Summary of observatory.mozilla.org:443 (HTTPS) SSL Security Test
Provided "as is" without any warranty of any kind.
This test was made 1070 days ago and may be outdated
Refresh Test
Date/Time:Oct 4th, 2023 18:06 GMT+0
Source IP/Port:54.157.74.171:443
Protocol:HTTPS
Location:Ashburn, United States
Your final score:
- A
- B
- C
- F
B-
Test Results Summary for observatory.mozilla.org
- 1 SSL/TLS end-entity certificate detected: the first certificate is a trusted RSA 2048 bits certificate with issuer Amazon RSA 2048 M01 valid until August 12, 2024. 3 certificate chains detected. Show details.
- All 4 supported cipher suites are compliant with PCI DSS. The server supports only PCI DSS compliant protocols: TLSv1.2. All supported elliptic curves are compliant with PCI DSS: P-256. There is 1 more issue which makes the server non-compliant with PCI DSS: diffie-hellman parameter weak. Show details.
- All 4 supported cipher suites are compliant with HIPAA requirements (Ref. NIST SP 800-52). The server supports only HIPAA compliant protocols: TLSv1.2. All supported elliptic curves are compliant with HIPAA: P-256. There are 3 more issues which make the server non-compliant with HIPAA: server does not support OCSP stapling, diffie-hellman parameter weak, server does not support extended master sECret. Show details.
- 3 issues related to industry best practices were identified: server does not support TLS 1.3, server does not have cipher preference, server supports client-initiated secure renegotiation. Show details.
Compliance Summary for observatory.mozilla.org
- PCI DSS Compliance Failed: All 4 supported cipher suites are compliant with PCI DSS. The server supports only PCI DSS compliant protocols: TLSv1.2. All supported elliptic curves are compliant with PCI DSS: P-256. There is 1 more issue which makes the server non-compliant with PCI DSS: diffie-hellman parameter weak.
- HIPAA Compliance Failed: All 4 supported cipher suites are compliant with HIPAA requirements (Ref. NIST SP 800-52). The server supports only HIPAA compliant protocols: TLSv1.2. All supported elliptic curves are compliant with HIPAA: P-256. There are 3 more issues which make the server non-compliant with HIPAA: server does not support OCSP stapling, diffie-hellman parameter weak, server does not support extended master sECret.
- GDPR Compliance Failed: All 4 supported cipher suites are compliant with GDPR. The server supports only GDPR compliant protocols: TLSv1.2. All supported elliptic curves are compliant with GDPR: P-256. There is 1 more issue which makes the server non-compliant with GDPR: diffie-hellman parameter weak.