SSL Security Test of rpt.toptip.cc

Test the SSL/TLS stack of your web or email server for security, cryptographic flaws and misconfigurations, and compliance with NIST & HIPAA
Free online tool with PDF report
  • Web Server SSL/TLS Security
  • Post-Quantum Cryptography (PQC) Readiness
  • Email Server SSL/TLS Security
  • PCI DSS, HIPAA & NIST Compliance
  • SSL Certificate Validity
  • Best-Practices Compliance
Free online tool with PDF report
181,445,711 tests performed
Provided "as is" without any warranty of any kind
197
tests
running
56,841
tests
in 24 hours
Tests in 24 Hours
Share this report:

Summary of rpt.toptip.cc:443 (HTTPS) SSL Security Test

Provided "as is" without any warranty of any kind.
This test was made 492 days ago and may be outdated
Refresh Test
Date/Time:Jan 18th, 2025 09:13 GMT+0
Source IP/Port:148.153.84.115:443
Protocol:HTTPS
Location:Frankfurt am Main, GermanyGermany
Your final score:
  • A
  • B
  • C
  • F
F

Executive Summary for rpt.toptip.cc

  • SSL/TLS Certificate Analysis
    1 SSL/TLS end-entity certificate(s) detected: the first certificate is an untrusted RSA 4096 bits certificate with unknown issuer valid until October 19, 2072. 1 certificate chain(s) detected. Show details.
  • PCI DSS Compliance Test
    All 14 supported cipher suite(s) are compliant with PCI DSS. The server supports PCI DSS compliant protocols (TLSv1.1 and TLSv1.2) as well as non-compliant protocols (TLSv1.0). All supported elliptic curves are compliant with PCI DSS: P-256, P-521, brainpoolP512r1, brainpoolP384r1, P-384, brainpoolP256r1, secp256k1, B-571, K-571, K-409, B-409, K-283 and B-283. There are 1 more issue(s) which make the server non-compliant with PCI DSS: certificates are untrusted. Show details.
  • NIST and HIPAA Compliance Test
    2 of 14 supported cipher suites are not compliant with NIST and HIPAA. The server supports NIST and HIPAA compliant protocols (TLSv1.1 and TLSv1.2) as well as non-compliant protocols (TLSv1.0). All supported elliptic curves are compliant with NIST and HIPAA: P-256, P-521, brainpoolP512r1, brainpoolP384r1, P-384, brainpoolP256r1, secp256k1, B-571, K-571, K-409, B-409, K-283 and B-283. There are 4 more issue(s) which make the server non-compliant with NIST and HIPAA: certificates are self-signed, certificate does not provide OCSP revocation information, server does not support TLS 1.3, server does not support extended master sECret. Show details.
  • Industry Best Practices Test
    3 issue(s) related to industry best practices were identified: server does not support TLS 1.3, HTTP site does not redirect to the HTTPS version, server does not provide HSTS. Show details.
Please wait. Data is loading...
Please wait. Data is loading...
Share this report: