Check DNS, Urls + Redirects, Certificates and Content of your Website



X

DNS-problem - authoritative Nameserver refused, not defined or timeout

Checked:
10.06.2021 15:37:56


Older results


1. IP-Addresses

HostTypeIP-Addressis auth.∑ Queries∑ Timeout
beneficiario.igeprev.pa.gov.br
A
177.74.60.188
Belém/Para/Brazil (BR) - PRODEPA - Emp Tec da Inf e Com do Estado do ParÔ
No Hostname found
yes
1
0

AAAA

yes


www.beneficiario.igeprev.pa.gov.br

Name Error
yes
1
0
*.igeprev.pa.gov.br
A
Name Error
yes



AAAA
Name Error
yes



CNAME
Name Error
yes


*.beneficiario.igeprev.pa.gov.br
A
Name Error
yes



AAAA
Name Error
yes



CNAME
Name Error
yes



2. DNSSEC

Zone (*)DNSSEC - Informations

Zone: (root)
(root)
1 DS RR published



DS with Algorithm 8, KeyTag 20326, DigestType 2 and Digest 4G1EuAuPHTmpXAsNfGXQhFjogECbvGg0VxBCN8f47I0=



Status: Valid because published



2 DNSKEY RR found



Public Key with Algorithm 8, KeyTag 14631, Flags 256



Public Key with Algorithm 8, KeyTag 20326, Flags 257 (SEP = Secure Entry Point)



1 RRSIG RR to validate DNSKEY RR found



RRSIG-Owner (root), Algorithm: 8, 0 Labels, original TTL: 172800 sec, Signature-expiration: 01.07.2021, 00:00:00 +, Signature-Inception: 10.06.2021, 00:00:00 +, KeyTag 20326, Signer-Name: (root)



Status: Good - Algorithmus 8 and DNSKEY with KeyTag 20326 used to validate the DNSKEY RRSet



Status: Valid Chain of trust. Parent-DS with Algorithm 8, KeyTag 20326, DigestType 2 and Digest "4G1EuAuPHTmpXAsNfGXQhFjogECbvGg0VxBCN8f47I0=" validates local Key with the same values, Key ist Secure Entry Point (SEP) of the zone

Zone: br
br
1 DS RR in the parent zone found



DS with Algorithm 13, KeyTag 2471, DigestType 2 and Digest Xk81mYuPkJVX+hGcTL/cotZgom8GnvAGtAN1igfRouQ=



1 RRSIG RR to validate DS RR found



RRSIG-Owner br., Algorithm: 8, 1 Labels, original TTL: 86400 sec, Signature-expiration: 23.06.2021, 05:00:00 +, Signature-Inception: 10.06.2021, 04:00:00 +, KeyTag 14631, Signer-Name: (root)



Status: Good - Algorithmus 8 and DNSKEY with KeyTag 14631 used to validate the DS RRSet in the parent zone



2 DNSKEY RR found



Public Key with Algorithm 13, KeyTag 2471, Flags 257 (SEP = Secure Entry Point)



Public Key with Algorithm 13, KeyTag 10947, Flags 256



1 RRSIG RR to validate DNSKEY RR found



RRSIG-Owner br., Algorithm: 13, 1 Labels, original TTL: 21600 sec, Signature-expiration: 20.06.2021, 12:00:00 +, Signature-Inception: 30.05.2021, 12:00:00 +, KeyTag 2471, Signer-Name: br



Status: Good - Algorithmus 13 and DNSKEY with KeyTag 2471 used to validate the DNSKEY RRSet



Status: Valid Chain of trust. Parent-DS with Algorithm 13, KeyTag 2471, DigestType 2 and Digest "Xk81mYuPkJVX+hGcTL/cotZgom8GnvAGtAN1igfRouQ=" validates local Key with the same values, Key ist Secure Entry Point (SEP) of the zone

Zone: gov.br
gov.br
1 DS RR in the parent zone found



DS with Algorithm 13, KeyTag 47755, DigestType 2 and Digest nz+aIL9KQhi1Bb/tyfwreUJqpLJlw51WLFz7uZ69skw=



1 RRSIG RR to validate DS RR found



RRSIG-Owner gov.br., Algorithm: 13, 2 Labels, original TTL: 21600 sec, Signature-expiration: 19.06.2021, 18:45:09 +, Signature-Inception: 05.06.2021, 17:45:09 +, KeyTag 10947, Signer-Name: br



Status: Good - Algorithmus 13 and DNSKEY with KeyTag 10947 used to validate the DS RRSet in the parent zone



1 DNSKEY RR found



Public Key with Algorithm 13, KeyTag 47755, Flags 257 (SEP = Secure Entry Point)



1 RRSIG RR to validate DNSKEY RR found



RRSIG-Owner gov.br., Algorithm: 13, 2 Labels, original TTL: 21600 sec, Signature-expiration: 24.06.2021, 13:35:08 +, Signature-Inception: 10.06.2021, 12:35:08 +, KeyTag 47755, Signer-Name: gov.br



Status: Good - Algorithmus 13 and DNSKEY with KeyTag 47755 used to validate the DNSKEY RRSet



Status: Valid Chain of trust. Parent-DS with Algorithm 13, KeyTag 47755, DigestType 2 and Digest "nz+aIL9KQhi1Bb/tyfwreUJqpLJlw51WLFz7uZ69skw=" validates local Key with the same values, Key ist Secure Entry Point (SEP) of the zone

