76/100 SECURITY SCORE

Certificate Information

Subject
CN=hoteltilmen.com
Issuer
C=US, O=Let's Encrypt, CN=R13
Valid From
February 12, 2026
Valid Until
May 13, 2026 89 days
Public Key
RSA 4096 bit Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
79:D8:04:4B:9E:19:F1:07:94:F0:92:0E:3E:80:0F:93:05:60:73:A0:58:B9:7D:D9:71:C8:0A:AF:43:E3:45:AE
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Add Strict-Transport-Security header with max-age of at least 1 year
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

89 domains
grumpygrouper.com *.grumpygrouper.com *.access.grumpygrouper.com *.anyconnect.grumpygrouper.com *.app.grumpygrouper.com *.apps.grumpygrouper.com *.auth.grumpygrouper.com *.autoconfig.grumpygrouper.com *.cisco.grumpygrouper.com *.ciscovpn.grumpygrouper.com *.citrix.grumpygrouper.com *.cloud.grumpygrouper.com *.cpanel.grumpygrouper.com *.drvpn.grumpygrouper.com *.email.grumpygrouper.com *.fax.grumpygrouper.com *.gateway.grumpygrouper.com *.globalprotect.grumpygrouper.com *.gp.grumpygrouper.com *.imap.grumpygrouper.com *.intra.grumpygrouper.com *.labvirtual.grumpygrouper.com *.m.grumpygrouper.com *.mail.grumpygrouper.com *.online.grumpygrouper.com *.prelogon.grumpygrouper.com *.ra.grumpygrouper.com *.ravpn.grumpygrouper.com *.rd.grumpygrouper.com *.rdp.grumpygrouper.com *.receiver.grumpygrouper.com *.remoteapp.grumpygrouper.com *.secureaccess.grumpygrouper.com *.smtp.grumpygrouper.com *.ssl.grumpygrouper.com *.sslvpn.grumpygrouper.com *.vdi.grumpygrouper.com *.virtualapps.grumpygrouper.com *.vpn.grumpygrouper.com *.vpnssl.grumpygrouper.com *.webdisk.grumpygrouper.com *.webmail.grumpygrouper.com *.workspace.grumpygrouper.com *.www.grumpygrouper.com

Other domains in certificate

*.admin.aysin.com *.anyconnect.aysin.com *.apps.aysin.com aysin.com *.aysin.com *.cloud.aysin.com *.cloudvpn.aysin.com *.correo.aysin.com *.email.aysin.com *.ex02.aysin.com *.exchange.aysin.com *.fortigate.aysin.com *.fortinet.aysin.com *.ftp.aysin.com *.gateway.aysin.com *.m.aysin.com *.mail.aysin.com *.mail3.aysin.com *.owa.aysin.com *.rds.aysin.com *.secure.aysin.com *.sslvpn.aysin.com *.vdi.aysin.com *.vpn.aysin.com *.webmail.aysin.com *.ww25.aysin.com
cameramatrimoniale.com *.cameramatrimoniale.com *.hostmaster.cameramatrimoniale.com
*.aint.cod.fi cod.fi *.cod.fi *.fecund.cod.fi *.int.cod.fi *.r.cod.fi *.rubr.cod.fi *.scalaint.cod.fi *.sercace.cod.fi *.t.cod.fi *.x.cod.fi
*.bi.hoteltilmen.com *.dashboard.hoteltilmen.com *.demo.hoteltilmen.com hoteltilmen.com *.hoteltilmen.com