Open
Cached
·
just now
83/100
SECURITY SCORE
Certificate Information
Subject
C=IT, L=Firenze, O=Università degli Studi di Firenze, CN=archeologia.unifi.it
Issuer
C=GR, O=Hellenic Academic and Research Institutions CA, CN=GEANT TLS RSA 1
Valid From
September 19, 2025
Valid Until
September 19, 2026
317 days
Public Key
RSA
2048 bit
Adequate
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
D0:64:7D:9C:61:A5:98:0D:25:C2:51:B7:BF:E1:BE:2C:79:F8:A0:F5:42:84:0D:0C:A6:86:6C:E3:2D:78:2B:04
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Present
max-age=15768000; includeSubDomains; preload
Content-Security-Policy
Missing
Not configured
X-Frame-Options
Good
SAMEORIGIN
X-Content-Type-Options
Good
nosniff
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Increase HSTS max-age to at least 1 year and add includeSubDomains
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
60 domains
archeologia.unifi.it
archivibiblioteche.unifi.it
beniculturali.unifi.it
cdlscienzeinfanzia.unifi.it
cdslettere.unifi.it
cl-llsi.unifi.it
clm-36.unifi.it
clm-llea.unifi.it
clmfls.unifi.it
dams.unifi.it
dirigenzaservizi.unifi.it
educazioneformazione.unifi.it
educazionesociale.unifi.it
filologiamoderna.unifi.it
formazione-sviluppo-sostenibile.unifi.it
formazioneprimaria.unifi.it
geoantropologia.unifi.it
intermediazione.unifi.it
lmlogica.unifi.it
lmscienzefilosofiche.unifi.it
logfisme.unifi.it
ltfilosofia.unifi.it
pratichecomunicazione.unifi.it
progeas.unifi.it
sc-umacom.unifi.it
scienzespettacolo.unifi.it
scienzestoriche.unifi.it
spatialmanagement.unifi.it
storarte.unifi.it
storia.unifi.it
www.archeologia.unifi.it
www.archivibiblioteche.unifi.it
www.beniculturali.unifi.it
www.cdlscienzeinfanzia.unifi.it
www.cdslettere.unifi.it
www.cl-llsi.unifi.it
www.clm-36.unifi.it
www.clm-llea.unifi.it
www.clmfls.unifi.it
www.dams.unifi.it
www.dirigenzaservizi.unifi.it
www.educazioneformazione.unifi.it
www.educazionesociale.unifi.it
www.filologiamoderna.unifi.it
www.formazione-sviluppo-sostenibile.unifi.it
www.formazioneprimaria.unifi.it
www.geoantropologia.unifi.it
www.intermediazione.unifi.it
www.lmlogica.unifi.it
www.lmscienzefilosofiche.unifi.it
www.logfisme.unifi.it
www.ltfilosofia.unifi.it
www.pratichecomunicazione.unifi.it
www.progeas.unifi.it
www.sc-umacom.unifi.it
www.scienzespettacolo.unifi.it
www.scienzestoriche.unifi.it
www.spatialmanagement.unifi.it
www.storarte.unifi.it
www.storia.unifi.it