73/100 SECURITY SCORE

Certificate Information

Subject
CN=dance.wisc.edu
Issuer
C=US, O=Amazon, CN=Amazon RSA 2048 M04
Valid From
October 21, 2025
Valid Until
November 19, 2026 334 days
Public Key
RSA 2048 bit Adequate
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
1F:5F:66:04:AC:4A:3D:45:D5:FC:45:ED:47:86:8A:6E:EC:A0:3F:9E:DF:95:2C:DE:FE:92:44:72:FE:11:95:E0
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2
Forward Secrecy
Limited (Check cipher configuration)
Warnings
  • TLS 1.3 is not supported (recommended)

HTTP Security Headers

Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Add Strict-Transport-Security header with max-age of at least 1 year
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

90 domains
astro.wisc.edu controlledag.wisc.edu core.wisc.edu dance.wisc.edu federalrelations.wisc.edu flas.wisc.edu indonesia.wisc.edu korea.wisc.edu nri.wisc.edu wisconsinfoundationseeds.wisc.edu *.astro.wisc.edu *.controlledag.wisc.edu *.core.wisc.edu *.dance.wisc.edu *.federalrelations.wisc.edu *.flas.wisc.edu *.indonesia.wisc.edu *.korea.wisc.edu *.nri.wisc.edu *.wisconsinfoundationseeds.wisc.edu ans.engineering.wisc.edu bcghelp.biostat.wisc.edu cavh.cee.wisc.edu cengizresearchgroup.pediatrics.wisc.edu crcsouth.waisman.wisc.edu enspec.russell.wisc.edu forestfungi.russell.wisc.edu francklab.me.wisc.edu helpdesk.psychiatry.wisc.edu hub.sustainability.wisc.edu irms.biotech.wisc.edu karasov.russell.wisc.edu liulab.mse.wisc.edu m3pl.me.wisc.edu macguidwinlab.russell.wisc.edu murtazalab.surgery.wisc.edu occupationaltherapy.education.wisc.edu pauli.russell.wisc.edu peery.russell.wisc.edu pmcl.me.wisc.edu researchdevelopment.sites.wisc.edu rissman.russell.wisc.edu senerresearchgroup.energy.wisc.edu sharedresources.smph.wisc.edu ssml.soils.wisc.edu steffan.russell.wisc.edu townsend.russell.wisc.edu uw-nematode-diagnostic-lab.russell.wisc.edu uwlink.waisman.wisc.edu vandeelen-drake.russell.wisc.edu vegento.russell.wisc.edu well.robotics.wisc.edu wftracy.cals.wisc.edu *.ans.engineering.wisc.edu *.bcghelp.biostat.wisc.edu *.cavh.cee.wisc.edu *.cengizresearchgroup.pediatrics.wisc.edu *.crcsouth.waisman.wisc.edu *.enspec.russell.wisc.edu *.forestfungi.russell.wisc.edu *.francklab.me.wisc.edu *.helpdesk.psychiatry.wisc.edu *.hub.sustainability.wisc.edu *.irms.biotech.wisc.edu *.karasov.russell.wisc.edu *.liulab.mse.wisc.edu *.m3pl.me.wisc.edu *.macguidwinlab.russell.wisc.edu *.murtazalab.surgery.wisc.edu *.occupationaltherapy.education.wisc.edu *.pauli.russell.wisc.edu *.peery.russell.wisc.edu *.pmcl.me.wisc.edu *.researchdevelopment.sites.wisc.edu *.rissman.russell.wisc.edu *.senerresearchgroup.energy.wisc.edu *.sharedresources.smph.wisc.edu *.ssml.soils.wisc.edu *.steffan.russell.wisc.edu *.townsend.russell.wisc.edu *.uw-nematode-diagnostic-lab.russell.wisc.edu *.uwlink.waisman.wisc.edu *.vandeelen-drake.russell.wisc.edu *.vegento.russell.wisc.edu *.well.robotics.wisc.edu *.wftracy.cals.wisc.edu

Other domains in certificate

conservationprotraining.org *.conservationprotraining.org
lakesuperiorcollaborative.org *.lakesuperiorcollaborative.org