SSL Security Test of
observatory.mozilla.org

Test the SSL/TLS stack of your web or email server for security, cryptographic flaws and misconfigurations, and compliance with NIST & HIPAA
Free online tool with PDF report
  • Web Server SSL/TLS Security
  • Post-Quantum Cryptography (PQC) Readiness
  • Email Server SSL/TLS Security
  • PCI DSS, GDPR, HIPAA & NIST Compliance
  • SSL Certificate Validity
  • Best-Practices Compliance
Free online tool with PDF report
186,209,518 tests performed
Provided "as is" without any warranty of any kind
291
tests
running
135,046
tests
in 24 hours
Tests in 24 Hours
Share this report:

Summary of observatory.mozilla.org:443 (HTTPS) SSL Security Test

Provided "as is" without any warranty of any kind.
This test was made 1070 days ago and may be outdated
Refresh Test
Date/Time:Oct 4th, 2023 18:06 GMT+0
Source IP/Port:54.157.74.171:443
Protocol:HTTPS
Location:Ashburn, United StatesUnited States
Your final score:
  • A
  • B
  • C
  • F
B-

Test Results Summary for observatory.mozilla.org

  • SSL/TLS Certificate Analysis
    1 SSL/TLS end-entity certificate detected: the first certificate is a trusted RSA 2048 bits certificate with issuer Amazon RSA 2048 M01 valid until August 12, 2024. 3 certificate chains detected. Show details.
  • PCI DSS Compliance Test
    All 4 supported cipher suites are compliant with PCI DSS. The server supports only PCI DSS compliant protocols: TLSv1.2. All supported elliptic curves are compliant with PCI DSS: P-256. There is 1 more issue which makes the server non-compliant with PCI DSS: diffie-hellman parameter weak. Show details.
  • NIST and HIPAA Compliance Test
    All 4 supported cipher suites are compliant with HIPAA requirements (Ref. NIST SP 800-52). The server supports only HIPAA compliant protocols: TLSv1.2. All supported elliptic curves are compliant with HIPAA: P-256. There are 3 more issues which make the server non-compliant with HIPAA: server does not support OCSP stapling, diffie-hellman parameter weak, server does not support extended master sECret. Show details.
  • Industry Best Practices Test
    3 issues related to industry best practices were identified: server does not support TLS 1.3, server does not have cipher preference, server supports client-initiated secure renegotiation. Show details.

Compliance Summary for observatory.mozilla.org

  • PCI DSS Compliance Failed: All 4 supported cipher suites are compliant with PCI DSS. The server supports only PCI DSS compliant protocols: TLSv1.2. All supported elliptic curves are compliant with PCI DSS: P-256. There is 1 more issue which makes the server non-compliant with PCI DSS: diffie-hellman parameter weak.
  • HIPAA Compliance Failed: All 4 supported cipher suites are compliant with HIPAA requirements (Ref. NIST SP 800-52). The server supports only HIPAA compliant protocols: TLSv1.2. All supported elliptic curves are compliant with HIPAA: P-256. There are 3 more issues which make the server non-compliant with HIPAA: server does not support OCSP stapling, diffie-hellman parameter weak, server does not support extended master sECret.
  • GDPR Compliance Failed: All 4 supported cipher suites are compliant with GDPR. The server supports only GDPR compliant protocols: TLSv1.2. All supported elliptic curves are compliant with GDPR: P-256. There is 1 more issue which makes the server non-compliant with GDPR: diffie-hellman parameter weak.
Please wait. Data is loading...
Share this report: