SSL Security Test of
upl.force.com

Test the SSL/TLS stack of your web or email server for security, cryptographic flaws and misconfigurations, and compliance with NIST & HIPAA
Free online tool with PDF report
  • Web Server SSL/TLS Security
  • Post-Quantum Cryptography (PQC) Readiness
  • Email Server SSL/TLS Security
  • PCI DSS, GDPR, HIPAA & NIST Compliance
  • SSL Certificate Validity
  • Best-Practices Compliance
Free online tool with PDF report
186,708,705 tests performed
Provided "as is" without any warranty of any kind
195
tests
running
132,574
tests
in 24 hours
Tests in 24 Hours
Share this report:

Summary of upl.force.com:443 (HTTPS) SSL Security Test

Provided "as is" without any warranty of any kind.
This test was made 2824 days ago and may be outdated
Refresh Test
Date/Time:Dec 26th, 2018 20:50 GMT+0
Source IP/Port:101.53.168.33:443
Protocol:HTTPS
Location:Mount Hope, United StatesUnited States
Your final score:
  • A
  • B
  • C
  • F
A-
The server configuration seems to be good, but is not compliant with HIPAA guidance and NIST guidelines.
Information

Test Results Summary for upl.force.com

  • SSL/TLS Certificate Analysis
    1 SSL/TLS end-entity certificate detected: the first certificate is a trusted RSA 2048 bits certificate with issuer DigiCert SHA2 Secure Server CA valid until December 13, 2019. 1 certificate chain detected. Show details.
  • PCI DSS Compliance Test
    All 10 supported cipher suites are compliant with PCI DSS. The server supports only PCI DSS compliant protocols: TLSv1.1 and TLSv1.2. All supported elliptic curves are compliant with PCI DSS: P-256. No additional PCI DSS compliance issues were identified. Show details.
  • NIST and HIPAA Compliance Test
    All 10 supported cipher suites are compliant with HIPAA requirements (Ref. NIST SP 800-52). The server supports only HIPAA compliant protocols: TLSv1.1 and TLSv1.2. All supported elliptic curves are compliant with HIPAA: P-256. There is 1 more issue which makes the server non-compliant with HIPAA: server does not support OCSP stapling. Show details.
  • Industry Best Practices Test
    3 issues related to industry best practices were identified: server does not support TLS 1.3, server does not prefer cipher suites providing PFS, server does not provide HSTS. Show details.

Compliance Summary for upl.force.com

  • PCI DSS Compliance Passed: All 10 supported cipher suites are compliant with PCI DSS. The server supports only PCI DSS compliant protocols: TLSv1.1 and TLSv1.2. All supported elliptic curves are compliant with PCI DSS: P-256. No additional PCI DSS compliance issues were identified.
  • HIPAA Compliance Failed: All 10 supported cipher suites are compliant with HIPAA requirements (Ref. NIST SP 800-52). The server supports only HIPAA compliant protocols: TLSv1.1 and TLSv1.2. All supported elliptic curves are compliant with HIPAA: P-256. There is 1 more issue which makes the server non-compliant with HIPAA: server does not support OCSP stapling.
  • GDPR Compliance Passed: All 10 supported cipher suites are compliant with GDPR. The server supports only GDPR compliant protocols: TLSv1.1 and TLSv1.2. All supported elliptic curves are compliant with GDPR: P-256. No additional GDPR compliance issues were identified.

PDF Certificate and Badge

Please wait. Data is loading...
Share this report: