Check DNS, Urls + Redirects, Certificates and Content of your Website


 

 

I

 

Content problems - mixed content, missing files etc.

 

Checked:
03.09.2025 06:00:02

 

Older results

 

 

1. IP-Addresses

HostTypeIP-Addressis auth.∑ Queries∑ Timeout
ecloud.global
A
65.109.243.106
Helsinki/Uusimaa/Finland (FI) - Hetzner Online GmbH
Hostname: murena.io
yes
3
1

A
95.217.240.171
Helsinki/Uusimaa/Finland (FI) - Hetzner Online GmbH
Hostname: murena.io
yes
3
1

AAAA
2a01:4f9:c01f:e017:ee05::2
Helsinki/Uusimaa/Finland (FI) - Hetzner Online GmbH

yes



AAAA
2a01:4f9:c01f:e0a5:ee05::2
Helsinki/Uusimaa/Finland (FI) - Hetzner Online GmbH

yes


www.ecloud.global
CNAME
ecloud.global
yes
1
0

A
65.109.243.106
Helsinki/Uusimaa/Finland (FI) - Hetzner Online GmbH
Hostname: murena.io
yes



A
95.217.240.171
Helsinki/Uusimaa/Finland (FI) - Hetzner Online GmbH
Hostname: murena.io
yes



AAAA
2a01:4f9:c01f:e017:ee05::2
Helsinki/Uusimaa/Finland (FI) - Hetzner Online GmbH

yes



AAAA
2a01:4f9:c01f:e0a5:ee05::2
Helsinki/Uusimaa/Finland (FI) - Hetzner Online GmbH

yes


*.ecloud.global
A
Name Error
yes



AAAA
Name Error
yes



CNAME
Name Error
yes


mta-sts.ecloud.global
A
65.109.243.106
No Hostname found
yes



A
95.217.240.171
No Hostname found
yes



AAAA
2a01:4f9:c01f:e017:ee05::2

yes



AAAA
2a01:4f9:c01f:e0a5:ee05::2

yes


 

2. DNSSEC

Zone (*)DNSSEC - Informations


Zone: (root)

(root)
1 DS RR published






DS with Algorithm 8, KeyTag 20326, DigestType 2 and Digest 4G1EuAuPHTmpXAsNfGXQhFjogECbvGg0VxBCN8f47I0=






Status: Valid because published






4 DNSKEY RR found






Public Key with Algorithm 8, KeyTag 20326, Flags 257 (SEP = Secure Entry Point)






Public Key with Algorithm 8, KeyTag 38696, Flags 257 (SEP = Secure Entry Point)






Public Key with Algorithm 8, KeyTag 46441, Flags 256






Public Key with Algorithm 8, KeyTag 53148, Flags 256






1 RRSIG RR to validate DNSKEY RR found






RRSIG-Owner (root), Algorithm: 8, 0 Labels, original TTL: 172800 sec, Signature-expiration: 20.09.2025, 00:00:00 +, Signature-Inception: 30.08.2025, 00:00:00 +, KeyTag 20326, Signer-Name: (root)






Status: Good - Algorithmus 8 and DNSKEY with KeyTag 20326 used to validate the DNSKEY RRSet






Status: Valid Chain of trust. Parent-DS with Algorithm 8, KeyTag 20326, DigestType 2 and Digest "4G1EuAuPHTmpXAsNfGXQhFjogECbvGg0VxBCN8f47I0=" validates local Key with the same values, Key ist Secure Entry Point (SEP) of the zone



Zone: global

global
1 DS RR in the parent zone found






DS with Algorithm 8, KeyTag 13060, DigestType 2 and Digest XdkOIboj0Bkuf3FI9W98IP5SsCB0rEuvjmEfHmx7h4s=






1 RRSIG RR to validate DS RR found






RRSIG-Owner global., Algorithm: 8, 1 Labels, original TTL: 86400 sec, Signature-expiration: 15.09.2025, 17:00:00 +, Signature-Inception: 02.09.2025, 16:00:00 +, KeyTag 46441, Signer-Name: (root)






Status: Good - Algorithmus 8 and DNSKEY with KeyTag 46441 used to validate the DS RRSet in the parent zone






3 DNSKEY RR found






Public Key with Algorithm 8, KeyTag 13060, Flags 257 (SEP = Secure Entry Point)






Public Key with Algorithm 8, KeyTag 42375, Flags 256






Public Key with Algorithm 8, KeyTag 63453, Flags 256






1 RRSIG RR to validate DNSKEY RR found






RRSIG-Owner global., Algorithm: 8, 1 Labels, original TTL: 3600 sec, Signature-expiration: 22.09.2025, 15:33:05 +, Signature-Inception: 01.09.2025, 14:33:05 +, KeyTag 13060, Signer-Name: global






Status: Good - Algorithmus 8 and DNSKEY with KeyTag 13060 used to validate the DNSKEY RRSet






Status: Valid Chain of trust. Parent-DS with Algorithm 8, KeyTag 13060, DigestType 2 and Digest "XdkOIboj0Bkuf3FI9W98IP5SsCB0rEuvjmEfHmx7h4s=" validates local Key with the same values, Key ist Secure Entry Point (SEP) of the zone



Zone: ecloud.global

ecloud.global
1 DS RR in the parent zone found






DS with Algorithm 13, KeyTag 24280, DigestType 2 and Digest wJm9u9nyrWbA2ckk5aOfluFXtYcnV+Rmg1FXUtysnP4=






1 RRSIG RR to validate DS RR found






RRSIG-Owner ecloud.global., Algorithm: 8, 2 Labels, original TTL: 3600 sec, Signature-expiration: 22.09.2025, 15:33:05 +, Signature-Inception: 01.09.2025, 14:33:05 +, KeyTag 63453, Signer-Name: global






Status: Good - Algorithmus 8 and DNSKEY with KeyTag 63453 used to validate the DS RRSet in the parent zone






1 DNSKEY RR found






Public Key with Algorithm 13, KeyTag 24280, Flags 256






1 RRSIG RR to validate DNSKEY RR found






RRSIG-Owner ecloud.global., Algorithm: 13, 2 Labels, original TTL: 10800 sec, Signature-expiration: 11.09.2025, 00:00:00 +, Signature-Inception: 21.08.2025, 00:00:00 +, KeyTag 24280, Signer-Name: ecloud.global






Status: Good - Algorithmus 13 and DNSKEY with KeyTag 24280 used to validate the DNSKEY RRSet






Status: Valid Chain of trust. Parent-DS with Algorithm 13, KeyTag 24280, DigestType 2 and Digest "wJm9u9nyrWbA2ckk5aOfluFXtYcnV+Rmg1FXUtysnP4=" validates local Key with the same values






RRSIG Type 1 validates the A - Result: 65.109.243.106 95.217.240.171
Validated: RRSIG-Owner ecloud.global., Algorithm: 13, 2 Labels, original TTL: 3600 sec, Signature-expiration: 11.09.2025, 00:00:00 +, Signature-Inception: 21.08.2025, 00:00:00 +, KeyTag 24280, Signer-Name: ecloud.global






RRSIG Type 16 validates the TXT - Result: google-site-verification=uM36_HxWoBd2p_R1593jCngHU7rS5t2CZhf8wvrJWAA brave-ledger-verification=7da7f96af3b29de886b1cf509c035f5d3986a771c2900118ebfd5c5453860a5c v=spf1 mx ip4:135.181.85.105 ip6:2a01:4f9:c010:c4fd:d00b::2 ip4:135.181.6.248 ip6:2a01:4f9:4b:5387::2 ip6:2a01:4f9:4b:5387:d00b::2 ip4:135.181.139.185 ip6:2a01:4f9:3a:1386:d00b::2 ip6:2a01:4f9:3a:1386::2 ~all
Validated: RRSIG-Owner ecloud.global., Algorithm: 13, 2 Labels, original TTL: 300 sec, Signature-expiration: 11.09.2025, 00:00:00 +, Signature-Inception: 21.08.2025, 00:00:00 +, KeyTag 24280, Signer-Name: ecloud.global






RRSIG Type 28 validates the AAAA - Result: 2A01:04F9:C01F:E017:EE05:0000:0000:0002 2A01:04F9:C01F:E0A5:EE05:0000:0000:0002
Validated: RRSIG-Owner ecloud.global., Algorithm: 13, 2 Labels, original TTL: 3600 sec, Signature-expiration: 11.09.2025, 00:00:00 +, Signature-Inception: 21.08.2025, 00:00:00 +, KeyTag 24280, Signer-Name: ecloud.global






RRSIG Type 52 validates the TLSA - Result (_443._tcp.ecloud.global): _443._tcp.ecloud.global: CertUsage 2 (DANE-TA, Trust anchor assertion), Selector: 1 (SPKI, SubjectPublicKeyInfo), Matching: 1 (SHA2-256, 256 bit hash by SHA2), CertificateAssociationData: 2bbad93ab5c79279ec121507f272cbe0c6647a3aae52e22f388afab426b4adba
Validated: RRSIG-Owner _dane.ecloud.global., Algorithm: 13, 3 Labels, original TTL: 300 sec, Signature-expiration: 11.09.2025, 00:00:00 +, Signature-Inception: 21.08.2025, 00:00:00 +, KeyTag 24280, Signer-Name: ecloud.global






RRSIG Type 5 validates the TLSA - Result (_443._tcp.ecloud.global): _dane.ecloud.global. That's a CNAME answer
Validated: RRSIG-Owner _443._tcp.ecloud.global., Algorithm: 13, 4 Labels, original TTL: 10800 sec, Signature-expiration: 11.09.2025, 00:00:00 +, Signature-Inception: 21.08.2025, 00:00:00 +, KeyTag 24280, Signer-Name: ecloud.global






RRSIG Type 257 validates the CAA - Result: 5|issueletsencrypt.org 9|issuewild;
Validated: RRSIG-Owner ecloud.global., Algorithm: 13, 2 Labels, original TTL: 3600 sec, Signature-expiration: 11.09.2025, 00:00:00 +, Signature-Inception: 21.08.2025, 00:00:00 +, KeyTag 24280, Signer-Name: ecloud.global






CNAME-Query sends a valid NSEC3 RR as result with the hashed query name "e8fuc7oka3juf4p00g89ckdit6dvufoj" equal the hashed NSEC3-owner "e8fuc7oka3juf4p00g89ckdit6dvufoj" and the hashed NextOwner "e8fuc7oka3juf4p00g89ckdit6dvufok". So the zone confirmes the not-existence of that CNAME RR, but the existence of that query name (minimal one RR with that name exists).
Bitmap: A, NS, SOA, MX, TXT, AAAA, RRSIG, DNSKEY, NSEC3PARAM, CDS, CAA Validated: RRSIG-Owner e8fuc7oka3juf4p00g89ckdit6dvufoj.ecloud.global., Algorithm: 13, 3 Labels, original TTL: 10800 sec, Signature-expiration: 11.09.2025, 00:00:00 +, Signature-Inception: 21.08.2025, 00:00:00 +, KeyTag 24280, Signer-Name: ecloud.global






Status: Good. NoData-Proof required and found.



Zone: www.ecloud.global

www.ecloud.global
0 DS RR in the parent zone found






DS-Query in the parent zone sends valid NSEC3 RR with the Hash "e8fuc7oka3juf4p00g89ckdit6dvufoj" as Owner. That's the Hash of "ecloud.global" with the NextHashedOwnerName "e8fuc7oka3juf4p00g89ckdit6dvufok". So that domain name is the Closest Encloser of "www.ecloud.global". Opt-Out: False.
Bitmap: A, NS, SOA, MX, TXT, AAAA, RRSIG, DNSKEY, NSEC3PARAM, CDS, CAA Validated: RRSIG-Owner e8fuc7oka3juf4p00g89ckdit6dvufoj.ecloud.global., Algorithm: 13, 3 Labels, original TTL: 10800 sec, Signature-expiration: 11.09.2025, 00:00:00 +, Signature-Inception: 21.08.2025, 00:00:00 +, KeyTag 24280, Signer-Name: ecloud.global






RRSIG Type 5 validates the CNAME - Result: ecloud.global
Validated: RRSIG-Owner www.ecloud.global., Algorithm: 13, 3 Labels, original TTL: 300 sec, Signature-expiration: 11.09.2025, 00:00:00 +, Signature-Inception: 21.08.2025, 00:00:00 +, KeyTag 24280, Signer-Name: ecloud.global

 

3. Name Servers

DomainNameserverNS-IP
ecloud.global
  ns1.gandi.net / node-frankfurt2
173.246.100.2
Paris/Île-de-France/France (FR) - Gandi US Inc


 
2001:4b98:aaaa::2
Paris/Île-de-France/France (FR) - GANDI is an ICANN accredited registrar


  ns-124-c.gandi.net / node-frankfurt2
217.70.187.125
Paris/Île-de-France/France (FR) - Gandi SAS


 
2604:3400:aaac::7d
Paris/Île-de-France/France (FR) - Gandi US Inc


  ns-250-a.gandi.net / node-frankfurt2
173.246.100.251
Paris/Île-de-France/France (FR) - Gandi US Inc


 
2001:4b98:aaaa::fb
Paris/Île-de-France/France (FR) - GANDI is an ICANN accredited registrar


  ns-57-b.gandi.net / node-frankfurt2
213.167.230.58
Paris/Île-de-France/France (FR) - Gandi SAS


 
2001:4b98:aaab::3a
Paris/Île-de-France/France (FR) - GANDI is an ICANN accredited registrar

global
  a0.nic.global / app9.nrt1.hosts.meta.redstone.afilias-nst.info-1615580861


  a2.nic.global / FRA3


  b0.nic.global / app6.lax1.hosts.meta.redstone.afilias-nst.info-1633102198


  c0.nic.global / app9.nrt1.hosts.meta.redstone.afilias-nst.info-1615580861

 

4. SOA-Entries


Domain:global
Zone-Name:global
Primary:a0.nic.global
Mail:hostmaster.donuts.email
Serial:1756871351
Refresh:7200
Retry:900
Expire:1209600
TTL:3600
num Entries:4


Domain:ecloud.global
Zone-Name:ecloud.global
Primary:ns1.gandi.net
Mail:hostmaster.gandi.net
Serial:1756339200
Refresh:10800
Retry:3600
Expire:604800
TTL:10800
num Entries:8


5. Screenshots

Startaddress: https://www.ecloud.global/, address used: https://www.ecloud.global/, Screenshot created 2025-09-03 06:03:40 +00:0

 

Mobil (412px x 732px)

 

1048 milliseconds

 

Screenshot mobile - https://www.ecloud.global/
Mobil + Landscape (732px x 412px)

 

1069 milliseconds

 

Screenshot mobile landscape - https://www.ecloud.global/
Screen (1280px x 1680px)

 

1135 milliseconds

 

Screenshot Desktop - https://www.ecloud.global/

 

Mobile- and other Chrome-Checks


widthheight
visual Viewport397732
content Size3972095

 

Good: No horizontal scrollbar. Content-size width = visual Viewport width.

 

6. Url-Checks


:

:
DomainnameHttp-StatusredirectSec.G
• http://ecloud.global/
65.109.243.106
301
https://ecloud.global/

0.067
A
Location: https://ecloud.global/
Content-Length: 0

• http://ecloud.global/
95.217.240.171
301
https://ecloud.global/

0.064
A
Location: https://ecloud.global/
Content-Length: 0

• http://ecloud.global/
2a01:4f9:c01f:e017:ee05::2
301
https://ecloud.global/

0.070
A
Location: https://ecloud.global/
Content-Length: 0

• http://ecloud.global/
2a01:4f9:c01f:e0a5:ee05::2
301
https://ecloud.global/

0.070
A
Location: https://ecloud.global/
Content-Length: 0

• http://www.ecloud.global/
65.109.243.106
301
https://www.ecloud.global/

0.033
A
Location: https://www.ecloud.global/
Content-Length: 0

• http://www.ecloud.global/
95.217.240.171
301
https://www.ecloud.global/

0.037
A
Location: https://www.ecloud.global/
Content-Length: 0

• http://www.ecloud.global/
2a01:4f9:c01f:e017:ee05::2
301
https://www.ecloud.global/

0.036
A
Location: https://www.ecloud.global/
Content-Length: 0

• http://www.ecloud.global/
2a01:4f9:c01f:e0a5:ee05::2
301
https://www.ecloud.global/

0.040
A
Location: https://www.ecloud.global/
Content-Length: 0

• https://ecloud.global/
65.109.243.106
302
https://ecloud.global/login

2.506
B
Server: nginx
Date: Wed, 03 Sep 2025 04:01:13 GMT
Transfer-Encoding: chunked
Set-Cookie: oc_sessionPassphrase=aCP6if74%2FKy%2F7aQVo7R3f7A2o7gx2InYMsoZ4rS4vk8mwS685nwtrIJfeP%2BStwDVgl80awe4C24dSczicbS2I4Q4g1xPDEw4HoNo%2BpsBP%2BrS1CjW6MCO30fnB%2FPW%2Bn51; path=/; secure; HttpOnly; SameSite=Lax,__Host-nc_sameSiteCookielax=true; path=/; httponly;secure; expires=Fri, 31-Dec-2100 23:59:59 GMT; SameSite=lax,__Host-nc_sameSiteCookiestrict=true; path=/; httponly;secure; expires=Fri, 31-Dec-2100 23:59:59 GMT; SameSite=strict,ocvebajunw79=c7787378928a007ec38b1383356f2611; path=/; secure; HttpOnly; SameSite=Lax,SRV=nc15; path=/; Secure
Content-Security-Policy: default-src 'self'; script-src 'self' 'nonce-RXZkS0dxaGRMUCswOERESjJKajBmU3lMZFZQRWMydGZ0UWd6OFN5bkZOcz06UTZBQWJOd1hRNjZDcFVHZ2tLMmNCMnZZSERIckNRTVkvRUlEcFJqd1JMOD0='; style-src 'self' 'unsafe-inline'; frame-src *; img-src * data: blob:; font-src 'self' data:; media-src *; connect-src *; object-src 'none'; base-uri 'self';
Location: https://ecloud.global/login
Strict-Transport-Security: max-age=63072000; includeSubDomains; preload
Referrer-Policy: no-referrer
X-Content-Type-Options: nosniff
x-download-options: noopen
X-Frame-Options: SAMEORIGIN
x-permitted-cross-domain-policies: none
x-robots-tag: noindex, nofollow
X-XSS-Protection: 1; mode=block
Content-Type: text/html; charset=UTF-8
Content-Length: 0

• https://ecloud.global/
95.217.240.171
302
https://ecloud.global/login

2.463
B
Server: nginx
Date: Wed, 03 Sep 2025 04:01:17 GMT
Transfer-Encoding: chunked
Set-Cookie: oc_sessionPassphrase=CmBbriqx7aVFV0AtGUd1YBDfzyiRtL1tenkllHyNREgBKhHAIeFqoIc%2Bt%2BMbCuGGD8gOJRO6Nb0Oe3xRaSuQ7OsB8Sd4HtRzvIBLFCnfIcYifoAh88S%2FCqpuhBvdzMgZ; path=/; secure; HttpOnly; SameSite=Lax,__Host-nc_sameSiteCookielax=true; path=/; httponly;secure; expires=Fri, 31-Dec-2100 23:59:59 GMT; SameSite=lax,__Host-nc_sameSiteCookiestrict=true; path=/; httponly;secure; expires=Fri, 31-Dec-2100 23:59:59 GMT; SameSite=strict,ocvebajunw79=746a4bd232268d539fa885d7c408963e; path=/; secure; HttpOnly; SameSite=Lax,SRV=nc12; path=/; Secure
Content-Security-Policy: default-src 'self'; script-src 'self' 'nonce-ekMvY2hrOXJ4dzdtK2ZSMEN6RzdrdVRxaC9iN203QWxUODZMYzRVck1FST06Z21PVTBBd3hpVWUrdGIwQk9BWHN5dDNCM3JHWTkrTVVDYXY3SUx4U1pYYz0='; style-src 'self' 'unsafe-inline'; frame-src *; img-src * data: blob:; font-src 'self' data:; media-src *; connect-src *; object-src 'none'; base-uri 'self';
Location: https://ecloud.global/login
Strict-Transport-Security: max-age=63072000; includeSubDomains; preload
Referrer-Policy: no-referrer
X-Content-Type-Options: nosniff
x-download-options: noopen
X-Frame-Options: SAMEORIGIN
x-permitted-cross-domain-policies: none
x-robots-tag: noindex, nofollow
X-XSS-Protection: 1; mode=block
Content-Type: text/html; charset=UTF-8
Content-Length: 0

• https://ecloud.global/
2a01:4f9:c01f:e017:ee05::2
302
https://ecloud.global/login

2.490
B
Server: nginx
Date: Wed, 03 Sep 2025 04:01:21 GMT
Transfer-Encoding: chunked
Set-Cookie: oc_sessionPassphrase=8KYmqPvb6oyXsWwsZIw72VAqoC%2BKWDyNpQ0iL9RkrOf5vdCDstUVaLlCKLIY6II20DnTtkgf4MI5ykS0PW8tP2ql2We2EL9fI39tT2vYtNF5AXBdtStR9%2BcZS7%2BJO8Sx; path=/; secure; HttpOnly; SameSite=Lax,__Host-nc_sameSiteCookielax=true; path=/; httponly;secure; expires=Fri, 31-Dec-2100 23:59:59 GMT; SameSite=lax,__Host-nc_sameSiteCookiestrict=true; path=/; httponly;secure; expires=Fri, 31-Dec-2100 23:59:59 GMT; SameSite=strict,ocvebajunw79=939d379cd547f0210c80c40566506fe2; path=/; secure; HttpOnly; SameSite=Lax,SRV=nc13; path=/; Secure
Content-Security-Policy: default-src 'self'; script-src 'self' 'nonce-c1VxTG0weDhMS0tQaUJ6SnR0Qk9WOFd2RDgzbmRkMXF4anM5MU5XVUI3RT06OUJuQXNEMFdSNUh1eVhTQ2p1VjdCNkRJZDVxbUcrZ2psRU5hbTVIV1hzaz0='; style-src 'self' 'unsafe-inline'; frame-src *; img-src * data: blob:; font-src 'self' data:; media-src *; connect-src *; object-src 'none'; base-uri 'self';
Location: https://ecloud.global/login
Strict-Transport-Security: max-age=63072000; includeSubDomains; preload
Referrer-Policy: no-referrer
X-Content-Type-Options: nosniff
x-download-options: noopen
X-Frame-Options: SAMEORIGIN
x-permitted-cross-domain-policies: none
x-robots-tag: noindex, nofollow
X-XSS-Protection: 1; mode=block
Content-Type: text/html; charset=UTF-8
Content-Length: 0

• https://ecloud.global/
2a01:4f9:c01f:e0a5:ee05::2
302
https://ecloud.global/login

2.497
B
Server: nginx
Date: Wed, 03 Sep 2025 04:01:25 GMT
Transfer-Encoding: chunked
Set-Cookie: oc_sessionPassphrase=gfyWcKlUJB%2FroboAlSA2e%2B8444bztSgyiO1qFzxhJUx%2BhTWAzgC2%2FaEA5Z%2B3ekMjXV9qildvVq1cg9Nhxqvok9dMm6pjmyCR7FSmRAjuYDF8zzNGInMnsN3NJ99CGsIj; path=/; secure; HttpOnly; SameSite=Lax,__Host-nc_sameSiteCookielax=true; path=/; httponly;secure; expires=Fri, 31-Dec-2100 23:59:59 GMT; SameSite=lax,__Host-nc_sameSiteCookiestrict=true; path=/; httponly;secure; expires=Fri, 31-Dec-2100 23:59:59 GMT; SameSite=strict,ocvebajunw79=2410770953b2f098494088579d777e3b; path=/; secure; HttpOnly; SameSite=Lax,SRV=nc11; path=/; Secure
Content-Security-Policy: default-src 'self'; script-src 'self' 'nonce-QyszQTRWQWorbnJrcHhreHRzNWtPTFpERjRraFA0RmtkZDBBcnlvK1N6cz06YXJTbWl4aGh5US9WOEN4K2g0QlNmNDRKVGI1WkNkSVZCcjg1LzE1b0NRND0='; style-src 'self' 'unsafe-inline'; frame-src *; img-src * data: blob:; font-src 'self' data:; media-src *; connect-src *; object-src 'none'; base-uri 'self';
Location: https://ecloud.global/login
Strict-Transport-Security: max-age=63072000; includeSubDomains; preload
Referrer-Policy: no-referrer
X-Content-Type-Options: nosniff
x-download-options: noopen
X-Frame-Options: SAMEORIGIN
x-permitted-cross-domain-policies: none
x-robots-tag: noindex, nofollow
X-XSS-Protection: 1; mode=block
Content-Type: text/html; charset=UTF-8
Content-Length: 0

• https://murena.io/login

302
https://murena.io/apps/oidc_login/oidc

2.884
B
Server: nginx
Date: Wed, 03 Sep 2025 04:02:15 GMT
Transfer-Encoding: chunked
Set-Cookie: oc_sessionPassphrase=O7c6gfdL0d3cr5gwESU6myurLIddA19I7OfJP4a10tPG4LeXYXJF0efczFAAVfEhVuz0OjcKzGeTZAmCyKntBhXhf8wLefySNdaYIu%2BtbfkG%2FgxHD3T2ocldhKIamvnG; path=/; secure; HttpOnly; SameSite=Lax,__Host-nc_sameSiteCookielax=true; path=/; httponly;secure; expires=Fri, 31-Dec-2100 23:59:59 GMT; SameSite=lax,__Host-nc_sameSiteCookiestrict=true; path=/; httponly;secure; expires=Fri, 31-Dec-2100 23:59:59 GMT; SameSite=strict,ocvebajunw79=68f8f194cb27bf69243ad8245095821a; path=/; secure; HttpOnly; SameSite=Lax,SRV=nc15; path=/; Secure
Content-Security-Policy: default-src 'self'; script-src 'self' 'nonce-a01WK2liSVNVeDJtMnFReHFuYTRaMkpZU25yR3pQaTUzS2MzZ0dHSnp4ST06MktZcStwMTFCRlB2ck9BQ2hTWGlEU284ZUJlTnFwVDd0TlZ1c0FYYm9IMD0='; style-src 'self' 'unsafe-inline'; frame-src *; img-src * data: blob:; font-src 'self' data:; media-src *; connect-src *; object-src 'none'; base-uri 'self';
Location: /apps/oidc_login/oidc
Strict-Transport-Security: max-age=63072000; includeSubDomains; preload
Referrer-Policy: no-referrer
X-Content-Type-Options: nosniff
x-download-options: noopen
X-Frame-Options: SAMEORIGIN
x-permitted-cross-domain-policies: none
x-robots-tag: noindex, nofollow
X-XSS-Protection: 1; mode=block
Content-Type: text/html; charset=UTF-8
Content-Length: 0

• https://ecloud.global/login

302
https://murena.io/login

2.430
B
Location: https://murena.io/login
Cache-Control: no-cache
Content-Length: 0

• https://murena.io/apps/oidc_login/oidc

302
https://accounts.murena.io/auth/realms/murena/protocol/openid-connect/auth?response_type=code&redirect_uri=https%3A%2F%2Fmurena.io%2Fapps%2Foidc_login%2Foidc&client_id=murena.io&nonce=8d89e3ce8a8efeaa92012a2b8c410da5&state=f0128f0c27e7ceb361a4203435a13788&scope=openid+openid

2.277
A
Server: nginx
Date: Wed, 03 Sep 2025 04:02:19 GMT
Transfer-Encoding: chunked
Content-Security-Policy: default-src 'self'; script-src 'self' 'nonce-allsMm8xeHpnME0xYzNGZG9TME5vTTJ2VVhhV1QzUlFYTzY4a2xDcE4vdz06eGVvaTBITVUxQTE4QlRWdWpuNVh5b1hMWXh2ZEtSZ1NOSnpsb2pUN1dKTT0='; style-src 'self' 'unsafe-inline'; frame-src *; img-src * data: blob:; font-src 'self' data:; media-src *; connect-src *; object-src 'none'; base-uri 'self';
Set-Cookie: ocvebajunw79=68f8f194cb27bf69243ad8245095821a; path=/; secure; HttpOnly; SameSite=Lax
Location: https://accounts.murena.io/auth/realms/murena/protocol/openid-connect/auth?response_type=code&redirect_uri=https%3A%2F%2Fmurena.io%2Fapps%2Foidc_login%2Foidc&client_id=murena.io&nonce=8d89e3ce8a8efeaa92012a2b8c410da5&state=f0128f0c27e7ceb361a4203435a13788&scope=openid+openid
Strict-Transport-Security: max-age=63072000; includeSubDomains; preload
Referrer-Policy: no-referrer
X-Content-Type-Options: nosniff
x-download-options: noopen
X-Frame-Options: SAMEORIGIN
x-permitted-cross-domain-policies: none
x-robots-tag: noindex, nofollow
X-XSS-Protection: 1; mode=block
Content-Type: text/html; charset=UTF-8
Content-Length: 0

• https://www.ecloud.global/
65.109.243.106 gzip used - 4707 / 15750 - 70.11 %
Inline-JavaScript (∑/total): 2/3055 Inline-CSS (∑/total): 1/3571
200

Html is minified: 251.68 %
Other inline scripts (∑/total): 0/0
2.443
I
Server: nginx
Date: Wed, 03 Sep 2025 04:01:29 GMT
Transfer-Encoding: chunked
Vary: Accept-Encoding
X-Frame-Options: SAMEORIGIN
X-Content-Type-Options: nosniff
X-XSS-Protection: 1; mode=block
Strict-Transport-Security: max-age=15768000
Referrer-Policy: same-origin
x-robots-tag: none
x-download-options: noopen
x-permitted-cross-domain-policies: none
Content-Type: text/html; charset=utf-8
Content-Encoding: gzip
Content-Length: 4707

• https://www.ecloud.global/
95.217.240.171 gzip used - 4707 / 15750 - 70.11 %
Inline-JavaScript (∑/total): 2/3055 Inline-CSS (∑/total): 1/3571
200

Html is minified: 251.68 %
Other inline scripts (∑/total): 0/0
2.414
I
Server: nginx
Date: Wed, 03 Sep 2025 04:01:33 GMT
Transfer-Encoding: chunked
Vary: Accept-Encoding
X-Frame-Options: SAMEORIGIN
X-Content-Type-Options: nosniff
X-XSS-Protection: 1; mode=block
Strict-Transport-Security: max-age=15768000
Referrer-Policy: same-origin
x-robots-tag: none
x-download-options: noopen
x-permitted-cross-domain-policies: none
Content-Type: text/html; charset=utf-8
Content-Encoding: gzip
Content-Length: 4707

• https://www.ecloud.global/
2a01:4f9:c01f:e017:ee05::2 gzip used - 4707 / 15750 - 70.11 %
Inline-JavaScript (∑/total): 2/3055 Inline-CSS (∑/total): 1/3571
200

Html is minified: 251.68 %
Other inline scripts (∑/total): 0/0
2.417
I
Server: nginx
Date: Wed, 03 Sep 2025 04:01:36 GMT
Transfer-Encoding: chunked
Vary: Accept-Encoding
X-Frame-Options: SAMEORIGIN
X-Content-Type-Options: nosniff
X-XSS-Protection: 1; mode=block
Strict-Transport-Security: max-age=15768000
Referrer-Policy: same-origin
x-robots-tag: none
x-download-options: noopen
x-permitted-cross-domain-policies: none
Content-Type: text/html; charset=utf-8
Content-Encoding: gzip
Content-Length: 4707

• https://www.ecloud.global/
2a01:4f9:c01f:e0a5:ee05::2 gzip used - 4707 / 15750 - 70.11 %
Inline-JavaScript (∑/total): 2/3055 Inline-CSS (∑/total): 1/3571
200

Html is minified: 251.68 %
Other inline scripts (∑/total): 0/0
2.420
I
Server: nginx
Date: Wed, 03 Sep 2025 04:01:40 GMT
Transfer-Encoding: chunked
Vary: Accept-Encoding
X-Frame-Options: SAMEORIGIN
X-Content-Type-Options: nosniff
X-XSS-Protection: 1; mode=block
Strict-Transport-Security: max-age=15768000
Referrer-Policy: same-origin
x-robots-tag: none
x-download-options: noopen
x-permitted-cross-domain-policies: none
Content-Type: text/html; charset=utf-8
Content-Encoding: gzip
Content-Length: 4707

• https://mta-sts.ecloud.global/.well-known/mta-sts.txt
65.109.243.106
200



B
0 None CN=ecloud.global
Server: nginx/1.26.2
Date: Wed, 03 Sep 2025 04:03:11 GMT
ETag: "665fec3b-44"
Accept-Ranges: bytes
Content-Type: text/plain
Content-Length: 68
Last-Modified: Wed, 05 Jun 2024 04:40:27 GMT

• https://mta-sts.ecloud.global/.well-known/mta-sts.txt
95.217.240.171
200



B
0 None CN=ecloud.global
Server: nginx/1.26.2
Date: Wed, 03 Sep 2025 04:03:15 GMT
ETag: "665fed24-44"
Accept-Ranges: bytes
Content-Type: text/plain
Content-Length: 68
Last-Modified: Wed, 05 Jun 2024 04:44:20 GMT

• https://mta-sts.ecloud.global/.well-known/mta-sts.txt
2a01:4f9:c01f:e017:ee05::2
200



B
0 None CN=ecloud.global
Server: nginx/1.26.2
Date: Wed, 03 Sep 2025 04:03:19 GMT
ETag: "665fec3b-44"
Accept-Ranges: bytes
Content-Type: text/plain
Content-Length: 68
Last-Modified: Wed, 05 Jun 2024 04:40:27 GMT

• https://mta-sts.ecloud.global/.well-known/mta-sts.txt
2a01:4f9:c01f:e0a5:ee05::2
200



B
0 None CN=ecloud.global
Server: nginx/1.26.2
Date: Wed, 03 Sep 2025 04:03:22 GMT
ETag: "665fed24-44"
Accept-Ranges: bytes
Content-Type: text/plain
Content-Length: 68
Last-Modified: Wed, 05 Jun 2024 04:44:20 GMT

• https://accounts.murena.io/auth/realms/murena/protocol/openid-connect/auth?response_type=code&redirect_uri=https%3A%2F%2Fmurena.io%2Fapps%2Foidc_login%2Foidc&client_id=murena.io&nonce=8d89e3ce8a8efeaa92012a2b8c410da5&state=f0128f0c27e7ceb361a4203435a13788&scope=openid+openid
No Compression used - 2756 / 9849 - 27.98 % possible
Inline-JavaScript (∑/total): 0/0 Inline-CSS (∑/total): 0/0
200

Html is minified: 138.52 %
Other inline scripts (∑/total): 0/0
2.707
I
Server: nginx/1.26.3
Date: Wed, 03 Sep 2025 04:02:22 GMT
Set-Cookie: AUTH_SESSION_ID=488a826b-d84e-4d4b-b14e-c053f1fdc0ee.efa29b41d3cc-36139;Version=1;Path=/auth/realms/murena/;Secure;HttpOnly;SameSite=None,AUTH_SESSION_ID_LEGACY=488a826b-d84e-4d4b-b14e-c053f1fdc0ee.efa29b41d3cc-36139;Version=1;Path=/auth/realms/murena/;Secure;HttpOnly,KC_RESTART=eyJhbGciOiJkaXIiLCJlbmMiOiJBMTI4Q0JDLUhTMjU2In0..4jO1sClQkTEVdFHIn3-2NQ.SO3ARF7u-7Tw8Uy0pnpEvtzrqAl8XbnDpyJ4LIIjTUDpNoID6QAuNirEE15t-J9aLrDF74Q_CP_tgW-hWO0Rc96n-DiXWvF6CyTw061UI5xpEDLBEhm2bA1m68mkmnKimceFv3OhhQ1ScMFiw4J2d6HvloemjwwS1Sc1lAyA2j7fEh77o9zglNo0wXq0IWUGSFIdOSA8OLQXnssuJVcvHT_UUARjQ4stlJCEoTZp9xXqvxIJbyyPp0tatU9MMsA3oz_8YZWGVV8KHqiKzT8XWMBrHuLi36GixAwaUGch2FTO6scnHccnLcTkmU8LbalRaAYXRlRdUB4bagneeiTK24xA8vKcwHCLeXfNAxLWFcJRn4LyOZpdujMwjOM94nXcCcxfMbm1txqg8D96xolHCRhmdOVa0vtO38_OAfl6RGsAVT5QLfHfdjr3k5Z4KXFRosGcGAXrO-giDBhNvLPNVIDoMg5UYRtlPdq1XNoh-R-2NAXVOnSnIj1EOFfALQDkdwSIN-yxFLtipIzZWZyZyRbiBFloHAXE-Thol3IcMN9-pHB-r3bwWWv5Wyq9CDRDdcBgmIO2KXBDPz82Gw5okX0RUPkHIGePQn23skRptA-blfPxwi6kGjWF66pEtnHp4B-xmfoTtz2zjpaLSn6Ae-RDHHCzZB__qlnpzEWOayrgnsxXD3np29R3C_shZRjzkjgzfzr3bxcKTpE1UhM3K-pkEmJqxDfa2O2d7LPlIDWdkmLTRpd10T_1_2jT3gLUghRrX2O6FdtfMEGszlo6v0mLk7fhnzKv7F0TxHdxt83NMQpoh9eZ8LdflrZUHuqGTzU3BjKtQRXseKMzgBHlytWm0XRvThWZEP1KfBTlpj8Qgx9445XRvQZcPh7HcN2pDvvwb-8BY8X0jHFP0bmawQ.KEd_Qn7jd0cdKBNyTL988Q;Version=1;Path=/auth/realms/murena/;Secure;HttpOnly;SameSite=None,SRVKC=nc15; path=/; Secure
Cache-Control: no-store, must-revalidate, max-age=0
Content-Security-Policy: frame-src 'self'; frame-ancestors 'self'; object-src 'none';
Referrer-Policy: no-referrer
Strict-Transport-Security: max-age=31536000; includeSubDomains
X-Content-Type-Options: nosniff
X-Frame-Options: SAMEORIGIN
x-robots-tag: none
X-XSS-Protection: 1; mode=block
Content-Type: text/html; charset=utf-8
Content-Length: 9849
Content-Language: en

• http://ecloud.global/.well-known/acme-challenge/check-your-website-dot-server-daten-dot-de
65.109.243.106
301
https://ecloud.global/.well-known/acme-challenge/check-your-website-dot-server-daten-dot-de

0.063
A
Visible Content:
Location: https://ecloud.global/.well-known/acme-challenge/check-your-website-dot-server-daten-dot-de
Content-Length: 0

• http://ecloud.global/.well-known/acme-challenge/check-your-website-dot-server-daten-dot-de
95.217.240.171
301
https://ecloud.global/.well-known/acme-challenge/check-your-website-dot-server-daten-dot-de

0.064
A
Visible Content:
Location: https://ecloud.global/.well-known/acme-challenge/check-your-website-dot-server-daten-dot-de
Content-Length: 0

• http://ecloud.global/.well-known/acme-challenge/check-your-website-dot-server-daten-dot-de
2a01:4f9:c01f:e017:ee05::2
301
https://ecloud.global/.well-known/acme-challenge/check-your-website-dot-server-daten-dot-de

0.074
A
Visible Content:
Location: https://ecloud.global/.well-known/acme-challenge/check-your-website-dot-server-daten-dot-de
Content-Length: 0

• http://ecloud.global/.well-known/acme-challenge/check-your-website-dot-server-daten-dot-de
2a01:4f9:c01f:e0a5:ee05::2
301
https://ecloud.global/.well-known/acme-challenge/check-your-website-dot-server-daten-dot-de

0.070
A
Visible Content:
Location: https://ecloud.global/.well-known/acme-challenge/check-your-website-dot-server-daten-dot-de
Content-Length: 0

• http://www.ecloud.global/.well-known/acme-challenge/check-your-website-dot-server-daten-dot-de
65.109.243.106
301
https://www.ecloud.global/.well-known/acme-challenge/check-your-website-dot-server-daten-dot-de

0.037
A
Visible Content:
Location: https://www.ecloud.global/.well-known/acme-challenge/check-your-website-dot-server-daten-dot-de
Content-Length: 0

• http://www.ecloud.global/.well-known/acme-challenge/check-your-website-dot-server-daten-dot-de
95.217.240.171
301
https://www.ecloud.global/.well-known/acme-challenge/check-your-website-dot-server-daten-dot-de

0.033
A
Visible Content:
Location: https://www.ecloud.global/.well-known/acme-challenge/check-your-website-dot-server-daten-dot-de
Content-Length: 0

• http://www.ecloud.global/.well-known/acme-challenge/check-your-website-dot-server-daten-dot-de
2a01:4f9:c01f:e017:ee05::2
301
https://www.ecloud.global/.well-known/acme-challenge/check-your-website-dot-server-daten-dot-de