Zone: pa.gov.br
pa.gov.br
0 DS RR in the parent zone found



DS-Query in the parent zone has a valid NSEC RR as result with the domain name between the NSEC-Owner "pa.gov.br" and the NextOwner "pac.gov.br". So the parent zone confirmes the non-existence of a DS RR.
Bitmap: NS, RRSIG, NSEC



0 DNSKEY RR found




Zone: igeprev.pa.gov.br
igeprev.pa.gov.br
0 DS RR in the parent zone found



0 DNSKEY RR found




Zone: beneficiario.igeprev.pa.gov.br
beneficiario.igeprev.pa.gov.br
0 DS RR in the parent zone found



0 DNSKEY RR found




Zone: www.beneficiario.igeprev.pa.gov.br
www.beneficiario.igeprev.pa.gov.br
0 DS RR in the parent zone found


3. Name Servers

DomainNameserverNS-IP
www.beneficiario.igeprev.pa.gov.br
  ns1.pa.gov.br

beneficiario.igeprev.pa.gov.br
  ns1.pa.gov.br
177.74.1.2
Acara/Para/Brazil (BR) - PRODEPA - Emp Tec da Inf e Com do Estado do ParÔ

igeprev.pa.gov.br
  ns1.pa.gov.br
177.74.1.2
Acara/Para/Brazil (BR) - PRODEPA - Emp Tec da Inf e Com do Estado do ParÔ


  ns2.pa.gov.br
177.74.1.3
Acara/Para/Brazil (BR) - PRODEPA - Emp Tec da Inf e Com do Estado do ParÔ

pa.gov.br
  ns1.pa.gov.br
177.74.1.2
Acara/Para/Brazil (BR) - PRODEPA - Emp Tec da Inf e Com do Estado do ParÔ


  ns2.pa.gov.br
177.74.1.3
Acara/Para/Brazil (BR) - PRODEPA - Emp Tec da Inf e Com do Estado do ParÔ

gov.br
  a.dns.br / a6.a.dns.br
200.219.148.10
São Paulo/Brazil (BR) - NÔcleo de Inf. e Coord. do Ponto BR - NIC.BR


 
2001:12f8:6::10
São Paulo/Brazil (BR) - NÔcleo de Inf. e Coord. do Ponto BR - NIC.BR


  b.dns.br / b7.b.dns.br
200.189.41.10
Fortaleza/Ceara/Brazil (BR) - NÔcleo de Inf. e Coord. do Ponto BR - NIC.BR


 
2001:12f8:8::10
São Paulo/Brazil (BR) - NÔcleo de Inf. e Coord. do Ponto BR - NIC.BR


  c.dns.br / c3.c.dns.br
200.192.233.10
São Paulo/Brazil (BR) - NÔcleo de Inf. e Coord. do Ponto BR - NIC.BR


 
2001:12f8:a::10
São Paulo/Brazil (BR) - NÔcleo de Inf. e Coord. do Ponto BR - NIC.BR


  d.dns.br / d8.d.dns.br
200.219.154.10
São Paulo/Brazil (BR) - NÔcleo de Inf. e Coord. do Ponto BR - NIC.BR


 
2001:12f8:4::10
São Paulo/Brazil (BR) - NÔcleo de Inf. e Coord. do Ponto BR - NIC.BR


  e.dns.br / e2.e.dns.br
200.229.248.10
São Paulo/Brazil (BR) - NÔcleo de Inf. e Coord. do Ponto BR - NIC.BR


 
2001:12f8:2::10
São Paulo/Brazil (BR) - NÔcleo de Inf. e Coord. do Ponto BR - NIC.BR


  f.dns.br / f6.f.dns.br
200.219.159.10
São Paulo/Brazil (BR) - NÔcleo de Inf. e Coord. do Ponto BR - NIC.BR


 
2001:12f8:c::10
São Paulo/Brazil (BR) - NÔcleo de Inf. e Coord. do Ponto BR - NIC.BR

br
  a.dns.br / a7.a.dns.br


  b.dns.br / b4.b.dns.br


  c.dns.br / c6.c.dns.br


  d.dns.br / d3.d.dns.br


  e.dns.br / e5.e.dns.br


  f.dns.br / f3.f.dns.br


4. SOA-Entries


Domain:br
Zone-Name:br
Primary:a.dns.br
Mail:hostmaster.registro.br
Serial:2021161326
Refresh:1800
Retry:900
Expire:604800
TTL:900
num Entries:6


Domain:gov.br
Zone-Name:gov.br
Primary:a.dns.br
Mail:hostmaster.registro.br
Serial:2021161326
Refresh:1800
Retry:900
Expire:604800
TTL:900
num Entries:12


Domain:pa.gov.br
Zone-Name:pa.gov.br
Primary:ns1.pa.gov.br
Mail:hostmaster.pa.gov.br
Serial:2021060901
Refresh:3600
Retry:900
Expire:86400
TTL:3600
num Entries:2


Domain:igeprev.pa.gov.br
Zone-Name:igeprev.pa.gov.br
Primary:ns1.pa.gov.br
Mail:hostmaster.prodepa.gov.br
Serial:2020070701
Refresh:3600
Retry:900
Expire:604800
TTL:1800
num Entries:2


Domain:beneficiario.igeprev.pa.gov.br
Zone-Name:igeprev.pa.gov.br
Primary:ns1.pa.gov.br
Mail:hostmaster.prodepa.gov.br
Serial:2020070701
Refresh:3600
Retry:900
Expire:604800
TTL:1800
num Entries:1


