Check DNS, Urls + Redirects, Certificates and Content of your Website




X

DNS-problem - authoritative Nameserver refused, not defined or timeout

Checked:
18.09.2023 10:34:57


Older results

No older results found


1. IP-Addresses

HostTypeIP-Addressis auth.∑ Queries∑ Timeout
map.vodaplay.vn

Refused
yes
1
0
www.map.vodaplay.vn

Refused
yes
1
0
map.vodaplay.vn
A
103.9.159.82
Quan Phu Nhuan/Ho Chi Minh/Vietnam (VN) - Vnso Technology Company
No Hostname found
no


*.vodaplay.vn
A
Refused
yes



AAAA
Refused
yes



CNAME
Refused
yes


*.map.vodaplay.vn
A
Refused
yes



AAAA
Refused
yes



CNAME
Refused
yes



2. DNSSEC

Zone (*)DNSSEC - Informations

Zone: (root)
(root)
1 DS RR published



DS with Algorithm 8, KeyTag 20326, DigestType 2 and Digest 4G1EuAuPHTmpXAsNfGXQhFjogECbvGg0VxBCN8f47I0=



Status: Valid because published



2 DNSKEY RR found



Public Key with Algorithm 8, KeyTag 11019, Flags 256



Public Key with Algorithm 8, KeyTag 20326, Flags 257 (SEP = Secure Entry Point)



1 RRSIG RR to validate DNSKEY RR found



RRSIG-Owner (root), Algorithm: 8, 0 Labels, original TTL: 172800 sec, Signature-expiration: 30.09.2023, 00:00:00 +, Signature-Inception: 09.09.2023, 00:00:00 +, KeyTag 20326, Signer-Name: (root)



Status: Good - Algorithmus 8 and DNSKEY with KeyTag 20326 used to validate the DNSKEY RRSet



Status: Valid Chain of trust. Parent-DS with Algorithm 8, KeyTag 20326, DigestType 2 and Digest "4G1EuAuPHTmpXAsNfGXQhFjogECbvGg0VxBCN8f47I0=" validates local Key with the same values, Key ist Secure Entry Point (SEP) of the zone

Zone: vn
vn
2 DS RR in the parent zone found



DS with Algorithm 8, KeyTag 16196, DigestType 2 and Digest y2jFOEEEsx4dnLwcRfhhqSzanYEhr+dvmol4UnmD/Zk=



DS with Algorithm 8, KeyTag 16196, DigestType 4 and Digest J2ZD9e9DoGECd8BsxSYQVnKEULFYSzT20Z9MW9ndHe/y1dPLgFuGcYseB3hoKv6R



1 RRSIG RR to validate DS RR found



RRSIG-Owner vn., Algorithm: 8, 1 Labels, original TTL: 86400 sec, Signature-expiration: 01.10.2023, 05:00:00 +, Signature-Inception: 18.09.2023, 04:00:00 +, KeyTag 11019, Signer-Name: (root)



Status: Good - Algorithmus 8 and DNSKEY with KeyTag 11019 used to validate the DS RRSet in the parent zone



2 DNSKEY RR found



Public Key with Algorithm 8, KeyTag 16196, Flags 257 (SEP = Secure Entry Point)



Public Key with Algorithm 8, KeyTag 62805, Flags 256



2 RRSIG RR to validate DNSKEY RR found



RRSIG-Owner vn., Algorithm: 8, 1 Labels, original TTL: 43200 sec, Signature-expiration: 12.10.2023, 15:30:22 +, Signature-Inception: 12.09.2023, 14:57:57 +, KeyTag 16196, Signer-Name: vn



RRSIG-Owner vn., Algorithm: 8, 1 Labels, original TTL: 43200 sec, Signature-expiration: 12.10.2023, 15:30:22 +, Signature-Inception: 12.09.2023, 14:57:57 +, KeyTag 62805, Signer-Name: vn



Status: Good - Algorithmus 8 and DNSKEY with KeyTag 16196 used to validate the DNSKEY RRSet



Status: Good - Algorithmus 8 and DNSKEY with KeyTag 62805 used to validate the DNSKEY RRSet



Status: Valid Chain of trust. Parent-DS with Algorithm 8, KeyTag 16196, DigestType 2 and Digest "y2jFOEEEsx4dnLwcRfhhqSzanYEhr+dvmol4UnmD/Zk=" validates local Key with the same values, Key ist Secure Entry Point (SEP) of the zone



Status: Valid Chain of trust. Parent-DS with Algorithm 8, KeyTag 16196, DigestType 4 and Digest "J2ZD9e9DoGECd8BsxSYQVnKEULFYSzT20Z9MW9ndHe/y1dPLgFuGcYseB3hoKv6R" validates local Key with the same values, Key ist Secure Entry Point (SEP) of the zone

Zone: vodaplay.vn
vodaplay.vn
0 DS RR in the parent zone found



DS-Query in the parent zone has a valid NSEC3 RR as result with the hashed query name "6ibmtlnku3c37pahetj33po3bomki0hu" between the hashed NSEC3-owner "6i3c94ueao6ugklftibt7lb7bagrautb" and the hashed NextOwner "6ifv74nmvaec69to76bqc3fm36kkbveg". So the parent zone confirmes the not-existence of a DS RR.
Bitmap: NS, DS, RRSIG Validated: RRSIG-Owner 6i3c94ueao6ugklftibt7lb7bagrautb.vn., Algorithm: 8, 2 Labels, original TTL: 5400 sec, Signature-expiration: 26.09.2023, 06:13:34 +, Signature-Inception: 17.09.2023, 23:37:05 +, KeyTag 62805, Signer-Name: vn



DS-Query in the parent zone sends valid NSEC3 RR with the Hash "vb8hcp5tj2c2f9me3q5pdeh49jr1ukd1" as Owner. That's the Hash of "vn" with the NextHashedOwnerName "vbj3i4cvq327pq11f02b3rkv7fmfc4r3". So that domain name is the Closest Encloser of "vodaplay.vn". Opt-Out: True.
Bitmap: NS, SOA, RRSIG, DNSKEY, NSEC3PARAM Validated: RRSIG-Owner vb8hcp5tj2c2f9me3q5pdeh49jr1ukd1.vn., Algorithm: 8, 2 Labels, original TTL: 5400 sec, Signature-expiration: 29.09.2023, 19:04:38 +, Signature-Inception: 30.08.2023, 18:59:27 +, KeyTag 62805, Signer-Name: vn



0 DNSKEY RR found




Zone: map.vodaplay.vn
map.vodaplay.vn
0 DS RR in the parent zone found

Zone: www.map.vodaplay.vn
www.map.vodaplay.vn
0 DS RR in the parent zone found


3. Name Servers

DomainNameserverNS-IP
vodaplay.vn
  ns1.vnso.vn
103.9.156.250
Quan Phu Nhuan/Ho Chi Minh/Vietnam (VN) - Vnso Technology Company


  ns1.zonedns.vn
125.212.225.141
Ho Chi Minh City/Ho Chi Minh/Vietnam (VN) - Viettel Corporation


 
2401:5f80:2001:5::a
Hanoi/Vietnam (VN) - VTDC


  ns2.vnso.vn
103.98.152.209
Ho Chi Minh City/Ho Chi Minh/Vietnam (VN) - Hong Quang Trading Investment Company Limited


  ns2.zonedns.vn
103.176.178.51
Đống Đa District/Hanoi/Vietnam (VN) - NINETECH


 
2401:5f80:2001:5::a
Hanoi/Vietnam (VN) - VTDC


  ns3.zonedns.vn
103.28.36.30
Đống Đa District/Hanoi/Vietnam (VN) - NhanHoa Software Company


 
2001:df1:3200::15
Đống Đa District/Hanoi/Vietnam (VN) - NhanHoa Software company


X  ns4.zonedns.vn
103.28.39.159
Đống Đa District/Hanoi/Vietnam (VN) - NhanHoa Software Company


 
2001:df1:3200::15
Đống Đa District/Hanoi/Vietnam (VN) - NhanHoa Software company

vn
  a.dns-servers.vn


  b.dns-servers.vn


T  c.dns-servers.vn


  d.dns-servers.vn


  dns-master.vnnic.vn


  e.dns-servers.vn


  f.dns-servers.vn


  g.dns-servers.vn / 2.ber.pch


T  h.dns-servers.vn


4. SOA-Entries


Domain:vn
Zone-Name:
Primary:
Mail:
Serial:
Refresh:
Retry:
Expire:
TTL:
num Entries:1


Domain:vn
Zone-Name:vn
Primary:dns-master.vnnic.vn
Mail:postmaster.vnnic.vn
Serial:2027024170
Refresh:3600
Retry:1800
Expire:604800
TTL:5400
num Entries:2


Domain:vn
Zone-Name:vn
Primary:dns-master.vnnic.vn
Mail:postmaster.vnnic.vn
Serial:2027024170
Refresh:3600
Retry:1800
Expire:604800
TTL:5400
num Entries:2


Domain:vn
Zone-Name:vn
Primary:dns-master.vnnic.vn
Mail:postmaster.vnnic.vn
Serial:2027024171
Refresh:3600
Retry:1800
Expire:604800
TTL:5400
num Entries:2


Domain:vn
Zone-Name:vn
Primary:dns-master.vnnic.vn
Mail:postmaster.vnnic.vn
Serial:2027024171
Refresh:3600
Retry:1800
Expire:604800
TTL:5400
num Entries:2


Domain:vn
Zone-Name:vn
Primary:dns-master.vnnic.vn
Mail:postmaster.vnnic.vn
Serial:2027024201
Refresh:3600
Retry:1800
Expire:604800
TTL:5400
num Entries:4


Domain:vn
Zone-Name:vn
Primary:dns-master.vnnic.vn
Mail:postmaster.vnnic.vn
Serial:2027024201
Refresh:3600
Retry:1800
Expire:604800
TTL:5400
num Entries:4


Domain:vodaplay.vn
Zone-Name:
Primary:
Mail:
Serial:
Refresh:
Retry:
Expire:
TTL:
num Entries:3


Domain:vodaplay.vn
Zone-Name:vodaplay.vn
Primary:ns1.zonedns.vn
Mail:root.vodaplay.vn
Serial:2023091801
Refresh:1200
Retry:600
Expire:1209600
TTL:3600
num Entries:7


5. Screenshots

Startaddress: https://map.vodaplay.vn/, address used: https://map.vodaplay.vn/, Screenshot created 2023-09-18 10:40:16 +00:0 url is insecure, certificate invalid

Mobil (412px x 732px)

10486 milliseconds

Screenshot mobile - https://map.vodaplay.vn/
Mobil + Landscape (732px x 412px)

10745 milliseconds

Screenshot mobile landscape - https://map.vodaplay.vn/
Screen (1280px x 1680px)

9529 milliseconds

Screenshot Desktop - https://map.vodaplay.vn/

Mobile- and other Chrome-Checks

widthheight
visual Viewport412732
content Size412732

Good: No horizontal scrollbar. Content-size width = visual Viewport width.