0.037
A
Visible Content:
Location: https://www.ecloud.global/.well-known/acme-challenge/check-your-website-dot-server-daten-dot-de
Content-Length: 0

• http://www.ecloud.global/.well-known/acme-challenge/check-your-website-dot-server-daten-dot-de
2a01:4f9:c01f:e0a5:ee05::2
301
https://www.ecloud.global/.well-known/acme-challenge/check-your-website-dot-server-daten-dot-de

0.040
A
Visible Content:
Location: https://www.ecloud.global/.well-known/acme-challenge/check-your-website-dot-server-daten-dot-de
Content-Length: 0

• https://ecloud.global/.well-known/acme-challenge/check-your-website-dot-server-daten-dot-de

Inline-JavaScript (∑/total): 0/0 Inline-CSS (∑/total): 0/0
404

Html is minified: 110.61 %
Other inline scripts (∑/total): 0/0
2.197
B
Not Found
Visible Content:
Server: nginx
Date: Wed, 03 Sep 2025 04:02:08 GMT
Strict-Transport-Security: max-age=63072000; includeSubDomains; preload
Referrer-Policy: no-referrer
X-Content-Type-Options: nosniff
x-download-options: noopen
X-Frame-Options: SAMEORIGIN
x-permitted-cross-domain-policies: none
x-robots-tag: noindex, nofollow
X-XSS-Protection: 1; mode=block
Set-Cookie: SRV=nc11; path=/; Secure
Content-Type: text/html
Content-Length: 146

• https://www.ecloud.global/.well-known/acme-challenge/check-your-website-dot-server-daten-dot-de
gzip used - 29 / 9 - -222.22 %
Inline-JavaScript (∑/total): 0/0 Inline-CSS (∑/total): 0/0
404

Html is minified: 100.00 %
Other inline scripts (∑/total): 0/0
2.340
A
Not Found
Visible Content:
Server: nginx
Date: Wed, 03 Sep 2025 04:02:11 GMT
Transfer-Encoding: chunked
Vary: Accept-Encoding
Content-Type: text/plain; charset=utf-8
Content-Encoding: gzip
Content-Length: 29

• https://65.109.243.106/
65.109.243.106
Inline-JavaScript (∑/total): 0/0 Inline-CSS (∑/total): 0/0
404

Html is minified: 100.00 %
Other inline scripts (∑/total): 0/0
2.473
N
Not Found
Certificate error: RemoteCertificateNameMismatch
Server: nginx/1.26.3
Date: Wed, 03 Sep 2025 04:01:45 GMT
Content-Type: text/html; charset=utf-8
Content-Length: 53

• https://95.217.240.171/
95.217.240.171
502

Html is minified: 109.79 %
2.390
N
Bad Gateway
Certificate error: RemoteCertificateNameMismatch
Server: nginx/1.26.3
Date: Wed, 03 Sep 2025 04:01:49 GMT
Content-Type: text/html
Content-Length: 157

• https://[2a01:04f9:c01f:e017:ee05:0000:0000:0002]/
2a01:4f9:c01f:e017:ee05::2
502

Html is minified: 109.79 %
2.420
N
Bad Gateway
Certificate error: RemoteCertificateNameMismatch
Server: nginx/1.26.3
Date: Wed, 03 Sep 2025 04:01:53 GMT
Content-Type: text/html
Content-Length: 157

• https://[2a01:04f9:c01f:e0a5:ee05:0000:0000:0002]/
2a01:4f9:c01f:e0a5:ee05::2
502

Html is minified: 109.79 %
2.403
N
Bad Gateway
Certificate error: RemoteCertificateNameMismatch
Server: nginx/1.26.3
Date: Wed, 03 Sep 2025 04:01:58 GMT
Content-Type: text/html
Content-Length: 157

 

7. Comments


1. General Results, most used to calculate the result

Aname "ecloud.global" is domain, public suffix is ".global", top-level-domain is ".global", top-level-domain-type is "generic", tld-manager is "Dot Global Domain Registry Limited", num .global-domains preloaded: 51 (complete: 276475)
AGood: All ip addresses are public addresses
AGood: Minimal 2 ip addresses per domain name found: ecloud.global has 4 different ip addresses (authoritative).
AGood: Minimal 2 ip addresses per domain name found: www.ecloud.global has 4 different ip addresses (authoritative).
AGood: Ipv4 and Ipv6 addresses per domain name found: ecloud.global has 2 ipv4, 2 ipv6 addresses
AGood: Ipv4 and Ipv6 addresses per domain name found: www.ecloud.global has 2 ipv4, 2 ipv6 addresses
Ahttps://murena.io/login


Good: Valid DANE - entry found: signed Data _443._tcp.ecloud.global: CertUsage 2 (DANE-TA, Trust anchor assertion), Selector 1 (SPKI, SubjectPublicKeyInfo), Matching 1 (SHA2-256, 256 bit hash by SHA2), CertificateAssociationData: 2bbad93ab5c79279ec121507f272cbe0c6647a3aae52e22f388afab426b4adba confirms the Certificate with the same value
Ahttps://murena.io/apps/oidc_login/oidc


Good: Valid DANE - entry found: signed Data _443._tcp.ecloud.global: CertUsage 2 (DANE-TA, Trust anchor assertion), Selector 1 (SPKI, SubjectPublicKeyInfo), Matching 1 (SHA2-256, 256 bit hash by SHA2), CertificateAssociationData: 2bbad93ab5c79279ec121507f272cbe0c6647a3aae52e22f388afab426b4adba confirms the Certificate with the same value
Ahttps://ecloud.global/login


Good: Valid DANE - entry found: signed Data _443._tcp.ecloud.global: CertUsage 2 (DANE-TA, Trust anchor assertion), Selector 1 (SPKI, SubjectPublicKeyInfo), Matching 1 (SHA2-256, 256 bit hash by SHA2), CertificateAssociationData: 2bbad93ab5c79279ec121507f272cbe0c6647a3aae52e22f388afab426b4adba confirms the Certificate with the same value
Ahttps://ecloud.global/ 65.109.243.106


Good: Valid DANE - entry found: signed Data _443._tcp.ecloud.global: CertUsage 2 (DANE-TA, Trust anchor assertion), Selector 1 (SPKI, SubjectPublicKeyInfo), Matching 1 (SHA2-256, 256 bit hash by SHA2), CertificateAssociationData: 2bbad93ab5c79279ec121507f272cbe0c6647a3aae52e22f388afab426b4adba confirms the Certificate with the same value
Ahttps://ecloud.global/ 95.217.240.171


Good: Valid DANE - entry found: signed Data _443._tcp.ecloud.global: CertUsage 2 (DANE-TA, Trust anchor assertion), Selector 1 (SPKI, SubjectPublicKeyInfo), Matching 1 (SHA2-256, 256 bit hash by SHA2), CertificateAssociationData: 2bbad93ab5c79279ec121507f272cbe0c6647a3aae52e22f388afab426b4adba confirms the Certificate with the same value
Ahttps://ecloud.global/ 2a01:4f9:c01f:e017:ee05::2


Good: Valid DANE - entry found: signed Data _443._tcp.ecloud.global: CertUsage 2 (DANE-TA, Trust anchor assertion), Selector 1 (SPKI, SubjectPublicKeyInfo), Matching 1 (SHA2-256, 256 bit hash by SHA2), CertificateAssociationData: 2bbad93ab5c79279ec121507f272cbe0c6647a3aae52e22f388afab426b4adba confirms the Certificate with the same value
Ahttps://ecloud.global/ 2a01:4f9:c01f:e0a5:ee05::2


Good: Valid DANE - entry found: signed Data _443._tcp.ecloud.global: CertUsage 2 (DANE-TA, Trust anchor assertion), Selector 1 (SPKI, SubjectPublicKeyInfo), Matching 1 (SHA2-256, 256 bit hash by SHA2), CertificateAssociationData: 2bbad93ab5c79279ec121507f272cbe0c6647a3aae52e22f388afab426b4adba confirms the Certificate with the same value
Ahttps://accounts.murena.io/auth/realms/murena/protocol/openid-connect/auth?response_type=code&redirect_uri=https%3A%2F%2Fmurena.io%2Fapps%2Foidc_login%2Foidc&client_id=murena.io&nonce=8d89e3ce8a8efeaa92012a2b8c410da5&state=f0128f0c27e7ceb361a4203435a13788&scope=openid+openid


Good: Valid DANE - entry found: signed Data _443._tcp.ecloud.global: CertUsage 2 (DANE-TA, Trust anchor assertion), Selector 1 (SPKI, SubjectPublicKeyInfo), Matching 1 (SHA2-256, 256 bit hash by SHA2), CertificateAssociationData: 2bbad93ab5c79279ec121507f272cbe0c6647a3aae52e22f388afab426b4adba confirms the Certificate with the same value
Ahttps://ecloud.global/.well-known/acme-challenge/check-your-website-dot-server-daten-dot-de


Good: Valid DANE - entry found: signed Data _443._tcp.ecloud.global: CertUsage 2 (DANE-TA, Trust anchor assertion), Selector 1 (SPKI, SubjectPublicKeyInfo), Matching 1 (SHA2-256, 256 bit hash by SHA2), CertificateAssociationData: 2bbad93ab5c79279ec121507f272cbe0c6647a3aae52e22f388afab426b4adba confirms the Certificate with the same value
Ahttps://65.109.243.106/ 65.109.243.106


Good: Valid DANE - entry found: signed Data _443._tcp.ecloud.global: CertUsage 2 (DANE-TA, Trust anchor assertion), Selector 1 (SPKI, SubjectPublicKeyInfo), Matching 1 (SHA2-256, 256 bit hash by SHA2), CertificateAssociationData: 2bbad93ab5c79279ec121507f272cbe0c6647a3aae52e22f388afab426b4adba confirms the Certificate with the same value
Ahttps://95.217.240.171/ 95.217.240.171


Good: Valid DANE - entry found: signed Data _443._tcp.ecloud.global: CertUsage 2 (DANE-TA, Trust anchor assertion), Selector 1 (SPKI, SubjectPublicKeyInfo), Matching 1 (SHA2-256, 256 bit hash by SHA2), CertificateAssociationData: 2bbad93ab5c79279ec121507f272cbe0c6647a3aae52e22f388afab426b4adba confirms the Certificate with the same value
Ahttps://[2a01:04f9:c01f:e017:ee05:0000:0000:0002]/ 2a01:4f9:c01f:e017:ee05::2


Good: Valid DANE - entry found: signed Data _443._tcp.ecloud.global: CertUsage 2 (DANE-TA, Trust anchor assertion), Selector 1 (SPKI, SubjectPublicKeyInfo), Matching 1 (SHA2-256, 256 bit hash by SHA2), CertificateAssociationData: 2bbad93ab5c79279ec121507f272cbe0c6647a3aae52e22f388afab426b4adba confirms the Certificate with the same value
Ahttps://[2a01:04f9:c01f:e0a5:ee05:0000:0000:0002]/ 2a01:4f9:c01f:e0a5:ee05::2


Good: Valid DANE - entry found: signed Data _443._tcp.ecloud.global: CertUsage 2 (DANE-TA, Trust anchor assertion), Selector 1 (SPKI, SubjectPublicKeyInfo), Matching 1 (SHA2-256, 256 bit hash by SHA2), CertificateAssociationData: 2bbad93ab5c79279ec121507f272cbe0c6647a3aae52e22f388afab426b4adba confirms the Certificate with the same value
Ahttps://mta-sts.ecloud.global/.well-known/mta-sts.txt 65.109.243.106


Good: Valid DANE - entry found: signed Data _443._tcp.ecloud.global: CertUsage 2 (DANE-TA, Trust anchor assertion), Selector 1 (SPKI, SubjectPublicKeyInfo), Matching 1 (SHA2-256, 256 bit hash by SHA2), CertificateAssociationData: 2bbad93ab5c79279ec121507f272cbe0c6647a3aae52e22f388afab426b4adba confirms the Certificate with the same value
Ahttps://mta-sts.ecloud.global/.well-known/mta-sts.txt 95.217.240.171


Good: Valid DANE - entry found: signed Data _443._tcp.ecloud.global: CertUsage 2 (DANE-TA, Trust anchor assertion), Selector 1 (SPKI, SubjectPublicKeyInfo), Matching 1 (SHA2-256, 256 bit hash by SHA2), CertificateAssociationData: 2bbad93ab5c79279ec121507f272cbe0c6647a3aae52e22f388afab426b4adba confirms the Certificate with the same value
Ahttps://mta-sts.ecloud.global/.well-known/mta-sts.txt 2a01:4f9:c01f:e017:ee05::2


Good: Valid DANE - entry found: signed Data _443._tcp.ecloud.global: CertUsage 2 (DANE-TA, Trust anchor assertion), Selector 1 (SPKI, SubjectPublicKeyInfo), Matching 1 (SHA2-256, 256 bit hash by SHA2), CertificateAssociationData: 2bbad93ab5c79279ec121507f272cbe0c6647a3aae52e22f388afab426b4adba confirms the Certificate with the same value
Ahttps://mta-sts.ecloud.global/.well-known/mta-sts.txt 2a01:4f9:c01f:e0a5:ee05::2


Good: Valid DANE - entry found: signed Data _443._tcp.ecloud.global: CertUsage 2 (DANE-TA, Trust anchor assertion), Selector 1 (SPKI, SubjectPublicKeyInfo), Matching 1 (SHA2-256, 256 bit hash by SHA2), CertificateAssociationData: 2bbad93ab5c79279ec121507f272cbe0c6647a3aae52e22f388afab426b4adba confirms the Certificate with the same value
Ahttps://murena.io/apps/oidc_login/oidc
302
https://accounts.murena.io/auth/realms/murena/protocol/openid-connect/auth?response_type=code&redirect_uri=https%3A%2F%2Fmurena.io%2Fapps%2Foidc_login%2Foidc&client_id=murena.io&nonce=8d89e3ce8a8efeaa92012a2b8c410da5&state=f0128f0c27e7ceb361a4203435a13788&scope=openid+openid
Correct redirect https to https
Ahttps://murena.io/login
302
https://murena.io/apps/oidc_login/oidc
Correct redirect https to https
Ahttps://ecloud.global/login
302
https://murena.io/login
Correct redirect https to https
Ahttps://ecloud.global/ 65.109.243.106
302
https://ecloud.global/login
Correct redirect https to https
Ahttps://ecloud.global/ 95.217.240.171
302
https://ecloud.global/login
Correct redirect https to https
Ahttps://ecloud.global/ 2a01:4f9:c01f:e017:ee05::2
302
https://ecloud.global/login
Correct redirect https to https
Ahttps://ecloud.global/ 2a01:4f9:c01f:e0a5:ee05::2
302
https://ecloud.global/login
Correct redirect https to https
AGood: destination is https
AGood: No cookie sent via http.
AGood: every cookie sent via https is marked as secure
Warning: HSTS preload sent, but not in Preload-List. Never send a preload directive if you don't know what preload means. Check https://hstspreload.org/ to learn the basics about the Google-Preload list. If you send a preload directive, you should **immediately** add your domain to the HSTS preload list via https://hstspreload.org/ . If Google accepts the domain, so the status is "pending": Note that new entries are hardcoded into the Chrome source code and can take several months before they reach the stable version. So you will see this message some months. If you don't want that or if you don't understand "preload", but if you send a preload directive and if you have correct A-redirects, everybody can add your domain to that list. Then you may have problems, it's not easy to undo that. So if you don't want your domain preloaded, remove the preload directive.
HSTS-Preload-Status: unknown. Domain never included in the Preload-list. Check https://hstspreload.org/ to learn some basics about the Google-Preload-List.
AGood: Some urls with http status 200/404 have a complete Content-Type header (MediaType / MediaSubType + correct charset):7 complete Content-Type - header (12 urls)
https://ecloud.global/.well-known/acme-challenge/check-your-website-dot-server-daten-dot-de


Url with incomplete Content-Type - header - missing charset
https://mta-sts.ecloud.global/.well-known/mta-sts.txt 65.109.243.106


Url with incomplete Content-Type - header - missing charset
https://mta-sts.ecloud.global/.well-known/mta-sts.txt 95.217.240.171


Url with incomplete Content-Type - header - missing charset
https://mta-sts.ecloud.global/.well-known/mta-sts.txt 2a01:4f9:c01f:e017:ee05::2


Url with incomplete Content-Type - header - missing charset
https://mta-sts.ecloud.global/.well-known/mta-sts.txt 2a01:4f9:c01f:e0a5:ee05::2


Url with incomplete Content-Type - header - missing charset
Ahttp://ecloud.global/ 65.109.243.106
301
https://ecloud.global/
Correct redirect http - https with the same domain name
Ahttp://ecloud.global/ 95.217.240.171
301
https://ecloud.global/
Correct redirect http - https with the same domain name
Ahttp://ecloud.global/ 2a01:4f9:c01f:e017:ee05::2
301
https://ecloud.global/
Correct redirect http - https with the same domain name
Ahttp://ecloud.global/ 2a01:4f9:c01f:e0a5:ee05::2
301
https://ecloud.global/
Correct redirect http - https with the same domain name
Ahttp://www.ecloud.global/ 65.109.243.106
301
https://www.ecloud.global/
Correct redirect http - https with the same domain name
Ahttp://www.ecloud.global/ 95.217.240.171
301
https://www.ecloud.global/
Correct redirect http - https with the same domain name
Ahttp://www.ecloud.global/ 2a01:4f9:c01f:e017:ee05::2
301
https://www.ecloud.global/
Correct redirect http - https with the same domain name
Ahttp://www.ecloud.global/ 2a01:4f9:c01f:e0a5:ee05::2
301
https://www.ecloud.global/
Correct redirect http - https with the same domain name
BWarning: HSTS max-age is too short - minimum 31536000 = 365 days required, 15768000 seconds = 182 days found
Bhttps://ecloud.global/login
302

Missing HSTS-Header
Bhttps://www.ecloud.global/.well-known/acme-challenge/check-your-website-dot-server-daten-dot-de
404

Missing HSTS-Header
Bhttps://murena.io/login
302
SRV=nc15; path=/; Secure
Cookie without a SameSite-Attribute. Possible values are: Strict/Lax/None. Cookie may not work as expected, if "None" is wanted, but browsers use "Lax" as default value.
Bhttps://ecloud.global/ 65.109.243.106
302
SRV=nc15; path=/; Secure
Cookie without a SameSite-Attribute. Possible values are: Strict/Lax/None. Cookie may not work as expected, if "None" is wanted, but browsers use "Lax" as default value.
Bhttps://ecloud.global/ 95.217.240.171
302
SRV=nc12; path=/; Secure
Cookie without a SameSite-Attribute. Possible values are: Strict/Lax/None. Cookie may not work as expected, if "None" is wanted, but browsers use "Lax" as default value.
Bhttps://ecloud.global/ 2a01:4f9:c01f:e017:ee05::2
302
SRV=nc13; path=/; Secure
Cookie without a SameSite-Attribute. Possible values are: Strict/Lax/None. Cookie may not work as expected, if "None" is wanted, but browsers use "Lax" as default value.
Bhttps://ecloud.global/ 2a01:4f9:c01f:e0a5:ee05::2
302
SRV=nc11; path=/; Secure
Cookie without a SameSite-Attribute. Possible values are: Strict/Lax/None. Cookie may not work as expected, if "None" is wanted, but browsers use "Lax" as default value.
Bhttps://accounts.murena.io/auth/realms/murena/protocol/openid-connect/auth?response_type=code&redirect_uri=https%3A%2F%2Fmurena.io%2Fapps%2Foidc_login%2Foidc&client_id=murena.io&nonce=8d89e3ce8a8efeaa92012a2b8c410da5&state=f0128f0c27e7ceb361a4203435a13788&scope=openid+openid
200
AUTH_SESSION_ID_LEGACY=488a826b-d84e-4d4b-b14e-c053f1fdc0ee.efa29b41d3cc-36139;Version=1;Path=/auth/realms/murena/;Secure;HttpOnly
Cookie without a SameSite-Attribute. Possible values are: Strict/Lax/None. Cookie may not work as expected, if "None" is wanted, but browsers use "Lax" as default value.
Bhttps://accounts.murena.io/auth/realms/murena/protocol/openid-connect/auth?response_type=code&redirect_uri=https%3A%2F%2Fmurena.io%2Fapps%2Foidc_login%2Foidc&client_id=murena.io&nonce=8d89e3ce8a8efeaa92012a2b8c410da5&state=f0128f0c27e7ceb361a4203435a13788&scope=openid+openid
200
SRVKC=nc15; path=/; Secure
Cookie without a SameSite-Attribute. Possible values are: Strict/Lax/None. Cookie may not work as expected, if "None" is wanted, but browsers use "Lax" as default value.
Bhttps://ecloud.global/.well-known/acme-challenge/check-your-website-dot-server-daten-dot-de
404
SRV=nc11; path=/; Secure
Cookie without a SameSite-Attribute. Possible values are: Strict/Lax/None. Cookie may not work as expected, if "None" is wanted, but browsers use "Lax" as default value.
CError - no preferred version www or non-www. Select one version as preferred version, then add a redirect https + not-preferred version to https + preferred version. Perhaps in your port 443 vHost something like "RewriteEngine on" + "RewriteCond %{SERVER_NAME} = example.com" + "ReWriteRule ^ https://www.example.com%{REQUEST_URI} [END,QSA,R=permanent]" (three rows, without the "). That should create a redirect https + example.com ⇒ https + www.example.com. Or switch both values to use the non-www version as your preferred version.
CError - more then one version with Http-Status 200. After all redirects, all users (and search engines) should see the same https url: Non-www or www, but not both with http status 200.
Ihttps://www.ecloud.global/ 65.109.243.106
200

Content problems or problems with resources included - http links, files doesn't exist, different Content-Type definitions. Check the Html-Content - Part.
Ihttps://www.ecloud.global/ 95.217.240.171
200

Content problems or problems with resources included - http links, files doesn't exist, different Content-Type definitions. Check the Html-Content - Part.
Ihttps://www.ecloud.global/ 2a01:4f9:c01f:e017:ee05::2
200

Content problems or problems with resources included - http links, files doesn't exist, different Content-Type definitions. Check the Html-Content - Part.
Ihttps://www.ecloud.global/ 2a01:4f9:c01f:e0a5:ee05::2
200

Content problems or problems with resources included - http links, files doesn't exist, different Content-Type definitions. Check the Html-Content - Part.
Ihttps://accounts.murena.io/auth/realms/murena/protocol/openid-connect/auth?response_type=code&redirect_uri=https%3A%2F%2Fmurena.io%2Fapps%2Foidc_login%2Foidc&client_id=murena.io&nonce=8d89e3ce8a8efeaa92012a2b8c410da5&state=f0128f0c27e7ceb361a4203435a13788&scope=openid+openid
200

Content problems or problems with resources included - http links, files doesn't exist, different Content-Type definitions. Check the Html-Content - Part.
Mhttps://65.109.243.106/ 65.109.243.106
404

Misconfiguration - main pages should never send http status 400 - 499
Nhttps://65.109.243.106/ 65.109.243.106
404

Error - Certificate isn't trusted, RemoteCertificateNameMismatch
Nhttps://95.217.240.171/ 95.217.240.171
502

Error - Certificate isn't trusted, RemoteCertificateNameMismatch
Nhttps://[2a01:04f9:c01f:e017:ee05:0000:0000:0002]/ 2a01:4f9:c01f:e017:ee05::2
502

Error - Certificate isn't trusted, RemoteCertificateNameMismatch
Nhttps://[2a01:04f9:c01f:e0a5:ee05:0000:0000:0002]/ 2a01:4f9:c01f:e0a5:ee05::2
502

Error - Certificate isn't trusted, RemoteCertificateNameMismatch
Fatal: More then one ip address per domain name found, but checking all ip addresses different http status found.: Domain ecloud.global, 4 ip addresses, 2 different http results.
Fatal: More then one ip address per domain name found, but checking all ip addresses different http status found.: Domain www.ecloud.global, 4 ip addresses, 2 different http results.
AGood: _mta-sts TXT record found (mta-sts: Mail Transfer Agent Strict Transport Security - see RFC 8461). Domainname: _mta-sts.ecloud.global
AGood: _mta-sts TXT record is valid.
AGood: Subdomain mta-sts found: Subdomain-name: lb.ecloud.global, ip : 65.109.243.106
AGood: Subdomain mta-sts found: Subdomain-name: lb.ecloud.global, ip : 95.217.240.171
AGood: Subdomain mta-sts found: Subdomain-name: lb.ecloud.global, ip : 2a01:4f9:c01f:e017:ee05::2
AGood: Subdomain mta-sts found: Subdomain-name: lb.ecloud.global, ip : 2a01:4f9:c01f:e0a5:ee05::2
AGood: Certificate of subdomain is valid. mta-sts.ecloud.global, ip : 65.109.243.106
AGood: Certificate of subdomain is valid. mta-sts.ecloud.global, ip : 95.217.240.171
AGood: Certificate of subdomain is valid. mta-sts.ecloud.global, ip : 2a01:4f9:c01f:e017:ee05::2
AGood: Certificate of subdomain is valid. mta-sts.ecloud.global, ip : 2a01:4f9:c01f:e0a5:ee05::2
AGood: /.well-known/mta-sts.txt with http status 200 found. Complete path: https://mta-sts.ecloud.global/.well-known/mta-sts.txt - ip : 65.109.243.106
AGood: /.well-known/mta-sts.txt with http status 200 found. Complete path: https://mta-sts.ecloud.global/.well-known/mta-sts.txt - ip : 95.217.240.171
AGood: /.well-known/mta-sts.txt with http status 200 found. Complete path: https://mta-sts.ecloud.global/.well-known/mta-sts.txt - ip : 2a01:4f9:c01f:e017:ee05::2
AGood: /.well-known/mta-sts.txt with http status 200 found. Complete path: https://mta-sts.ecloud.global/.well-known/mta-sts.txt - ip : 2a01:4f9:c01f:e0a5:ee05::2
AGood: mta-sts.txt has the required names "version", "mode", "max_age". lb.ecloud.global, ip : 65.109.243.106
AGood: mta-sts.txt has the required names "version", "mode", "max_age". lb.ecloud.global, ip : 95.217.240.171
AGood: mta-sts.txt has the required names "version", "mode", "max_age". lb.ecloud.global, ip : 2a01:4f9:c01f:e017:ee05::2
AGood: mta-sts.txt has the required names "version", "mode", "max_age". lb.ecloud.global, ip : 2a01:4f9:c01f:e0a5:ee05::2
AGood: Minimal one mx definition found. lb.ecloud.global, ip : 65.109.243.106
AGood: Minimal one mx definition found. lb.ecloud.global, ip : 95.217.240.171
AGood: Minimal one mx definition found. lb.ecloud.global, ip : 2a01:4f9:c01f:e017:ee05::2
AGood: Minimal one mx definition found. lb.ecloud.global, ip : 2a01:4f9:c01f:e0a5:ee05::2
AExcellent: Complete and valid MTA-STS found!

2. Header-Checks

Awww.ecloud.global 65.109.243.106
X-Content-Type-Options
Ok: Header without syntax errors found: nosniff
A
Referrer-Policy
Ok: Header without syntax errors found: same-origin
A
X-Frame-Options
Ok: Header without syntax errors found: SAMEORIGIN
B

Info: Header is deprecated. May not longer work in modern browsers. SAMEORIGIN. Better solution: Use a Content-Security-Policy Header with a frame-ancestors directive. DENY - use 'none', SAMEORIGIN - use 'self'. If you want to allow some domains to frame your page, add these urls.
A
X-Xss-Protection
Ok: Header without syntax errors found: 1; mode=block
B

Info: Header is deprecated. May not longer work in modern browsers. 1; mode=block
Awww.ecloud.global 95.217.240.171
X-Content-Type-Options
Ok: Header without syntax errors found: nosniff
A
Referrer-Policy
Ok: Header without syntax errors found: same-origin
A
X-Frame-Options
Ok: Header without syntax errors found: SAMEORIGIN
B

Info: Header is deprecated. May not longer work in modern browsers. SAMEORIGIN. Better solution: Use a Content-Security-Policy Header with a frame-ancestors directive. DENY - use 'none', SAMEORIGIN - use 'self'. If you want to allow some domains to frame your page, add these urls.
A
X-Xss-Protection
Ok: Header without syntax errors found: 1; mode=block
B

Info: Header is deprecated. May not longer work in modern browsers. 1; mode=block
Awww.ecloud.global 2a01:4f9:c01f:e017:ee05::2
X-Content-Type-Options
Ok: Header without syntax errors found: nosniff
A
Referrer-Policy
Ok: Header without syntax errors found: same-origin
A
X-Frame-Options
Ok: Header without syntax errors found: SAMEORIGIN
B

Info: Header is deprecated. May not longer work in modern browsers. SAMEORIGIN. Better solution: Use a Content-Security-Policy Header with a frame-ancestors directive. DENY - use 'none', SAMEORIGIN - use 'self'. If you want to allow some domains to frame your page, add these urls.
A
X-Xss-Protection
Ok: Header without syntax errors found: 1; mode=block
B

Info: Header is deprecated. May not longer work in modern browsers. 1; mode=block
Awww.ecloud.global 2a01:4f9:c01f:e0a5:ee05::2
X-Content-Type-Options
Ok: Header without syntax errors found: nosniff
A
Referrer-Policy
Ok: Header without syntax errors found: same-origin
A
X-Frame-Options
Ok: Header without syntax errors found: SAMEORIGIN
B

Info: Header is deprecated. May not longer work in modern browsers. SAMEORIGIN. Better solution: Use a Content-Security-Policy Header with a frame-ancestors directive. DENY - use 'none', SAMEORIGIN - use 'self'. If you want to allow some domains to frame your page, add these urls.
A
X-Xss-Protection
Ok: Header without syntax errors found: 1; mode=block
B

Info: Header is deprecated. May not longer work in modern browsers. 1; mode=block
Aaccounts.murena.io
Content-Security-Policy
Ok: Header without syntax errors found: frame-src 'self'; frame-ancestors 'self'; object-src 'none';
F

Bad: Missing default-src directive. A default-src directive is used if one of the specialized fetch directives (child-src, connect-src, font-src, frame-src, img-src, manifest-src, media-src, object-src, prefetch-src, script-src, style-src, worker-src) isn't defined. Missing default-src, all sources are allowed, that's bad. A default-src with 'none' or 'self' blocks that.
E

Bad: No form-action directive found. Use one to limit the form - action - destinations. form-action is a navigation-directive, so default-src isn't used.
A

Good: frame-ancestors directive found. That limits pages who are allowed to use this page in a frame / iframe / object / embed / applet. frame-ancestors is a navigation-directive, so default-src isn't used.
E

Bad: No base-uri directive found. Use one to limit the URLs which can be used in a document's <base> element. Because it's a document directive, default-src isn't used, so an own directive is required.
A

Good: object-src only with 'none' or 'self' found, no scheme, no other urls. That blocks object / embed / applet - elements.
F

Critical: No script-src and no default-src as fallback defined. So scripts are unlimited. That's fatal.
A

Good: frame-src without data: defined or frame-src missing and the default-src used as fallback not allows the data: schema. That blocks hidden code injection. Insert <iframe src="data:text/html;charset=utf-8;base64,PCFET0NUWVBFIGh0bWw+PGh0bWw+PGJvZHk+PHA+YmVmb3JlPHNjcmlwdCB0eXBlPSJ0ZXh0L2phdmFzY3JpcHQiPmFsZXJ0KCdYU1MnKTwvc2NyaXB0PjxwPmFmdGVyPC9ib2R5PjwvaHRtbD4="></iframe> in your page and see what happens.
A
X-Content-Type-Options
Ok: Header without syntax errors found: nosniff
A
Referrer-Policy
Ok: Header without syntax errors found: no-referrer
A
X-Frame-Options
Ok: Header without syntax errors found: SAMEORIGIN
B

Info: Header is deprecated. May not longer work in modern browsers. SAMEORIGIN. Better solution: Use a Content-Security-Policy Header with a frame-ancestors directive. DENY - use 'none', SAMEORIGIN - use 'self'. If you want to allow some domains to frame your page, add these urls.
A
X-Xss-Protection
Ok: Header without syntax errors found: 1; mode=block
B

Info: Header is deprecated. May not longer work in modern browsers. 1; mode=block
Fwww.ecloud.global 65.109.243.106
Content-Security-Policy
Critical: Missing Header:
Fwww.ecloud.global 65.109.243.106
Permissions-Policy
Critical: Missing Header:
Bwww.ecloud.global 65.109.243.106
Cross-Origin-Embedder-Policy
Info: Missing Header
Bwww.ecloud.global 65.109.243.106
Cross-Origin-Opener-Policy
Info: Missing Header
Bwww.ecloud.global 65.109.243.106
Cross-Origin-Resource-Policy
Info: Missing Header
Fwww.ecloud.global 95.217.240.171
Content-Security-Policy
Critical: Missing Header:
Fwww.ecloud.global 95.217.240.171
Permissions-Policy
Critical: Missing Header:
Bwww.ecloud.global 95.217.240.171
Cross-Origin-Embedder-Policy
Info: Missing Header
Bwww.ecloud.global 95.217.240.171
Cross-Origin-Opener-Policy
Info: Missing Header
Bwww.ecloud.global 95.217.240.171
Cross-Origin-Resource-Policy
Info: Missing Header
Fwww.ecloud.global 2a01:4f9:c01f:e017:ee05::2
Content-Security-Policy
Critical: Missing Header:
Fwww.ecloud.global 2a01:4f9:c01f:e017:ee05::2
Permissions-Policy
Critical: Missing Header:
Bwww.ecloud.global 2a01:4f9:c01f:e017:ee05::2
Cross-Origin-Embedder-Policy
Info: Missing Header
Bwww.ecloud.global 2a01:4f9:c01f:e017:ee05::2
Cross-Origin-Opener-Policy
Info: Missing Header
Bwww.ecloud.global 2a01:4f9:c01f:e017:ee05::2
Cross-Origin-Resource-Policy
Info: Missing Header
Fwww.ecloud.global 2a01:4f9:c01f:e0a5:ee05::2
Content-Security-Policy
Critical: Missing Header:
Fwww.ecloud.global 2a01:4f9:c01f:e0a5:ee05::2
Permissions-Policy
Critical: Missing Header:
Bwww.ecloud.global 2a01:4f9:c01f:e0a5:ee05::2
Cross-Origin-Embedder-Policy
Info: Missing Header
Bwww.ecloud.global 2a01:4f9:c01f:e0a5:ee05::2
Cross-Origin-Opener-Policy
Info: Missing Header
Bwww.ecloud.global 2a01:4f9:c01f:e0a5:ee05::2
Cross-Origin-Resource-Policy
Info: Missing Header
Faccounts.murena.io
Permissions-Policy
Critical: Missing Header:
Baccounts.murena.io
Cross-Origin-Embedder-Policy
Info: Missing Header
Baccounts.murena.io
Cross-Origin-Opener-Policy
Info: Missing Header
Baccounts.murena.io
Cross-Origin-Resource-Policy
Info: Missing Header

3. DNS- and NameServer - Checks

AInfo:: 18 Root-climbing DNS Queries required to find all IPv4- and IPv6-Addresses of 4 Name Servers.
AInfo:: 18 Queries complete, 18 with IPv6, 0 with IPv4.
AGood: All DNS Queries done via IPv6.
Ok (4 - 8):: An average of 4.5 queries per domain name server required to find all ip addresses of all name servers.
AInfo:: 4 different Name Servers found: ns1.gandi.net, ns-124-c.gandi.net, ns-250-a.gandi.net, ns-57-b.gandi.net, 3 Name Servers included in Delegation: ns-124-c.gandi.net, ns-250-a.gandi.net, ns-57-b.gandi.net, 3 Name Servers included in 1 Zone definitions: ns-124-c.gandi.net, ns-250-a.gandi.net, ns-57-b.gandi.net, 1 Name Servers listed in SOA.Primary: ns1.gandi.net.
AGood: Only one SOA.Primary Name Server found.: ns1.gandi.net.
Error: SOA.Primary Name Server not included in the delegation set.: ns1.gandi.net.
AGood: Consistency between delegation and zone. The set of NS records served by the authoritative name servers must match those proposed for the delegation in the parent zone. Ordered list of name servers: ns-124-c.gandi.net, ns-250-a.gandi.net, ns-57-b.gandi.net
AGood: All Name Server Domain Names have a Public Suffix.
AGood: All Name Server Domain Names ending with a Public Suffix have minimal one IPv4- or IPv6 address.
AGood: All Name Server ip addresses are public.
AGood: Minimal 2 different name servers (public suffix and public ip address) found: 4 different Name Servers found
AGood: All name servers have ipv4- and ipv6-addresses.: 4 different Name Servers found
Warning: All Name Servers have the same Top Level Domain / Public Suffix. If there is a problem with that Top Level Domain, your domain may be affected. Better: Use Name Servers with different top level domains.: 4 Name Servers, 1 Top Level Domain: net
Warning: All Name Servers have the same domain name. If there is a problem with that domain name (or with the name servers of that domain name), your domain may be affected. Better: Use Name Servers with different domain names / different top level domains.: Only one domain name used: gandi.net
Warning: All Name Servers from the same Country / IP location.: 4 Name Servers, 1 Countries: FR
AInfo: Ipv4-Subnet-list: 4 Name Servers, 3 different subnets (first Byte): 173., 213., 217., 3 different subnets (first two Bytes): 173.246., 213.167., 217.70., 3 different subnets (first three Bytes): 173.246.100., 213.167.230., 217.70.187.
AGood: Name Server IPv4-addresses from different subnet found:
AInfo: IPv6-Subnet-list: 4 Name Servers with IPv6, 2 different subnets (first block): 2001:, 2604:, 2 different subnets (first two blocks): 2001:4b98:, 2604:3400:, 3 different subnets (first three blocks): 2001:4b98:aaaa:, 2001:4b98:aaab:, 2604:3400:aaac:, 3 different subnets (first four blocks): 2001:4b98:aaaa:0000:, 2001:4b98:aaab:0000:, 2604:3400:aaac:0000:
AGood: Name Server IPv6 addresses from different subnets found.
AGood: Nameserver supports TCP connections: 8 good Nameserver
AGood: Nameserver supports Echo Capitalization: 8 good Nameserver
AGood: Nameserver supports EDNS with max. 512 Byte Udp payload, message is smaller: 8 good Nameserver
AGood: Nameserver has passed 10 EDNS-Checks (OP100, FLAGS, V1, V1OP100, V1FLAGS, DNSSEC, V1DNSSEC, NSID, COOKIE, CLIENTSUBNET): 8 good Nameserver
AGood: All SOA have the same Serial Number
AGood: CAA entries found, creating certificate is limited: letsencrypt.org is allowed to create certificates
AGood: CAA entries found, creating certificate is limited: no CAA is allowed to create wildcard certificates

4. Content- and Performance-critical Checks

AGood: All checks /.well-known/acme-challenge/random-filename without redirects answer with the expected http status 404 - Not Found. Creating a Letsencrypt certificate via http-01 challenge should work. If it doesn't work: Check your vHost configuration (apachectl -S, httpd -S, nginx -T). Every combination of port and ServerName / ServerAlias (Apache) or Server (Nginx) must be unique. Merge duplicated entries in one vHost. If you use an IIS, extensionless files must be allowed in the /.well-known/acme-challenge subdirectory. Create a web.config in that directory. Content: <configuration><system.webServer><staticContent><mimeMap fileExtension="." mimeType="text/plain" /></staticContent></system.webServer></configuration>. If you have a redirect http ⇒ https, that's ok, Letsencrypt follows such redirects to port 80 / 443 (same or other server). There must be a certificate. But the certificate may be expired, self signed or with a not matching domain name. Checking the validation file Letsencrypt ignores such certificate errors. Trouble creating a certificate? Use https://community.letsencrypt.org/ to ask.
https://accounts.murena.io/auth/realms/murena/protocol/openid-connect/auth?response_type=code&redirect_uri=https%3A%2F%2Fmurena.io%2Fapps%2Foidc_login%2Foidc&client_id=murena.io&nonce=8d89e3ce8a8efeaa92012a2b8c410da5&state=f0128f0c27e7ceb361a4203435a13788&scope=openid+openid
200

Warning: https result with status 200 and size greater then 1024 Bytes without Compression found. Add Compression support (gzip, deflate, br - these are checked) so the html content is compressed.
https://www.ecloud.global/ 65.109.243.106
200

Warning: Https + http status 200 + Inline CSS / JavaScript found. Don't use inline CSS / JavaScript. These are compiled and re-used ressources, save these with a long Cache-Control max-age - header.
https://www.ecloud.global/ 95.217.240.171
200

Warning: Https + http status 200 + Inline CSS / JavaScript found. Don't use inline CSS / JavaScript. These are compiled and re-used ressources, save these with a long Cache-Control max-age - header.
https://www.ecloud.global/ 2a01:4f9:c01f:e017:ee05::2
200

Warning: Https + http status 200 + Inline CSS / JavaScript found. Don't use inline CSS / JavaScript. These are compiled and re-used ressources, save these with a long Cache-Control max-age - header.
https://www.ecloud.global/ 2a01:4f9:c01f:e0a5:ee05::2
200

Warning: Https + http status 200 + Inline CSS / JavaScript found. Don't use inline CSS / JavaScript. These are compiled and re-used ressources, save these with a long Cache-Control max-age - header.
https://accounts.murena.io/auth/realms/murena/protocol/openid-connect/auth?response_type=code&redirect_uri=https%3A%2F%2Fmurena.io%2Fapps%2Foidc_login%2Foidc&client_id=murena.io&nonce=8d89e3ce8a8efeaa92012a2b8c410da5&state=f0128f0c27e7ceb361a4203435a13788&scope=openid+openid
200

Warning: Https result with status 200 found, Html-Content is too big. Should be max. 110 %. May contain inline CSS / JavaScript, too much comments or white space. Re-used ressources - create files with a long Cache-Control max-age header. Remove comments and white space.
https://www.ecloud.global/ 65.109.243.106
200

Warning: Https result with status 200 found, Html-Content is too big. Should be max. 110 %. May contain inline CSS / JavaScript, too much comments or white space. Re-used ressources - create files with a long Cache-Control max-age header. Remove comments and white space.
https://www.ecloud.global/ 95.217.240.171
200

Warning: Https result with status 200 found, Html-Content is too big. Should be max. 110 %. May contain inline CSS / JavaScript, too much comments or white space. Re-used ressources - create files with a long Cache-Control max-age header. Remove comments and white space.
https://www.ecloud.global/ 2a01:4f9:c01f:e017:ee05::2
200

Warning: Https result with status 200 found, Html-Content is too big. Should be max. 110 %. May contain inline CSS / JavaScript, too much comments or white space. Re-used ressources - create files with a long Cache-Control max-age header. Remove comments and white space.
https://www.ecloud.global/ 2a01:4f9:c01f:e0a5:ee05::2
200

Warning: Https result with status 200 found, Html-Content is too big. Should be max. 110 %. May contain inline CSS / JavaScript, too much comments or white space. Re-used ressources - create files with a long Cache-Control max-age header. Remove comments and white space.
AGood: Every https connection via port 443 supports the http/2 protocol via ALPN.
https://www.ecloud.global/ 65.109.243.106
200

Critical: Some script Elements (type text/javascript) with a src-Attribute don't have a defer / async - Attribute. Loading and executing these JavaScripts blocks parsing and rendering the Html-Output. That's bad if your site is large or the connection is slow / mobile usage. Use "async" if the js file has only functions (so nothing is executed after parsing the file) or is independend. Use "defer" if the order of the scripts is important. All "defer" scripts are executed before the DOMContentLoaded event is fired. Check https://developer.mozilla.org/en-US/docs/Web/HTML/Element/script to see some details.: 3 script elements without defer/async.
https://www.ecloud.global/ 95.217.240.171
200

Critical: Some script Elements (type text/javascript) with a src-Attribute don't have a defer / async - Attribute. Loading and executing these JavaScripts blocks parsing and rendering the Html-Output. That's bad if your site is large or the connection is slow / mobile usage. Use "async" if the js file has only functions (so nothing is executed after parsing the file) or is independend. Use "defer" if the order of the scripts is important. All "defer" scripts are executed before the DOMContentLoaded event is fired. Check https://developer.mozilla.org/en-US/docs/Web/HTML/Element/script to see some details.: 3 script elements without defer/async.
https://www.ecloud.global/ 2a01:4f9:c01f:e017:ee05::2
200

Critical: Some script Elements (type text/javascript) with a src-Attribute don't have a defer / async - Attribute. Loading and executing these JavaScripts blocks parsing and rendering the Html-Output. That's bad if your site is large or the connection is slow / mobile usage. Use "async" if the js file has only functions (so nothing is executed after parsing the file) or is independend. Use "defer" if the order of the scripts is important. All "defer" scripts are executed before the DOMContentLoaded event is fired. Check https://developer.mozilla.org/en-US/docs/Web/HTML/Element/script to see some details.: 3 script elements without defer/async.
https://www.ecloud.global/ 2a01:4f9:c01f:e0a5:ee05::2
200

Critical: Some script Elements (type text/javascript) with a src-Attribute don't have a defer / async - Attribute. Loading and executing these JavaScripts blocks parsing and rendering the Html-Output. That's bad if your site is large or the connection is slow / mobile usage. Use "async" if the js file has only functions (so nothing is executed after parsing the file) or is independend. Use "defer" if the order of the scripts is important. All "defer" scripts are executed before the DOMContentLoaded event is fired. Check https://developer.mozilla.org/en-US/docs/Web/HTML/Element/script to see some details.: 3 script elements without defer/async.
AGood: All CSS / JavaScript files are sent compressed (gzip, deflate, br checked). That reduces the content of the files. 21 external CSS / JavaScript files found
AGood: All CSS / JavaScript files are sent with a long Cache-Control header (minimum 7 days). So the browser can re-use these files, no download is required. 22 external CSS / JavaScript files with long Cache-Control max-age found
AGood: All checked attribute values are enclosed in quotation marks (" or ').
AInfo: No img element found, no alt attribute checked
AGood: Domainname is not on the "Specially Designated Nationals And Blocked Persons List" (SDN). That's an US-list of individuals and companies owned or controlled by, or acting for or on behalf of, targeted countries. It also lists individuals, groups, and entities, such as terrorists and narcotics traffickers designated under programs that are not country-specific. Collectively, such individuals and companies are called "Specially Designated Nationals" or "SDNs." Their assets are blocked and U.S. persons are generally prohibited from dealing with them. So if a domain name is on that list, it's impossible to create a Letsencrypt certificate with that domain name. Check the list manual - https://www.treasury.gov/resource-center/sanctions/sdn-list/pages/default.aspx
https://ecloud.global/.well-known/acme-challenge/check-your-website-dot-server-daten-dot-de
404
2.197 seconds
Warning: 404 needs more then one second
https://www.ecloud.global/.well-known/acme-challenge/check-your-website-dot-server-daten-dot-de
404
2.340 seconds
Warning: 404 needs more then one second
https://65.109.243.106/ 65.109.243.106
404
2.473 seconds
Warning: 404 needs more then one second
AInfo: Different Server-Headers found
ADuration: 225064 milliseconds, 225.064 seconds

 

8. Connections

DomainIPPortCert.ProtocolKeyExchangeStrengthCipherStrengthHashAlgorithmOCSP stapling
Domain/KeyExchangeIP/StrengthPort/CipherCert./StrengthProtocol/HashAlgorithmOCSP stapling
murena.io
murena.io
443
ok
Tls12
ECDH Ephermal
255
Aes256
256
Sha384
not supported
ok
murena.io
murena.io
443
ok
Tls12

ECDH Ephermal
255
Aes256
256
Sha384
not supported
ok
http/2 via ALPN supported 
Tls.1.2
no Tls.1.1
no Tls.1.0
no Ssl3
no Ssl2
http/2 via ALPN supported
Tls.1.2
no Tls.1.1
no Tls.1.0
no Ssl3
no Ssl2
Chain - incomplete

1CN=murena.io


2CN=R10, O=Let's Encrypt, C=US


murena.io
murena.io
443
ok
Tls12
ECDH Ephermal
255
Aes256
256
Sha384
not supported
ok

murena.io
murena.io
443
ok
Tls12

ECDH Ephermal
255
Aes256
256
Sha384
not supported
ok
http/2 via ALPN supported 
Tls.1.2
no Tls.1.1
no Tls.1.0
no Ssl3
no Ssl2
http/2 via ALPN supported
Tls.1.2
no Tls.1.1
no Tls.1.0
no Ssl3
no Ssl2
Chain (complete)

1CN=murena.io


2CN=R10, O=Let's Encrypt, C=US


ecloud.global
ecloud.global
443
ok
Tls12
ECDH Ephermal
255
Aes256
256
Sha384
not supported
ok

ecloud.global
ecloud.global
443
ok
Tls12

ECDH Ephermal
255
Aes256
256
Sha384
not supported
ok
http/2 via ALPN supported 
Tls.1.2
no Tls.1.1
no Tls.1.0
no Ssl3
no Ssl2
http/2 via ALPN supported
Tls.1.2
no Tls.1.1
no Tls.1.0
no Ssl3
no Ssl2
Chain (complete)

1CN=ecloud.global


2CN=R11, O=Let's Encrypt, C=US


ecloud.global
65.109.243.106
443
ok
Tls12
ECDH Ephermal
255
Aes256
256
Sha384
not supported
ok

ecloud.global
65.109.243.106
443
ok
Tls12

ECDH Ephermal
255
Aes256
256
Sha384
not supported
ok
http/2 via ALPN supported 
SNI required
Tls.1.2
no Tls.1.1
no Tls.1.0
no Ssl3
no Ssl2
http/2 via ALPN supported
SNI required
Tls.1.2
no Tls.1.1
no Tls.1.0
no Ssl3
no Ssl2
Chain (complete)

1CN=ecloud.global


2CN=R11, O=Let's Encrypt, C=US


ecloud.global
95.217.240.171
443
ok
Tls12
ECDH Ephermal
255
Aes256
256
Sha384
not supported
ok

ecloud.global
95.217.240.171
443
ok
Tls12

ECDH Ephermal
255
Aes256
256
Sha384
not supported
ok
http/2 via ALPN supported 
SNI required
Tls.1.2
no Tls.1.1
no Tls.1.0
no Ssl3
no Ssl2
http/2 via ALPN supported
SNI required
Tls.1.2
no Tls.1.1
no Tls.1.0
no Ssl3
no Ssl2
Chain (complete)

1CN=ecloud.global


2CN=R11, O=Let's Encrypt, C=US


ecloud.global
2a01:4f9:c01f:e017:ee05::2
443
ok
Tls12
ECDH Ephermal
255
Aes256
256
Sha384
not supported
ok

ecloud.global
2a01:4f9:c01f:e017:ee05::2
443
ok
Tls12

ECDH Ephermal
255
Aes256
256
Sha384
not supported
ok
http/2 via ALPN supported 
SNI required
Tls.1.2
no Tls.1.1
no Tls.1.0
no Ssl3
no Ssl2
http/2 via ALPN supported
SNI required
Tls.1.2
no Tls.1.1
no Tls.1.0
no Ssl3
no Ssl2
Chain (complete)

1CN=ecloud.global


2CN=R11, O=Let's Encrypt, C=US


ecloud.global
2a01:4f9:c01f:e0a5:ee05::2
443
ok
Tls12
ECDH Ephermal
255
Aes256
256
Sha384
not supported
ok

ecloud.global
2a01:4f9:c01f:e0a5:ee05::2
443
ok
Tls12

ECDH Ephermal
255
Aes256
256
Sha384
not supported
ok
http/2 via ALPN supported 
SNI required
Tls.1.2
no Tls.1.1
no Tls.1.0
no Ssl3
no Ssl2
http/2 via ALPN supported
SNI required
Tls.1.2
no Tls.1.1
no Tls.1.0
no Ssl3
no Ssl2
Chain (complete)

1CN=ecloud.global


2CN=R11, O=Let's Encrypt, C=US


www.ecloud.global
65.109.243.106
443
ok
Tls12
ECDH Ephermal
255
Aes256
256
Sha384
not supported
ok

www.ecloud.global
65.109.243.106
443
ok
Tls12

ECDH Ephermal
255
Aes256
256
Sha384
not supported
ok
http/2 via ALPN supported 
SNI required
Tls.1.2
no Tls.1.1
no Tls.1.0
no Ssl3
no Ssl2
http/2 via ALPN supported
SNI required
Tls.1.2
no Tls.1.1
no Tls.1.0
no Ssl3
no Ssl2
Chain (complete)

1CN=ecloud.global


2CN=R11, O=Let's Encrypt, C=US


www.ecloud.global
95.217.240.171
443
ok
Tls12
ECDH Ephermal
255
Aes256
256
Sha384
not supported
ok

www.ecloud.global
95.217.240.171
443
ok
Tls12

ECDH Ephermal
255
Aes256
256
Sha384
not supported
ok
http/2 via ALPN supported 
SNI required
Tls.1.2
no Tls.1.1
no Tls.1.0
no Ssl3
no Ssl2
http/2 via ALPN supported
SNI required
Tls.1.2
no Tls.1.1
no Tls.1.0
no Ssl3
no Ssl2
Chain (complete)

1CN=ecloud.global


2CN=R11, O=Let's Encrypt, C=US


www.ecloud.global
2a01:4f9:c01f:e017:ee05::2
443
ok
Tls12
ECDH Ephermal
255
Aes256
256
Sha384
not supported
ok

www.ecloud.global
2a01:4f9:c01f:e017:ee05::2
443
ok
Tls12

ECDH Ephermal
255
Aes256
256
Sha384
not supported
ok
http/2 via ALPN supported 
SNI required
Tls.1.2
no Tls.1.1
no Tls.1.0
no Ssl3
no Ssl2
http/2 via ALPN supported
SNI required
Tls.1.2
no Tls.1.1
no Tls.1.0
no Ssl3
no Ssl2
Chain (complete)

1CN=ecloud.global


2CN=R11, O=Let's Encrypt, C=US


www.ecloud.global
2a01:4f9:c01f:e0a5:ee05::2
443
ok
Tls12
ECDH Ephermal
255
Aes256
256
Sha384
not supported
ok

www.ecloud.global
2a01:4f9:c01f:e0a5:ee05::2
443
ok
Tls12

ECDH Ephermal
255
Aes256
256
Sha384
not supported
ok
http/2 via ALPN supported 
SNI required
Tls.1.2
no Tls.1.1
no Tls.1.0
no Ssl3
no Ssl2
http/2 via ALPN supported
SNI required
Tls.1.2
no Tls.1.1
no Tls.1.0
no Ssl3
no Ssl2
Chain (complete)

1CN=ecloud.global


2CN=R11, O=Let's Encrypt, C=US


accounts.murena.io
accounts.murena.io
443
ok
Tls12
ECDH Ephermal
255
Aes256
256
Sha384
not supported
ok

accounts.murena.io
accounts.murena.io
443
ok
Tls12

ECDH Ephermal
255
Aes256
256
Sha384
not supported
ok
http/2 via ALPN supported 
Tls.1.2
no Tls.1.1
no Tls.1.0
no Ssl3
no Ssl2
http/2 via ALPN supported
Tls.1.2
no Tls.1.1
no Tls.1.0
no Ssl3
no Ssl2
Chain (complete)

1CN=murena.io


2CN=R10, O=Let's Encrypt, C=US


ecloud.global
ecloud.global
443
ok
Tls12
ECDH Ephermal
255
Aes256
256
Sha384
not supported
ok

ecloud.global
ecloud.global
443
ok
Tls12

ECDH Ephermal
255
Aes256
256
Sha384
not supported
ok
http/2 via ALPN supported 
Tls.1.2
no Tls.1.1
no Tls.1.0
no Ssl3
no Ssl2
http/2 via ALPN supported
Tls.1.2
no Tls.1.1
no Tls.1.0
no Ssl3
no Ssl2
Chain - incomplete

1CN=ecloud.global


2CN=R11, O=Let's Encrypt, C=US


www.ecloud.global
www.ecloud.global
443
ok
Tls12
ECDH Ephermal
255
Aes256
256
Sha384
not supported
ok

www.ecloud.global
www.ecloud.global
443
ok
Tls12

ECDH Ephermal
255
Aes256
256
Sha384
not supported
ok
http/2 via ALPN supported 
Tls.1.2
no Tls.1.1
no Tls.1.0
no Ssl3
no Ssl2
http/2 via ALPN supported
Tls.1.2
no Tls.1.1
no Tls.1.0
no Ssl3
no Ssl2
Chain (complete)

1CN=ecloud.global


2CN=R11, O=Let's Encrypt, C=US


mta-sts.ecloud.global
65.109.243.106
443
ok
Tls12
ECDH Ephermal
255
Aes256
256
Sha384
not supported
ok

mta-sts.ecloud.global
65.109.243.106
443
ok
Tls12

ECDH Ephermal
255
Aes256
256
Sha384
not supported
ok
http/2 via ALPN supported 
SNI required
Tls.1.2
no Tls.1.1
no Tls.1.0
no Ssl3
no Ssl2
http/2 via ALPN supported
SNI required
Tls.1.2
no Tls.1.1
no Tls.1.0
no Ssl3
no Ssl2
Chain (complete)

1CN=ecloud.global


2CN=R11, O=Let's Encrypt, C=US


mta-sts.ecloud.global
95.217.240.171
443
ok
Tls12
ECDH Ephermal
255
Aes256
256
Sha384
not supported
ok

mta-sts.ecloud.global
95.217.240.171
443
ok
Tls12

ECDH Ephermal
255
Aes256
256
Sha384
not supported
ok
http/2 via ALPN supported 
SNI required
Tls.1.2
no Tls.1.1
no Tls.1.0
no Ssl3
no Ssl2
http/2 via ALPN supported
SNI required
Tls.1.2
no Tls.1.1
no Tls.1.0
no Ssl3
no Ssl2
Chain (complete)

1CN=ecloud.global


2CN=R11, O=Let's Encrypt, C=US


mta-sts.ecloud.global
2a01:4f9:c01f:e017:ee05::2
443
ok
Tls12
ECDH Ephermal
255
Aes256
256
Sha384
not supported
ok

mta-sts.ecloud.global
2a01:4f9:c01f:e017:ee05::2
443
ok
Tls12

ECDH Ephermal
255
Aes256
256
Sha384
not supported
ok
http/2 via ALPN supported 
SNI required
Tls.1.2
no Tls.1.1
no Tls.1.0
no Ssl3
no Ssl2
http/2 via ALPN supported
SNI required
Tls.1.2
no Tls.1.1
no Tls.1.0
no Ssl3
no Ssl2
Chain (complete)

1CN=ecloud.global


2CN=R11, O=Let's Encrypt, C=US


mta-sts.ecloud.global
2a01:4f9:c01f:e0a5:ee05::2
443
ok
Tls12
ECDH Ephermal
255
Aes256
256
Sha384
not supported
ok

mta-sts.ecloud.global
2a01:4f9:c01f:e0a5:ee05::2
443
ok
Tls12

ECDH Ephermal
255
Aes256
256
Sha384
not supported
ok
http/2 via ALPN supported 
SNI required
Tls.1.2
no Tls.1.1
no Tls.1.0
no Ssl3
no Ssl2
http/2 via ALPN supported
SNI required
Tls.1.2
no Tls.1.1
no Tls.1.0
no Ssl3
no Ssl2
Chain (complete)

1CN=ecloud.global


2CN=R11, O=Let's Encrypt, C=US


65.109.243.106
65.109.243.106
443
name does not match
Tls12
ECDH Ephermal
255
Aes256
256
Sha384
not supported
ok

65.109.243.106
65.109.243.106
443
name does not match
Tls12

ECDH Ephermal
255
Aes256
256
Sha384
not supported
ok
http/2 via ALPN supported 
Cert sent without SNI
Tls.1.2
no Tls.1.1
no Tls.1.0
no Ssl3
no Ssl2
http/2 via ALPN supported
Cert sent without SNI
Tls.1.2
no Tls.1.1
no Tls.1.0
no Ssl3
no Ssl2
Chain (complete)

1CN=db.murena.io


2CN=R11, O=Let's Encrypt, C=US


95.217.240.171
95.217.240.171
443
name does not match
Tls12
ECDH Ephermal
255
Aes256
256
Sha384
not supported
ok

95.217.240.171
95.217.240.171
443
name does not match
Tls12

ECDH Ephermal
255
Aes256
256
Sha384
not supported
ok
http/2 via ALPN supported 
Cert sent without SNI
Tls.1.2
no Tls.1.1
no Tls.1.0
no Ssl3
no Ssl2
http/2 via ALPN supported
Cert sent without SNI
Tls.1.2
no Tls.1.1
no Tls.1.0
no Ssl3
no Ssl2
Chain (complete)

1CN=db.murena.io


2CN=R11, O=Let's Encrypt, C=US


[2a01:04f9:c01f:e017:ee05:0000:0000:0002]
2a01:4f9:c01f:e017:ee05::2
443
name does not match
Tls12
ECDH Ephermal
255
Aes256
256
Sha384
not supported
ok

[2a01:04f9:c01f:e017:ee05:0000:0000:0002]
2a01:4f9:c01f:e017:ee05::2
443
name does not match
Tls12