Domain:www.beneficiario.igeprev.pa.gov.br
Zone-Name:
Primary:
Mail:
Serial:
Refresh:
Retry:
Expire:
TTL:
num Entries:1


5. Screenshots

Startaddress: https://beneficiario.igeprev.pa.gov.br, address used: https://beneficiario.igeprev.pa.gov.br/, Screenshot created 2021-06-10 15:42:17 +00:0 url is insecure, certificate invalid

Mobil (412px x 732px)

292 milliseconds

Screenshot mobile - https://beneficiario.igeprev.pa.gov.br/
Mobil + Landscape (732px x 412px)

283 milliseconds

Screenshot mobile landscape - https://beneficiario.igeprev.pa.gov.br/
Screen (1280px x 1680px)

750 milliseconds

Screenshot Desktop - https://beneficiario.igeprev.pa.gov.br/

Mobile- and other Chrome-Checks

widthheight
visual Viewport412732
content Size412732

Good: No horizontal scrollbar. Content-size width = visual Viewport width.

Chrome-Connection: secure. secure connection settings. The connection to this site is encrypted and authenticated using TLS 1.2, ECDHE_RSA with X25519, and AES_128_GCM.

Chrome-Resources : secure. all served securely. All resources on this page are served securely.

6. Url-Checks


:

:
DomainnameHttp-StatusredirectSec.G
• http://beneficiario.igeprev.pa.gov.br/
177.74.60.188
302
https://beneficiario.igeprev.pa.gov.br:443/
Html is minified: 100.00 %
0.400
A
Location: https://beneficiario.igeprev.pa.gov.br:443/
Date: Thu, 10 Jun 2021 13:37:17 GMT
Content-Length: 5
Content-Type: text/plain; charset=utf-8
Connection: close

• https://beneficiario.igeprev.pa.gov.br/
177.74.60.188
Inline-JavaScript (∑/total): 0/0 Inline-CSS (∑/total): 0/0
404

Html is minified: 100.00 %
5.130
N
Not Found
Certificate error: RemoteCertificateNameMismatch, RemoteCertificateChainErrors
small visible content (num chars: 18)
404 page not found
Content-Type: text/plain; charset=utf-8
X-Content-Type-Options: nosniff
Date: Thu, 10 Jun 2021 13:37:18 GMT
Content-Length: 19
Connection: close

• https://beneficiario.igeprev.pa.gov.br:443/

Inline-JavaScript (∑/total): 0/0 Inline-CSS (∑/total): 0/0
404

Html is minified: 100.00 %
5.696
N
Not Found
Certificate error: RemoteCertificateNameMismatch, RemoteCertificateChainErrors
small visible content (num chars: 18)
404 page not found
Content-Type: text/plain; charset=utf-8
X-Content-Type-Options: nosniff
Date: Thu, 10 Jun 2021 13:37:40 GMT
Content-Length: 19
Connection: close

• http://beneficiario.igeprev.pa.gov.br/.well-known/acme-challenge/check-your-website-dot-server-daten-dot-de
177.74.60.188
-14

10.016
T
Timeout - The operation has timed out
Visible Content:

• https://177.74.60.188/
177.74.60.188
Inline-JavaScript (∑/total): 0/0 Inline-CSS (∑/total): 0/0
404

Html is minified: 100.00 %
5.157
N
Not Found
Certificate error: RemoteCertificateNameMismatch, RemoteCertificateChainErrors
small visible content (num chars: 18)
404 page not found
Content-Type: text/plain; charset=utf-8
X-Content-Type-Options: nosniff
Date: Thu, 10 Jun 2021 13:37:34 GMT
Content-Length: 19
Connection: close

7. Comments


1. General Results, most used to calculate the result

Aname "beneficiario.igeprev.pa.gov.br" is subdomain, public suffix is ".pa.gov.br", top-level-domain is ".br", top-level-domain-type is "country-code", Country is Brazil, tld-manager is "Comite Gestor da Internet no Brasil", num .br-domains preloaded: 1882 (complete: 151507)
Agood: All ip addresses are public addresses
Warning: Only one ip address found: beneficiario.igeprev.pa.gov.br has only one ip address.
Warning: No ipv6 address found. Ipv6 is the future with a lot of new features. So every domain name should have an ipv6 address. See https://en.wikipedia.org/wiki/IPv6: beneficiario.igeprev.pa.gov.br has no ipv6 address.
Agood: No asked Authoritative Name Server had a timeout
ADNS: "Name Error" means: No www-dns-entry defined. This isn't a problem
AGood: No cookie sent via http.
HSTS-Preload-Status: unknown. Domain never included in the Preload-list. Check https://hstspreload.org/ to learn some basics about the Google-Preload-List.
AGood: All urls with http status 200/404 have a complete Content-Type header (MediaType / MediaSubType + correct charset)
Bhttps://beneficiario.igeprev.pa.gov.br:443/
404

Missing HSTS-Header
Bhttps://beneficiario.igeprev.pa.gov.br/ 177.74.60.188
404

Missing HSTS-Header
CError - no version with Http-Status 200
Hfatal error: No https - result with http-status 200, no encryption
Mhttps://beneficiario.igeprev.pa.gov.br:443/
404

Misconfiguration - main pages should never send http status 400 - 499
Mhttps://beneficiario.igeprev.pa.gov.br/ 177.74.60.188
404

