73/100 SECURITY SCORE

Certificate Information

Subject
CN=*.globalhealth.cals.wisc.edu
Issuer
C=US, O=Amazon, CN=Amazon RSA 2048 M04
Valid From
October 21, 2025
Valid Until
November 19, 2026 359 days
Public Key
RSA 2048 bit Adequate
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
A2:C5:23:BE:7D:69:19:95:21:FE:78:D0:16:3A:A8:4A:FC:77:6D:FF:EC:B2:FD:1D:0B:D8:C0:CC:31:30:F0:88
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2
Forward Secrecy
Limited (Check cipher configuration)
Warnings
  • TLS 1.3 is not supported (recommended)

HTTP Security Headers

Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Add Strict-Transport-Security header with max-age of at least 1 year
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

94 domains
businesspresentingandwritinglab.wisc.edu cias.wisc.edu dcc.wisc.edu digitalstudies.wisc.edu forwardbio.wisc.edu gpal.wisc.edu justfusion.wisc.edu obe.wisc.edu openlora.wisc.edu sameproject.wisc.edu uwpsl.wisc.edu *.businesspresentingandwritinglab.wisc.edu *.cias.wisc.edu *.dcc.wisc.edu *.digitalstudies.wisc.edu *.forwardbio.wisc.edu *.gpal.wisc.edu *.justfusion.wisc.edu *.obe.wisc.edu *.openlora.wisc.edu *.sameproject.wisc.edu *.uwpsl.wisc.edu 3d-csi.discovery.wisc.edu 3dgenome.discovery.wisc.edu arriolaapelolab.andysci.wisc.edu brave.psychiatry.wisc.edu cadre.med.wisc.edu cavagnero.chem.wisc.edu cbitp.chem.wisc.edu ccr.commarts.wisc.edu ctecc.radiology.wisc.edu denulab.discovery.wisc.edu globalhealth.cals.wisc.edu hemplab.humanecology.wisc.edu langlab.labs.wisc.edu madability.cs.wisc.edu madcor.neep.wisc.edu madtownsono.emed.wisc.edu mcgc.law.wisc.edu mlopt.ece.wisc.edu morapinzonlab.medicine.wisc.edu notbohm.engr.wisc.edu one-good-idea.nri.wisc.edu ponto-projects.discovery.wisc.edu ross.discovery.wisc.edu smartfarm.cals.wisc.edu smith.chem.wisc.edu tec.education.wisc.edu threads.humanecology.wisc.edu vanpijkeren.foodsci.wisc.edu virtualenvironments.discovery.wisc.edu wearable2018.discovery.wisc.edu werewolf.discovery.wisc.edu wisp.coerso.wisc.edu witwbook.international.wisc.edu *.3d-csi.discovery.wisc.edu *.3dgenome.discovery.wisc.edu *.arriolaapelolab.andysci.wisc.edu *.brave.psychiatry.wisc.edu *.cadre.med.wisc.edu *.cavagnero.chem.wisc.edu *.cbitp.chem.wisc.edu *.ccr.commarts.wisc.edu *.ctecc.radiology.wisc.edu *.denulab.discovery.wisc.edu *.globalhealth.cals.wisc.edu *.hemplab.humanecology.wisc.edu *.langlab.labs.wisc.edu *.madability.cs.wisc.edu *.madcor.neep.wisc.edu *.madtownsono.emed.wisc.edu *.mcgc.law.wisc.edu *.mlopt.ece.wisc.edu *.morapinzonlab.medicine.wisc.edu *.notbohm.engr.wisc.edu *.one-good-idea.nri.wisc.edu *.ponto-projects.discovery.wisc.edu *.ross.discovery.wisc.edu *.smartfarm.cals.wisc.edu *.smith.chem.wisc.edu *.tec.education.wisc.edu *.threads.humanecology.wisc.edu *.vanpijkeren.foodsci.wisc.edu *.virtualenvironments.discovery.wisc.edu *.wearable2018.discovery.wisc.edu *.werewolf.discovery.wisc.edu *.wisp.coerso.wisc.edu *.witwbook.international.wisc.edu

Other domains in certificate

ccma.coop *.ccma.coop
healthtransitionwi.org *.healthtransitionwi.org
mayorsinnovation.org *.mayorsinnovation.org