ECDH Ephermal
255
Aes256
256
Sha384
not supported
ok
http/2 via ALPN supported 
Cert sent without SNI
Tls.1.2
no Tls.1.1
no Tls.1.0
no Ssl3
no Ssl2
http/2 via ALPN supported
Cert sent without SNI
Tls.1.2
no Tls.1.1
no Tls.1.0
no Ssl3
no Ssl2
Chain (complete)

1CN=db.murena.io


2CN=R11, O=Let's Encrypt, C=US


[2a01:04f9:c01f:e0a5:ee05:0000:0000:0002]
2a01:4f9:c01f:e0a5:ee05::2
443
name does not match
Tls12
ECDH Ephermal
255
Aes256
256
Sha384
not supported
ok

[2a01:04f9:c01f:e0a5:ee05:0000:0000:0002]
2a01:4f9:c01f:e0a5:ee05::2
443
name does not match
Tls12

ECDH Ephermal
255
Aes256
256
Sha384
not supported
ok
http/2 via ALPN supported 
Cert sent without SNI
Tls.1.2
no Tls.1.1
no Tls.1.0
no Ssl3
no Ssl2
http/2 via ALPN supported
Cert sent without SNI
Tls.1.2
no Tls.1.1
no Tls.1.0
no Ssl3
no Ssl2
Chain (complete)

1CN=db.murena.io


2CN=R11, O=Let's Encrypt, C=US

 

9. Certificates

1.
1.
CN=ecloud.global
16.07.2025
14.10.2025
189 days expired
autoconfig.e.email, autoconfig.ecloud.global, autodiscover.e.email, autodiscover.ecloud.global, drive.ecloud.global, e.email, ecloud.global, mta-sts.e.email, mta-sts.ecloud.global, oo2.ecloud.global, webmail.ecloud.global, welcome.ecloud.global, www.ecloud.global - 13 entries
1.
1.
CN=ecloud.global
16.07.2025

14.10.2025
189 days expired


autoconfig.e.email, autoconfig.ecloud.global, autodiscover.e.email, autodiscover.ecloud.global, drive.ecloud.global, e.email, ecloud.global, mta-sts.e.email, mta-sts.ecloud.global, oo2.ecloud.global, webmail.ecloud.global, welcome.ecloud.global, www.ecloud.global - 13 entries

KeyalgorithmRSA encryption (2048 bit)
Signatur:SHA256 With RSA-Encryption
Serial Number:06B23307420ED076E13D36E5C6DAF818CDD1
Thumbprint:48632570AE15313840637F4072C5D9E05641880D
SHA256 / Certificate:J8lBjLxcpSawfgQkkCQej45EZSKVu6XmRlYVAYH/REs=
SHA256 hex / Cert (DANE * 0 1):e3b0c44298fc1c149afbf4c8996fb92427ae41e4649b934ca495991b7852b855
SHA256 hex / PublicKey (DANE * 1 1):e1cfa5dbffd2a8ae1c4c894d56f96e5a40a45fdbe6bb566b4e513945c171af2c
SHA256 hex / Subject Public Key Information (SPKI):e1cfa5dbffd2a8ae1c4c894d56f96e5a40a45fdbe6bb566b4e513945c171af2c (is buggy, ignore the result)
SPKI checked via https://v1.pwnedkeys.com/spki-hash:Good: Key isn't compromised
OCSP - Url:
OCSP - must staple:no
Certificate Transparency:yes
Enhanced Key Usage:Serverauthentifizierung (1.3.6.1.5.5.7.3.1), Clientauthentifizierung (1.3.6.1.5.5.7.3.2)




2.
CN=R11, O=Let's Encrypt, C=US
13.03.2024
13.03.2027
expires in 326 days


2.
CN=R11, O=Let's Encrypt, C=US
13.03.2024

13.03.2027
expires in 326 days




KeyalgorithmRSA encryption (2048 bit)
Signatur:SHA256 With RSA-Encryption
Serial Number:008A7D3E13D62F30EF2386BD29076B34F8
Thumbprint:696DB3AF0DFFC17E65C6A20D925C5A7BD24DEC7E
SHA256 / Certificate:WR6c5shj06B56fq+FHjHM5omshJp3eeVIRNhAkrjGkQ=
SHA256 hex / Cert (DANE * 0 1):e3b0c44298fc1c149afbf4c8996fb92427ae41e4649b934ca495991b7852b855
SHA256 hex / PublicKey (DANE * 1 1):6ddac18698f7f1f7e1c69b9bce420d974ac6f94ca8b2c761701623f99c767dc7
SHA256 hex / Subject Public Key Information (SPKI):
SPKI checked via https://v1.pwnedkeys.com/spki-hash:Check unknown. No result 404 / 200
OCSP - Url:
OCSP - must staple:no
Certificate Transparency:no
Enhanced Key Usage:Clientauthentifizierung (1.3.6.1.5.5.7.3.2), Serverauthentifizierung (1.3.6.1.5.5.7.3.1)




3.
CN=ISRG Root X1, O=Internet Security Research Group, C=US
04.06.2015
04.06.2035
expires in 3331 days


3.
CN=ISRG Root X1, O=Internet Security Research Group, C=US
04.06.2015

04.06.2035
expires in 3331 days




KeyalgorithmRSA encryption (4096 bit)
Signatur:SHA256 With RSA-Encryption
Serial Number:008210CFB0D240E3594463E0BB63828B00
Thumbprint:CABD2A79A1076A31F21D253635CB039D4329A5E8
SHA256 / Certificate:lrzsBiZJdvN0YHeazyjFp8/oo8Cq4RqP/O4FwL3fCMY=
SHA256 hex / Cert (DANE * 0 1):96bcec06264976f37460779acf28c5a7cfe8a3c0aae11a8ffcee05c0bddf08c6
SHA256 hex / PublicKey (DANE * 1 1):0b9fa5a59eed715c26c1020c711b4f6ec42d58b0015e14337a39dad301c5afc3
SHA256 hex / Subject Public Key Information (SPKI):0b9fa5a59eed715c26c1020c711b4f6ec42d58b0015e14337a39dad301c5afc3
SPKI checked via https://v1.pwnedkeys.com/spki-hash:Good: Key isn't compromised
OCSP - Url:
OCSP - must staple:no
Certificate Transparency:no
Enhanced Key Usage:




2.
1.
CN=db.murena.io
16.08.2025
14.11.2025
158 days expired
db.murena.io - 1 entry
2.
1.
CN=db.murena.io
16.08.2025

14.11.2025
158 days expired


db.murena.io - 1 entry

KeyalgorithmRSA encryption (2048 bit)
Signatur:SHA256 With RSA-Encryption
Serial Number:0639430246173D5F918F1D90F43683442879
Thumbprint:4B73C98A695C5D6DB4E35677F6E00A3696AA1B47
SHA256 / Certificate:J9LhDxfWamus17QAxMofdLpMQbNM1f8EGTLPMcDRptM=
SHA256 hex / Cert (DANE * 0 1):e3b0c44298fc1c149afbf4c8996fb92427ae41e4649b934ca495991b7852b855
SHA256 hex / PublicKey (DANE * 1 1):3c04194104558513012451a4f7f4693807e493acebdf5a5c1e0a56879936488d
SHA256 hex / Subject Public Key Information (SPKI):3c04194104558513012451a4f7f4693807e493acebdf5a5c1e0a56879936488d (is buggy, ignore the result)
SPKI checked via https://v1.pwnedkeys.com/spki-hash:Good: Key isn't compromised
OCSP - Url:
OCSP - must staple:no
Certificate Transparency:yes
Enhanced Key Usage:Serverauthentifizierung (1.3.6.1.5.5.7.3.1), Clientauthentifizierung (1.3.6.1.5.5.7.3.2)




2.
CN=R11, O=Let's Encrypt, C=US
13.03.2024
13.03.2027
expires in 326 days


2.
CN=R11, O=Let's Encrypt, C=US
13.03.2024

13.03.2027
expires in 326 days




KeyalgorithmRSA encryption (2048 bit)
Signatur:SHA256 With RSA-Encryption
Serial Number:008A7D3E13D62F30EF2386BD29076B34F8
Thumbprint:696DB3AF0DFFC17E65C6A20D925C5A7BD24DEC7E
SHA256 / Certificate:WR6c5shj06B56fq+FHjHM5omshJp3eeVIRNhAkrjGkQ=
SHA256 hex / Cert (DANE * 0 1):e3b0c44298fc1c149afbf4c8996fb92427ae41e4649b934ca495991b7852b855
SHA256 hex / PublicKey (DANE * 1 1):6ddac18698f7f1f7e1c69b9bce420d974ac6f94ca8b2c761701623f99c767dc7
SHA256 hex / Subject Public Key Information (SPKI):
SPKI checked via https://v1.pwnedkeys.com/spki-hash:Check unknown. No result 404 / 200
OCSP - Url:
OCSP - must staple:no
Certificate Transparency:no
Enhanced Key Usage:Clientauthentifizierung (1.3.6.1.5.5.7.3.2), Serverauthentifizierung (1.3.6.1.5.5.7.3.1)




3.
CN=ISRG Root X1, O=Internet Security Research Group, C=US
04.06.2015
04.06.2035
expires in 3331 days


3.
CN=ISRG Root X1, O=Internet Security Research Group, C=US
04.06.2015

04.06.2035
expires in 3331 days




KeyalgorithmRSA encryption (4096 bit)
Signatur:SHA256 With RSA-Encryption
Serial Number:008210CFB0D240E3594463E0BB63828B00
Thumbprint:CABD2A79A1076A31F21D253635CB039D4329A5E8
SHA256 / Certificate:lrzsBiZJdvN0YHeazyjFp8/oo8Cq4RqP/O4FwL3fCMY=
SHA256 hex / Cert (DANE * 0 1):96bcec06264976f37460779acf28c5a7cfe8a3c0aae11a8ffcee05c0bddf08c6
SHA256 hex / PublicKey (DANE * 1 1):0b9fa5a59eed715c26c1020c711b4f6ec42d58b0015e14337a39dad301c5afc3
SHA256 hex / Subject Public Key Information (SPKI):0b9fa5a59eed715c26c1020c711b4f6ec42d58b0015e14337a39dad301c5afc3
SPKI checked via https://v1.pwnedkeys.com/spki-hash:Good: Key isn't compromised
OCSP - Url:
OCSP - must staple:no
Certificate Transparency:no
Enhanced Key Usage:




3.
1.
CN=murena.io
16.07.2025
14.10.2025
189 days expired
accounts.murena.io, autoconfig.murena.io, autodiscover.murena.io, drive.murena.io, mta-sts.murena.io, murena.io, oo.murena.io, webmail.murena.io, welcome.murena.io, www.murena.io - 10 entries
3.
1.
CN=murena.io
16.07.2025

14.10.2025
189 days expired


accounts.murena.io, autoconfig.murena.io, autodiscover.murena.io, drive.murena.io, mta-sts.murena.io, murena.io, oo.murena.io, webmail.murena.io, welcome.murena.io, www.murena.io - 10 entries

KeyalgorithmRSA encryption (2048 bit)
Signatur:SHA256 With RSA-Encryption
Serial Number:06D005402AA0E2161CC806BD9EDEE6F3B088
Thumbprint:DB3C1B50B7193EA2BA63F43BD1BDC1C9693FC29C
SHA256 / Certificate:3nAQGKOg7cYjktvjQ0iv1QV7M9xV+ME0yUpm42QrhMY=
SHA256 hex / Cert (DANE * 0 1):e3b0c44298fc1c149afbf4c8996fb92427ae41e4649b934ca495991b7852b855
SHA256 hex / PublicKey (DANE * 1 1):4670d95f2a576c16a9df22f094fc5e2b1b3ff8ec96272d78cbb98f9d6b3ff9ae
SHA256 hex / Subject Public Key Information (SPKI):4670d95f2a576c16a9df22f094fc5e2b1b3ff8ec96272d78cbb98f9d6b3ff9ae (is buggy, ignore the result)
SPKI checked via https://v1.pwnedkeys.com/spki-hash:Good: Key isn't compromised
OCSP - Url:
OCSP - must staple:no
Certificate Transparency:yes
Enhanced Key Usage:Serverauthentifizierung (1.3.6.1.5.5.7.3.1), Clientauthentifizierung (1.3.6.1.5.5.7.3.2)




2.
CN=R10, O=Let's Encrypt, C=US
13.03.2024
13.03.2027
expires in 326 days


2.
CN=R10, O=Let's Encrypt, C=US
13.03.2024

13.03.2027
expires in 326 days




KeyalgorithmRSA encryption (2048 bit)
Signatur:SHA256 With RSA-Encryption
Serial Number:4BA85293F79A2FA273064BA8048D75D0
Thumbprint:00ABEFD055F9A9C784FFDEABD1DCDD8FED741436
SHA256 / Certificate:nXw/GqatKy7A1c8eJG+NmubLyf0HVa03u5dLHy+2A/M=
SHA256 hex / Cert (DANE * 0 1):e3b0c44298fc1c149afbf4c8996fb92427ae41e4649b934ca495991b7852b855
SHA256 hex / PublicKey (DANE * 1 1):2bbad93ab5c79279ec121507f272cbe0c6647a3aae52e22f388afab426b4adba
SHA256 hex / Subject Public Key Information (SPKI):
SPKI checked via https://v1.pwnedkeys.com/spki-hash:Check unknown. No result 404 / 200
OCSP - Url:
OCSP - must staple:no
Certificate Transparency:no
Enhanced Key Usage:Clientauthentifizierung (1.3.6.1.5.5.7.3.2), Serverauthentifizierung (1.3.6.1.5.5.7.3.1)




3.
CN=ISRG Root X1, O=Internet Security Research Group, C=US
04.06.2015
04.06.2035
expires in 3331 days


3.
CN=ISRG Root X1, O=Internet Security Research Group, C=US
04.06.2015

04.06.2035
expires in 3331 days




KeyalgorithmRSA encryption (4096 bit)
Signatur:SHA256 With RSA-Encryption
Serial Number:008210CFB0D240E3594463E0BB63828B00
Thumbprint:CABD2A79A1076A31F21D253635CB039D4329A5E8
SHA256 / Certificate:lrzsBiZJdvN0YHeazyjFp8/oo8Cq4RqP/O4FwL3fCMY=
SHA256 hex / Cert (DANE * 0 1):96bcec06264976f37460779acf28c5a7cfe8a3c0aae11a8ffcee05c0bddf08c6
SHA256 hex / PublicKey (DANE * 1 1):0b9fa5a59eed715c26c1020c711b4f6ec42d58b0015e14337a39dad301c5afc3
SHA256 hex / Subject Public Key Information (SPKI):0b9fa5a59eed715c26c1020c711b4f6ec42d58b0015e14337a39dad301c5afc3
SPKI checked via https://v1.pwnedkeys.com/spki-hash:Good: Key isn't compromised
OCSP - Url:
OCSP - must staple:no
Certificate Transparency:no
Enhanced Key Usage:




 

10. Last Certificates - Certificate Transparency Log Check

1. Source CertSpotter - active certificates (one check per day)

Issuerlast 7 daysactivenum Certs
CN=R11, O=Let's Encrypt, C=US
0
0
1

CertSpotter-IdIssuernot beforenot afterDomain namesLE-Duplicatenext LE
11135983755
leaf cert
CN=R11, O=Let's Encrypt, C=US
2025-07-16 00:14:08
2025-10-14 00:14:07
autoconfig.e.email, autoconfig.ecloud.global, autodiscover.e.email, autodiscover.ecloud.global, drive.ecloud.global, e.email, ecloud.global, mta-sts.e.email, mta-sts.ecloud.global, oo2.ecloud.global, webmail.ecloud.global, welcome.ecloud.global, www.ecloud.global - 13 entries


 

2. Source crt.sh - old and new certificates, sometimes very slow - only certificates with "not after" > of the last months are listed

No CRT - CT-Log entries found

 

11. Html-Content - Entries

Summary


Subresource Integrity (SRI)
DomainnameHtmlElementrel/property∑ size∑ problems∑ int.∑ ext.∑ Origin poss.∑ SRI ParseErrors∑ SRI valid∑ SRI missing
https://accounts.murena.io/auth/realms/murena/protocol/openid-connect/auth?response_type=code&redirect_uri=https%3A%2F%2Fmurena.io%2Fapps%2Foidc_login%2Foidc&client_id=murena.io&nonce=8d89e3ce8a8efeaa92012a2b8c410da5&state=f0128f0c27e7ceb361a4203435a13788&scope=openid+openid
a

14

0


0
0
0


form

1
6,203 Bytes
1
1
0
0
0
0


link
stylesheet
6
208,526 Bytes
0
6
0
0
0
0


link
other
1
90,143 Bytes
0
1
0
0
0
0


meta
other
4

0


0
0
0

https://www.ecloud.global/
65.109.243.106
a

10

0


0
0
0


form

1
11 Bytes
1
1
0
0
0
0


link
stylesheet
1
24,745 Bytes
0
0
1
1
0
1
0

link
other
1
3,055 Bytes
0
1
0
0
0
0


meta
other
4

0


0
0
0


script

3
49,687 Bytes
3
0
3
3
0
3
0
https://www.ecloud.global/
95.217.240.171
a

10

0


0
0
0


form

1
11 Bytes
1
1
0
0
0
0


link
stylesheet
1
24,745 Bytes
0
0
1
1
0
1
0

link
other
1
3,055 Bytes
0
1
0
0
0
0


meta
other
4

0


0
0
0


script

3
49,687 Bytes
3
0
3
3
0
3
0
https://www.ecloud.global/
2a01:4f9:c01f:e017:ee05::2
a

10

0


0
0
0


form

1
11 Bytes
1
1
0
0
0
0


link
stylesheet
1
24,745 Bytes
0
0
1
1
0
1
0

link
other
1
3,055 Bytes
0
1
0
0
0
0


meta
other
4

0


0
0
0


script

3
49,687 Bytes
3
0
3
3
0
3
0
https://www.ecloud.global/
2a01:4f9:c01f:e0a5:ee05::2
a

10

0


0
0
0


form

1
11 Bytes
1
1
0
0
0
0


link
stylesheet
1
24,745 Bytes
0
0
1
1
0
1
0

link
other
1
3,055 Bytes
0
1
0
0
0
0


meta
other
4

0


0
0
0


script

3
49,687 Bytes
3
0
3
3
0
3
0

 

Details (currently limited to 500 rows - some problems with spam users)

DomainnameHtml-Elementname/equiv/ property/relhref/src/contentHttpStatusmsgStatus
https://accounts.murena.io/auth/realms/murena/protocol/openid-connect/auth?response_type=code&redirect_uri=https%3A%2F%2Fmurena.io%2Fapps%2Foidc_login%2Foidc&client_id=murena.io&nonce=8d89e3ce8a8efeaa92012a2b8c410da5&state=f0128f0c27e7ceb361a4203435a13788&scope=openid+openid

a

#


1
ok















a

/auth/realms/murena/login-actions/authenticate?client_id=murena.io&tab_id=ynCkuvDd084&client_data=eyJydSI6Imh0dHBzOi8vbXVyZW5hLmlvL2FwcHMvb2lkY19sb2dpbi9vaWRjIiwicnQiOiJjb2RlIiwic3QiOiJmMDEyOGYwYzI3ZTdjZWIzNjFhNDIwMzQzNWExMzc4OCJ9&execution=e1e60982-8069-4102-9b13-c8231e571df4&kc_locale=de


1
ok















a

/auth/realms/murena/login-actions/authenticate?client_id=murena.io&tab_id=ynCkuvDd084&client_data=eyJydSI6Imh0dHBzOi8vbXVyZW5hLmlvL2FwcHMvb2lkY19sb2dpbi9vaWRjIiwicnQiOiJjb2RlIiwic3QiOiJmMDEyOGYwYzI3ZTdjZWIzNjFhNDIwMzQzNWExMzc4OCJ9&execution=e1e60982-8069-4102-9b13-c8231e571df4&kc_locale=en


1
ok















a

/auth/realms/murena/login-actions/authenticate?client_id=murena.io&tab_id=ynCkuvDd084&client_data=eyJydSI6Imh0dHBzOi8vbXVyZW5hLmlvL2FwcHMvb2lkY19sb2dpbi9vaWRjIiwicnQiOiJjb2RlIiwic3QiOiJmMDEyOGYwYzI3ZTdjZWIzNjFhNDIwMzQzNWExMzc4OCJ9&execution=e1e60982-8069-4102-9b13-c8231e571df4&kc_locale=es


1
ok















a

/auth/realms/murena/login-actions/authenticate?client_id=murena.io&tab_id=ynCkuvDd084&client_data=eyJydSI6Imh0dHBzOi8vbXVyZW5hLmlvL2FwcHMvb2lkY19sb2dpbi9vaWRjIiwicnQiOiJjb2RlIiwic3QiOiJmMDEyOGYwYzI3ZTdjZWIzNjFhNDIwMzQzNWExMzc4OCJ9&execution=e1e60982-8069-4102-9b13-c8231e571df4&kc_locale=fr


1
ok















a

/auth/realms/murena/login-actions/authenticate?client_id=murena.io&tab_id=ynCkuvDd084&client_data=eyJydSI6Imh0dHBzOi8vbXVyZW5hLmlvL2FwcHMvb2lkY19sb2dpbi9vaWRjIiwicnQiOiJjb2RlIiwic3QiOiJmMDEyOGYwYzI3ZTdjZWIzNjFhNDIwMzQzNWExMzc4OCJ9&execution=e1e60982-8069-4102-9b13-c8231e571df4&kc_locale=it


1
ok















a

https://murena.com/en/privacy-policy/


2
ok















a

https://murena.io/en/termsandconditions


2
ok















a

https://murena.io/login?showLoginWithDevice=1&noredir=1


1
ok















a

https://murena.io/login?showResetPassword=1&noredir=1


1
ok















a

https://murena.io/signup


2
ok















form
post
https://accounts.murena.io/auth/realms/murena/login-actions/authenticate?session_code=nPzyvAO9EwM_uL1z24xbSJe7V7JB5gVc6iphdXmc-UU&execution=e1e60982-8069-4102-9b13-c8231e571df4&client_id=murena.io&tab_id=ynCkuvDd084&client_data=eyJydSI6Imh0dHBzOi8vbXVyZW5hLmlvL2FwcHMvb2lkY19sb2dpbi9vaWRjIiwicnQiOiJjb2RlIiwic3QiOiJmMDEyOGYwYzI3ZTdjZWIzNjFhNDIwMzQzNWExMzc4OCJ9
400
Bad Request
1
bad request
text/html; charset=utf-8
X-Content-Type-Options nosniff found





6203 Bytes








link
icon
/auth/resources/yq8fi/login/murenacloak/img/favicon.ico
200

1
ok
application/octet-stream
X-Content-Type-Options nosniff found





90143 Bytes








link
stylesheet
/auth/resources/yq8fi/common/keycloak/lib/pficon/pficon.css
200

1
ok
text/css
X-Content-Type-Options nosniff found





Cache-Control: max-age=2592000 - with long duration found.
316 Bytes






local SRI possible, possible hash-values:

 

sha256-2EI1w6ln3+mG5r7mlVvMvjgp/raoIwADhZGKoMMS5cc=
sha384-vkuJHiQWH2xfGq28GHrFiTcgUyVhVoc4+N+hYgjEASsVG5pwVTaHsGoRRI8ufiPH
sha512-nO8lmzcgnp0A5dbTESkt9PZ00/tY4h86GswGFearDpRknH00PfUvXYnuyuudrm6Y/oS5QS5oakfRvDmhywLBWg==

 

<link rel="stylesheet" href="/auth/resources/yq8fi/common/keycloak/lib/pficon/pficon.css" crossorigin="anonymous" integrity="sha256-2EI1w6ln3+mG5r7mlVvMvjgp/raoIwADhZGKoMMS5cc=" />



link
stylesheet
/auth/resources/yq8fi/common/keycloak/node_modules/@patternfly/patternfly/patternfly.min.css
200

1
ok
text/css
X-Content-Type-Options nosniff found





Cache-Control: max-age=2592000 - with long duration found.
Compression (gzip): 139345/1421960 Bytes






local SRI possible, possible hash-values:

 

sha256-/oIfpSzKs7cNnBoCS7DL/PUsD8we+WIAA1pLdJ4sPRM=
sha384-IGLwS1Cb4U8XolO5UZFgPRvrBPhph9WXAjZf8FAsH601Um1+irMxuOOV7eEz61qv
sha512-xp11cfIAr58n/3iz8JE6OJrBtfA5Fz59vO5K31jS0KD0Iq/h0N/Fv9vsMs0jh0ojjnm0za9tv6tNiLC/OGSBCQ==

 

<link rel="stylesheet" href="/auth/resources/yq8fi/common/keycloak/node_modules/@patternfly/patternfly/patternfly.min.css" crossorigin="anonymous" integrity="sha256-/oIfpSzKs7cNnBoCS7DL/PUsD8we+WIAA1pLdJ4sPRM=" />



link
stylesheet
/auth/resources/yq8fi/common/keycloak/node_modules/patternfly/dist/css/patternfly.min.css
200

1
ok
text/css
X-Content-Type-Options nosniff found





Cache-Control: max-age=2592000 - with long duration found.
Compression (gzip): 31680/182755 Bytes






local SRI possible, possible hash-values:

 

sha256-rLJV3jlFRU38RbS+z4Ee+xgtP71nt4Tg+d1OTGmnJkw=
sha384-4zLWPetole9qKXk9bJjmPMhcOQT5bmP34swgXhCnpTITjAYtFx9Op/QkhUSmxSGI
sha512-6UpU9AcZHviFiYbPBQSNtdLnWsTo8Y/1bnfc/OM2Hh4jEeQZEa9TfmOVGzLHE90YV44V/u5I0cnQr4uwMW2P6w==

 

<link rel="stylesheet" href="/auth/resources/yq8fi/common/keycloak/node_modules/patternfly/dist/css/patternfly.min.css" crossorigin="anonymous" integrity="sha256-rLJV3jlFRU38RbS+z4Ee+xgtP71nt4Tg+d1OTGmnJkw=" />



link
stylesheet
/auth/resources/yq8fi/common/keycloak/node_modules/patternfly/dist/css/patternfly-additions.min.css
200

1
ok
text/css
X-Content-Type-Options nosniff found





Cache-Control: max-age=2592000 - with long duration found.
Compression (gzip): 30869/225030 Bytes






local SRI possible, possible hash-values:

 

sha256-KnZfZmpoaCHj4USr0APa/T10CTJSIvyf0mZBZPgzeVs=
sha384-b+Z99jHmjt1CR2S8dS4TnHamqEjWocD+Fa5hkWWwvc6n6WgWvHAtqs+Tny95jiwb
sha512-EYt56ZZC96V80F1+H7qwhi3NUIzR7onpd+RsVWHUxQfZSiIWmsQFD+6J/bS6OsAGKgvRftxtkxB16efK4mDFaA==

 

<link rel="stylesheet" href="/auth/resources/yq8fi/common/keycloak/node_modules/patternfly/dist/css/patternfly-additions.min.css" crossorigin="anonymous" integrity="sha256-KnZfZmpoaCHj4USr0APa/T10CTJSIvyf0mZBZPgzeVs=" />



link
stylesheet
/auth/resources/yq8fi/login/murenacloak/css/login.css
200

1
ok
text/css
X-Content-Type-Options nosniff found





Cache-Control: max-age=2592000 - with long duration found.
Compression (gzip): 5053/23479 Bytes






local SRI possible, possible hash-values:

 

sha256-jAjtENnhcisnhtsKGQufx5qfStQc1xZKQ9yiy2RiQns=
sha384-xAF2CJQSdIIHDUQDG1dP9ZeSSk+2QKiKoUZWKOv6FMwOTL8is8P0LA9lhSTMaqSn
sha512-NS7/1LIswl9Qi0ObAAoBlILv1yhWJGWR4ko959th0DTSoAO/MLYZvW/d79/I0zv6NKOEvlR5tJXYNSHCY4EQrg==

 

<link rel="stylesheet" href="/auth/resources/yq8fi/login/murenacloak/css/login.css" crossorigin="anonymous" integrity="sha256-jAjtENnhcisnhtsKGQufx5qfStQc1xZKQ9yiy2RiQns=" />



link
stylesheet
/auth/resources/yq8fi/login/murenacloak/css/tile.css
200

1
ok
text/css
X-Content-Type-Options nosniff found





Cache-Control: max-age=2592000 - with long duration found.
Compression (gzip): 1263/7575 Bytes






local SRI possible, possible hash-values:

 

sha256-OPV6mDPd4XL0il0ylDV7fN3mTGrXNK1ZJh4sQkbk3UA=
sha384-k3CjhW6EZJDGQN0dHPp/JYKH57QSpQFrCi2Lc9VQGI7lIUgaF1gUl+fAYWArGtLt
sha512-LXtPnWhrPSNZ9knMeDSiHdNSbJGHw6SwhW6/x4PpjK7fiKYjsrxdBr+rHa84kC4egIuGz9BonMFq8E42ITG8Zw==

 

<link rel="stylesheet" href="/auth/resources/yq8fi/login/murenacloak/css/tile.css" crossorigin="anonymous" integrity="sha256-OPV6mDPd4XL0il0ylDV7fN3mTGrXNK1ZJh4sQkbk3UA=" />



meta
charset
utf-8


1
ok















meta
Content-Type
text/html; charset=UTF-8


1
ok















meta
robots
noindex, nofollow


1
ok















meta
viewport
width=device-width,initial-scale=1


1
ok














https://www.ecloud.global/
65.109.243.106
a

#


2
ok















a

#automatic


1
ok















a

#manualconfig


2
ok















a

#mobileconfig


2
ok















a

/autodiscover/autodiscover.xml


1
ok















a

/mail/config-v1.1.xml


1
ok















a

https://github.com/Monogramm/autodiscover-email-settings


1
ok















form
get
/email.mobileconfig
400
Bad Request
1
bad request
text/plain; charset=utf-8
missing X-Content-Type-Options nosniff





11 Bytes








link
shortcut icon
favicon.ico
200

1
ok
text/plain; charset=utf-8
X-Content-Type-Options nosniff found





3055 Bytes








link
stylesheet
https://stackpath.bootstrapcdn.com/bootstrap/4.4.1/css/bootstrap.min.css
200

1
ok
text/css; charset=utf-8
X-Content-Type-Options nosniff found





Cache-Control: public, max-age=31919000 - with long duration found.
Compression (br): 24745/159515 Bytes






ETag: "7cc40c199d128af6b01e74a28c5900b0"

Server-Header Access-Control-Allow-Origin: *
Cross-Origin Resource Sharing (CORS) supported

integrity: sha384-Vkoo8x4CGsO3+Hhxv8T/Q5PaXtkKtu6ug5TOeNV6gBiFeWPGFN9MuhOf23Q9Ifjh
crossorigin: anonymous
No SRI Parse errorvalid



meta
charset
UTF-8


1
ok















meta
author
Murena


1
ok















meta
description
Murena Email Settings


1
ok















meta
viewport
width=device-width, initial-scale=1, shrink-to-fit=no


1
ok















script
src
https://cdn.jsdelivr.net/npm/popper.js@1.16.0/dist/umd/popper.min.js
200

1
Problems with Content-Type - Header - see details
Missing defer / async attribute. application/javascript; charset=utf-8
X-Content-Type-Options nosniff found


This Combination of MediaType "application" and MediaSubType "javascript" is obsolete. Don't use it. See https://www.iana.org/assignments/media-types/media-types.xhtml to find a correct Combination. Use "text/javascript" instead.


Cache-Control: public, max-age=31536000, s-maxage=31536000, immutable - with long duration found.
Compression (br): 7684/21257 Bytes






ETag: W/"5309-YvI45zNIx3656GVCan0bfeI8uy0"

Server-Header Access-Control-Allow-Origin: *
Cross-Origin Resource Sharing (CORS) supported

integrity: sha384-Q6E9RHvbIyZFJoft+2mJbHaEWldlvI9IOYy5n3zV9zzTtmI3UksdQRVvoxMfooAo
crossorigin: anonymous
No SRI Parse errorvalid



script
src
https://code.jquery.com/jquery-3.4.1.slim.min.js
200

1
Problems with Content-Type - Header - see details
Missing defer / async attribute. application/javascript; charset=utf-8
missing X-Content-Type-Options nosniff


This Combination of MediaType "application" and MediaSubType "javascript" is obsolete. Don't use it. See https://www.iana.org/assignments/media-types/media-types.xhtml to find a correct Combination. Use "text/javascript" instead.


Cache-Control: public, max-age=31536000, stale-while-revalidate=604800 - with long duration found.
Compression (gzip): 24328/71037 Bytes






ETag: W/"28feccc0-1157d"

Server-Header Access-Control-Allow-Origin: *
Cross-Origin Resource Sharing (CORS) supported

integrity: sha384-J6qa4849blE2+poT4WnyKhv5vZF5SrPo0iEjwBvKU7imGFAV0wwj1yYfoRSJoZ+n
crossorigin: anonymous
No SRI Parse errorvalid



script
src
https://stackpath.bootstrapcdn.com/bootstrap/4.4.1/js/bootstrap.min.js
200

1
Problems with Content-Type - Header - see details
Missing defer / async attribute. application/javascript; charset=utf-8
X-Content-Type-Options nosniff found


This Combination of MediaType "application" and MediaSubType "javascript" is obsolete. Don't use it. See https://www.iana.org/assignments/media-types/media-types.xhtml to find a correct Combination. Use "text/javascript" instead.


Cache-Control: public, max-age=31919000 - with long duration found.
Compression (br): 17675/60010 Bytes






ETag: W/"61f338f870fcd0ff46362ef109d28533"

Server-Header Access-Control-Allow-Origin: *
Cross-Origin Resource Sharing (CORS) supported

integrity: sha384-wfSDF2E50Y2D1uUdj0O3uMBJnjuUD4Ih7YwaYd1iqfktj0Uod8GCExl3Og8ifwB6
crossorigin: anonymous
No SRI Parse errorvalid


95.217.240.171
a

#


2
ok















a

#automatic


1
ok















a

#manualconfig


2
ok















a

#mobileconfig


2
ok















a

/autodiscover/autodiscover.xml


1
ok















a

/mail/config-v1.1.xml


1
ok















a

https://github.com/Monogramm/autodiscover-email-settings


1
ok















form
get
/email.mobileconfig
400
Bad Request
1
bad request
text/plain; charset=utf-8
missing X-Content-Type-Options nosniff





11 Bytes








link
shortcut icon
favicon.ico
200

1
ok
text/plain; charset=utf-8
X-Content-Type-Options nosniff found





3055 Bytes








link
stylesheet
https://stackpath.bootstrapcdn.com/bootstrap/4.4.1/css/bootstrap.min.css
200

1
ok
text/css; charset=utf-8
X-Content-Type-Options nosniff found





Cache-Control: public, max-age=31919000 - with long duration found.
Compression (br): 24745/159515 Bytes






ETag: "7cc40c199d128af6b01e74a28c5900b0"

Server-Header Access-Control-Allow-Origin: *
Cross-Origin Resource Sharing (CORS) supported

integrity: sha384-Vkoo8x4CGsO3+Hhxv8T/Q5PaXtkKtu6ug5TOeNV6gBiFeWPGFN9MuhOf23Q9Ifjh
crossorigin: anonymous
No SRI Parse errorvalid



meta
charset
UTF-8


1
ok















meta
author
Murena


1
ok















meta
description
Murena Email Settings


1
ok















meta
viewport
width=device-width, initial-scale=1, shrink-to-fit=no


1
ok















script
src
https://cdn.jsdelivr.net/npm/popper.js@1.16.0/dist/umd/popper.min.js
200

1
Problems with Content-Type - Header - see details
Missing defer / async attribute. application/javascript; charset=utf-8
X-Content-Type-Options nosniff found


This Combination of MediaType "application" and MediaSubType "javascript" is obsolete. Don't use it. See https://www.iana.org/assignments/media-types/media-types.xhtml to find a correct Combination. Use "text/javascript" instead.


Cache-Control: public, max-age=31536000, s-maxage=31536000, immutable - with long duration found.
Compression (br): 7684/21257 Bytes






ETag: W/"5309-YvI45zNIx3656GVCan0bfeI8uy0"

Server-Header Access-Control-Allow-Origin: *
Cross-Origin Resource Sharing (CORS) supported

integrity: sha384-Q6E9RHvbIyZFJoft+2mJbHaEWldlvI9IOYy5n3zV9zzTtmI3UksdQRVvoxMfooAo
crossorigin: anonymous
No SRI Parse errorvalid



script
src
https://code.jquery.com/jquery-3.4.1.slim.min.js
200

1
Problems with Content-Type - Header - see details
Missing defer / async attribute. application/javascript; charset=utf-8
missing X-Content-Type-Options nosniff


This Combination of MediaType "application" and MediaSubType "javascript" is obsolete. Don't use it. See https://www.iana.org/assignments/media-types/media-types.xhtml to find a correct Combination. Use "text/javascript" instead.


Cache-Control: public, max-age=31536000, stale-while-revalidate=604800 - with long duration found.
Compression (gzip): 24328/71037 Bytes






ETag: W/"28feccc0-1157d"

Server-Header Access-Control-Allow-Origin: *
Cross-Origin Resource Sharing (CORS) supported

integrity: sha384-J6qa4849blE2+poT4WnyKhv5vZF5SrPo0iEjwBvKU7imGFAV0wwj1yYfoRSJoZ+n
crossorigin: anonymous
No SRI Parse errorvalid



script
src
https://stackpath.bootstrapcdn.com/bootstrap/4.4.1/js/bootstrap.min.js
200

1
Problems with Content-Type - Header - see details
Missing defer / async attribute. application/javascript; charset=utf-8
X-Content-Type-Options nosniff found


This Combination of MediaType "application" and MediaSubType "javascript" is obsolete. Don't use it. See https://www.iana.org/assignments/media-types/media-types.xhtml to find a correct Combination. Use "text/javascript" instead.


Cache-Control: public, max-age=31919000 - with long duration found.
Compression (br): 17675/60010 Bytes






ETag: W/"61f338f870fcd0ff46362ef109d28533"

Server-Header Access-Control-Allow-Origin: *
Cross-Origin Resource Sharing (CORS) supported

integrity: sha384-wfSDF2E50Y2D1uUdj0O3uMBJnjuUD4Ih7YwaYd1iqfktj0Uod8GCExl3Og8ifwB6
crossorigin: anonymous
No SRI Parse errorvalid


2a01:4f9:c01f:e017:ee05::2
a

#


2
ok















a

#automatic


1
ok















a

#manualconfig


2
ok















a

#mobileconfig


2
ok















a

/autodiscover/autodiscover.xml


1
ok















a

/mail/config-v1.1.xml


1
ok















a

https://github.com/Monogramm/autodiscover-email-settings


1
ok















form
get
/email.mobileconfig
400
Bad Request
1
bad request
text/plain; charset=utf-8
missing X-Content-Type-Options nosniff





11 Bytes








link
shortcut icon
favicon.ico
200

1
ok
text/plain; charset=utf-8
X-Content-Type-Options nosniff found





3055 Bytes








link
stylesheet
https://stackpath.bootstrapcdn.com/bootstrap/4.4.1/css/bootstrap.min.css
200

1
ok
text/css; charset=utf-8
X-Content-Type-Options nosniff found





Cache-Control: public, max-age=31919000 - with long duration found.
Compression (br): 24745/159515 Bytes






ETag: "7cc40c199d128af6b01e74a28c5900b0"

Server-Header Access-Control-Allow-Origin: *
Cross-Origin Resource Sharing (CORS) supported

integrity: sha384-Vkoo8x4CGsO3+Hhxv8T/Q5PaXtkKtu6ug5TOeNV6gBiFeWPGFN9MuhOf23Q9Ifjh
crossorigin: anonymous
No SRI Parse errorvalid



meta
charset
UTF-8


1
ok















meta
author
Murena


1
ok















meta
description
Murena Email Settings


1
ok















meta
viewport
width=device-width, initial-scale=1, shrink-to-fit=no


1
ok















script
src
https://cdn.jsdelivr.net/npm/popper.js@1.16.0/dist/umd/popper.min.js
200

1
Problems with Content-Type - Header - see details
Missing defer / async attribute. application/javascript; charset=utf-8
X-Content-Type-Options nosniff found


This Combination of MediaType "application" and MediaSubType "javascript" is obsolete. Don't use it. See https://www.iana.org/assignments/media-types/media-types.xhtml to find a correct Combination. Use "text/javascript" instead.


Cache-Control: public, max-age=31536000, s-maxage=31536000, immutable - with long duration found.
Compression (br): 7684/21257 Bytes






ETag: W/"5309-YvI45zNIx3656GVCan0bfeI8uy0"

Server-Header Access-Control-Allow-Origin: *
Cross-Origin Resource Sharing (CORS) supported

integrity: sha384-Q6E9RHvbIyZFJoft+2mJbHaEWldlvI9IOYy5n3zV9zzTtmI3UksdQRVvoxMfooAo
crossorigin: anonymous
No SRI Parse errorvalid



script
src
https://code.jquery.com/jquery-3.4.1.slim.min.js
200

1
Problems with Content-Type - Header - see details
Missing defer / async attribute. application/javascript; charset=utf-8
missing X-Content-Type-Options nosniff


This Combination of MediaType "application" and MediaSubType "javascript" is obsolete. Don't use it. See https://www.iana.org/assignments/media-types/media-types.xhtml to find a correct Combination. Use "text/javascript" instead.