Misconfiguration - main pages should never send http status 400 - 499
Mhttps://177.74.60.188/ 177.74.60.188
404

Misconfiguration - main pages should never send http status 400 - 499
Nhttps://beneficiario.igeprev.pa.gov.br:443/
404

Error - Certificate isn't trusted, RemoteCertificateNameMismatch, RemoteCertificateChainErrors
Nhttps://beneficiario.igeprev.pa.gov.br/ 177.74.60.188
404

Error - Certificate isn't trusted, RemoteCertificateNameMismatch, RemoteCertificateChainErrors
Nhttps://177.74.60.188/ 177.74.60.188
404

Error - Certificate isn't trusted, RemoteCertificateNameMismatch, RemoteCertificateChainErrors
XFatal error: Nameserver doesn't support TCP connection: ns1.pa.gov.br / 177.74.1.2: Timeout
Info: Checking all ip addresses of that domain without sending the hostname only one certificate found. Checking all ip addresses and sending the hostname only one certificate found. Both certificates are the same. So that domain doesn't require Server Name Indication (SNI), it's the primary certificate of that set of ip addresses.: Domain beneficiario.igeprev.pa.gov.br, 1 ip addresses, 1 different http results.

2. DNS- and NameServer - Checks

AInfo:: 2 Root-climbing DNS Queries required to find all IPv4- and IPv6-Addresses of 2 Name Servers.
AInfo:: 2 Queries complete, 2 with IPv6, 0 with IPv4.
AGood: All DNS Queries done via IPv6.
AGood: Some ip addresses of name servers found with the minimum of two DNS Queries. One to find the TLD-Zone, one to ask the TLD-Zone.ns1.pa.gov.br (177.74.1.2), ns2.pa.gov.br (177.74.1.3)
AGood (1 - 3.0):: An average of 1.0 queries per domain name server required to find all ip addresses of all name servers.
AInfo:: 2 different Name Servers found: ns1.pa.gov.br, ns2.pa.gov.br, 2 Name Servers included in Delegation: ns1.pa.gov.br, ns2.pa.gov.br, 2 Name Servers included in 1 Zone definitions: ns1.pa.gov.br, ns2.pa.gov.br, 1 Name Servers listed in SOA.Primary: ns1.pa.gov.br.
AGood: Only one SOA.Primary Name Server found.: ns1.pa.gov.br.
AGood: SOA.Primary Name Server included in the delegation set.: ns1.pa.gov.br.
AGood: Consistency between delegation and zone. The set of NS records served by the authoritative name servers must match those proposed for the delegation in the parent zone. Ordered list of name servers: ns1.pa.gov.br, ns2.pa.gov.br
AGood: All Name Server Domain Names have a Public Suffix.
AGood: All Name Server Domain Names ending with a Public Suffix have minimal one IPv4- or IPv6 address.
AGood: All Name Server ip addresses are public.
AGood: Minimal 2 different name servers (public suffix and public ip address) found: 2 different Name Servers found
Warning: No Name Server IPv6 address found. IPv6 is the future, so your name servers should be visible via IPv6.: 2 different Name Servers found
Warning: All Name Servers have the same Top Level Domain / Public Suffix. If there is a problem with that Top Level Domain, your domain may be affected. Better: Use Name Servers with different top level domains.: 2 Name Servers, 1 Top Level Domain: pa.gov.br
Warning: All Name Servers have the same domain name. If there is a problem with that domain name (or with the name servers of that domain name), your domain may be affected. Better: Use Name Servers with different domain names / different top level domains.: Only one domain name used:
Warning: All Name Servers from the same Country / IP location.: 2 Name Servers, 1 Countries: BR
AInfo: Ipv4-Subnet-list: 2 Name Servers, 1 different subnets (first Byte): 177., 1 different subnets (first two Bytes): 177.74., 1 different subnets (first three Bytes): 177.74.1.
XFatal: All Name Server IPv4 addresses from the same subnet. Check https://www.iana.org/help/nameserver-requirements to learn some basics about name server configurations. If you manage these name servers, fix it. If it's your provider, change your provider.:
AGood: Nameserver supports Echo Capitalization: 1 good Nameserver
AGood: Nameserver supports EDNS with max. 512 Byte Udp payload, message is smaller: 1 good Nameserver
AGood: Nameserver has passed 10 EDNS-Checks (OP100, FLAGS, V1, V1OP100, V1FLAGS, DNSSEC, V1DNSSEC, NSID, COOKIE, CLIENTSUBNET): 1 good Nameserver
Nameserver doesn't pass all EDNS-Checks: ns1.pa.gov.br: OP100: no result. FLAGS: no result. V1: no result. V1OP100: no result. V1FLAGS: no result. DNSSEC: no result. V1DNSSEC: no result. NSID: no result. COOKIE: no result. CLIENTSUBNET: no result.
AGood: All SOA have the same Serial Number
Warning: No CAA entry with issue/issuewild found, every CAA can create a certificate. Read https://en.wikipedia.org/wiki/DNS_Certification_Authority_Authorization to learn some basics about the idea of CAA. Your name server must support such an entry. Not all dns providers support CAA entries.

3. Content- and Performance-critical Checks

http://beneficiario.igeprev.pa.gov.br/.well-known/acme-challenge/check-your-website-dot-server-daten-dot-de 177.74.60.188
-14

Fatal: Check of /.well-known/acme-challenge/random-filename has a timeout. Creating a Letsencrypt certificate via http-01 challenge can't work. You need a running webserver (http) and an open port 80. If it's a home server + ipv4, perhaps a correct port forwarding port 80 extern ⇒ working port intern is required. Port 80 / http can redirect to another domain port 80 or port 443, but not other ports. If it's a home server, perhaps your ISP blocks port 80. Then you may use the dns-01 challenge. Trouble creating a certificate? Use https://community.letsencrypt.org/ to ask.
AInfo: No img element found, no alt attribute checked
AGood: Domainname is not on the "Specially Designated Nationals And Blocked Persons List" (SDN). That's an US-list of individuals and companies owned or controlled by, or acting for or on behalf of, targeted countries. It also lists individuals, groups, and entities, such as terrorists and narcotics traffickers designated under programs that are not country-specific. Collectively, such individuals and companies are called "Specially Designated Nationals" or "SDNs." Their assets are blocked and U.S. persons are generally prohibited from dealing with them. So if a domain name is on that list, it's impossible to create a Letsencrypt certificate with that domain name. Check the list manual - https://www.treasury.gov/resource-center/sanctions/sdn-list/pages/default.aspx
https://beneficiario.igeprev.pa.gov.br:443/
404
5.696 seconds
Warning: 404 needs more then one second
https://beneficiario.igeprev.pa.gov.br/ 177.74.60.188
404
5.130 seconds
Warning: 404 needs more then one second
https://177.74.60.188/ 177.74.60.188
404
5.157 seconds
Warning: 404 needs more then one second
ADuration: 268314 milliseconds, 268.314 seconds


8. Connections

DomainIPPortCert.ProtocolKeyExchangeStrengthCipherStrengthHashAlgorithmOCSP stapling
Domain/KeyExchangeIP/StrengthPort/CipherCert./StrengthProtocol/HashAlgorithmOCSP stapling
beneficiario.igeprev.pa.gov.br
beneficiario.igeprev.pa.gov.br
443
Certificate/chain invalid and wrong name
Tls12
ECDH Ephermal
255
Aes128
128
Sha256
error checking OCSP stapling
ok
beneficiario.igeprev.pa.gov.br
beneficiario.igeprev.pa.gov.br
443
Certificate/chain invalid and wrong name
Tls12

ECDH Ephermal
255
Aes128
128
Sha256
error checking OCSP stapling
ok
http/2 via ALPN supported 
Tls.1.2
Tls.1.1
Tls.1.0
http/2 via ALPN supported
Tls.1.2
Tls.1.1
Tls.1.0
Self signed certificate
1CN=TRAEFIK DEFAULT CERT


beneficiario.igeprev.pa.gov.br
177.74.60.188
443
Certificate/chain invalid and wrong name
Tls12
ECDH Ephermal
255
Aes128
128
Sha256
error checking OCSP stapling
ok

beneficiario.igeprev.pa.gov.br
177.74.60.188
443
Certificate/chain invalid and wrong name
Tls12

ECDH Ephermal
255
Aes128
128
Sha256
error checking OCSP stapling
ok
http/2 via ALPN supported 
Tls.1.2
Tls.1.1
Tls.1.0
http/2 via ALPN supported
Tls.1.2
Tls.1.1
Tls.1.0
Self signed certificate
1CN=TRAEFIK DEFAULT CERT


177.74.60.188
177.74.60.188
443
Certificate/chain invalid and wrong name
Tls12
ECDH Ephermal
255
Aes128
128
Sha256
error checking OCSP stapling
ok

177.74.60.188
177.74.60.188
443
Certificate/chain invalid and wrong name
Tls12

ECDH Ephermal
255
Aes128
128
Sha256
error checking OCSP stapling
ok
http/2 via ALPN supported 
Cert sent without SNI
Tls.1.2
Tls.1.1
Tls.1.0
http/2 via ALPN supported
Cert sent without SNI
Tls.1.2
Tls.1.1
Tls.1.0
Self signed certificate
1CN=TRAEFIK DEFAULT CERT


9. Certificates

1.
1.
CN=TRAEFIK DEFAULT CERT
10.06.2021
10.06.2022
expires in 352 days
286297b8aaabb8128a2625431885bcde.d9e1eab31ccfb5741c25fcf89c7494a5.traefik.default - 1 entry
1.
1.
CN=TRAEFIK DEFAULT CERT
10.06.2021

10.06.2022
expires in 352 days
286297b8aaabb8128a2625431885bcde.d9e1eab31ccfb5741c25fcf89c7494a5.traefik.default - 1 entry

KeyalgorithmRSA encryption (2048 bit)
Signatur:SHA256 With RSA-Encryption
Serial Number:3C3FAD09276F98781B7DE24914F21C8C
Thumbprint:660790F37AA6572F0033587E6A2EE8CE36C3A7DA
SHA256 / Certificate:AJ0s7k/qFinRhpLjOUltB6ltdTg8oZdH1AuPbH37ppU=
SHA256 hex / Cert (DANE * 0 1):e3b0c44298fc1c149afbf4c8996fb92427ae41e4649b934ca495991b7852b855
SHA256 hex / PublicKey (DANE * 1 1):a43b45e62e7d80e8897343a7d7cd08a8d54473b62977094a25eed202e164741d
SHA256 hex / Subject Public Key Information (SPKI):08c90d71967492eb9ba335fa2c0d9169ed0c1295e58afa74bef12ffff7ed3cca
SPKI checked via https://v1.pwnedkeys.com/spki-hash:Good: Key isn't compromised
OCSP - Url:
OCSP - must staple:no
Certificate Transparency:no
Enhanced Key Usage:Serverauthentifizierung (1.3.6.1.5.5.7.3.1)

UntrustedRoot: A certificate chain processed, but terminated in a root certificate which is not trusted by the trust provider.

