SSL Security Test of
translate.fracademic.com

Test the SSL/TLS stack of your web or email server for security, cryptographic flaws and misconfigurations, and compliance with NIST & HIPAA
Free online tool with PDF report
  • Web Server SSL/TLS Security
  • Post-Quantum Cryptography (PQC) Readiness
  • Email Server SSL/TLS Security
  • PCI DSS, GDPR, HIPAA & NIST Compliance
  • SSL Certificate Validity
  • Best-Practices Compliance
Free online tool with PDF report
186,589,806 tests performed
Provided "as is" without any warranty of any kind
297
tests
running
123,189
tests
in 24 hours
Tests in 24 Hours
Share this report:

Summary of translate.fracademic.com:443 (HTTPS) SSL Security Test

Provided "as is" without any warranty of any kind.
This test was made 1518 days ago and may be outdated
Refresh Test
Date/Time:Jul 22nd, 2022 10:25 GMT+0
Source IP/Port:138.201.81.43:443
Protocol:HTTPS
Location:Kassel, GermanyGermany
Your final score:
  • A
  • B
  • C
  • F
F
The SSL certificate is untrusted. Modern browsers will display a security warning message to all website visitors. Review and remediate highlighted issues.
Non-compliant with PCI DSS requirements
The server has TLS 1.0 enabled. It is non-compliant with NIST since SP 800-52 REV. 2 and non-compliant with PCI DSS since the 30th of June 2018.
Non-compliant with PCI DSS and NIST
The server has TLS 1.1 enabled. NIST recommends to drop TLS 1.1 support since SP 800-52 REV. 2
Information
Certificate chain relies on expired certificate, it can break connection for some clients.
Misconfiguration or weakness

Test Results Summary for translate.fracademic.com

  • SSL/TLS Certificate Analysis
    1 SSL/TLS end-entity certificate detected: the first certificate is an untrusted RSA 2048 bits certificate with issuer Sectigo RSA Domain Validation Secure Server CA valid until January 4, 2022. 2 certificate chains detected. Show details.
  • PCI DSS Compliance Test
    All 22 supported cipher suites are compliant with PCI DSS. The server supports PCI DSS compliant protocols (TLSv1.1 and TLSv1.2) as well as non-compliant protocols (TLSv1.0). All supported elliptic curves are compliant with PCI DSS: P-256, P-521, P-384, X25519 and X448. There is 1 more issue which makes the server non-compliant with PCI DSS: certificates are untrusted. Show details.
  • NIST and HIPAA Compliance Test
    4 of 22 supported cipher suites are not compliant with HIPAA requirements (Ref. NIST SP 800-52). The server supports HIPAA compliant protocols (TLSv1.1 and TLSv1.2) as well as non-compliant protocols (TLSv1.0). All supported elliptic curves are compliant with HIPAA: P-256, P-521, P-384, X25519 and X448. There is 1 more issue which makes the server non-compliant with HIPAA: server does not support OCSP stapling. Show details.
  • Industry Best Practices Test
    3 issues related to industry best practices were identified: server does not support TLS 1.3, server does not provide HSTS, certificate chain rely on expired certificate. Show details.

Compliance Summary for translate.fracademic.com

  • PCI DSS Compliance Failed: All 22 supported cipher suites are compliant with PCI DSS. The server supports PCI DSS compliant protocols (TLSv1.1 and TLSv1.2) as well as non-compliant protocols (TLSv1.0). All supported elliptic curves are compliant with PCI DSS: P-256, P-521, P-384, X25519 and X448. There is 1 more issue which makes the server non-compliant with PCI DSS: certificates are untrusted.
  • HIPAA Compliance Failed: 4 of 22 supported cipher suites are not compliant with HIPAA requirements (Ref. NIST SP 800-52). The server supports HIPAA compliant protocols (TLSv1.1 and TLSv1.2) as well as non-compliant protocols (TLSv1.0). All supported elliptic curves are compliant with HIPAA: P-256, P-521, P-384, X25519 and X448. There is 1 more issue which makes the server non-compliant with HIPAA: server does not support OCSP stapling.
  • GDPR Compliance Failed: All 22 supported cipher suites are compliant with GDPR. The server supports GDPR compliant protocols (TLSv1.1 and TLSv1.2) as well as non-compliant protocols (TLSv1.0). All supported elliptic curves are compliant with GDPR: P-256, P-521, P-384, X25519 and X448. There is 1 more issue which makes the server non-compliant with GDPR: certificates are untrusted.
Please wait. Data is loading...
Share this report: