Summary of pop.erols.com:995 (POP3S) SSL Security Test
Provided "as is" without any warranty of any kind.
This test was made 1722 days ago and may be outdated
Refresh Test
Date/Time:Jan 11th, 2022 00:59 GMT+0
Source IP/Port:69.168.97.78:995
Protocol:POP3S
Location:Buffalo, United States
Your final score:
- A
- B
- C
- F
F
The SSL certificate is untrusted. Modern browsers will display a security warning message to all website visitors. Review and remediate highlighted issues.
Non-compliant with PCI DSS requirements
The server has TLS 1.0 enabled. It is non-compliant with NIST since SP 800-52 REV. 2 and non-compliant with PCI DSS since the 30th of June 2018.
Non-compliant with PCI DSS and NIST
The TLS engine does not support a TLS version newer than TLSv1.0 and is outdated.
Non-compliant with NIST and HIPAA
The tested service seems to be a POP3S.
Information
Test Results Summary for pop.erols.com
- 1 SSL/TLS end-entity certificate detected: the first certificate is an untrusted RSA 2048 bits certificate with issuer Go Daddy Secure Certificate Authority - G2 valid until January 16, 2022. 2 certificate chains detected. Show details.
- 2 of 6 supported cipher suites are not compliant with PCI DSS. The server supports only PCI DSS non-compliant protocols: TLSv1.0. There is 1 more issue which makes the server non-compliant with PCI DSS: certificates are untrusted. Show details.
- 2 of 6 supported cipher suites are not compliant with HIPAA requirements (Ref. NIST SP 800-52). The server supports only HIPAA non-compliant protocols: TLSv1.0. There are 2 more issues which make the server non-compliant with HIPAA: server does not support OCSP stapling, server does not support extended master sECret. Show details.
- 1 issue related to industry best practices was identified: server does not support TLS 1.3. Show details.
Compliance Summary for pop.erols.com
- PCI DSS Compliance Failed: 2 of 6 supported cipher suites are not compliant with PCI DSS. The server supports only PCI DSS non-compliant protocols: TLSv1.0. There is 1 more issue which makes the server non-compliant with PCI DSS: certificates are untrusted.
- HIPAA Compliance Failed: 2 of 6 supported cipher suites are not compliant with HIPAA requirements (Ref. NIST SP 800-52). The server supports only HIPAA non-compliant protocols: TLSv1.0. There are 2 more issues which make the server non-compliant with HIPAA: server does not support OCSP stapling, server does not support extended master sECret.
- GDPR Compliance Failed: 2 of 6 supported cipher suites are not compliant with GDPR. The server supports only GDPR non-compliant protocols: TLSv1.0. There is 1 more issue which makes the server non-compliant with GDPR: certificates are untrusted.