2.
1.
CN=TRAEFIK DEFAULT CERT
10.06.2021
10.06.2022
expires in 352 days
d16dd395712f8ae90d708202b376afb5.74abec4fce301b1c3cf62a011a36b6bd.traefik.default - 1 entry
2.
1.
CN=TRAEFIK DEFAULT CERT
10.06.2021

10.06.2022
expires in 352 days
d16dd395712f8ae90d708202b376afb5.74abec4fce301b1c3cf62a011a36b6bd.traefik.default - 1 entry

KeyalgorithmRSA encryption (2048 bit)
Signatur:SHA256 With RSA-Encryption
Serial Number:7EBE99C615993684BE200E828F5645FC
Thumbprint:6CB6B482CF02672A251039FE4D6520D0DD2222BC
SHA256 / Certificate:TbUO+LhCwb27nAIlR0KisSgB4UZ6VMAONhWyko/cAjE=
SHA256 hex / Cert (DANE * 0 1):e3b0c44298fc1c149afbf4c8996fb92427ae41e4649b934ca495991b7852b855
SHA256 hex / PublicKey (DANE * 1 1):33816ae21d2d34a34674ed1d49de0bab7b7aef970ab7816843e8fdf9a41767a2
SHA256 hex / Subject Public Key Information (SPKI):023698bd34a4b5a23858b3d15e0263fa3b3032b3a97e0d58996eebde3e2b03bd
SPKI checked via https://v1.pwnedkeys.com/spki-hash:Good: Key isn't compromised
OCSP - Url:
OCSP - must staple:no
Certificate Transparency:no
Enhanced Key Usage:Serverauthentifizierung (1.3.6.1.5.5.7.3.1)

UntrustedRoot: A certificate chain processed, but terminated in a root certificate which is not trusted by the trust provider.


10. Last Certificates - Certificate Transparency Log Check

1. Source CertSpotter - active certificates (one check per day)

No CertSpotter - CT-Log entries found


2. Source crt.sh - old and new certificates, sometimes very slow - only certificates with "not after" > 2019 are listed

Issuerlast 7 daysactivenum Certs
CN=Let's Encrypt Authority X3, O=Let's Encrypt, C=US
0 /0 new
0
7
CN=R3, O=Let's Encrypt, C=US
0 /0 new
0
2

CRT-IdIssuernot beforenot afterDomain namesLE-Duplicatenext LE
4199592552
leaf cert
CN=R3, O=Let's Encrypt, C=US
2021-03-11 16:46:47
2021-06-09 15:46:47
beneficiario.igeprev.pa.gov.br
1 entries


3906389282
leaf cert
CN=R3, O=Let's Encrypt, C=US
2021-01-10 12:50:23
2021-04-10 11:50:23
beneficiario.igeprev.pa.gov.br
1 entries


3630948981
leaf cert
CN=Let's Encrypt Authority X3, O=Let's Encrypt, C=US
2020-11-10 20:04:21
2021-02-08 20:04:21
beneficiario.igeprev.pa.gov.br
1 entries


3369901684
leaf cert
CN=Let's Encrypt Authority X3, O=Let's Encrypt, C=US
2020-09-11 19:03:50
2020-12-10 20:03:50
beneficiario.igeprev.pa.gov.br
1 entries


3082566120
leaf cert
CN=Let's Encrypt Authority X3, O=Let's Encrypt, C=US
2020-07-13 12:50:57
2020-10-11 12:50:57
beneficiario.igeprev.pa.gov.br
1 entries


2738470399
leaf cert
CN=Let's Encrypt Authority X3, O=Let's Encrypt, C=US
2020-04-22 14:53:21
2020-07-21 14:53:21
beneficiario.igeprev.pa.gov.br
1 entries


2493837436
leaf cert
CN=Let's Encrypt Authority X3, O=Let's Encrypt, C=US
2020-02-22 11:30:24
2020-05-22 10:30:24
beneficiario.igeprev.pa.gov.br
1 entries


2286063711
leaf cert
CN=Let's Encrypt Authority X3, O=Let's Encrypt, C=US
2019-12-23 13:08:23
2020-03-22 13:08:23
beneficiario.igeprev.pa.gov.br
1 entries


2036877685
leaf cert
CN=Let's Encrypt Authority X3, O=Let's Encrypt, C=US
2019-10-24 12:41:39
2020-01-22 13:41:39
beneficiario.igeprev.pa.gov.br
1 entries



11. Html-Content - Entries

No Html-Content entries found. Only checked if https + status 200/401/403/404


12. Nameserver - IP-Adresses

Required Root-climbing DNS-Queries to find ip addresses of all Name Servers: ns1.pa.gov.br, ns2.pa.gov.br

QNr.DomainTypeNS used
1
br
NS
d.root-servers.net (2001:500:2d::d)

Answer: a.dns.br, b.dns.br, c.dns.br, d.dns.br, e.dns.br, f.dns.br
2
ns1.pa.gov.br: 177.74.1.2
NS
a.dns.br (2001:12f8:6::10)

Answer: ns2.pa.gov.br
177.74.1.3


13. CAA - Entries

DomainnameflagNameValue∑ Queries∑ Timeout
beneficiario.igeprev.pa.gov.br
0

no CAA entry found
1
0
igeprev.pa.gov.br
0

no CAA entry found
1
0
pa.gov.br
0

no CAA entry found
1
0
gov.br
0

no CAA entry found
1
0
br
0

no CAA entry found
1
0


14. TXT - Entries

DomainnameTXT EntryStatus∑ Queries∑ Timeout
igeprev.pa.gov.br
Hna8sdvA
ok
1
0
igeprev.pa.gov.br
v=spf1 ip4:177.74.11.51 ip4:177.74.11.52 ip4:177.74.11.53 ip4:177.74.11.54 a:colab-mta-ext-01.pa.gov.br a:colab-mta-ext-02.pa.gov.br a:colab-mta-int-01.pa.gov.br a:colab-mta-int-02.pa.gov.br -all
ok
1
0
beneficiario.igeprev.pa.gov.br

ok
1
0
_acme-challenge.beneficiario.igeprev.pa.gov.br

Name Error - The domain name does not exist
1
0
_acme-challenge.beneficiario.igeprev.pa.gov.br.igeprev.pa.gov.br

Name Error - The domain name does not exist
1
0
_acme-challenge.beneficiario.igeprev.pa.gov.br.beneficiario.igeprev.pa.gov.br

Name Error - The domain name does not exist
1
0


15. Portchecks

Domain or IPPortDescriptionResultAnswer
beneficiario.igeprev.pa.gov.br
21
FTP



beneficiario.igeprev.pa.gov.br
21
FTP



beneficiario.igeprev.pa.gov.br
22
SSH



beneficiario.igeprev.pa.gov.br
22
SSH



beneficiario.igeprev.pa.gov.br
25
SMTP



beneficiario.igeprev.pa.gov.br
25
SMTP



beneficiario.igeprev.pa.gov.br
53
DNS



beneficiario.igeprev.pa.gov.br
53
DNS



beneficiario.igeprev.pa.gov.br
110
POP3



beneficiario.igeprev.pa.gov.br
110
POP3



beneficiario.igeprev.pa.gov.br
143
IMAP



beneficiario.igeprev.pa.gov.br
143
IMAP



beneficiario.igeprev.pa.gov.br
465
SMTP (encrypted)



beneficiario.igeprev.pa.gov.br
465
SMTP (encrypted)



beneficiario.igeprev.pa.gov.br
587
SMTP (encrypted, submission)



beneficiario.igeprev.pa.gov.br
587
SMTP (encrypted, submission)



beneficiario.igeprev.pa.gov.br
993
IMAP (encrypted)



beneficiario.igeprev.pa.gov.br
993
IMAP (encrypted)



beneficiario.igeprev.pa.gov.br
995
POP3 (encrypted)



beneficiario.igeprev.pa.gov.br
995
POP3 (encrypted)



beneficiario.igeprev.pa.gov.br
1433
MS SQL



beneficiario.igeprev.pa.gov.br
1433
MS SQL



beneficiario.igeprev.pa.gov.br
2082
cPanel (http)



beneficiario.igeprev.pa.gov.br
2082
cPanel (http)



beneficiario.igeprev.pa.gov.br
2083
cPanel (https)



beneficiario.igeprev.pa.gov.br
2083
cPanel (https)



beneficiario.igeprev.pa.gov.br
2086
WHM (http)



beneficiario.igeprev.pa.gov.br
2086
WHM (http)



beneficiario.igeprev.pa.gov.br
2087
WHM (https)



beneficiario.igeprev.pa.gov.br
2087
WHM (https)



beneficiario.igeprev.pa.gov.br
2089
cPanel Licensing



beneficiario.igeprev.pa.gov.br
2089
cPanel Licensing



beneficiario.igeprev.pa.gov.br
2095
cPanel Webmail (http)



beneficiario.igeprev.pa.gov.br
2095
cPanel Webmail (http)



beneficiario.igeprev.pa.gov.br
2096
cPanel Webmail (https)



beneficiario.igeprev.pa.gov.br
2096
cPanel Webmail (https)



beneficiario.igeprev.pa.gov.br
2222
DirectAdmin (http)



beneficiario.igeprev.pa.gov.br
2222
DirectAdmin (http)



beneficiario.igeprev.pa.gov.br
2222
DirectAdmin (https)



beneficiario.igeprev.pa.gov.br
2222
DirectAdmin (https)



beneficiario.igeprev.pa.gov.br
3306
mySql



beneficiario.igeprev.pa.gov.br
3306
mySql



beneficiario.igeprev.pa.gov.br
5224
Plesk Licensing



beneficiario.igeprev.pa.gov.br
5224
Plesk Licensing



beneficiario.igeprev.pa.gov.br
5432
PostgreSQL



beneficiario.igeprev.pa.gov.br
5432
PostgreSQL



beneficiario.igeprev.pa.gov.br
8080
Ookla Speedtest (http)
open
http://beneficiario.igeprev.pa.gov.br:8080/
Http-Status: 302
Redirect: /dashboard/
beneficiario.igeprev.pa.gov.br
8080
Ookla Speedtest (http)
open
http://beneficiario.igeprev.pa.gov.br:8080/
Http-Status: 302
Redirect: /dashboard/
beneficiario.igeprev.pa.gov.br
8080
Ookla Speedtest (https)
open
https://beneficiario.igeprev.pa.gov.br:8080/
Http-Status: -4
SendFailure - The underlying connection was closed: An unexpected error occurred on a send.

