Cached · just now
76/100 SECURITY SCORE

Certificate Information

Subject
CN=justzero.it
Issuer
C=US, O=Let's Encrypt, CN=R12
Valid From
May 11, 2026
Valid Until
August 09, 2026 86 days
Public Key
RSA 4096 bit Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
7F:31:BF:B8:C2:AA:9F:FD:5B:8B:75:E4:74:7E:B3:F2:F2:D0:30:2B:F9:1C:F2:60:8A:49:E7:A2:8E:DD:A0:13
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured Analyze
Content-Security-Policy-Report-Only
Missing
Not configured Analyze
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Add Strict-Transport-Security header with max-age of at least 1 year
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

89 domains
rastayard.com *.rastayard.com *.a.rastayard.com *.access.rastayard.com *.autoconfig.rastayard.com *.autodiscover.rastayard.com *.cloud.rastayard.com *.cloudvpn.rastayard.com *.connect.rastayard.com *.drvpn.rastayard.com *.email.rastayard.com *.firewall.rastayard.com *.forticlient.rastayard.com *.fortigate.rastayard.com *.fortigatevpn.rastayard.com *.fortinet.rastayard.com *.fortivpn.rastayard.com *.ftp.rastayard.com *.gate.rastayard.com *.gateway.rastayard.com *.mail.rastayard.com *.office.rastayard.com *.portal.rastayard.com *.ra.rastayard.com *.ravpn.rastayard.com *.secure.rastayard.com *.smtp.rastayard.com *.ssl.rastayard.com *.sslvpn.rastayard.com *.webvpn.rastayard.com

Other domains in certificate

*.0afmf.cryptocurrencymc.top *.1yme1.cryptocurrencymc.top *.3ugcn.cryptocurrencymc.top *.5vs9r.cryptocurrencymc.top *.aowpq.cryptocurrencymc.top *.b5hyr.cryptocurrencymc.top *.c6udy.cryptocurrencymc.top cryptocurrencymc.top *.cryptocurrencymc.top *.ks0v9.cryptocurrencymc.top *.kwid9.cryptocurrencymc.top *.l1v3f.cryptocurrencymc.top *.niw2v.cryptocurrencymc.top *.o7p4x.cryptocurrencymc.top *.orrwv.cryptocurrencymc.top *.osc36.cryptocurrencymc.top *.rczhl.cryptocurrencymc.top *.s28s9.cryptocurrencymc.top *.tpxa3.cryptocurrencymc.top *.uw9i.cryptocurrencymc.top *.v3ywp.cryptocurrencymc.top *.wakkl.cryptocurrencymc.top *.y6iui.cryptocurrencymc.top *.yhue2.cryptocurrencymc.top *.z3dl1.cryptocurrencymc.top
*.admin.justzero.it *.backend.justzero.it *.demo.justzero.it *.dev.justzero.it justzero.it *.justzero.it *.mx.justzero.it *.staging.justzero.it *.www.justzero.it
*.58c9b99f-8a96-4bcc-b2c8-4257b20e00ce.responsble.info *.a.responsble.info *.api.responsble.info *.backup.responsble.info *.cf8cb904-b155-4292-8af6-21fe9cf14d3f.responsble.info *.dashboard.responsble.info *.dev.responsble.info *.mailer.responsble.info *.marketing.responsble.info *.qa.responsble.info responsble.info *.responsble.info *.staging.responsble.info *.stg.responsble.info *.testing.responsble.info *.v1.responsble.info *.web.responsble.info *.www.responsble.info
*.hostmaster.rjfs.net rjfs.net *.rjfs.net
streameastec.com *.streameastec.com *.ww16.streameastec.com *.ww38.streameastec.com