|
|
| 1. General Results, most used to calculate the result |
| A | name "116.62.54.91" is ipv4 address, public suffix is not defined
|
| A | Good: All ip addresses are public addresses
|
| A | Good: destination is https
|
| A | Good - only one version with Http-Status 200
|
| A | Good: No cookie sent via http.
|
| A | Good: every https has a Strict Transport Security Header
|
| A | Good: HSTS max-age is long enough, 31536000 seconds = 365 days
|
| A | Good: Some urls with http status 200/404 have a complete Content-Type header (MediaType / MediaSubType + correct charset):2 complete Content-Type - header (3 urls)
|
| http://116.62.54.91/.well-known/acme-challenge/check-your-website-dot-server-daten-dot-de 116.62.54.91
|
| Url with incomplete Content-Type - header - missing charset
|
| A | http://116.62.54.91/weixin 116.62.54.91
| https://116.62.54.91/weixin
| Correct redirect http - https with the same domain name
|
| A | http://116.62.54.91/weixin 116.62.54.91
| https://116.62.54.91/weixin
| Correct redirect http - https with the same domain name
|
| B | No _mta-sts TXT record found (mta-sts: Mail Transfer Agent Strict Transport Security - see RFC 8461). Read the result of server-daten.de (Url-Checks, Comments, Connections and DomainServiceRecords) to see a complete definition. Domainname: _mta-sts.116.62.54.91
|
| 2. Header-Checks |
| F | 116.62.54.91 116.62.54.91
| Content-Security-Policy
| Critical: Missing Header:
|
| F | 116.62.54.91 116.62.54.91
| X-Content-Type-Options
| Critical: Missing Header:
|
| F | 116.62.54.91 116.62.54.91
| Referrer-Policy
| Critical: Missing Header:
|
| F | 116.62.54.91 116.62.54.91
| Permissions-Policy
| Critical: Missing Header:
|
| B | 116.62.54.91 116.62.54.91
| Cross-Origin-Embedder-Policy
| Info: Missing Header
|
| B | 116.62.54.91 116.62.54.91
| Cross-Origin-Opener-Policy
| Info: Missing Header
|
| B | 116.62.54.91 116.62.54.91
| Cross-Origin-Resource-Policy
| Info: Missing Header
|
| 3. DNS- and NameServer - Checks |
| 4. Content- and Performance-critical Checks |
| A | Good: All checks /.well-known/acme-challenge/random-filename without redirects answer with the expected http status 404 - Not Found. Creating a Letsencrypt certificate via http-01 challenge should work. If it doesn't work: Check your vHost configuration (apachectl -S, httpd -S, nginx -T). Every combination of port and ServerName / ServerAlias (Apache) or Server (Nginx) must be unique. Merge duplicated entries in one vHost. If you use an IIS, extensionless files must be allowed in the /.well-known/acme-challenge subdirectory. Create a web.config in that directory. Content: <configuration><system.webServer><staticContent><mimeMap fileExtension="." mimeType="text/plain" /></staticContent></system.webServer></configuration>. If you have a redirect http ⇒ https, that's ok, Letsencrypt follows such redirects to port 80 / 443 (same or other server). There must be a certificate. But the certificate may be expired, self signed or with a not matching domain name. Checking the validation file Letsencrypt ignores such certificate errors. Trouble creating a certificate? Use https://community.letsencrypt.org/ to ask.
|
| A | Good: No https + http status 200 with inline CSS / JavaScript found
|
| A | Good: Every https result with status 200 has a minified Html-Content with a quota lower then 110 %.
|
| https://116.62.54.91/weixin 116.62.54.91
|
| Warning: Https result with status 200 found, Html-Content is too big. Should be max. 110 %. May contain inline CSS / JavaScript, too much comments or white space. Re-used ressources - create files with a long Cache-Control max-age header. Remove comments and white space.
|
| https://116.62.54.91/weixin 116.62.54.91
|
| Warning: Https result with status 200 found, Html-Content is too big. Should be max. 110 %. May contain inline CSS / JavaScript, too much comments or white space. Re-used ressources - create files with a long Cache-Control max-age header. Remove comments and white space.
|
| A | Good: Every https connection via port 443 supports the http/2 protocol via ALPN.
|
| A | Info: No img element found, no alt attribute checked
|
| http://116.62.54.91/weixin 116.62.54.91
|
| Warning: HSTS header sent via http has no effect
|
| A | Duration: 35237 milliseconds, 35.237 seconds
|