beneficiario.igeprev.pa.gov.br
8080
Ookla Speedtest (https)
open
https://beneficiario.igeprev.pa.gov.br:8080/
Http-Status: -4
SendFailure - The underlying connection was closed: An unexpected error occurred on a send.

beneficiario.igeprev.pa.gov.br
8083
VestaCP http



beneficiario.igeprev.pa.gov.br
8083
VestaCP http



beneficiario.igeprev.pa.gov.br
8083
VestaCP https



beneficiario.igeprev.pa.gov.br
8083
VestaCP https



beneficiario.igeprev.pa.gov.br
8443
Plesk Administration (https)



beneficiario.igeprev.pa.gov.br
8443
Plesk Administration (https)



beneficiario.igeprev.pa.gov.br
8447
Plesk Installer + Updates



beneficiario.igeprev.pa.gov.br
8447
Plesk Installer + Updates



beneficiario.igeprev.pa.gov.br
8880
Plesk Administration (http)



beneficiario.igeprev.pa.gov.br
8880
Plesk Administration (http)



beneficiario.igeprev.pa.gov.br
10000
Webmin (http)



beneficiario.igeprev.pa.gov.br
10000
Webmin (http)



beneficiario.igeprev.pa.gov.br
10000
Webmin (https)



beneficiario.igeprev.pa.gov.br
10000
Webmin (https)



177.74.60.188
21
FTP



177.74.60.188
21
FTP



177.74.60.188
22
SSH



177.74.60.188
22
SSH



177.74.60.188
25
SMTP



177.74.60.188
25
SMTP



177.74.60.188
53
DNS



177.74.60.188
53
DNS



177.74.60.188
110
POP3



177.74.60.188
110
POP3



177.74.60.188
143
IMAP



177.74.60.188
143
IMAP



177.74.60.188
465
SMTP (encrypted)



177.74.60.188
465
SMTP (encrypted)



177.74.60.188
587
SMTP (encrypted, submission)



177.74.60.188
587
SMTP (encrypted, submission)



177.74.60.188
993
IMAP (encrypted)



177.74.60.188
993
IMAP (encrypted)



177.74.60.188
995
POP3 (encrypted)



177.74.60.188
995
POP3 (encrypted)



177.74.60.188
1433
MS SQL



177.74.60.188
1433
MS SQL



177.74.60.188
2082
cPanel (http)



177.74.60.188
2082
cPanel (http)



177.74.60.188
2083
cPanel (https)



177.74.60.188
2083
cPanel (https)



177.74.60.188
2086
WHM (http)



177.74.60.188
2086
WHM (http)



177.74.60.188
2087
WHM (https)



177.74.60.188
2087
WHM (https)



177.74.60.188
2089
cPanel Licensing



177.74.60.188
2089
cPanel Licensing



177.74.60.188
2095
cPanel Webmail (http)



177.74.60.188
2095
cPanel Webmail (http)



177.74.60.188
2096
cPanel Webmail (https)



177.74.60.188
2096
cPanel Webmail (https)



177.74.60.188
2222
DirectAdmin (http)



177.74.60.188
2222
DirectAdmin (http)



177.74.60.188
2222
DirectAdmin (https)



177.74.60.188
2222
DirectAdmin (https)



177.74.60.188
3306
mySql



177.74.60.188
3306
mySql



177.74.60.188
5224
Plesk Licensing



177.74.60.188
5224
Plesk Licensing



177.74.60.188
5432
PostgreSQL



177.74.60.188
5432
PostgreSQL



177.74.60.188
8080
Ookla Speedtest (http)
open
http://177.74.60.188:8080/
Http-Status: 302
Redirect: /dashboard/
177.74.60.188
8080
Ookla Speedtest (http)
open
http://177.74.60.188:8080/
Http-Status: 302
Redirect: /dashboard/
177.74.60.188
8080
Ookla Speedtest (https)
open
https://177.74.60.188:8080/
Http-Status: -4
SendFailure - The underlying connection was closed: An unexpected error occurred on a send.

177.74.60.188
8080
Ookla Speedtest (https)
open
https://177.74.60.188:8080/
Http-Status: -4
SendFailure - The underlying connection was closed: An unexpected error occurred on a send.

177.74.60.188
8083
VestaCP http



177.74.60.188
8083
VestaCP http



177.74.60.188
8083
VestaCP https



177.74.60.188
8083
VestaCP https



177.74.60.188
8443
Plesk Administration (https)



177.74.60.188
8443
Plesk Administration (https)



177.74.60.188
8447
Plesk Installer + Updates



177.74.60.188
8447
Plesk Installer + Updates



177.74.60.188
8880
Plesk Administration (http)



177.74.60.188
8880
Plesk Administration (http)



177.74.60.188
10000
Webmin (http)



177.74.60.188
10000
Webmin (http)



177.74.60.188
10000
Webmin (https)



177.74.60.188
10000
Webmin (https)





Permalink: https://check-your-website.server-daten.de/?i=e11d7ec0-cda2-43dd-83bf-1c05f92295e4


Last Result: https://check-your-website.server-daten.de/?q=beneficiario.igeprev.pa.gov.br - 2021-06-10 15:37:56


Do you like this page? Support this tool, add a link on your page:

<a href="https://check-your-website.server-daten.de/?q=beneficiario.igeprev.pa.gov.br" target="_blank">Check this Site: beneficiario.igeprev.pa.gov.br</a>