Cache-Control: public, max-age=31536000, stale-while-revalidate=604800 - with long duration found.
Compression (gzip): 24328/71037 Bytes






ETag: W/"28feccc0-1157d"

Server-Header Access-Control-Allow-Origin: *
Cross-Origin Resource Sharing (CORS) supported

integrity: sha384-J6qa4849blE2+poT4WnyKhv5vZF5SrPo0iEjwBvKU7imGFAV0wwj1yYfoRSJoZ+n
crossorigin: anonymous
No SRI Parse errorvalid



script
src
https://stackpath.bootstrapcdn.com/bootstrap/4.4.1/js/bootstrap.min.js
200

1
Problems with Content-Type - Header - see details
Missing defer / async attribute. application/javascript; charset=utf-8
X-Content-Type-Options nosniff found


This Combination of MediaType "application" and MediaSubType "javascript" is obsolete. Don't use it. See https://www.iana.org/assignments/media-types/media-types.xhtml to find a correct Combination. Use "text/javascript" instead.


Cache-Control: public, max-age=31919000 - with long duration found.
Compression (br): 17675/60010 Bytes






ETag: W/"61f338f870fcd0ff46362ef109d28533"

Server-Header Access-Control-Allow-Origin: *
Cross-Origin Resource Sharing (CORS) supported

integrity: sha384-wfSDF2E50Y2D1uUdj0O3uMBJnjuUD4Ih7YwaYd1iqfktj0Uod8GCExl3Og8ifwB6
crossorigin: anonymous
No SRI Parse errorvalid


2a01:4f9:c01f:e0a5:ee05::2
a

#


2
ok















a

#automatic


1
ok















a

#manualconfig


2
ok















a

#mobileconfig


2
ok















a

/autodiscover/autodiscover.xml


1
ok















a

/mail/config-v1.1.xml


1
ok















a

https://github.com/Monogramm/autodiscover-email-settings


1
ok















form
get
/email.mobileconfig
400
Bad Request
1
bad request
text/plain; charset=utf-8
missing X-Content-Type-Options nosniff





11 Bytes








link
shortcut icon
favicon.ico
200

1
ok
text/plain; charset=utf-8
X-Content-Type-Options nosniff found





3055 Bytes








link
stylesheet
https://stackpath.bootstrapcdn.com/bootstrap/4.4.1/css/bootstrap.min.css
200

1
ok
text/css; charset=utf-8
X-Content-Type-Options nosniff found





Cache-Control: public, max-age=31919000 - with long duration found.
Compression (br): 24745/159515 Bytes






ETag: "7cc40c199d128af6b01e74a28c5900b0"

Server-Header Access-Control-Allow-Origin: *
Cross-Origin Resource Sharing (CORS) supported

integrity: sha384-Vkoo8x4CGsO3+Hhxv8T/Q5PaXtkKtu6ug5TOeNV6gBiFeWPGFN9MuhOf23Q9Ifjh
crossorigin: anonymous
No SRI Parse errorvalid



meta
charset
UTF-8


1
ok















meta
author
Murena


1
ok















meta
description
Murena Email Settings


1
ok















meta
viewport
width=device-width, initial-scale=1, shrink-to-fit=no


1
ok















script
src
https://cdn.jsdelivr.net/npm/popper.js@1.16.0/dist/umd/popper.min.js
200

1
Problems with Content-Type - Header - see details
Missing defer / async attribute. application/javascript; charset=utf-8
X-Content-Type-Options nosniff found


This Combination of MediaType "application" and MediaSubType "javascript" is obsolete. Don't use it. See https://www.iana.org/assignments/media-types/media-types.xhtml to find a correct Combination. Use "text/javascript" instead.


Cache-Control: public, max-age=31536000, s-maxage=31536000, immutable - with long duration found.
Compression (br): 7684/21257 Bytes






ETag: W/"5309-YvI45zNIx3656GVCan0bfeI8uy0"

Server-Header Access-Control-Allow-Origin: *
Cross-Origin Resource Sharing (CORS) supported

integrity: sha384-Q6E9RHvbIyZFJoft+2mJbHaEWldlvI9IOYy5n3zV9zzTtmI3UksdQRVvoxMfooAo
crossorigin: anonymous
No SRI Parse errorvalid



script
src
https://code.jquery.com/jquery-3.4.1.slim.min.js
200

1
Problems with Content-Type - Header - see details
Missing defer / async attribute. application/javascript; charset=utf-8
missing X-Content-Type-Options nosniff


This Combination of MediaType "application" and MediaSubType "javascript" is obsolete. Don't use it. See https://www.iana.org/assignments/media-types/media-types.xhtml to find a correct Combination. Use "text/javascript" instead.


Cache-Control: public, max-age=31536000, stale-while-revalidate=604800 - with long duration found.
Compression (gzip): 24328/71037 Bytes






ETag: W/"28feccc0-1157d"

Server-Header Access-Control-Allow-Origin: *
Cross-Origin Resource Sharing (CORS) supported

integrity: sha384-J6qa4849blE2+poT4WnyKhv5vZF5SrPo0iEjwBvKU7imGFAV0wwj1yYfoRSJoZ+n
crossorigin: anonymous
No SRI Parse errorvalid



script
src
https://stackpath.bootstrapcdn.com/bootstrap/4.4.1/js/bootstrap.min.js
200

1
Problems with Content-Type - Header - see details
Missing defer / async attribute. application/javascript; charset=utf-8
X-Content-Type-Options nosniff found


This Combination of MediaType "application" and MediaSubType "javascript" is obsolete. Don't use it. See https://www.iana.org/assignments/media-types/media-types.xhtml to find a correct Combination. Use "text/javascript" instead.


Cache-Control: public, max-age=31919000 - with long duration found.
Compression (br): 17675/60010 Bytes






ETag: W/"61f338f870fcd0ff46362ef109d28533"

Server-Header Access-Control-Allow-Origin: *
Cross-Origin Resource Sharing (CORS) supported

integrity: sha384-wfSDF2E50Y2D1uUdj0O3uMBJnjuUD4Ih7YwaYd1iqfktj0Uod8GCExl3Og8ifwB6
crossorigin: anonymous
No SRI Parse errorvalid


 

12. Html-Parsing via https://validator.w3.org/nu/

Url used (first standard-https-result with http status 200): https://www.ecloud.global/

Summary

Good: No non-document-errors
2 errors
2 warnings

TypeMessagenum found
1.errorDuplicate attribute class.1
2.errorNamed character reference was not terminated by a semicolon. (Or & should have been escaped as &amp;.)1
3.warningConsider adding a lang attribute to the html start tag to declare the language of this document.1
4.warningThe main role is unnecessary for element main.1

Details


TypeMessage + Sample
1errorDuplicate attribute class.

From line 261, column 94 to line 261, column 94

width="2" class="mx-3" role="i
2errorNamed character reference was not terminated by a semicolon. (Or & should have been escaped as &amp;.)

From line 282, column 72 to line 282, column 72

arn more &raquo</a></p>
3warningConsider adding a lang attribute to the html start tag to declare the language of this document.

From line 1, column 16 to line 2, column 6

TYPE html> <html> <hea
4warningThe main role is unnecessary for element main.

From line 272, column 5 to line 272, column 22

nav> <main role="main">

 

13. Nameserver - IP-Adresses

Required Root-climbing DNS-Queries to find ip addresses of all Name Servers: ns1.gandi.net, ns-124-c.gandi.net, ns-250-a.gandi.net, ns-57-b.gandi.net

 

QNr.DomainTypeNS used
1
net
NS
e.root-servers.net (2001:500:a8::e)

Answer: a.gtld-servers.net, b.gtld-servers.net, c.gtld-servers.net, d.gtld-servers.net, e.gtld-servers.net, f.gtld-servers.net, g.gtld-servers.net, h.gtld-servers.net, i.gtld-servers.net, j.gtld-servers.net, k.gtld-servers.net, l.gtld-servers.net, m.gtld-servers.net
2
ns1.gandi.net
NS
a.gtld-servers.net (2001:503:a83e::2:30)

Answer: dns0.gandi.net, dns1.gandi.net, dns2.gandi.net, dns3.gandi.net, dns4.gandi.net, dns6.gandi.net, e.gandi-ns.fr

Answer: dns0.gandi.net
2001:4b98:d:1::39, 217.70.177.39

Answer: dns1.gandi.net
2001:4b98:d:1::45, 217.70.177.45

Answer: dns2.gandi.net
2001:4b98:d:589::211, 217.70.183.211

Answer: dns3.gandi.net
2001:4b98:c:13::14, 217.70.184.14

Answer: dns4.gandi.net
2001:4b98:dc2:90:217:70:186:184, 217.70.186.184

Answer: dns6.gandi.net
162.159.24.111, 162.159.25.213, 2400:cb00:2049:1::a29f:186f, 2400:cb00:2049:1::a29f:19d5
3
ns-124-c.gandi.net
NS
a.gtld-servers.net (2001:503:a83e::2:30)

Answer: dns0.gandi.net, dns1.gandi.net, dns2.gandi.net, dns3.gandi.net, dns4.gandi.net, dns6.gandi.net, e.gandi-ns.fr

Answer: dns0.gandi.net
2001:4b98:d:1::39, 217.70.177.39

Answer: dns1.gandi.net
2001:4b98:d:1::45, 217.70.177.45

Answer: dns2.gandi.net
2001:4b98:d:589::211, 217.70.183.211

Answer: dns3.gandi.net
2001:4b98:c:13::14, 217.70.184.14

Answer: dns4.gandi.net
2001:4b98:dc2:90:217:70:186:184, 217.70.186.184

Answer: dns6.gandi.net
162.159.24.111, 162.159.25.213, 2400:cb00:2049:1::a29f:186f, 2400:cb00:2049:1::a29f:19d5
4
ns-250-a.gandi.net
NS
a.gtld-servers.net (2001:503:a83e::2:30)

Answer: dns0.gandi.net, dns1.gandi.net, dns2.gandi.net, dns3.gandi.net, dns4.gandi.net, dns6.gandi.net, e.gandi-ns.fr

Answer: dns0.gandi.net
2001:4b98:d:1::39, 217.70.177.39

Answer: dns1.gandi.net
2001:4b98:d:1::45, 217.70.177.45

Answer: dns2.gandi.net
2001:4b98:d:589::211, 217.70.183.211

Answer: dns3.gandi.net
2001:4b98:c:13::14, 217.70.184.14

Answer: dns4.gandi.net
2001:4b98:dc2:90:217:70:186:184, 217.70.186.184

Answer: dns6.gandi.net
162.159.24.111, 162.159.25.213, 2400:cb00:2049:1::a29f:186f, 2400:cb00:2049:1::a29f:19d5
5
ns-57-b.gandi.net
NS
a.gtld-servers.net (2001:503:a83e::2:30)

Answer: dns0.gandi.net, dns1.gandi.net, dns2.gandi.net, dns3.gandi.net, dns4.gandi.net, dns6.gandi.net, e.gandi-ns.fr

Answer: dns0.gandi.net
2001:4b98:d:1::39, 217.70.177.39

Answer: dns1.gandi.net
2001:4b98:d:1::45, 217.70.177.45

Answer: dns2.gandi.net
2001:4b98:d:589::211, 217.70.183.211

Answer: dns3.gandi.net
2001:4b98:c:13::14, 217.70.184.14

Answer: dns4.gandi.net
2001:4b98:dc2:90:217:70:186:184, 217.70.186.184

Answer: dns6.gandi.net
162.159.24.111, 162.159.25.213, 2400:cb00:2049:1::a29f:186f, 2400:cb00:2049:1::a29f:19d5
6
fr
NS
d.root-servers.net (2001:500:2d::d)

Answer: d.nic.fr, f.ext.nic.fr, g.ext.nic.fr
7
e.gandi-ns.fr: 2001:4b98:d:1::1, 217.70.177.33
NS
d.nic.fr (2001:678:c::1)
8
f.gandi-ns.net: 2001:4b98:d:589::1, 217.70.183.209
NS
a.gtld-servers.net (2001:503:a83e::2:30)

Answer: dns0.gandi.net
2001:4b98:d:1::39, 217.70.177.39

Answer: dns3.gandi.net
2001:4b98:c:13::14, 217.70.184.14

Answer: dns6.gandi.net
162.159.24.111, 162.159.25.213, 2400:cb00:2049:1::a29f:186f, 2400:cb00:2049:1::a29f:19d5
9
eu
NS
c.root-servers.net (2001:500:2::c)

Answer: be.dns.eu, si.dns.eu, w.dns.eu, x.dns.eu, y.dns.eu
10
g.gandi-ns.eu: 173.246.97.3, 2001:4b98:6::4
NS
si.dns.eu (2001:1470:8000:100::62)
11
ns1.gandi.net: 173.246.100.2
A
dns0.gandi.net (2001:4b98:d:1::39)
12
ns1.gandi.net: 2001:4b98:aaaa::2
AAAA
dns0.gandi.net (2001:4b98:d:1::39)
13
ns-124-c.gandi.net: 217.70.187.125
A
dns0.gandi.net (2001:4b98:d:1::39)
14
ns-124-c.gandi.net: 2604:3400:aaac::7d
AAAA
dns0.gandi.net (2001:4b98:d:1::39)
15
ns-250-a.gandi.net: 173.246.100.251
A
dns0.gandi.net (2001:4b98:d:1::39)
16
ns-250-a.gandi.net: 2001:4b98:aaaa::fb
AAAA
dns0.gandi.net (2001:4b98:d:1::39)
17
ns-57-b.gandi.net: 213.167.230.58
A
dns0.gandi.net (2001:4b98:d:1::39)
18
ns-57-b.gandi.net: 2001:4b98:aaab::3a
AAAA
dns0.gandi.net (2001:4b98:d:1::39)

 

14. CAA - Entries

DomainnameflagNameValue∑ Queries∑ Timeout
www.ecloud.global
9
issuewild
;
1
0

5
issue
letsencrypt.org
1
0
ecloud.global
9
issuewild
;
1
0

5
issue
letsencrypt.org
1
0
global
0

no CAA entry found
1
0

 

15. TXT - Entries

DomainnameTXT EntryStatus∑ Queries∑ Timeout
ecloud.global
brave-ledger-verification=7da7f96af3b29de886b1cf509c035f5d3986a771c2900118ebfd5c5453860a5c
ok
1
0
ecloud.global
google-site-verification=uM36_HxWoBd2p_R1593jCngHU7rS5t2CZhf8wvrJWAA
ok
1
0
ecloud.global
v=spf1 mx ip4:135.181.85.105 ip6:2a01:4f9:c010:c4fd:d00b::2 ip4:135.181.6.248 ip6:2a01:4f9:4b:5387::2 ip6:2a01:4f9:4b:5387:d00b::2 ip4:135.181.139.185 ip6:2a01:4f9:3a:1386:d00b::2 ip6:2a01:4f9:3a:1386::2 ~all
ok
1
0
www.ecloud.global
brave-ledger-verification=7da7f96af3b29de886b1cf509c035f5d3986a771c2900118ebfd5c5453860a5c
ok
1
0
www.ecloud.global
google-site-verification=uM36_HxWoBd2p_R1593jCngHU7rS5t2CZhf8wvrJWAA
ok
1
0
www.ecloud.global
v=spf1 mx ip4:135.181.85.105 ip6:2a01:4f9:c010:c4fd:d00b::2 ip4:135.181.6.248 ip6:2a01:4f9:4b:5387::2 ip6:2a01:4f9:4b:5387:d00b::2 ip4:135.181.139.185 ip6:2a01:4f9:3a:1386:d00b::2 ip6:2a01:4f9:3a:1386::2 ~all
ok
1
0
_acme-challenge.ecloud.global

Name Error - The domain name does not exist
1
0
_acme-challenge.www.ecloud.global

Name Error - The domain name does not exist
1
0
_acme-challenge.ecloud.global.ecloud.global

Name Error - The domain name does not exist
1
0
_acme-challenge.www.ecloud.global.ecloud.global

Name Error - The domain name does not exist
1
0
_acme-challenge.www.ecloud.global.www.ecloud.global

Name Error - The domain name does not exist
1
0

 

16. DomainService - Entries

TypeDomainPrefValueDNS-errornum AnswersStatusDescription
MX

ecloud.global
10
mail.ecloud.global
02ok

A


95.217.246.96
01ok

AAAA


2a01:4f9:c01f:1f98::1
01ok

CNAME


00ok
MX

ecloud.global
50
mail.ecloud.global
02ok

A


95.217.246.96
01ok

AAAA


2a01:4f9:c01f:1f98::1
01ok

CNAME


00ok
_mta-sts
TXT
_mta-sts.ecloud.global

v=STSv1; id=2019011801;
ok
mta-sts
CNAME
mta-sts.ecloud.global

lb.ecloud.global
ok

A
lb.ecloud.global

65.109.243.106
ok

mta-sts.txt file
Content of https://mta-sts.ecloud.global/.well-known/mta-sts.txt - see RFC 8461 text/plainok




version: STSv1
ok




mode: testing
ok




mx: mail.ecloud.global
ok




max_age: 604800
ok

A
lb.ecloud.global

95.217.240.171
ok

mta-sts.txt file
Content of https://mta-sts.ecloud.global/.well-known/mta-sts.txt - see RFC 8461 text/plainok




version: STSv1
ok




mode: testing
ok




mx: mail.ecloud.global
ok




max_age: 604800
ok

AAAA
lb.ecloud.global

2a01:4f9:c01f:e017:ee05::2
ok

mta-sts.txt file
Content of https://mta-sts.ecloud.global/.well-known/mta-sts.txt - see RFC 8461 text/plainok




version: STSv1
ok




mode: testing
ok




mx: mail.ecloud.global
ok




max_age: 604800
ok

AAAA
lb.ecloud.global

2a01:4f9:c01f:e0a5:ee05::2
ok

mta-sts.txt file
Content of https://mta-sts.ecloud.global/.well-known/mta-sts.txt - see RFC 8461 text/plainok




version: STSv1
ok




mode: testing
ok




mx: mail.ecloud.global
ok




max_age: 604800
ok
SMTP-TLS Reporting
TXT
_smtp._tls.ecloud.global

v=TLSRPTv1
ok
SPF
TXT
ecloud.global

v=spf1 mx ip4:135.181.85.105 ip6:2a01:4f9:c010:c4fd:d00b::2 ip4:135.181.6.248 ip6:2a01:4f9:4b:5387::2 ip6:2a01:4f9:4b:5387:d00b::2 ip4:135.181.139.185 ip6:2a01:4f9:3a:1386:d00b::2 ip6:2a01:4f9:3a:1386::2 ~all
ok

MX
ecloud.global

mail.ecloud.global
ok

MX-A
mail.ecloud.global

95.217.246.96
8192Duplicated ipv4 found.

MX-AAAA
mail.ecloud.global

2a01:4f9:c01f:1f98::1
16384Duplicated ipv6 found.

MX
ecloud.global

mail.ecloud.global
ok

MX-A
mail.ecloud.global

95.217.246.96
8192Duplicated ipv4 found.

MX-AAAA
mail.ecloud.global

2a01:4f9:c01f:1f98::1
16384Duplicated ipv6 found.
_dmarc
TXT
_dmarc.ecloud.global

v=DMARC1; p=reject; fo=0; adkim=s; aspf=s; pct=100; rf=afrf; sp=none
ok

 

 

17. Cipher Suites




Skipped, CDN used or too many ip addresses

 

18. Portchecks

No open Ports <> 80 / 443 found, so no additional Ports checked.

 

 

Permalink: https://check-your-website.server-daten.de/?i=206410e2-76ab-4a53-b02d-a4f2bf3363ee

 

Last Result: https://check-your-website.server-daten.de/?q=ecloud.global - 2025-09-03 06:00:02

 

Do you like this page? Support this tool, add a link on your page:

 

<a href="https://check-your-website.server-daten.de/?q=ecloud.global" target="_blank">Check this Site: ecloud.global</a>

 

 

Do you really want to support this project? Donate: Check-your-website, IBAN DE98 1001 0010 0575 2211 07, SWIFT/BIC PBNKDEFF, Euro

 

QR-Code of this page - https://check-your-website.server-daten.de/?d=ecloud.global