Summary of meudesktopext.serasaexperian.com.br:443 (HTTPS) SSL Security Test
Provided "as is" without any warranty of any kind.
This test was made 2280 days ago and may be outdated
Refresh Test
Date/Time:May 27th, 2020 12:22 GMT+0
Source IP/Port:200.234.250.22:443
Protocol:HTTPS
Location:São Paulo, Brazil
Your final score:
- A
- B
- C
- F
A
Test Results Summary for meudesktopext.serasaexperian.com.br
- 1 SSL/TLS end-entity certificate(s) detected: the first certificate is a trusted RSA 2048 bits certificate with issuer GlobalSign RSA OV SSL CA 2018 valid until February 4, 2022. 1 certificate chain(s) detected. Show details.
- All 12 supported cipher suite(s) are compliant with PCI DSS. The server supports only PCI DSS compliant protocols: TLSv1.1 and TLSv1.2. All supported elliptic curves are compliant with PCI DSS: P-256, P-384, P-224 and P-521. No additional PCI DSS compliance issues were identified. Show details.
- All 12 supported cipher suite(s) are compliant with HIPAA requirements (Ref. NIST SP 800-52). The server supports only HIPAA compliant protocols: TLSv1.1 and TLSv1.2. All supported elliptic curves are compliant with HIPAA: P-256, P-384, P-224 and P-521. There are 2 more issue(s) which make the server non-compliant with HIPAA: server does not support OCSP stapling, server does not support extended master sECret. Show details.
- 4 issue(s) related to industry best practices were identified: server does not support TLS 1.3, server does not prefer cipher suites providing PFS, server does not provide HSTS, server-initiated secure renegotiation. Show details.
Compliance Summary for meudesktopext.serasaexperian.com.br
- PCI DSS Compliance Passed: All 12 supported cipher suite(s) are compliant with PCI DSS. The server supports only PCI DSS compliant protocols: TLSv1.1 and TLSv1.2. All supported elliptic curves are compliant with PCI DSS: P-256, P-384, P-224 and P-521. No additional PCI DSS compliance issues were identified.
- HIPAA Compliance Failed: All 12 supported cipher suite(s) are compliant with HIPAA requirements (Ref. NIST SP 800-52). The server supports only HIPAA compliant protocols: TLSv1.1 and TLSv1.2. All supported elliptic curves are compliant with HIPAA: P-256, P-384, P-224 and P-521. There are 2 more issue(s) which make the server non-compliant with HIPAA: server does not support OCSP stapling, server does not support extended master sECret.
- GDPR Compliance Passed: All 12 supported cipher suite(s) are compliant with GDPR. The server supports only GDPR compliant protocols: TLSv1.1 and TLSv1.2. All supported elliptic curves are compliant with GDPR: P-256, P-384, P-224 and P-521. No additional GDPR compliance issues were identified.