6. Url-Checks


:

:
DomainnameHttp-StatusredirectSec.G
• http://map.vodaplay.vn/
103.9.159.82 GZip used - 1836 / 4767 - 61.49 %
200

Html is minified: 1891.67 %
0.347
H
small visible content (num chars: 0)
Server: nginx/1.18.0 (Ubuntu)
Date: Mon, 18 Sep 2023 08:39:12 GMT
Content-Type: text/html
Last-Modified: Mon, 18 Sep 2023 05:14:25 GMT
Transfer-Encoding: chunked
Connection: close
ETag: W/"6507dcb1-129f"
Content-Encoding: gzip

• https://map.vodaplay.vn/
103.9.159.82 GZip used - 410 / 676 - 39.35 %
Inline-JavaScript (∑/total): 0/0 Inline-CSS (∑/total): 0/0
200

Html is minified: 100.00 %
5.594
N
Certificate error: RemoteCertificateNameMismatch
small visible content (num chars: 113)
We're sorry but advertiser-agency doesn't work properly without JavaScript enabled. Please enable it to continue.
Server: nginx/1.18.0 (Ubuntu)
Date: Mon, 18 Sep 2023 08:39:13 GMT
Content-Type: text/html
Transfer-Encoding: chunked
Connection: close
Last-Modified: Mon, 18 Sep 2023 07:47:36 GMT
ETag: W/"65080098-2a4"
Content-Encoding: gzip

• http://map.vodaplay.vn/.well-known/acme-challenge/check-your-website-dot-server-daten-dot-de
103.9.159.82 GZip used - 123 / 162 - 24.07 %
Inline-JavaScript (∑/total): 0/0 Inline-CSS (∑/total): 0/0
404

Html is minified: 109.46 %
0.397
A
Not Found
Visible Content: 404 Not Found nginx/1.18.0 (Ubuntu)
Server: nginx/1.18.0 (Ubuntu)
Date: Mon, 18 Sep 2023 08:39:19 GMT
Content-Type: text/html
Transfer-Encoding: chunked
Connection: close
Content-Encoding: gzip

• https://103.9.159.82/
103.9.159.82 GZip used - 410 / 676 - 39.35 %
Inline-JavaScript (∑/total): 0/0 Inline-CSS (∑/total): 0/0
200

Html is minified: 100.00 %
5.316
N
Certificate error: RemoteCertificateNameMismatch
small visible content (num chars: 113)
We're sorry but advertiser-agency doesn't work properly without JavaScript enabled. Please enable it to continue.
Server: nginx/1.18.0 (Ubuntu)
Date: Mon, 18 Sep 2023 08:39:20 GMT
Content-Type: text/html
Transfer-Encoding: chunked
Connection: close
Last-Modified: Mon, 18 Sep 2023 07:47:36 GMT
ETag: W/"65080098-2a4"
Content-Encoding: gzip

7. Comments


1. General Results, most used to calculate the result

Aname "map.vodaplay.vn" is subdomain, public suffix is ".vn", top-level-domain is ".vn", top-level-domain-type is "country-code", Country is Viet Nam, tld-manager is "Ministry of Information and Communications of Socialist Republic of Viet Nam", num .vn-domains preloaded: 321 (complete: 231048)
AGood: All ip addresses are public addresses
AGood: No asked Authoritative Name Server had a timeout
AGood: one preferred version: non-www is preferred
AGood: No cookie sent via http.
HSTS-Preload-Status: unknown. Domain never included in the Preload-list. Check https://hstspreload.org/ to learn some basics about the Google-Preload-List.
AGood: Some urls with http status 200/404 have a complete Content-Type header (MediaType / MediaSubType + correct charset):0 complete Content-Type - header (4 urls)
http://map.vodaplay.vn/ 103.9.159.82


Url with incomplete Content-Type - header - missing charset
https://map.vodaplay.vn/ 103.9.159.82


Url with incomplete Content-Type - header - missing charset
http://map.vodaplay.vn/.well-known/acme-challenge/check-your-website-dot-server-daten-dot-de 103.9.159.82


Url with incomplete Content-Type - header - missing charset
https://103.9.159.82/ 103.9.159.82


Url with incomplete Content-Type - header - missing charset
Bhttps://map.vodaplay.vn/ 103.9.159.82
200

Missing HSTS-Header
HFatal error: http result with http-status 200, no encryption. Add a redirect http ⇒ https, so every connection is secure. Perhaps in your port 80 vHost something like "RewriteEngine on" + "RewriteRule ^ https://%{SERVER_NAME}%{REQUEST_URI} [END,QSA,R=permanent]" (two rows, without the "). Don't add this in your port 443 vHost, that would create a loop.
Nhttps://map.vodaplay.vn/ 103.9.159.82
200

Error - Certificate isn't trusted, RemoteCertificateNameMismatch
Nhttps://103.9.159.82/ 103.9.159.82
200

Error - Certificate isn't trusted, RemoteCertificateNameMismatch
XFatal error: Nameserver doesn't support TCP connection: e.dns-servers.vn: Timeout
XFatal error: Nameserver doesn't support TCP connection: ns1.vnso.vn / 103.9.156.250: Refused
XFatal error: Nameserver doesn't support TCP connection: ns2.vnso.vn / 103.98.152.209: Refused
XFatal error: Nameserver doesn't support TCP connection: ns4.zonedns.vn / 103.28.39.159: Fatal error (-14). Details: Unable to read data from the transport connection: Ein Verbindungsversuch ist fehlgeschlagen, da die Gegenstelle nach einer bestimmten Zeitspanne nicht richtig reagiert hat, oder die hergestellte Verbindung war fehlerhaft, da der verbundene Host nicht reagiert hat. - Ein Verbindungsversuch ist fehlgeschlagen, da die Gegenstelle nach einer bestimmten Zeitspanne nicht richtig reagiert hat, oder die hergestellte Verbindung war fehlerhaft, da der verbundene Host nicht reagiert hat
BNo _mta-sts TXT record found (mta-sts: Mail Transfer Agent Strict Transport Security - see RFC 8461). Read the result of server-daten.de (Url-Checks, Comments, Connections and DomainServiceRecords) to see a complete definition. Domainname: _mta-sts.map.vodaplay.vn

2. Header-Checks (Cross-Origin-* headers are alpha - started 2024-06-05)

Fmap.vodaplay.vn 103.9.159.82
Content-Security-Policy
Critical: Missing Header:
Fmap.vodaplay.vn 103.9.159.82
X-Content-Type-Options
Critical: Missing Header:
Fmap.vodaplay.vn 103.9.159.82
Referrer-Policy
Critical: Missing Header:
Fmap.vodaplay.vn 103.9.159.82
Permissions-Policy
Critical: Missing Header:

3. DNS- and NameServer - Checks

AInfo:: 26 Root-climbing DNS Queries required to find all IPv4- and IPv6-Addresses of 6 Name Servers.
AInfo:: 26 Queries complete, 18 with IPv6, 8 with IPv4.
Warning: Only some DNS Queries done via ipv6. IPv6 is the future, so the name servers of your name servers should have ipv6 addresses.
Ok (4 - 8):: An average of 4.3 queries per domain name server required to find all ip addresses of all name servers.
AInfo:: 6 different Name Servers found: ns1.vnso.vn, ns1.zonedns.vn, ns2.vnso.vn, ns2.zonedns.vn, ns3.zonedns.vn, ns4.zonedns.vn, 4 Name Servers included in Delegation: ns1.vnso.vn, ns2.vnso.vn, ns3.zonedns.vn, ns4.zonedns.vn, 4 Name Servers included in 2 Zone definitions: ns1.zonedns.vn, ns2.zonedns.vn, ns3.zonedns.vn, ns4.zonedns.vn, 1 Name Servers listed in SOA.Primary: ns1.zonedns.vn.
AGood: Only one SOA.Primary Name Server found.: ns1.zonedns.vn.
Error: SOA.Primary Name Server not included in the delegation set.: ns1.zonedns.vn.
XFatal: Inconsistency between delegation and zone. The set of NS records served by the authoritative name servers must match those proposed for the delegation in the parent zone. Read https://www.iana.org/help/nameserver-requirements and send it to your Name Server Hoster.: ns1.zonedns.vn (125.212.225.141): Delegation: ns1.vnso.vn, ns2.vnso.vn, ns3.zonedns.vn, ns4.zonedns.vn, Zone: ns1.zonedns.vn, ns2.zonedns.vn, ns3.zonedns.vn, ns4.zonedns.vn. Name Servers defined in Delegation, missing in Zone: ns1.vnso.vn, ns2.vnso.vn.Name Servers defined in Zone, missing in Delegation: ns1.zonedns.vn, ns2.zonedns.vn.
XFatal: Inconsistency between delegation and zone. The set of NS records served by the authoritative name servers must match those proposed for the delegation in the parent zone. Read https://www.iana.org/help/nameserver-requirements and send it to your Name Server Hoster.: ns1.zonedns.vn (2401:5f80:2001:5::a): Delegation: ns1.vnso.vn, ns2.vnso.vn, ns3.zonedns.vn, ns4.zonedns.vn, Zone: ns1.zonedns.vn, ns2.zonedns.vn, ns3.zonedns.vn, ns4.zonedns.vn. Name Servers defined in Delegation, missing in Zone: ns1.vnso.vn, ns2.vnso.vn.Name Servers defined in Zone, missing in Delegation: ns1.zonedns.vn, ns2.zonedns.vn.
XFatal: Inconsistency between delegation and zone. The set of NS records served by the authoritative name servers must match those proposed for the delegation in the parent zone. Read https://www.iana.org/help/nameserver-requirements and send it to your Name Server Hoster.: ns2.zonedns.vn (103.176.178.51): Delegation: ns1.vnso.vn, ns2.vnso.vn, ns3.zonedns.vn, ns4.zonedns.vn, Zone: ns1.zonedns.vn, ns2.zonedns.vn, ns3.zonedns.vn, ns4.zonedns.vn. Name Servers defined in Delegation, missing in Zone: ns1.vnso.vn, ns2.vnso.vn.Name Servers defined in Zone, missing in Delegation: ns1.zonedns.vn, ns2.zonedns.vn.
XFatal: Inconsistency between delegation and zone. The set of NS records served by the authoritative name servers must match those proposed for the delegation in the parent zone. Read https://www.iana.org/help/nameserver-requirements and send it to your Name Server Hoster.: ns2.zonedns.vn (2401:5f80:2001:5::a): Delegation: ns1.vnso.vn, ns2.vnso.vn, ns3.zonedns.vn, ns4.zonedns.vn, Zone: ns1.zonedns.vn, ns2.zonedns.vn, ns3.zonedns.vn, ns4.zonedns.vn. Name Servers defined in Delegation, missing in Zone: ns1.vnso.vn, ns2.vnso.vn.Name Servers defined in Zone, missing in Delegation: ns1.zonedns.vn, ns2.zonedns.vn.
XFatal: Inconsistency between delegation and zone. The set of NS records served by the authoritative name servers must match those proposed for the delegation in the parent zone. Read https://www.iana.org/help/nameserver-requirements and send it to your Name Server Hoster.: ns3.zonedns.vn (103.28.36.30): Delegation: ns1.vnso.vn, ns2.vnso.vn, ns3.zonedns.vn, ns4.zonedns.vn, Zone: ns1.zonedns.vn, ns2.zonedns.vn, ns3.zonedns.vn, ns4.zonedns.vn. Name Servers defined in Delegation, missing in Zone: ns1.vnso.vn, ns2.vnso.vn.Name Servers defined in Zone, missing in Delegation: ns1.zonedns.vn, ns2.zonedns.vn.
XFatal: Inconsistency between delegation and zone. The set of NS records served by the authoritative name servers must match those proposed for the delegation in the parent zone. Read https://www.iana.org/help/nameserver-requirements and send it to your Name Server Hoster.: ns3.zonedns.vn (2001:df1:3200::15): Delegation: ns1.vnso.vn, ns2.vnso.vn, ns3.zonedns.vn, ns4.zonedns.vn, Zone: ns1.zonedns.vn, ns2.zonedns.vn, ns3.zonedns.vn, ns4.zonedns.vn. Name Servers defined in Delegation, missing in Zone: ns1.vnso.vn, ns2.vnso.vn.Name Servers defined in Zone, missing in Delegation: ns1.zonedns.vn, ns2.zonedns.vn.
XFatal: Inconsistency between delegation and zone. The set of NS records served by the authoritative name servers must match those proposed for the delegation in the parent zone. Read https://www.iana.org/help/nameserver-requirements and send it to your Name Server Hoster.: ns4.zonedns.vn (103.28.39.159): Delegation: ns1.vnso.vn, ns2.vnso.vn, ns3.zonedns.vn, ns4.zonedns.vn, Zone: ns1.zonedns.vn, ns2.zonedns.vn, ns3.zonedns.vn, ns4.zonedns.vn. Name Servers defined in Delegation, missing in Zone: ns1.vnso.vn, ns2.vnso.vn.Name Servers defined in Zone, missing in Delegation: ns1.zonedns.vn, ns2.zonedns.vn.
XFatal: Inconsistency between delegation and zone. The set of NS records served by the authoritative name servers must match those proposed for the delegation in the parent zone. Read https://www.iana.org/help/nameserver-requirements and send it to your Name Server Hoster.: ns4.zonedns.vn (2001:df1:3200::15): Delegation: ns1.vnso.vn, ns2.vnso.vn, ns3.zonedns.vn, ns4.zonedns.vn, Zone: ns1.zonedns.vn, ns2.zonedns.vn, ns3.zonedns.vn, ns4.zonedns.vn. Name Servers defined in Delegation, missing in Zone: ns1.vnso.vn, ns2.vnso.vn.Name Servers defined in Zone, missing in Delegation: ns1.zonedns.vn, ns2.zonedns.vn.
AGood: All Name Server Domain Names have a Public Suffix.
AGood: All Name Server Domain Names ending with a Public Suffix have minimal one IPv4- or IPv6 address.
AGood: All Name Server ip addresses are public.
AInfo: Ipv4-Subnet-list: 6 Name Servers, 2 different subnets (first Byte): 103., 125., 5 different subnets (first two Bytes): 103.176., 103.28., 103.9., 103.98., 125.212., 6 different subnets (first three Bytes): 103.176.178., 103.28.36., 103.28.39., 103.9.156., 103.98.152., 125.212.225.
AGood: Name Server IPv4-addresses from different subnet found:
AInfo: IPv6-Subnet-list: 4 Name Servers with IPv6, 2 different subnets (first block): 2001:, 2401:, 2 different subnets (first two blocks): 2001:0df1:, 2401:5f80:, 2 different subnets (first three blocks): 2001:0df1:3200:, 2401:5f80:2001:, 2 different subnets (first four blocks): 2001:0df1:3200:0000:, 2401:5f80:2001:0005:
AGood: Name Server IPv6 addresses from different subnets found.
AGood: Nameserver supports Echo Capitalization: 10 good Nameserver
XNameserver Timeout checking Echo Capitalization: c.dns-servers.vn
XNameserver Timeout checking Echo Capitalization: h.dns-servers.vn
AGood: Nameserver supports EDNS with max. 512 Byte Udp payload, message is smaller: 10 good Nameserver
XNameserver Timeout checking EDNS512: c.dns-servers.vn
XNameserver Timeout checking EDNS512: h.dns-servers.vn
Nameserver doesn't pass all EDNS-Checks: b.dns-servers.vn: OP100: ok. FLAGS: ok. V1: ok. V1OP100: ok. V1FLAGS: ok. DNSSEC: ok. V1DNSSEC: ok. NSID: ok. COOKIE: ok. CLIENTSUBNET: ok.
Nameserver doesn't pass all EDNS-Checks: c.dns-servers.vn: OP100: ok. FLAGS: ok. V1: ok. V1OP100: ok. V1FLAGS: ok. DNSSEC: ok. V1DNSSEC: ok. NSID: ok. COOKIE: ok. CLIENTSUBNET: ok.
Nameserver doesn't pass all EDNS-Checks: dns-master.vnnic.vn: OP100: no result. FLAGS: no result. V1: no result. V1OP100: no result. V1FLAGS: no result. DNSSEC: no result. V1DNSSEC: no result. NSID: no result. COOKIE: no result. CLIENTSUBNET: no result.
Nameserver doesn't pass all EDNS-Checks: e.dns-servers.vn: OP100: ok. FLAGS: ok. V1: fatal timeout. V1OP100: ok. V1FLAGS: ok. DNSSEC: fatal timeout. V1DNSSEC: ok. NSID: fatal timeout. COOKIE: ok. CLIENTSUBNET: ok.
Nameserver doesn't pass all EDNS-Checks: f.dns-servers.vn: OP100: fatal timeout. FLAGS: ok. V1: ok. V1OP100: ok. V1FLAGS: ok. DNSSEC: ok. V1DNSSEC: ok. NSID: ok. COOKIE: ok. CLIENTSUBNET: ok.
Nameserver doesn't pass all EDNS-Checks: h.dns-servers.vn: OP100: fatal timeout. FLAGS: ok. V1: ok. V1OP100: ok. V1FLAGS: ok. DNSSEC: ok. V1DNSSEC: ok. NSID: ok. COOKIE: ok. CLIENTSUBNET: ok.
Nameserver doesn't pass all EDNS-Checks: ns1.vnso.vn / 103.9.156.250: OP100: SOA expected, but NOT found, NOERR expectend and NOERR found, Version 0 expectend and found, no OPT100 expected, no OPT100 found. FLAGS: SOA expected, but NOT found, NOERR expectend and NOERR found, Version 0 expectend and found. V1: ok. V1OP100: ok. V1FLAGS: ok. DNSSEC: SOA expected, but NOT found, NOERR expectend and NOERR found, Version 0 expectend and found. V1DNSSEC: ok. NSID: SOA expected, but NOT found, NOERR expectend and NOERR found, Version 0 expectend and found. COOKIE: SOA expected, but NOT found, NOERR expectend and NOERR found, Version 0 expectend and found. CLIENTSUBNET: ok.
Nameserver doesn't pass all EDNS-Checks: ns2.vnso.vn / 103.98.152.209: OP100: fatal timeout. FLAGS: SOA expected, but NOT found, NOERR expectend and NOERR found, Version 0 expectend and found. V1: ok. V1OP100: ok. V1FLAGS: ok. DNSSEC: SOA expected, but NOT found, NOERR expectend and NOERR found, Version 0 expectend and found. V1DNSSEC: fatal timeout. NSID: SOA expected, but NOT found, NOERR expectend and NOERR found, Version 0 expectend and found. COOKIE: SOA expected, but NOT found, NOERR expectend and NOERR found, Version 0 expectend and found. CLIENTSUBNET: ok.
Nameserver doesn't pass all EDNS-Checks: ns2.zonedns.vn / 103.176.178.51: OP100: ok. FLAGS: fatal timeout. V1: ok. V1OP100: ok. V1FLAGS: ok. DNSSEC: ok. V1DNSSEC: ok. NSID: ok. COOKIE: ok. CLIENTSUBNET: ok.
AGood: All SOA have the same Serial Number
Warning: No CAA entry with issue/issuewild found, every CAA can create a certificate. Read https://en.wikipedia.org/wiki/DNS_Certification_Authority_Authorization to learn some basics about the idea of CAA. Your name server must support such an entry. Not all dns providers support CAA entries.

4. Content- and Performance-critical Checks

AGood: All checks /.well-known/acme-challenge/random-filename without redirects answer with the expected http status 404 - Not Found. Creating a Letsencrypt certificate via http-01 challenge should work. If it doesn't work: Check your vHost configuration (apachectl -S, httpd -S, nginx -T). Every combination of port and ServerName / ServerAlias (Apache) or Server (Nginx) must be unique. Merge duplicated entries in one vHost. If you use an IIS, extensionless files must be allowed in the /.well-known/acme-challenge subdirectory. Create a web.config in that directory. Content: <configuration><system.webServer><staticContent><mimeMap fileExtension="." mimeType="text/plain" /></staticContent></system.webServer></configuration>. If you have a redirect http ⇒ https, that's ok, Letsencrypt follows such redirects to port 80 / 443 (same or other server). There must be a certificate. But the certificate may be expired, self signed or with a not matching domain name. Checking the validation file Letsencrypt ignores such certificate errors. Trouble creating a certificate? Use https://community.letsencrypt.org/ to ask.
AGood: No https + http status 200 with inline CSS / JavaScript found
AGood: Every https result with status 200 has a minified Html-Content with a quota lower then 110 %.
https://map.vodaplay.vn/ 103.9.159.82
200

Warning: Https connections (Standard Port 443) found without support of the http/2 protocol via ALPN. Http/2 is the new Http-Version (old: http 1.1) with some important new features. Update your server software so http/2 is available. Only one TCP-connection per Server (that's a performance boost), Header-Compression and Server Pushs are available. Domain Sharding and Inline-CSS/Javascript shouldn't used with http/2.
https://103.9.159.82/ 103.9.159.82
200

Warning: Https connections (Standard Port 443) found without support of the http/2 protocol via ALPN. Http/2 is the new Http-Version (old: http 1.1) with some important new features. Update your server software so http/2 is available. Only one TCP-connection per Server (that's a performance boost), Header-Compression and Server Pushs are available. Domain Sharding and Inline-CSS/Javascript shouldn't used with http/2.
AGood: All script Elements (type text/javascript) and src-Attribute have a defer / async - Attribute. So loading and executing these JavaScripts doesn't block parsing and rendering the Html-Output.
Warning: CSS / JavaScript found without GZip support. Send these ressources with GZip. 4 external CSS / JavaScript files without GZip found - 0 with GZip, 4 complete
Warning: CSS / JavaScript files with a missing or too short Cache-Control header found. Browsers should cache and re-use these files. 8 external CSS / JavaScript files without Cache-Control-Header, 0 with Cache-Control, but no max-age, 0 with Cache-Control max-age too short (minimum 7 days), 0 with Cache-Control long enough, 8 complete.
AGood: All checked attribute values are enclosed in quotation marks (" or ').
AInfo: No img element found, no alt attribute checked
AGood: Domainname is not on the "Specially Designated Nationals And Blocked Persons List" (SDN). That's an US-list of individuals and companies owned or controlled by, or acting for or on behalf of, targeted countries. It also lists individuals, groups, and entities, such as terrorists and narcotics traffickers designated under programs that are not country-specific. Collectively, such individuals and companies are called "Specially Designated Nationals" or "SDNs." Their assets are blocked and U.S. persons are generally prohibited from dealing with them. So if a domain name is on that list, it's impossible to create a Letsencrypt certificate with that domain name. Check the list manual - https://www.treasury.gov/resource-center/sanctions/sdn-list/pages/default.aspx
ADuration: 328664 milliseconds, 328.664 seconds


8. Connections

DomainIPPortCert.ProtocolKeyExchangeStrengthCipherStrengthHashAlgorithmOCSP stapling
Domain/KeyExchangeIP/StrengthPort/CipherCert./StrengthProtocol/HashAlgorithmOCSP stapling
map.vodaplay.vn
103.9.159.82
443
name does not match
Tls12
ECDH Ephermal
255
Aes256
256
Sha384
not supported
ok
map.vodaplay.vn
103.9.159.82
443
name does not match
Tls12

ECDH Ephermal
255
Aes256
256
Sha384
not supported
ok
no http/2 via ALPN 
Tls.1.2
no Tls.1.1
no Tls.1.0
no Ssl3
no Ssl2
no http/2 via ALPN
Tls.1.2
no Tls.1.1
no Tls.1.0
no Ssl3
no Ssl2
Chain - incomplete
1CN=business.vodaplay.vn


103.9.159.82
103.9.159.82
443
name does not match
Tls12
ECDH Ephermal
255
Aes256
256
Sha384
not supported
ok

103.9.159.82
103.9.159.82
443
name does not match
Tls12

ECDH Ephermal
255
Aes256
256
Sha384
not supported
ok
no http/2 via ALPN 
Cert sent without SNI
Tls.1.2
no Tls.1.1
no Tls.1.0
no Ssl3
no Ssl2
no http/2 via ALPN
Cert sent without SNI
Tls.1.2
no Tls.1.1
no Tls.1.0
no Ssl3
no Ssl2
Chain - incomplete
1CN=business.vodaplay.vn


9. Certificates

1.
1.
CN=business.vodaplay.vn
02.08.2023
01.11.2023
227 days expired
business.vodaplay.vn - 1 entry
1.
1.
CN=business.vodaplay.vn
02.08.2023

01.11.2023
227 days expired
business.vodaplay.vn - 1 entry

KeyalgorithmRSA encryption (2048 bit)
Signatur:SHA384 With RSA Encryption
Serial Number:59436365C7CFC92A2D42CF267F7EE28F
Thumbprint:2768DAABB95A0C8870BAF0CEBC3DF661220F3895
SHA256 / Certificate:RwV/94m541tmGsJHoizRuqZ76uxECg1vSdC4Q+eearM=
SHA256 hex / Cert (DANE * 0 1):e3b0c44298fc1c149afbf4c8996fb92427ae41e4649b934ca495991b7852b855
SHA256 hex / PublicKey (DANE * 1 1):a14619a8b3c4fb86036010d5efd8d0bb27e441c12d143610072054f406f8c391
SHA256 hex / Subject Public Key Information (SPKI):a14619a8b3c4fb86036010d5efd8d0bb27e441c12d143610072054f406f8c391 (is buggy, ignore the result)
SPKI checked via https://v1.pwnedkeys.com/spki-hash:Check unknown. No result 404 / 200
OCSP - Url:http://zerossl.ocsp.sectigo.com
OCSP - must staple:no
Certificate Transparency:yes
Enhanced Key Usage:Serverauthentifizierung (1.3.6.1.5.5.7.3.1), Clientauthentifizierung (1.3.6.1.5.5.7.3.2)


2.
CN=business.vodaplay.vn
02.08.2023
01.11.2023
227 days expired
business.vodaplay.vn - 1 entry

2.
CN=business.vodaplay.vn
02.08.2023

01.11.2023
227 days expired
business.vodaplay.vn - 1 entry

KeyalgorithmRSA encryption (2048 bit)
Signatur:SHA384 With RSA Encryption
Serial Number:59436365C7CFC92A2D42CF267F7EE28F
Thumbprint:2768DAABB95A0C8870BAF0CEBC3DF661220F3895
SHA256 / Certificate:RwV/94m541tmGsJHoizRuqZ76uxECg1vSdC4Q+eearM=
SHA256 hex / Cert (DANE * 0 1):e3b0c44298fc1c149afbf4c8996fb92427ae41e4649b934ca495991b7852b855
SHA256 hex / PublicKey (DANE * 1 1):a14619a8b3c4fb86036010d5efd8d0bb27e441c12d143610072054f406f8c391
SHA256 hex / Subject Public Key Information (SPKI):a14619a8b3c4fb86036010d5efd8d0bb27e441c12d143610072054f406f8c391 (is buggy, ignore the result)
SPKI checked via https://v1.pwnedkeys.com/spki-hash:Check unknown. No result 404 / 200
OCSP - Url:http://zerossl.ocsp.sectigo.com
OCSP - must staple:no
Certificate Transparency:yes
Enhanced Key Usage:Serverauthentifizierung (1.3.6.1.5.5.7.3.1), Clientauthentifizierung (1.3.6.1.5.5.7.3.2)


3.
CN=ZeroSSL RSA Domain Secure Site CA, O=ZeroSSL, C=AT
30.01.2020
30.01.2030
expires in 2055 days


3.
CN=ZeroSSL RSA Domain Secure Site CA, O=ZeroSSL, C=AT
30.01.2020

30.01.2030
expires in 2055 days


KeyalgorithmRSA encryption (4096 bit)
Signatur:SHA384 With RSA Encryption
Serial Number:6C55ABDBD00792C79D070CD8119ED6BF
Thumbprint:C81A8BD1F9CF6D84C525F378CA1D3F8C30770E34
SHA256 / Certificate:IazB29aUT5rBjHgstcMo1sKCHGtjcx+juJh/ViXeig0=
SHA256 hex / Cert (DANE * 0 1):e3b0c44298fc1c149afbf4c8996fb92427ae41e4649b934ca495991b7852b855
SHA256 hex / PublicKey (DANE * 1 1):47785c30e006c34585cedb86dac913a1da07a7c20689ddd083adc29fb6146283
SHA256 hex / Subject Public Key Information (SPKI):47785c30e006c34585cedb86dac913a1da07a7c20689ddd083adc29fb6146283
SPKI checked via https://v1.pwnedkeys.com/spki-hash:Check unknown. No result 404 / 200
OCSP - Url:http://ocsp.usertrust.com
OCSP - must staple:no
Certificate Transparency:no
Enhanced Key Usage:Serverauthentifizierung (1.3.6.1.5.5.7.3.1), Clientauthentifizierung (1.3.6.1.5.5.7.3.2)


4.
CN=ZeroSSL RSA Domain Secure Site CA, O=ZeroSSL, C=AT
30.01.2020
30.01.2030
expires in 2055 days


4.
CN=ZeroSSL RSA Domain Secure Site CA, O=ZeroSSL, C=AT
30.01.2020

30.01.2030
expires in 2055 days


KeyalgorithmRSA encryption (4096 bit)
Signatur:SHA384 With RSA Encryption
Serial Number:6C55ABDBD00792C79D070CD8119ED6BF
Thumbprint:C81A8BD1F9CF6D84C525F378CA1D3F8C30770E34
SHA256 / Certificate:IazB29aUT5rBjHgstcMo1sKCHGtjcx+juJh/ViXeig0=
SHA256 hex / Cert (DANE * 0 1):e3b0c44298fc1c149afbf4c8996fb92427ae41e4649b934ca495991b7852b855
SHA256 hex / PublicKey (DANE * 1 1):47785c30e006c34585cedb86dac913a1da07a7c20689ddd083adc29fb6146283
SHA256 hex / Subject Public Key Information (SPKI):47785c30e006c34585cedb86dac913a1da07a7c20689ddd083adc29fb6146283
SPKI checked via https://v1.pwnedkeys.com/spki-hash:Check unknown. No result 404 / 200
OCSP - Url:http://ocsp.usertrust.com
OCSP - must staple:no
Certificate Transparency:no
Enhanced Key Usage:Serverauthentifizierung (1.3.6.1.5.5.7.3.1), Clientauthentifizierung (1.3.6.1.5.5.7.3.2)


5.
CN=USERTrust RSA Certification Authority, O=The USERTRUST Network, L=Jersey City, S=New Jersey, C=US
01.02.2010
19.01.2038
expires in 4966 days


5.
CN=USERTrust RSA Certification Authority, O=The USERTRUST Network, L=Jersey City, S=New Jersey, C=US
01.02.2010

19.01.2038
expires in 4966 days


KeyalgorithmRSA encryption (4096 bit)
Signatur:SHA384 With RSA Encryption
Serial Number:01FD6D30FCA3CA51A81BBC640E35032D
Thumbprint:2B8F1B57330DBBA2D07A6C51F70EE90DDAB9AD8E
SHA256 / Certificate:55PJsC/YqhPiHDEiisywgRlkO3SciYlksXRtRsPUy9I=
SHA256 hex / Cert (DANE * 0 1):e793c9b02fd8aa13e21c31228accb08119643b749c898964b1746d46c3d4cbd2
SHA256 hex / PublicKey (DANE * 1 1):c784333d20bcd742b9fdc3236f4e509b8937070e73067e254dd3bf9c45bf4dde
SHA256 hex / Subject Public Key Information (SPKI):c784333d20bcd742b9fdc3236f4e509b8937070e73067e254dd3bf9c45bf4dde
SPKI checked via https://v1.pwnedkeys.com/spki-hash:Good: Key isn't compromised
OCSP - Url:
OCSP - must staple:no
Certificate Transparency:no
Enhanced Key Usage:



6.
CN=USERTrust RSA Certification Authority, O=The USERTRUST Network, L=Jersey City, S=New Jersey, C=US
12.03.2019
01.01.2029
expires in 1661 days


6.
CN=USERTrust RSA Certification Authority, O=The USERTRUST Network, L=Jersey City, S=New Jersey, C=US
12.03.2019

01.01.2029
expires in 1661 days


KeyalgorithmRSA encryption (4096 bit)
Signatur:SHA384 With RSA Encryption
Serial Number:3972443AF922B751D7D36C10DD313595
Thumbprint:D89E3BD43D5D909B47A18977AA9D5CE36CEE184C
SHA256 / Certificate:aLnHYSGaWx8BMXhEdGZdthu9sQngDwXKn3QkTuX19Ss=
SHA256 hex / Cert (DANE * 0 1):e3b0c44298fc1c149afbf4c8996fb92427ae41e4649b934ca495991b7852b855
SHA256 hex / PublicKey (DANE * 1 1):c784333d20bcd742b9fdc3236f4e509b8937070e73067e254dd3bf9c45bf4dde
SHA256 hex / Subject Public Key Information (SPKI):c784333d20bcd742b9fdc3236f4e509b8937070e73067e254dd3bf9c45bf4dde
SPKI checked via https://v1.pwnedkeys.com/spki-hash:Good: Key isn't compromised
OCSP - Url:http://ocsp.comodoca.com
OCSP - must staple:no
Certificate Transparency:no
Enhanced Key Usage:


7.
CN=AAA Certificate Services, O=Comodo CA Limited, L=Salford, S=Greater Manchester, C=GB
01.01.2004
01.01.2029
expires in 1661 days


7.
CN=AAA Certificate Services, O=Comodo CA Limited, L=Salford, S=Greater Manchester, C=GB
01.01.2004

01.01.2029
expires in 1661 days


KeyalgorithmRSA encryption (2048 bit)
Signatur:SHA-1 with RSA Encryption
Serial Number:01
Thumbprint:D1EB23A46D17D68FD92564C2F1F1601764D8E349
SHA256 / Certificate:16eg+11+JzHXcelITrze9x1fDD4KKUh4K8g+4OppnvQ=
SHA256 hex / Cert (DANE * 0 1):e3b0c44298fc1c149afbf4c8996fb92427ae41e4649b934ca495991b7852b855
SHA256 hex / PublicKey (DANE * 1 1):bd153ed7b0434f6886b17bce8bbe84ed340c7132d702a8f4fa318f756ecbd6f3
SHA256 hex / Subject Public Key Information (SPKI):bd153ed7b0434f6886b17bce8bbe84ed340c7132d702a8f4fa318f756ecbd6f3
SPKI checked via https://v1.pwnedkeys.com/spki-hash:Good: Key isn't compromised
OCSP - Url:
OCSP - must staple:no
Certificate Transparency:no
Enhanced Key Usage:



10. Last Certificates - Certificate Transparency Log Check

1. Source CertSpotter - active certificates (one check per day)

Issuerlast 7 daysactivenum Certs
CN=R3, O=Let's Encrypt, C=US
0
0
1

CertSpotter-IdIssuernot beforenot afterDomain namesLE-Duplicatenext LE
5868095529
leaf cert
CN=R3, O=Let's Encrypt, C=US
2023-09-18 07:20:32
2023-12-17 07:20:31
map.vodaplay.vn - 1 entries



2. Source crt.sh - old and new certificates, sometimes very slow - only certificates with "not after" > of the last months are listed

No CRT - CT-Log entries found


11. Html-Content - Entries

Summary

Subresource Integrity (SRI)
DomainnameHtmlElementrel/property∑ size∑ problems∑ int.∑ ext.∑ Origin poss.∑ SRI ParseErrors∑ SRI valid∑ SRI missing
https://map.vodaplay.vn/
103.9.159.82
link
stylesheet
2
846,655 Bytes
0
2
0
0
0
0


link
other
1
931 Bytes
0
1
0
0
0
0


meta
other
3

0


0
0
0


script

2
5,272,721 Bytes
0
2
0
0
0
0

https://103.9.159.82/
103.9.159.82
link
stylesheet
2

0


0
0
0


link
other
1

0


0
0
0


meta
other
3

0


0
0
0


script

2

0


0
0
0

Details

DomainnameHtml-Elementname/equiv/ property/relhref/src/contentHttpStatusmsgStatus
https://map.vodaplay.vn/
103.9.159.82
link
icon
/logo-dark-64.jpg
200

1
ok
image/jpeg, missing X-Content-Type-Options nosniff

No Cache-Control header
No GZip - 931 Bytes






link
stylesheet
/css/app.d3ad9f56.css
200

1
ok
text/css, missing X-Content-Type-Options nosniff

No Cache-Control - header
GZip required: 625711 Bytes




local SRI possible, possible hash-values:

sha256-MYW8zfMvkMToowsq1qGGcxnZ2EXI3VV5lZSOze0jH7M=
sha384-dasf9JHxeBr71VnDdQla5/G90Im7XR+h05iJIawIavz/Z4OlDlFsdYnFqAttQB4q
sha512-K+0VW8jTsiNs4UureMry8RgO5R5Dwyf45vyJPOZQvGZoF6k3W53HD8cu6fBnUb1l2BS/doB6652x2f7AEdwOpg==

<link rel="stylesheet" href="/css/app.d3ad9f56.css" crossorigin="anonymous" integrity="sha256-MYW8zfMvkMToowsq1qGGcxnZ2EXI3VV5lZSOze0jH7M=" />



Content loaded via url("...")

/fonts/feather.1147c255.woff1
/fonts/feather.1dea63fc.ttf1
/fonts/feather.f744812f.eot1
/fonts/feather.f744812f.eot#iefix1
/fonts/Inter-Black.fe65acfa.ttf2
/fonts/Inter-Bold.1e3e4a31.ttf1
/fonts/Inter-ExtraBold.30e41037.ttf1
/fonts/Inter-ExtraLight.4a67ef74.ttf1
/fonts/Inter-Light.8be0a11c.ttf1
/fonts/Inter-Medium.04937818.ttf2
/fonts/Inter-Regular.8c0fe73b.ttf1
/fonts/Inter-SemiBold.48eaf57b.ttf1
/fonts/Inter-Thin.d2f40396.ttf1
/img/ad.5576df4a.svg1
/img/ad.e14f1f50.svg1
/img/ae.a3f5e295.svg1
/img/ae.f06e0095.svg1
/img/af.20ea756e.svg1
/img/af.f8c5688c.svg1
/img/ag.56074d55.svg1
/img/ag.bd68d21d.svg1
/img/ai.2c0ecab9.svg1
/img/ai.86ba962d.svg1
/img/al.1b7f2163.svg1
/img/al.5240a10e.svg1
/img/am.00f0fec4.svg1
/img/am.a566904f.svg1
/img/ao.1b6ed2ba.svg1
/img/ao.8be01490.svg1
/img/aq.1b45267a.svg1
/img/aq.c7feb8f9.svg1
/img/ar.696ca12a.svg1
/img/ar.fc5c5525.svg1
/img/as.2993e9da.svg1
/img/as.dff95d23.svg1
/img/at.accbe467.svg1
/img/at.e15c4cdb.svg1
/img/au.bc2d61a4.svg1
/img/au.ec12ffac.svg1
/img/aw.3e07b65b.svg1
/img/aw.be4540eb.svg1
/img/ax.086e5fcf.svg1
/img/ax.371c7af2.svg1
/img/az.0e2f1d1a.svg1
/img/az.f399f1c8.svg1
/img/ba.3f6618eb.svg1
/img/ba.e167b08f.svg1
/img/bb.58118176.svg1
/img/bb.d0fc0ef2.svg1
/img/bd.c1abcb00.svg1
/img/bd.c4a5f0e2.svg1
/img/be.29774a37.svg1
/img/be.3eb14701.svg1
/img/bf.2334e919.svg1
/img/bf.4ffd5dc6.svg1
/img/bg.700f100c.svg1
/img/bg.d0a49130.svg1
/img/bh.5cdf5c1f.svg1
/img/bh.9a82854f.svg1
/img/bi.66e6a532.svg1
/img/bi.ff06a9e1.svg1
/img/bj.115e4d17.svg1
/img/bj.2cdc8a62.svg1
/img/bl.04966866.svg1
/img/bl.3e69e968.svg1
/img/bm.4d7bee6e.svg1
/img/bm.83b92c29.svg1
/img/bn.12c1fd32.svg1
/img/bn.669aaf3e.svg1
/img/bo.02811b2d.svg1
/img/bo.55fcf4f2.svg1
/img/bq.747d8177.svg1
/img/bq.b9355bec.svg1
/img/br.9ad2f510.svg1
/img/br.b784321b.svg1
/img/bs.67818434.svg1
/img/bs.d228cbb2.svg1
/img/bt.6f279d92.svg1
/img/bt.f7afddbb.svg1
/img/bv.5503f03a.svg1
/img/bv.9451149b.svg1
/img/bw.494aae64.svg1
/img/bw.b767df8c.svg1
/img/by.78d2c3c9.svg1
/img/by.dfbc4b37.svg1
/img/bz.53431e5b.svg1
/img/bz.d3073e22.svg1
/img/ca.38c429b1.svg1
/img/ca.4d283c92.svg1
/img/cc.479adc28.svg1
/img/cc.efa85d0f.svg1
/img/cd.39186ec2.svg1
/img/cd.b4bd46ee.svg1
/img/cf.fd865aed.svg1
/img/cf.fe1120e9.svg1
/img/cg.00603842.svg1
/img/cg.ca26931c.svg1
/img/ch.7376c9c3.svg1
/img/ch.a558d859.svg1
/img/ci.1251a8e3.svg1
/img/ci.425a24c2.svg1
/img/ck.de9dd896.svg1
/img/ck.e28e7433.svg1
/img/cl.0917a91e.svg1
/img/cl.4f6a1054.svg1
/img/close.12eecf6d.svg1
/img/cm.253adb39.svg1
/img/cm.853e2843.svg1
/img/cn.38f63e1e.svg1
/img/cn.e1b166eb.svg1
/img/co.33e249d8.svg1
/img/co.b5cbc817.svg1
/img/cr.2e572846.svg1
/img/cr.336eb7d3.svg1
/img/cu.c2a6f0ed.svg1
/img/cu.d46932fd.svg1
/img/cv.91adb1bb.svg1
/img/cv.b3ab83f5.svg1
/img/cw.0dfbf85d.svg1
/img/cw.e08440d9.svg1
/img/cx.a53e82b9.svg1
/img/cx.bde605e6.svg1
/img/cy.bd42764a.svg1
/img/cy.d144d0ae.svg1
/img/cz.6fc4ebb6.svg1
/img/cz.b5311fe0.svg1
/img/de.8e159e6e.svg1
/img/de.b827ac51.svg1
/img/dj.1f62c3d0.svg1
/img/dj.925748d5.svg1
/img/dk.3ca1caed.svg1
/img/dk.a867eeef.svg1
/img/dm.0cb0a6f3.svg1
/img/dm.df21d4a6.svg1
/img/do.39c495d3.svg1
/img/do.f0cade30.svg1
/img/dz.17e0e982.svg1
/img/dz.1cb6653c.svg1
/img/ec.2cf4755b.svg1
/img/ec.465bce72.svg1
/img/ee.1b4839e0.svg1
/img/ee.828384a8.svg1
/img/eg.549e9c37.svg1
/img/eg.7b9e72bc.svg1
/img/eh.83e7d8cc.svg1
/img/eh.92308e59.svg1
/img/er.05673e27.svg1
/img/er.af6f683b.svg1
/img/es.12c37b39.svg1
/img/es.bc791f2a.svg1
/img/es-ca.835074dc.svg1
/img/es-ca.d96aea0f.svg1
/img/es-ga.0ce55816.svg1
/img/es-ga.e49e821c.svg1
/img/et.0678179d.svg1
/img/et.2c616624.svg1
/img/eu.4c6e130f.svg1
/img/eu.aba724b1.svg1
/img/feather.ab536e9b.svg#feather1
/img/fi.0cd85b78.svg1
/img/fi.3be6b378.svg1
/img/fj.a231e543.svg1
/img/fj.c6aadcc3.svg1
/img/fk.6fab309e.svg1
/img/fk.bcb65629.svg1
/img/fm.1f4697dc.svg1
/img/fm.3491efc7.svg1
/img/fo.1da81e3a.svg1
/img/fo.7dd37227.svg1
/img/fr.3565b8f4.svg1
/img/fr.9cb70285.svg1
/img/ga.3e474381.svg1
/img/ga.59f7d865.svg1
/img/gb.0cf3e220.svg1
/img/gb.2f66f858.svg1
/img/gb-eng.0fac6e79.svg1
/img/gb-eng.513dcf1b.svg1
/img/gb-nir.2817c5ce.svg1
/img/gb-nir.f6b7994e.svg1
/img/gb-sct.f5001e5d.svg1
/img/gb-sct.fee55173.svg1
/img/gb-wls.2098ae7d.svg1
/img/gb-wls.76a5e04a.svg1
/img/gd.e661f7d0.svg1
/img/gd.f34a367a.svg1
/img/ge.2dc4b149.svg1
/img/ge.7fc48187.svg1
/img/gf.833d7807.svg1
/img/gf.bdfab353.svg1
/img/gg.3aebc3ce.svg1
/img/gg.65174039.svg1
/img/gh.af443995.svg1
/img/gh.f2b6baac.svg1
/img/gi.3328c0de.svg1
/img/gi.9266f235.svg1
/img/gl.1b8674b4.svg1
/img/gl.d36042e5.svg1
/img/gm.1724dc37.svg1
/img/gm.961958c6.svg1
/img/gn.54a75b28.svg1
/img/gn.7c96520b.svg1
/img/gp.4327060f.svg1
/img/gp.f8adbf5c.svg1
/img/gq.844ebdb7.svg1
/img/gq.e64dde94.svg1
/img/gr.733e71ef.svg1
/img/gr.f4a57fe4.svg1
/img/gs.9eb71380.svg1
/img/gs.a0d69178.svg1
/img/gt.4bc2d94a.svg1
/img/gt.bf9eb235.svg1
/img/gu.d741ca4d.svg1
/img/gu.fdda59a7.svg1
/img/gw.bcd1eddb.svg1
/img/gw.c97f3f94.svg1
/img/gy.6327f72a.svg1
/img/gy.e11d0234.svg1
/img/hk.02a98ecd.svg1
/img/hk.5802bf66.svg1
/img/hm.4aa61657.svg1
/img/hm.d4b3d393.svg1
/img/hn.08ad78b2.svg1
/img/hn.44cee191.svg1
/img/hr.63638abc.svg1
/img/hr.ffef74f5.svg1
/img/ht.72107b1b.svg1
/img/ht.f40db214.svg1
/img/hu.692e97ca.svg1
/img/hu.b10d3f8e.svg1
/img/id.94464e47.svg1
/img/id.a05dc04c.svg1
/img/ie.5154112a.svg1
/img/ie.e23b25d1.svg1
/img/il.150f4c5f.svg1
/img/il.a9818d9a.svg1
/img/im.a02fb438.svg1
/img/im.c89cd9d9.svg1
/img/in.954929a0.svg1
/img/in.bd0d4f19.svg1
/img/io.7b80b2d9.svg1
/img/io.a74b51c2.svg1
/img/iq.0648abb6.svg1
/img/iq.ed368dbc.svg1
/img/ir.0dd84158.svg1
/img/ir.0fb1dee7.svg1
/img/is.300298b2.svg1
/img/is.eea59326.svg1
/img/it.039b4527.svg1
/img/it.e8516fc7.svg1
/img/je.84dfa80b.svg1
/img/je.b8236deb.svg1
/img/jm.2357530e.svg1
/img/jm.479f30fe.svg1
/img/jo.06fbaa2c.svg1
/img/jo.94be5e1a.svg1
/img/jp.4dd7c14c.svg1
/img/jp.b4cc4aac.svg1
/img/ke.100ca815.svg1
/img/ke.f7b4a827.svg1
/img/kg.77ce3156.svg1
/img/kg.bc57419c.svg1
/img/kh.45d67420.svg1
/img/kh.935aaffb.svg1
/img/ki.26a58544.svg1
/img/ki.2a833a74.svg1
/img/km.1cb7f429.svg1
/img/km.c52ee642.svg1
/img/kn.06f787f7.svg1
/img/kn.8f2e7b29.svg1
/img/kp.37cb54e5.svg1
/img/kp.f4ff9e76.svg1
/img/kr.4f322df7.svg1
/img/kr.c6084eb2.svg1
/img/kw.6ae8f515.svg1
/img/kw.830d3755.svg1
/img/ky.62968f59.svg1
/img/ky.8136c604.svg1
/img/kz.8c121af6.svg1
/img/kz.93b53f73.svg1
/img/la.27d2ef9c.svg1
/img/la.cd2c4d96.svg1
/img/lb.4e704021.svg1
/img/lb.594dcdff.svg1
/img/lc.25f644a6.svg1
/img/lc.68bd77ae.svg1
/img/li.39468dee.svg1
/img/li.3b369da5.svg1
/img/lk.117d988b.svg1
/img/lk.87516525.svg1
/img/lr.9a67cd3d.svg1
/img/lr.db169708.svg1
/img/ls.6d444cae.svg1
/img/ls.fe1da403.svg1
/img/lt.03a2e8c1.svg1
/img/lt.b57ea2a8.svg1
/img/lu.93878a1b.svg1
/img/lu.e3bdc6d3.svg1
/img/lv.1853e3a0.svg1
/img/lv.679c099e.svg1
/img/ly.3514ba71.svg1
/img/ly.8140565b.svg1
/img/ma.65053fc4.svg1
/img/ma.88ada30c.svg1
/img/mc.2c03ea5c.svg1
/img/mc.89b532e8.svg1
/img/md.194b4515.svg1
/img/md.2849ddda.svg1
/img/me.6c990a1b.svg1
/img/me.906eb32a.svg1
/img/mf.70d09a4a.svg1
/img/mf.7da6b3d2.svg1
/img/mg.09ca17b2.svg1
/img/mg.b3fff4a6.svg1
/img/mh.3fd69bb2.svg1
/img/mh.f6cbc774.svg1
/img/mk.4234a248.svg1
/img/mk.e5412079.svg1
/img/ml.3fad079e.svg1
/img/ml.4f0dba9e.svg1
/img/mm.8ac1f094.svg1
/img/mm.adaa2111.svg1
/img/mn.dbf95029.svg1
/img/mn.f0e24e64.svg1
/img/mo.e968db78.svg1
/img/mo.f0ba877c.svg1
/img/mp.54230bad.svg1
/img/mp.cc5a0383.svg1
/img/mq.145a7657.svg1
/img/mq.bb36a8fc.svg1
/img/mr.0638a321.svg1
/img/mr.e04fc275.svg1
/img/ms.20f47aa1.svg1
/img/ms.dd353e78.svg1
/img/mt.5b8a681d.svg1
/img/mt.f87123e8.svg1
/img/mu.51f71163.svg1
/img/mu.a926c232.svg1
/img/mv.2c8b92b5.svg1
/img/mv.ba4de4fd.svg1
/img/mw.504b2057.svg1
/img/mw.a029dd19.svg1
/img/mx.25ebdafa.svg1
/img/mx.35e1258d.svg1
/img/my.31ffc9b4.svg1
/img/my.dc71a393.svg1
/img/mz.ab827085.svg1
/img/mz.d2e9b437.svg1
/img/na.5c30ffd1.svg1
/img/na.68e9d7d9.svg1
/img/nc.99d18fad.svg1
/img/nc.bc505490.svg1
/img/ne.d11b82c6.svg1
/img/ne.d4fe4faa.svg1
/img/nf.49ae9f03.svg1
/img/nf.8b67bf9a.svg1
/img/ng.51059407.svg1
/img/ng.c3b42ad2.svg1
/img/ni.d2cac036.svg1
/img/ni.ed43abbe.svg1
/img/nl.f3e1ead4.svg1
/img/nl.fba31d90.svg1
/img/no.26996afa.svg1
/img/no.70157234.svg1
/img/np.2783c38f.svg1
/img/np.9c2b08c5.svg1
/img/nr.a4f0e762.svg1
/img/nr.e2ec24d3.svg1
/img/nu.a5573158.svg1
/img/nu.c92861a7.svg1
/img/nz.3ccca4d9.svg1
/img/nz.6070a96a.svg1
/img/om.72332fcc.svg1
/img/om.9e844357.svg1
/img/pa.8323d643.svg1
/img/pa.acde3214.svg1
/img/Path.84036e41.svg1
/img/pe.509d5146.svg1
/img/pe.53946121.svg1
/img/pf.2a0fd467.svg1
/img/pf.be64f1b2.svg1
/img/pg.628c8eb3.svg1
/img/pg.e32a86e7.svg1
/img/ph.08cc7be9.svg1
/img/ph.d789b105.svg1
/img/pk.e973f054.svg1
/img/pk.eede4fc2.svg1
/img/pl.03886843.svg1
/img/pl.a1350f0c.svg1
/img/pm.7a6beab5.svg1
/img/pm.a5590fa3.svg1
/img/pn.0be87c8b.svg1
/img/pn.80f21958.svg1
/img/pr.391a48e2.svg1
/img/pr.fd866f1a.svg1
/img/ps.1af72ed4.svg1
/img/ps.5c73b8de.svg1
/img/pt.0ca2af14.svg1
/img/pt.7e86f491.svg1
/img/pw.3dc91658.svg1
/img/pw.5dbe58dc.svg1
/img/py.44a41898.svg1
/img/py.89d9f4df.svg1
/img/qa.7e695788.svg1
/img/qa.86452d7a.svg1
/img/re.b8140129.svg1
/img/re.cf143c2f.svg1
/img/ro.67f8501e.svg1
/img/ro.cab93784.svg1
/img/rs.17286969.svg1
/img/rs.a6ac9306.svg1
/img/ru.ccd50623.svg1
/img/ru.edd8b008.svg1
/img/rw.87d5d899.svg1
/img/rw.d118aacd.svg1
/img/sa.88ca4f58.svg1
/img/sa.8ecd1f47.svg1
/img/sb.0145665b.svg1
/img/sb.b0db5b0a.svg1
/img/sc.0452f14c.svg1
/img/sc.876dfd81.svg1
/img/sd.a4df6550.svg1
/img/sd.da3b68ee.svg1
/img/se.6201479c.svg1
/img/se.ad5365b4.svg1
/img/select_arrow_list.3574839f.svg1
/img/sg.91451662.svg1
/img/sg.a6669b71.svg1
/img/sh.9feb92aa.svg1
/img/sh.d02fd971.svg1
/img/si.a0679b2a.svg1
/img/si.d7a66c18.svg1
/img/sj.638e6522.svg1
/img/sj.92c583b8.svg1
/img/sk.0f8a2c69.svg1
/img/sk.9bf006b8.svg1
/img/sl.d8378c47.svg1
/img/sl.eb9dda3f.svg1
/img/sm.45ff77ba.svg1
/img/sm.811830ac.svg1
/img/sn.4247b831.svg1
/img/sn.98923b55.svg1
/img/so.45f08b28.svg1
/img/so.b38d99d1.svg1
/img/sr.cb178d98.svg1
/img/sr.d66c1240.svg1
/img/ss.caedfdf2.svg1
/img/ss.db181f81.svg1
/img/st.a70042c6.svg1
/img/st.ecc4827f.svg1
/img/sv.bd56f93b.svg1
/img/sv.ed2df1e5.svg1
/img/sx.ce9f972f.svg1
/img/sx.ea71af90.svg1
/img/sy.2b3eac89.svg1
/img/sy.7fe894df.svg1
/img/sz.357b37f3.svg1
/img/sz.c33ab438.svg1
/img/tc.784c9310.svg1
/img/tc.cc6e8bcf.svg1
/img/td.5d622e26.svg1
/img/td.f1319408.svg1
/img/tf.27cbe00b.svg1
/img/tf.a1757237.svg1
/img/tg.009c22cd.svg1
/img/tg.d04f874c.svg1
/img/th.79b63a8a.svg1
/img/th.b8e24edb.svg1
/img/tj.34f1315b.svg1
/img/tj.4ad5838f.svg1
/img/tk.6c1f520c.svg1
/img/tk.f87f794b.svg1
/img/tl.83c9c0d5.svg1
/img/tl.ca9af3c0.svg1
/img/tm.01347f32.svg1
/img/tm.1d22c2a8.svg1
/img/tn.d0eb26d4.svg1
/img/tn.ee213b5b.svg1
/img/to.8dd22284.svg1
/img/to.9748a967.svg1
/img/tr.87e40d5c.svg1
/img/tr.fc8c91dd.svg1
/img/tt.46c29a5d.svg1
/img/tt.5a459e81.svg1
/img/tv.896fb56c.svg1
/img/tv.aaef420b.svg1
/img/tw.5e09d942.svg1
/img/tw.b2ab3f37.svg1
/img/tz.1abfbb38.svg1
/img/tz.9e416b4f.svg1
/img/ua.04fa0e67.svg1
/img/ua.63d75c84.svg1
/img/ug.20d6579c.svg1
/img/ug.725c15f6.svg1
/img/um.582dd57b.svg1
/img/um.d26fb572.svg1
/img/un.03e0f5a2.svg1
/img/un.d6bd4f1c.svg1
/img/us.6c459052.svg1
/img/us.99e04236.svg1
/img/uy.69cf8938.svg1
/img/uy.b70ac310.svg1
/img/uz.7f8823a2.svg1
/img/uz.d53abc35.svg1
/img/va.1a5d042d.svg1
/img/va.bf57048a.svg1
/img/vc.37cf5ba1.svg1
/img/vc.3e4ac6d4.svg1
/img/ve.4cd0e3ed.svg1
/img/ve.9cd63506.svg1
/img/vg.1da31aa8.svg1
/img/vg.6143eb72.svg1
/img/vi.372d16a7.svg1
/img/vi.47d7b8d2.svg1
/img/vn.11dd1cf6.svg1
/img/vn.f58e9ec9.svg1
/img/vu.17a9f0fe.svg1
/img/vu.639489ba.svg1
/img/wf.69c77016.svg1
/img/wf.9ca6f4bc.svg1
/img/ws.15c7a17c.svg1
/img/ws.d2e19e5a.svg1
/img/xk.71810259.svg1
/img/xk.f9301657.svg1
/img/ye.0b3f3c76.svg1
/img/ye.bb567731.svg1
/img/yt.332bd5d3.svg1
/img/yt.c33641ca.svg1
/img/za.03f16645.svg1
/img/za.2fa94205.svg1
/img/zm.496bf09a.svg1
/img/zm.9b68a5ec.svg1
/img/zw.35decae3.svg1
/img/zw.f6ed42a5.svg1
data:image/svg+xml;charset=utf-8,%3Csvg xmlns='http://www.w3.org/2000/svg' fill='%23fff' width='8' height='8'%3E%3Cpath d='m2.75 0-1.5 1.5L3.75 4l-2.5 2.5L2.75 8l4-4-4-4z'/%3E%3C/svg%3E1
data:image/svg+xml;charset=utf-8,%3Csvg xmlns='http://www.w3.org/2000/svg' fill='%23fff' width='8' height='8'%3E%3Cpath d='m5.25 0-4 4 4 4 1.5-1.5L4.25 4l2.5-2.5L5.25 0z'/%3E%3C/svg%3E1
data:image/svg+xml;charset=utf-8,%3Csvg xmlns='http://www.w3.org/2000/svg' width='12' height='12' fill='none' stroke='%23dc3545'%3E%3Ccircle cx='6' cy='6' r='4.5'/%3E%3Cpath stroke-linejoin='round' d='M5.8 3.6h.4L6 6.5z'/%3E%3Ccircle cx='6' cy='8.2' r='.6' fill='%23dc3545' stroke='none'/%3E%3C/svg%3E2
data:image/svg+xml;charset=utf-8,%3Csvg xmlns='http://www.w3.org/2000/svg' width='12' height='12' viewBox='-4 -4 8 8'%3E%3Ccircle r='3' fill='%23fff'/%3E%3C/svg%3E1
data:image/svg+xml;charset=utf-8,%3Csvg xmlns='http://www.w3.org/2000/svg' width='30' height='30'%3E%3Cpath stroke='rgba(0, 0, 0, 0.5)' stroke-linecap='round' stroke-miterlimit='10' stroke-width='2' d='M4 7h22M4 15h22M4 23h22'/%3E%3C/svg%3E1
data:image/svg+xml;charset=utf-8,%3Csvg xmlns='http://www.w3.org/2000/svg' width='30' height='30'%3E%3Cpath stroke='rgba(255, 255, 255, 0.5)' stroke-linecap='round' stroke-miterlimit='10' stroke-width='2' d='M4 7h22M4 15h22M4 23h22'/%3E%3C/svg%3E1
data:image/svg+xml;charset=utf-8,%3Csvg xmlns='http://www.w3.org/2000/svg' width='4' height='4'%3E%3Cpath stroke='%23fff' d='M0 2h4'/%3E%3C/svg%3E1
data:image/svg+xml;charset=utf-8,%3Csvg xmlns='http://www.w3.org/2000/svg' width='4' height='5'%3E%3Cpath fill='%23343a40' d='M2 0 0 2h4zm0 5L0 3h4z'/%3E%3C/svg%3E3
data:image/svg+xml;charset=utf-8,%3Csvg xmlns='http://www.w3.org/2000/svg' width='8' height='8'%3E%3Cpath fill='%2328a745' d='M2.3 6.73.6 4.53c-.4-1.04.46-1.4 1.1-.8l1.1 1.4 3.4-3.8c.6-.63 1.6-.27 1.2.7l-4 4.6c-.43.5-.8.4-1.1.1z'/%3E%3C/svg%3E2
data:image/svg+xml;charset=utf-8,%3Csvg xmlns='http://www.w3.org/2000/svg' width='8' height='8'%3E%3Cpath fill='%23fff' d='m6.564.75-3.59 3.612-1.538-1.55L0 4.26l2.974 2.99L8 2.193z'/%3E%3C/svg%3E1
https://fonts.googleapis.com/css?family=Merriweather+Sans1
https://fonts.googleapis.com/css?family=Overpass:300,400,600,700,800,900&display=swap1

link
stylesheet
/css/chunk-vendors.d8487ef5.css
200

1
ok
text/css, missing X-Content-Type-Options nosniff

No Cache-Control - header
GZip required: 220944 Bytes




local SRI possible, possible hash-values:

sha256-gzdj6/K7NOHRQWesLBhCNogfGNjHVZK/rGgX30H9cBU=
sha384-yfRYNOkCnWXokKlVYYJJstF2fXuybfiVV1QuPu6TivxVLYTCSWzYyfPiI8z9hm27
sha512-GOUNliDyqHI/zSP+IlkMw5uMFnfSQXHK4OJKktNENlmk3Eky6Qd4Pdp8NfxTh5nRh3LqbQs1R2KYXwuaLnWo+A==

<link rel="stylesheet" href="/css/chunk-vendors.d8487ef5.css" crossorigin="anonymous" integrity="sha256-gzdj6/K7NOHRQWesLBhCNogfGNjHVZK/rGgX30H9cBU=" />



Content loaded via url("...")

#default#VML1
/fonts/fa-brands-400.672e913f.woff23
/fonts/fa-brands-400.d67d1219.ttf3
/fonts/fa-regular-400.073940ed.ttf3
/fonts/fa-regular-400.c7c7429f.woff23
/fonts/fa-solid-900.c9f6e418.ttf3
/fonts/fa-solid-900.d5d28b78.woff23
/fonts/fa-v4compatibility.200e567a.ttf1
data:font/woff2;base64,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
data:image/png;base64,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1
data:image/png;base64,iVBORw0KGgoAAAANSUhEUgAAABoAAAAaCAQAAAADQ4RFAAACf0lEQVR4AY1UM3gkARTePdvdoTxXKc+qTl3aU5U6b2Kbkz3Gtq3Zw6ziLGNPzrYx7946Tr6/ee/XeCQ4D3ykPtL5tHno4n0d/h3+xfuWHGLX81cn7r0iTNzjr7LrlxCqPtkbTQEHeqOrTy4Yyt3VCi/IOB0v7rVC7q45Q3Gr5K6jt+3Gl5nCoDD4MtO+j96Wu8atmhGqcNGHObuf8OM/x3AMx38+4Z2sPqzCxRFK2aF2e5Jol56XTLyggAMTL56XOMoS1W4pOyjUcGGQdZxU6qRh7B9Zp+PfpOFlqt0zyDZckPi1ttmIp03jX8gyJ8a/PG2yutpS/Vol7peZIbZcKBAEEheEIAgFbDkz5H6Zrkm2hVWGiXKiF4Ycw0RWKdtC16Q7qe3X4iOMxruonzegJzWaXFrU9utOSsLUmrc0YjeWYjCW4PDMADElpJSSQ0vQvA1Tm6/JlKnqFs1EGyZiFCqnRZTEJJJiKRYzVYzJck2Rm6P4iH+cmSY0YzimYa8l0EtTODFWhcMIMVqdsI2uiTvKmTisIDHJ3od5GILVhBCarCfVRmo4uTjkhrhzkiBV7SsaqS+TzrzM1qpGGUFt28pIySQHR6h7F6KSwGWm97ay+Z+ZqMcEjEWebE7wxCSQwpkhJqoZA5ivCdZDjJepuJ9IQjGGUmuXJdBFUygxVqVsxFsLMbDe8ZbDYVCGKxs+W080max1hFCarCfV+C1KATwcnvE9gRRuMP2prdbWGowm1KB1y+zwMMENkM755cJ2yPDtqhTI6ED1M/82yIDtC/4j4BijjeObflpO9I9MwXTCsSX8jWAFeHr05WoLTJ5G8IQVS/7vwR6ohirYM7f6HzYpogfS3R2OAAAAAElFTkSuQmCC1
data:image/png;base64,iVBORw0KGgoAAAANSUhEUgAAADQAAAA0CAQAAABvcdNgAAAEsklEQVR4AWL4TydIhpZK1kpWOlg0w3ZXP6D2soBtG42jeI6ZmQTHzAxiTbSJsYLjO9HhP+WOmcuhciVnmHVQcJnp7DFvScowZorad/+V/fVzMdMT2g9Cv9guXGv/7pYOrXh2U+RRR3dSd9JRx6bIFc/ekqHI29JC6pJ5ZEh1yWkhkbcFeSjxgx3L2m1cb1C7bceyxA+CNjT/Ifff+/kDk2u/w/33/IeCMOSaWZ4glosqT3DNnNZQ7Cs58/3Ce5HL78iZH/vKVIaYlqzfdLu8Vi7dnvUbEza5Idt36tquZFldl6N5Z/POLof0XLK61mZCmJSWjVF9tEjUluu74IUXvgttuVIHE7YxSkaYhJZam7yiM9Pv82JYfl9nptxZaxMJE4YSPty+vF0+Y2up9d3wwijfjZbabqm/3bZ9ecKHsiGmRflnn1MW4pjHf9oLufyn2z3y1D6n8g8TZhxyzipLNPnAUpsOiuWimg52psrTZYnOWYNDTMuWBWa0tJb4rgq1UvmutpaYEbZlwU3CLJm/ayYjHW5/h7xWLn9Hh1vepDkyf7dE7MtT5LR4e7yYpHrkhOUpEfssBLq2pPhAqoSWKUkk7EDqkmK6RrCEzqDjhNDWNE+XSMvkJRDWlZTmCW0l0PHQGRZY5t1L83kT0Y3l2SItk5JAWHl2dCOBm+fPu3fo5/3v61RMCO9Jx2EEYYhb0rmNQMX/vm7gqOEJLcXTGw3CAuRNeyaPWwjR8PRqKQ1PDA/dpv+on9Shox52WFnx0KY8onHayrJzm87i5h9xGw/tfkev0jGsQizqezUKjk12hBMKJ4kbCqGPVNXudyyrShovGw5CgxsRICxF6aRmSjlBnHRzg7Gx8fKqEubI2rahQYdR1YgDIRQO7JvQyD52hoIQx0mxa0ODtW2Iozn1le2iIRdzwWewedyZzewidueOGqlsn1MvcnQpuVwLGG3/IR1hIKxCjelIDZ8ldqWz25jWAsnldEnK0Zxro19TGVb2ffIZEsIO89EIEDvKMPrzmBOQcKQ+rroye6NgRRxqR4U8EAkz0CL6uSGOm6KQCdWjvjRiSP1BPalCRS5iQYiEIvxuBMJEWgzSoHADcVMuN7IuqqTeyUPq22qFimFtxDyBBJEwNyt6TM88blFHao/6tWWhuuOM4SAK4EI4QmFHA+SEyWlp4EQoJ13cYGzMu7yszEIBOm2rVmHUNqwAIQabISNMRstmdhNWcFLsSm+0tjJH1MdRxO5Nx0WDMhCtgD6OKgZeljJqJKc9po8juskR9XN0Y1lZ3mWjLR9JCO1jRDMd0fpYC2VnvjBSEFg7wBENc0R9HFlb0xvF1+TBEpF68d+DHR6IOWVv2BECtxo46hOFUBd/APU57WIoEwJhIi2CdpyZX0m93BZicktMj1AS9dClteUFAUNUIEygRZCtik5zSxI9MubTBH1GOiHsiLJ3OCoSZkILa9PxiN0EbvhsAo8tdAf9Seepd36lGWHmtNANTv5Jd0z4QYyeo/UEJqxKRpg5LZx6btLPsOaEmdMyxYdlc8LMaJnikDlhclqmPiQnTEpLUIZEwkRagjYkEibQErwhkTAKCLQEbUgkzJQWc/0PstHHcfEdQ+UAAAAASUVORK5CYII=1
data:image/svg+xml;charset=utf-8,%3Csvg xmlns='http://www.w3.org/2000/svg' width='101' height='101' preserveAspectRatio='none'%3E%3Cpath d='m51 1 25 23 24 22H1l25-22z'/%3E%3Cpath opacity='.3' d='m51 101 25-23 24-22H1l25 22z'/%3E%3C/svg%3E1
data:image/svg+xml;charset=utf-8,%3Csvg xmlns='http://www.w3.org/2000/svg' width='101' height='101' preserveAspectRatio='none'%3E%3Cpath fill='%23fff' d='m51 1 25 23 24 22H1l25-22z'/%3E%3Cpath fill='%23fff' opacity='.3' d='m51 101 25-23 24-22H1l25 22z'/%3E%3C/svg%3E2
data:image/svg+xml;charset=utf-8,%3Csvg xmlns='http://www.w3.org/2000/svg' width='101' height='101' preserveAspectRatio='none'%3E%3Cpath fill='%23fff' opacity='.3' d='m51 1 25 23 24 22H1l25-22z'/%3E%3Cpath fill='%23fff' d='m51 101 25-23 24-22H1l25 22z'/%3E%3C/svg%3E2
data:image/svg+xml;charset=utf-8,%3Csvg xmlns='http://www.w3.org/2000/svg' width='101' height='101' preserveAspectRatio='none'%3E%3Cpath fill='%23fff' opacity='.3' d='m51 1 25 23 24 22H1l25-22zm0 100 25-23 24-22H1l25 22z'/%3E%3C/svg%3E2
data:image/svg+xml;charset=utf-8,%3Csvg xmlns='http://www.w3.org/2000/svg' width='101' height='101' preserveAspectRatio='none'%3E%3Cpath opacity='.3' d='m51 1 25 23 24 22H1l25-22z'/%3E%3Cpath d='m51 101 25-23 24-22H1l25 22z'/%3E%3C/svg%3E1
data:image/svg+xml;charset=utf-8,%3Csvg xmlns='http://www.w3.org/2000/svg' width='101' height='101' preserveAspectRatio='none'%3E%3Cpath opacity='.3' d='m51 1 25 23 24 22H1l25-22zm0 100 25-23 24-22H1l25 22z'/%3E%3C/svg%3E1
https://unpkg.com/emoji-datasource-apple@5.0.1/img/apple/sheets-256/64.png1
https://unpkg.com/emoji-datasource-facebook@5.0.1/img/facebook/sheets-256/64.png1
https://unpkg.com/emoji-datasource-google@5.0.1/img/google/sheets-256/64.png1
https://unpkg.com/emoji-datasource-twitter@5.0.1/img/twitter/sheets-256/64.png1

meta

utf-8


1
ok








meta
X-UA-Compatible
IE=edge


1
ok








meta
viewport
width=device-width,initial-scale=1


1
ok








script
src
/js/app.ef1f0547.js
200

1
ok
defer attribute found application/javascript, missing X-Content-Type-Options nosniff

No Cache-Control - header
GZip required: 474764 Bytes




local SRI possible, possible hash-values:

sha256-iqrrLC5rCDW+S/1qMLA/p81axdYrdx0J/HXybiL7A/A=
sha384-z0bUXueJL4WqXer4gGJ0cjpHrMbLrhZPwHpZp+UST3a18PHaxH4XlBkQHxKGjrWd
sha512-55FQtJnxC7Ud5JJfEO3qkef6hKfuY7EfJr+ZpPLOIIirJEKVcHAzEMMTf9hzkwgiXGs4wS8DBmFjbrdU+rg2MQ==

<script src="/js/app.ef1f0547.js" crossorigin="anonymous" integrity="sha256-iqrrLC5rCDW+S/1qMLA/p81axdYrdx0J/HXybiL7A/A=" />




script
src
/js/chunk-vendors.9548b1d3.js
200

1
ok
defer attribute found application/javascript, missing X-Content-Type-Options nosniff

No Cache-Control - header
GZip required: 4797957 Bytes




local SRI possible, possible hash-values:

sha256-96KcJsBy12slGZUO0aOJVOcmlIR87hs7InDk7rPGNSU=
sha384-EAWJyma1SG4VtJWM6Sgh347XTxwO9KsFNtlwKO/+xY1u87ULMs5UUbtrZV2V6ZWB
sha512-Z/FmUaihQWlDE3lGklwrcRSJgFRxNZg9HySNaZrZvnmEeS4ut0LZoGtYl8QXGZnaw4xpRLvPThKg134UGgV1Ww==

<script src="/js/chunk-vendors.9548b1d3.js" crossorigin="anonymous" integrity="sha256-96KcJsBy12slGZUO0aOJVOcmlIR87hs7InDk7rPGNSU=" />



https://103.9.159.82/
103.9.159.82
link
icon
/logo-dark-64.jpg


1
ok








link
stylesheet
/css/app.d3ad9f56.css


1
ok








link
stylesheet
/css/chunk-vendors.d8487ef5.css


1
ok








meta

utf-8


1
ok








meta
X-UA-Compatible
IE=edge


1
ok








meta
viewport
width=device-width,initial-scale=1


1
ok








script
src
/js/app.ef1f0547.js


1
ok
defer attribute found








script
src
/js/chunk-vendors.9548b1d3.js


1
ok
defer attribute found








12. Nameserver - IP-Adresses

Required Root-climbing DNS-Queries to find ip addresses of all Name Servers: ns1.vnso.vn, ns1.zonedns.vn, ns2.vnso.vn, ns2.zonedns.vn, ns3.zonedns.vn, ns4.zonedns.vn

QNr.DomainTypeNS used
1
vn
NS
d.root-servers.net (2001:500:2d::d)

Answer: a.dns-servers.vn, b.dns-servers.vn, c.dns-servers.vn, d.dns-servers.vn, e.dns-servers.vn, f.dns-servers.vn, g.dns-servers.vn, h.dns-servers.vn
2
ns1.vnso.vn
NS
a.dns-servers.vn (2001:678:4::12)

Answer: ivan.ns.cloudflare.com, maya.ns.cloudflare.com
3
ns1.zonedns.vn
NS
a.dns-servers.vn (2001:678:4::12)

Answer: ns2001.zonedns.vn, ns2002.zonedns.vn, nsbk.zonedns.vn

Answer: ns2001.zonedns.vn
103.28.36.27

Answer: ns2002.zonedns.vn
103.28.36.26

Answer: nsbk.zonedns.vn
103.176.178.21
4
ns2.vnso.vn
NS
a.dns-servers.vn (2001:678:4::12)

Answer: ivan.ns.cloudflare.com, maya.ns.cloudflare.com
5
ns2.zonedns.vn
NS
a.dns-servers.vn (2001:678:4::12)

Answer: ns2001.zonedns.vn, ns2002.zonedns.vn, nsbk.zonedns.vn

Answer: ns2001.zonedns.vn
103.28.36.27

Answer: ns2002.zonedns.vn
103.28.36.26

Answer: nsbk.zonedns.vn
103.176.178.21
6
ns3.zonedns.vn
NS
a.dns-servers.vn (2001:678:4::12)

Answer: ns2001.zonedns.vn, ns2002.zonedns.vn, nsbk.zonedns.vn

Answer: ns2001.zonedns.vn
103.28.36.27

Answer: ns2002.zonedns.vn
103.28.36.26

Answer: nsbk.zonedns.vn
103.176.178.21
7
ns4.zonedns.vn
NS
a.dns-servers.vn (2001:678:4::12)

Answer: ns2001.zonedns.vn, ns2002.zonedns.vn, nsbk.zonedns.vn

Answer: ns2001.zonedns.vn
103.28.36.27

Answer: ns2002.zonedns.vn
103.28.36.26

Answer: nsbk.zonedns.vn
103.176.178.21
8
com
NS
h.root-servers.net (2001:500:1::53)

Answer: a.gtld-servers.net, b.gtld-servers.net, c.gtld-servers.net, d.gtld-servers.net, e.gtld-servers.net, f.gtld-servers.net, g.gtld-servers.net, h.gtld-servers.net, i.gtld-servers.net, j.gtld-servers.net, k.gtld-servers.net, l.gtld-servers.net, m.gtld-servers.net
9
ivan.ns.cloudflare.com
NS
a.gtld-servers.net (2001:503:a83e::2:30)

Answer: ns3.cloudflare.com, ns4.cloudflare.com, ns5.cloudflare.com, ns6.cloudflare.com, ns7.cloudflare.com

Answer: ns3.cloudflare.com
162.159.0.33, 162.159.7.226, 2400:cb00:2049:1::a29f:21, 2400:cb00:2049:1::a29f:7e2

Answer: ns4.cloudflare.com
162.159.1.33, 162.159.8.55, 2400:cb00:2049:1::a29f:121, 2400:cb00:2049:1::a29f:837

Answer: ns5.cloudflare.com
162.159.2.9, 162.159.9.55, 2400:cb00:2049:1::a29f:209, 2400:cb00:2049:1::a29f:937

Answer: ns6.cloudflare.com
162.159.3.11, 162.159.5.6, 2400:cb00:2049:1::a29f:30b, 2400:cb00:2049:1::a29f:506

Answer: ns7.cloudflare.com
162.159.4.8
10
maya.ns.cloudflare.com
NS
a.gtld-servers.net (2001:503:a83e::2:30)

Answer: ns3.cloudflare.com, ns4.cloudflare.com, ns5.cloudflare.com, ns6.cloudflare.com, ns7.cloudflare.com

Answer: ns3.cloudflare.com
162.159.0.33, 162.159.7.226, 2400:cb00:2049:1::a29f:21, 2400:cb00:2049:1::a29f:7e2

Answer: ns4.cloudflare.com
162.159.1.33, 162.159.8.55, 2400:cb00:2049:1::a29f:121, 2400:cb00:2049:1::a29f:837

Answer: ns5.cloudflare.com
162.159.2.9, 162.159.9.55, 2400:cb00:2049:1::a29f:209, 2400:cb00:2049:1::a29f:937

Answer: ns6.cloudflare.com
162.159.3.11, 162.159.5.6, 2400:cb00:2049:1::a29f:30b, 2400:cb00:2049:1::a29f:506

Answer: ns7.cloudflare.com
162.159.4.8
11
ivan.ns.cloudflare.com: 108.162.193.120, 172.64.33.120, 173.245.59.120
A
ns3.cloudflare.com (2400:cb00:2049:1::a29f:21)
12
ivan.ns.cloudflare.com: 2606:4700:58::adf5:3b78, 2803:f800:50::6ca2:c178, 2a06:98c1:50::ac40:2178
AAAA
ns3.cloudflare.com (2400:cb00:2049:1::a29f:21)
13
maya.ns.cloudflare.com: 108.162.192.194, 172.64.32.194, 173.245.58.194
A
ns3.cloudflare.com (2400:cb00:2049:1::a29f:21)
14
maya.ns.cloudflare.com: 2606:4700:50::adf5:3ac2, 2803:f800:50::6ca2:c0c2, 2a06:98c1:50::ac40:20c2
AAAA
ns3.cloudflare.com (2400:cb00:2049:1::a29f:21)
15
ns1.vnso.vn: 103.9.156.250
A
ivan.ns.cloudflare.com (2a06:98c1:50::ac40:2178)
16
ns1.vnso.vn: No AAAA record found
AAAA
ivan.ns.cloudflare.com (2a06:98c1:50::ac40:2178)
17
ns1.zonedns.vn: 125.212.225.141
A
ns2001.zonedns.vn (103.28.36.27)
18
ns1.zonedns.vn: 2401:5f80:2001:5::a
AAAA
ns2001.zonedns.vn (103.28.36.27)
19
ns2.vnso.vn: 103.98.152.209
A
ivan.ns.cloudflare.com (2a06:98c1:50::ac40:2178)
20
ns2.vnso.vn: No AAAA record found
AAAA
ivan.ns.cloudflare.com (2a06:98c1:50::ac40:2178)
21
ns2.zonedns.vn: 103.176.178.51
A
ns2001.zonedns.vn (103.28.36.27)
22
ns2.zonedns.vn: 2401:5f80:2001:5::a
AAAA
ns2001.zonedns.vn (103.28.36.27)
23
ns3.zonedns.vn: 103.28.36.30
A
ns2001.zonedns.vn (103.28.36.27)
24
ns3.zonedns.vn: 2001:df1:3200::15
AAAA
ns2001.zonedns.vn (103.28.36.27)
25
ns4.zonedns.vn: 103.28.39.159
A
ns2001.zonedns.vn (103.28.36.27)
26
ns4.zonedns.vn: 2001:df1:3200::15
AAAA
ns2001.zonedns.vn (103.28.36.27)


13. CAA - Entries

DomainnameflagNameValue∑ Queries∑ Timeout
vodaplay.vn
-5

Refused - The name server refuses to perform the specified operation for policy reasons
1
0
vn
0

no CAA entry found
1
0


14. TXT - Entries

DomainnameTXT EntryStatus∑ Queries∑ Timeout
vodaplay.vn

Refused - The name server refuses to perform the specified operation for policy reasons
1
0
_acme-challenge.map.vodaplay.vn.vodaplay.vn

Refused - The name server refuses to perform the specified operation for policy reasons
1
0


15. DomainService - Entries

No DomainServiceEntries entries found



16. Cipher Suites

No results


17. Portchecks

No open Ports <> 80 / 443 found, so no additional Ports checked.



Permalink: https://check-your-website.server-daten.de/?i=8a5eebc2-b2c8-484f-b85e-6844d383f543


Last Result: https://check-your-website.server-daten.de/?q=map.vodaplay.vn - 2023-09-18 10:34:57


Do you like this page? Support this tool, add a link on your page:

<a href="https://check-your-website.server-daten.de/?q=map.vodaplay.vn" target="_blank">Check this Site: map.vodaplay.vn</a>

Do you really want to support this project? Donate: Check-your-website, IBAN DE98 1001 0010 0575 2211 07, SWIFT/BIC PBNKDEFF, Euro