SSL Security Test of
ebanking.vietinbank.vn

Test the SSL/TLS stack of your web or email server for security, cryptographic flaws and misconfigurations, and compliance with NIST & HIPAA
Free online tool with PDF report
  • Web Server SSL/TLS Security
  • Post-Quantum Cryptography (PQC) Readiness
  • Email Server SSL/TLS Security
  • PCI DSS, GDPR, HIPAA & NIST Compliance
  • SSL Certificate Validity
  • Best-Practices Compliance
Free online tool with PDF report
187,601,646 tests performed
Provided "as is" without any warranty of any kind
238
tests
running
88,493
tests
in 24 hours
Tests in 24 Hours
Share this report:

Summary of ebanking.vietinbank.vn:443 (HTTPS) SSL Security Test

Provided "as is" without any warranty of any kind.
This test was made 1740 days ago and may be outdated
Refresh Test
Date/Time:Jan 5th, 2022 02:02 GMT+0
Source IP/Port:203.189.28.25:443
Protocol:HTTPS
Location:Hanoi, VietnamVietnam
Your final score:
  • A
  • B
  • C
  • F
A-
The server has TLS 1.0 enabled. It is non-compliant with NIST since SP 800-52 REV. 2 and non-compliant with PCI DSS since the 30th of June 2018.
Non-compliant with PCI DSS and NIST
The server has TLS 1.1 enabled. NIST recommends to drop TLS 1.1 support since SP 800-52 REV. 2
Information

Test Results Summary for ebanking.vietinbank.vn

  • SSL/TLS Certificate Analysis
    1 SSL/TLS end-entity certificate detected: the first certificate is a trusted RSA 2048 bits certificate with issuer GlobalSign Extended Validation CA - SHA256 - G3 valid until July 16, 2022. 1 certificate chain detected. Show details.
  • PCI DSS Compliance Test
    All 14 supported cipher suites are compliant with PCI DSS. The server supports PCI DSS compliant protocols (TLSv1.1 and TLSv1.2) as well as non-compliant protocols (TLSv1.0). All supported elliptic curves are compliant with PCI DSS: P-256 and P-384. No additional PCI DSS compliance issues were identified. Show details.
  • NIST and HIPAA Compliance Test
    2 of 14 supported cipher suites are not compliant with HIPAA requirements (Ref. NIST SP 800-52). The server supports HIPAA compliant protocols (TLSv1.1 and TLSv1.2) as well as non-compliant protocols (TLSv1.0). All supported elliptic curves are compliant with HIPAA: P-256 and P-384. There is 1 more issue which makes the server non-compliant with HIPAA: server does not support OCSP stapling. Show details.
  • Industry Best Practices Test
    3 issues related to industry best practices were identified: server does not support TLS 1.3, server does not provide HSTS, server supports client-initiated secure renegotiation. Show details.

Compliance Summary for ebanking.vietinbank.vn

  • PCI DSS Compliance Failed: All 14 supported cipher suites are compliant with PCI DSS. The server supports PCI DSS compliant protocols (TLSv1.1 and TLSv1.2) as well as non-compliant protocols (TLSv1.0). All supported elliptic curves are compliant with PCI DSS: P-256 and P-384. No additional PCI DSS compliance issues were identified.
  • HIPAA Compliance Failed: 2 of 14 supported cipher suites are not compliant with HIPAA requirements (Ref. NIST SP 800-52). The server supports HIPAA compliant protocols (TLSv1.1 and TLSv1.2) as well as non-compliant protocols (TLSv1.0). All supported elliptic curves are compliant with HIPAA: P-256 and P-384. There is 1 more issue which makes the server non-compliant with HIPAA: server does not support OCSP stapling.
  • GDPR Compliance Failed: All 14 supported cipher suites are compliant with GDPR. The server supports GDPR compliant protocols (TLSv1.1 and TLSv1.2) as well as non-compliant protocols (TLSv1.0). All supported elliptic curves are compliant with GDPR: P-256 and P-384. No additional GDPR compliance issues were identified.

PDF Certificate and Badge

Please wait. Data is loading...
Share this report: