  • Significantly strengthen CSP directives
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

100 domains
java.sun.com lightyear.sun.com shop.sun.com www.sun.com

Other domains in certificate

aconex.com blog.aconex.com www.aconex.com
adiinsights.com www.adiinsights.com
bigmachines.com blog.bigmachines.com blogs.bigmachines.com expresshelp.bigmachines.com info.bigmachines.com support.bigmachines.com www.bigmachines.com
helpdesk.bitzermobile.com
conject.com support.conject.com
crowdtwist.com developers.crowdtwist.com www.crowdtwist.com
databaseworld.com www.databaseworld.com
assure1.federos.com federos.com sso.federos.com support.federos.com www.federos.com
foex.at www.foex.at
go.java.com
blogs.java.net community.java.net forums.java.net java-champions.java.net today.java.net weblogs.java.net
javaone.com www.javaone.com
learnjde.com www.learnjde.com
go.logfire.com logfire.com www.logfire.com
markie-awards.com www.markie-awards.com
markieawards.com www.markieawards.com
markvhurd.com www.markvhurd.com
maxymiser.co www.maxymiser.co
maxymiser.de www.maxymiser.de
blog.maxymiser.fr maxymiser.fr www.maxymiser.fr
helpdesk.micros-fidelio.co.uk
citrix.micros-retail.com mrohcitrix.micros-retail.com
usc.micros.com
support.micros.it
www.moat.com www.pro.moat.com
support.monolith-software.com
blog.opower.com opower.com www.opower.com
bugzilla.oracle.com campus.oracle.com code.oracle.com communities.oracle.com etrm.oracle.com outreach.oracle.com www-legacy-4.oracle.com
oraclecloud.com www.oraclecloud.com
oraclecloudworld.com www.oraclecloudworld.com
oracledatabaseworld.com www.oracledatabaseworld.com
oracledatacloud.com www.oracledatacloud.com
oraclepressbooks.com www.oraclepressbooks.com
selectminds.com www.selectminds.com
smartercx.com www.smartercx.com
sparklinedata.com www.sparklinedata.com
uat2.submittalexchange.com
secure.tekelec.com
twa.torex.com
www.vocado.com
blog.wercker.com www.wercker.com
www.zenedge.com zenedge.com