Open
Cached
·
just now
73/100
SECURITY SCORE
Certificate Information
Subject
CN=dance.wisc.edu
Issuer
C=US, O=Amazon, CN=Amazon RSA 2048 M04
Valid From
October 21, 2025
Valid Until
November 19, 2026
334 days
Public Key
RSA
2048 bit
Adequate
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
1F:5F:66:04:AC:4A:3D:45:D5:FC:45:ED:47:86:8A:6E:EC:A0:3F:9E:DF:95:2C:DE:FE:92:44:72:FE:11:95:E0
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
Forward Secrecy
Limited
(Check cipher configuration)
Warnings
- • TLS 1.3 is not supported (recommended)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
90 domains
astro.wisc.edu
controlledag.wisc.edu
core.wisc.edu
dance.wisc.edu
federalrelations.wisc.edu
flas.wisc.edu
indonesia.wisc.edu
korea.wisc.edu
nri.wisc.edu
wisconsinfoundationseeds.wisc.edu
*.astro.wisc.edu
*.controlledag.wisc.edu
*.core.wisc.edu
*.dance.wisc.edu
*.federalrelations.wisc.edu
*.flas.wisc.edu
*.indonesia.wisc.edu
*.korea.wisc.edu
*.nri.wisc.edu
*.wisconsinfoundationseeds.wisc.edu
ans.engineering.wisc.edu
bcghelp.biostat.wisc.edu
cavh.cee.wisc.edu
cengizresearchgroup.pediatrics.wisc.edu
crcsouth.waisman.wisc.edu
enspec.russell.wisc.edu
forestfungi.russell.wisc.edu
francklab.me.wisc.edu
helpdesk.psychiatry.wisc.edu
hub.sustainability.wisc.edu
irms.biotech.wisc.edu
karasov.russell.wisc.edu
liulab.mse.wisc.edu
m3pl.me.wisc.edu
macguidwinlab.russell.wisc.edu
murtazalab.surgery.wisc.edu
occupationaltherapy.education.wisc.edu
pauli.russell.wisc.edu
peery.russell.wisc.edu
pmcl.me.wisc.edu
researchdevelopment.sites.wisc.edu
rissman.russell.wisc.edu
senerresearchgroup.energy.wisc.edu
sharedresources.smph.wisc.edu
ssml.soils.wisc.edu
steffan.russell.wisc.edu
townsend.russell.wisc.edu
uw-nematode-diagnostic-lab.russell.wisc.edu
uwlink.waisman.wisc.edu
vandeelen-drake.russell.wisc.edu
vegento.russell.wisc.edu
well.robotics.wisc.edu
wftracy.cals.wisc.edu
*.ans.engineering.wisc.edu
*.bcghelp.biostat.wisc.edu
*.cavh.cee.wisc.edu
*.cengizresearchgroup.pediatrics.wisc.edu
*.crcsouth.waisman.wisc.edu
*.enspec.russell.wisc.edu
*.forestfungi.russell.wisc.edu
*.francklab.me.wisc.edu
*.helpdesk.psychiatry.wisc.edu
*.hub.sustainability.wisc.edu
*.irms.biotech.wisc.edu
*.karasov.russell.wisc.edu
*.liulab.mse.wisc.edu
*.m3pl.me.wisc.edu
*.macguidwinlab.russell.wisc.edu
*.murtazalab.surgery.wisc.edu
*.occupationaltherapy.education.wisc.edu
*.pauli.russell.wisc.edu
*.peery.russell.wisc.edu
*.pmcl.me.wisc.edu
*.researchdevelopment.sites.wisc.edu
*.rissman.russell.wisc.edu
*.senerresearchgroup.energy.wisc.edu
*.sharedresources.smph.wisc.edu
*.ssml.soils.wisc.edu
*.steffan.russell.wisc.edu
*.townsend.russell.wisc.edu
*.uw-nematode-diagnostic-lab.russell.wisc.edu
*.uwlink.waisman.wisc.edu
*.vandeelen-drake.russell.wisc.edu
*.vegento.russell.wisc.edu
*.well.robotics.wisc.edu
*.wftracy.cals.wisc.edu
conservationprotraining.org
*.conservationprotraining.org
lakesuperiorcollaborative.org
*.lakesuperiorcollaborative.org
Other domains in certificate