Open
Cached
·
just now
85/100
SECURITY SCORE
Certificate Information
Subject
C=FR, ST=Île-de-France, L=Rueil-Malmaison, O=Schneider Electric Industries SAS, CN=aliases3.schneider-electric.com
Issuer
C=US, O=DigiCert Inc, OU=www.digicert.com, CN=GeoTrust TLS RSA CA G1
Valid From
March 05, 2025
Valid Until
March 18, 2026
56 days
Public Key
RSA
2048 bit
Adequate
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
DD:B3:6B:70:EC:EA:FF:31:E9:1A:2D:36:9B:30:8D:B5:9B:94:B9:C7:C8:9D:B2:55:68:51:97:4E:62:06:A1:47
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
Forward Secrecy
Limited
(Check cipher configuration)
Warnings
- • TLS 1.3 is not supported (recommended)
HTTP Security Headers
Status
Strict-Transport-Security
Good
max-age=31536000; includeSubDomains
Content-Security-Policy
Basic
object-src; base-uri; script-src; +4 more
object-src 'none'; base-uri 'self'; script-src https://*.go-mpulse.net https: 'unsafe-inline' 'unsafe-eval'; frame-src https:; frame-ancestors https:; form-action 'self'; default-src https://*.go-mpulse.net https://*.akstat.io https: 'unsafe-inline' 'unsafe-eval' data: blob: mediastream: ws: wss:;
X-Frame-Options
Good
SAMEORIGIN
X-Content-Type-Options
Good
nosniff
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Consider adding 'preload' to HSTS for maximum security
- • Improve CSP by adding more specific directives and removing 'unsafe-inline'
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
72 domains
pro-face.com
www.apckorea.com
apcmedia.com
apcpacific.com
apcpartnercentral.com
www.apcpartnercentral.com
www.ascopower.ca
m.ascopower.cn
www.ascopower.cn
ascopower.com.br
www.ascopower.com.br
www.ascopower.info
www.ascopower.net
www.ascopower.us
www.ascopowernet.ca
www.ascopowertechnologies.asia
www.ascopowertechnologies.cn
buyautomation.com
proface.com.cn
www.proface.com.cn
schneider-electric.com.tw
eschneider.pl
www.eschneider.pl
esyscfg.com
fazticaret.com
www.fazticaret.com
feller.swiss
www.feller.swiss
af.go2se.com
merten-austria.at
mesa.es
pmedemo.biz
powerlogicdemos.com
pro-face.fr
www.pro-face.fr
proface.co.jp
www.ccs.proface.co.jp
proface.fr
www.proface.fr
ritto.de
robertshawindustrial.com
ms.schneider-electric.be
aliases3.schneider-electric.com
blogespanol.schneider-electric.com
buildingskb.schneider-electric.com
consulting.schneider-electric.com
ecobuilding.schneider-electric.com
partner.schneider-electric.com
passwordreset-uat.schneider-electric.com
passwordreset.schneider-electric.com
sdreport.schneider-electric.com
software.schneider-electric.com
telemetry.schneider-electric.com
www.cahiers-techniques.schneider-electric.com
www.citect-webhelp.schneider-electric.com
www.citect.schneider-electric.com
blog.schneider-electric.de
schneider-electric.kr
www.schneider-electric.kr
static.schneider-electric.us
schneider-infra.in
schneiderelectric.com
www.schneiderelectric.com
schneiderelectric.pt
www.schneiderelectric.pt
serelays.com
www.serelays.com
www.sereply.com
squared.com
wgats.com
www.wgats.com
www.zeptrionair.ch
Other domains in certificate