Open
Cached
·
just now
77/100
SECURITY SCORE
Certificate Information
Subject
CN=mail.aau.dk
Issuer
C=US, ST=Arizona, L=Scottsdale, O=GoDaddy.com, Inc., OU=http://certs.godaddy.com/repository/, CN=Go Daddy Secure Certificate Authority - G2
Valid From
September 07, 2025
Valid Until
October 09, 2026
285 days
Public Key
RSA
2048 bit
Adequate
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
84:B5:C1:1F:98:12:0A:1A:21:22:E3:F4:80:87:01:47:4E:CA:77:67:C0:9C:4C:25:9A:7A:45:02:65:4E:3F:7B
Alternative Names
Security Configuration
TLS Protocols
TLS 1.0
TLS 1.1
TLS 1.2
Forward Secrecy
Limited
(Check cipher configuration)
Warnings
- • TLS 1.3 is not supported (recommended)
- • TLS 1.1 is deprecated and should be disabled
- • TLS 1.0 is deprecated and should be disabled
HTTP Security Headers
Status
Strict-Transport-Security
Good
max-age=31536000; includeSubDomains
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Excellent
DENY
X-Content-Type-Options
Good
nosniff
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Consider adding 'preload' to HSTS for maximum security
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
45 domains
autodiscover.aau.dk
mail.aau.dk
mta.aau.dk
securemail.aau.dk
smtp-external.aau.dk
smtp-internal.aau.dk
smtp.aau.dk
autodiscover.aau-it.aau.dk
autodiscover.adm.aau.dk
autodiscover.aub.aau.dk
autodiscover.bio.aau.dk
autodiscover.build.aau.dk
autodiscover.business.aau.dk
autodiscover.cgs.aau.dk
autodiscover.civil.aau.dk
autodiscover.create.aau.dk
autodiscover.cs.aau.dk
autodiscover.dcm.aau.dk
autodiscover.dps.aau.dk
autodiscover.energy.aau.dk
autodiscover.es.aau.dk
autodiscover.et.aau.dk
autodiscover.forlag.aau.dk
autodiscover.hst.aau.dk
autodiscover.hum.aau.dk
autodiscover.iaspbl.aau.dk
autodiscover.id.aau.dk
autodiscover.ikl.aau.dk
autodiscover.ikp.aau.dk
autodiscover.ist.aau.dk
autodiscover.its.aau.dk
autodiscover.law.aau.dk
autodiscover.learning.aau.dk
autodiscover.m-tech.aau.dk
autodiscover.math.aau.dk
autodiscover.mp.aau.dk
autodiscover.nano.aau.dk
autodiscover.plan.aau.dk
autodiscover.samf.aau.dk
autodiscover.sbi.aau.dk
autodiscover.socsci.aau.dk
autodiscover.staff.aau.dk
autodiscover.student.aau.dk
download.mail.aau.dk
www.mail.aau.dk