Open
Cached
·
just now
76/100
SECURITY SCORE
Certificate Information
Subject
CN=elnevado.com
Issuer
C=US, O=Let's Encrypt, CN=R13
Valid From
February 05, 2026
Valid Until
May 06, 2026
82 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
7D:A5:CC:0C:B6:37:06:80:C6:C0:30:05:30:C5:EC:D2:CD:9C:7D:E3:F7:07:AD:26:43:36:73:63:EF:91:1A:BB
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
90 domains
thebush.com
*.thebush.com
*.citrix.thebush.com
*.secure.thebush.com
att-mobilityservice.biz
*.att-mobilityservice.biz
*.catalogci.att-mobilityservice.biz
*.cl.att-mobilityservice.biz
*.dev.att-mobilityservice.biz
*.dino.att-mobilityservice.biz
*.report.att-mobilityservice.biz
*.ciscovpn.elnevado.com
elnevado.com
*.elnevado.com
*.help.elnevado.com
*.vpn2.elnevado.com
indeep-project.org
*.indeep-project.org
*.ciscovpn.kubotatractor.com
*.forum.kubotatractor.com
*.help.kubotatractor.com
kubotatractor.com
*.kubotatractor.com
*.ww.kubotatractor.com
*.ciscovpn.mykerinos.com
*.help.mykerinos.com
mykerinos.com
*.mykerinos.com
*.ww17.mykerinos.com
*.b54zj.newlast.top
*.kwid9.newlast.top
newlast.top
*.newlast.top
*.ciscovpn.platanazo.com
*.help.platanazo.com
platanazo.com
*.platanazo.com
*.ww17.platanazo.com
*.app.rocamora.com
*.assets.rocamora.com
*.pablo.rocamora.com
rocamora.com
*.rocamora.com
*.webmail.rocamora.com
*.ww16.rocamora.com
*.analyze.sty188.vip
*.app.sty188.vip
sty188.vip
*.sty188.vip
*.accounts.yourharrodsrewards.com
*.agri.yourharrodsrewards.com
*.ai-preprod.yourharrodsrewards.com
*.alpha-ci.yourharrodsrewards.com
*.anketa.yourharrodsrewards.com
*.au.yourharrodsrewards.com
*.bi.yourharrodsrewards.com
*.blog.yourharrodsrewards.com
*.ca.yourharrodsrewards.com
*.cd.yourharrodsrewards.com
*.ci-ci.yourharrodsrewards.com
*.cicd.yourharrodsrewards.com
*.club.yourharrodsrewards.com
*.cv.yourharrodsrewards.com
*.demeter.yourharrodsrewards.com
*.e.yourharrodsrewards.com
*.facebook.yourharrodsrewards.com
*.home.yourharrodsrewards.com
*.jenkins.yourharrodsrewards.com
*.kemerovo.yourharrodsrewards.com
*.marketing.yourharrodsrewards.com
*.myfiles.yourharrodsrewards.com
*.news.yourharrodsrewards.com
*.o.yourharrodsrewards.com
*.oldolpanther.yourharrodsrewards.com
*.pool.yourharrodsrewards.com
*.puppet.yourharrodsrewards.com
*.rpc.yourharrodsrewards.com
*.s.yourharrodsrewards.com
*.server01.yourharrodsrewards.com
*.superset.yourharrodsrewards.com
*.sy.yourharrodsrewards.com
*.system.yourharrodsrewards.com
*.thumb.yourharrodsrewards.com
*.tj.yourharrodsrewards.com
*.tornado.yourharrodsrewards.com
*.users.yourharrodsrewards.com
*.vestibular.yourharrodsrewards.com
*.yirklqlriexo333f.yourharrodsrewards.com
yourharrodsrewards.com
*.yourharrodsrewards.com
Other domains in certificate