76/100 SECURITY SCORE

Certificate Information

Subject
CN=ieasgu.org
Issuer
C=US, O=Let's Encrypt, CN=R13
Valid From
February 12, 2026
Valid Until
May 13, 2026 89 days
Public Key
RSA 4096 bit Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
F0:BA:C4:9D:3D:69:A9:E1:FD:66:8E:3A:16:09:F8:68:D6:39:3A:4A:70:81:72:2C:38:15:7A:BF:A0:C2:13:37
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Add Strict-Transport-Security header with max-age of at least 1 year
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

90 domains
occhiuzzi.com *.occhiuzzi.com *.acceso.occhiuzzi.com *.access.occhiuzzi.com *.api.occhiuzzi.com *.app.occhiuzzi.com *.apps.occhiuzzi.com *.citrix.occhiuzzi.com *.cloud.occhiuzzi.com *.comsusan.occhiuzzi.com *.connect.occhiuzzi.com *.desktop.occhiuzzi.com *.desktopstudent.occhiuzzi.com *.emi.occhiuzzi.com *.fhzcsmail.occhiuzzi.com *.firewall.occhiuzzi.com *.gateway.occhiuzzi.com *.intra.occhiuzzi.com *.m.occhiuzzi.com *.materiais.occhiuzzi.com *.online.occhiuzzi.com *.portal.occhiuzzi.com *.receiver.occhiuzzi.com *.remote.occhiuzzi.com *.remoto.occhiuzzi.com *.secure.occhiuzzi.com *.sitemap.occhiuzzi.com *.sitemaps.occhiuzzi.com *.ssl.occhiuzzi.com *.sslvpn.occhiuzzi.com *.virtualapps.occhiuzzi.com *.virtualstudent.occhiuzzi.com *.vpn.occhiuzzi.com *.vpnssl.occhiuzzi.com *.webvpn.occhiuzzi.com *.workspace.occhiuzzi.com

Other domains in certificate

*.admin.demo.parts demo.parts *.demo.parts *.m.demo.parts *.sitemap.demo.parts
*.api.dispurinsurance.com *.app.dispurinsurance.com *.assets.dispurinsurance.com *.blartixbxgm.dispurinsurance.com *.cloud.dispurinsurance.com *.cockpit.dispurinsurance.com dispurinsurance.com *.dispurinsurance.com *.ebmail.dispurinsurance.com *.m.dispurinsurance.com *.mobile.dispurinsurance.com *.test.dispurinsurance.com *.wap.dispurinsurance.com *.webmail.dispurinsurance.com
enayat.com *.enayat.com *.new.enayat.com *.wp.enayat.com *.ww1.enayat.com
*.autodiscover.ieasgu.org *.cpanel.ieasgu.org *.cpcalendars.ieasgu.org *.cpcontacts.ieasgu.org ieasgu.org *.ieasgu.org *.mail.ieasgu.org *.wiki.ieasgu.org *.ww99.ieasgu.org *.www.ieasgu.org
*.453e4b56-43ea-49e5-b92a-954a864180f5.illumesummit.com *.cloud.illumesummit.com *.dev.illumesummit.com illumesummit.com *.illumesummit.com *.lcybmadmin.illumesummit.com *.members.illumesummit.com *.shop.illumesummit.com *.wvrhlshop.illumesummit.com *.www.illumesummit.com
*.cloud.neomocreations.com *.dev.neomocreations.com neomocreations.com *.neomocreations.com *.ww1.neomocreations.com
weddingsinspiredbylove.beauty *.weddingsinspiredbylove.beauty
*.cwa40bxske.www24116.cc www24116.cc *.www24116.cc