Check DNS, Urls + Redirects, Certificates and Content of your Website




X

DNS-problem - authoritative Nameserver refused, not defined or timeout

Checked:
23.06.2022 12:31:15


Older results

No older results found


1. IP-Addresses

HostTypeIP-Addressis auth.∑ Queries∑ Timeout
market.diana-enterprise.com
A
18.133.60.229
London/England/United Kingdom (GB) - Amazon Technologies Inc.
Hostname: cpanel-014-lon.hostingww.com
yes
1
0

AAAA

yes


www.market.diana-enterprise.com

Name Error
yes
1
0
*.diana-enterprise.com
A
Name Error
yes



AAAA
Name Error
yes



CNAME
Name Error
yes


*.market.diana-enterprise.com
A
Name Error
yes



AAAA
Name Error
yes



CNAME
Name Error
yes



2. DNSSEC

Zone (*)DNSSEC - Informations

Zone: (root)
(root)
1 DS RR published



DS with Algorithm 8, KeyTag 20326, DigestType 2 and Digest 4G1EuAuPHTmpXAsNfGXQhFjogECbvGg0VxBCN8f47I0=



Status: Valid because published



3 DNSKEY RR found



Public Key with Algorithm 8, KeyTag 20326, Flags 257 (SEP = Secure Entry Point)



Public Key with Algorithm 8, KeyTag 20826, Flags 256



Public Key with Algorithm 8, KeyTag 47671, Flags 256



1 RRSIG RR to validate DNSKEY RR found



RRSIG-Owner (root), Algorithm: 8, 0 Labels, original TTL: 172800 sec, Signature-expiration: 11.07.2022, 00:00:00 +, Signature-Inception: 20.06.2022, 00:00:00 +, KeyTag 20326, Signer-Name: (root)



Status: Good - Algorithmus 8 and DNSKEY with KeyTag 20326 used to validate the DNSKEY RRSet



Status: Valid Chain of trust. Parent-DS with Algorithm 8, KeyTag 20326, DigestType 2 and Digest "4G1EuAuPHTmpXAsNfGXQhFjogECbvGg0VxBCN8f47I0=" validates local Key with the same values, Key ist Secure Entry Point (SEP) of the zone

Zone: com
com
1 DS RR in the parent zone found



DS with Algorithm 8, KeyTag 30909, DigestType 2 and Digest 4tPJFvbe6scylOgmj7WIUESoM/xUWViPSpGEz8QaV2Y=



1 RRSIG RR to validate DS RR found



RRSIG-Owner com., Algorithm: 8, 1 Labels, original TTL: 86400 sec, Signature-expiration: 06.07.2022, 05:00:00 +, Signature-Inception: 23.06.2022, 04:00:00 +, KeyTag 47671, Signer-Name: (root)



Status: Good - Algorithmus 8 and DNSKEY with KeyTag 47671 used to validate the DS RRSet in the parent zone



2 DNSKEY RR found



Public Key with Algorithm 8, KeyTag 30909, Flags 257 (SEP = Secure Entry Point)



Public Key with Algorithm 8, KeyTag 37269, Flags 256



1 RRSIG RR to validate DNSKEY RR found



RRSIG-Owner com., Algorithm: 8, 1 Labels, original TTL: 86400 sec, Signature-expiration: 29.06.2022, 18:24:21 +, Signature-Inception: 14.06.2022, 18:19:21 +, KeyTag 30909, Signer-Name: com



Status: Good - Algorithmus 8 and DNSKEY with KeyTag 30909 used to validate the DNSKEY RRSet



Status: Valid Chain of trust. Parent-DS with Algorithm 8, KeyTag 30909, DigestType 2 and Digest "4tPJFvbe6scylOgmj7WIUESoM/xUWViPSpGEz8QaV2Y=" validates local Key with the same values, Key ist Secure Entry Point (SEP) of the zone

Zone: diana-enterprise.com
diana-enterprise.com
0 DS RR in the parent zone found



DS-Query in the parent zone has a valid NSEC3 RR as result with the hashed query name "eb507eo5a4e84mt38ssm9kmkava2nhup" between the hashed NSEC3-owner "eb505fu5ak0dl0g6ila8qj66gcjrohh1" and the hashed NextOwner "eb50l7b55cogkjb2s8j1741ra4bon2o1". So the parent zone confirmes the not-existence of a DS RR.
Bitmap: NS, DS, RRSIG Validated: RRSIG-Owner eb505fu5ak0dl0g6ila8qj66gcjrohh1.com., Algorithm: 8, 2 Labels, original TTL: 86400 sec, Signature-expiration: 28.06.2022, 05:19:39 +, Signature-Inception: 21.06.2022, 04:09:39 +, KeyTag 37269, Signer-Name: com



DS-Query in the parent zone sends valid NSEC3 RR with the Hash "ck0pojmg874ljref7efn8430qvit8bsm" as Owner. That's the Hash of "com" with the NextHashedOwnerName "ck0q2d6ni4i7eqh8na30ns61o48ul8g5". So that domain name is the Closest Encloser of "diana-enterprise.com". Opt-Out: True.
Bitmap: NS, SOA, RRSIG, DNSKEY, NSEC3PARAM Validated: RRSIG-Owner ck0pojmg874ljref7efn8430qvit8bsm.com., Algorithm: 8, 2 Labels, original TTL: 86400 sec, Signature-expiration: 28.06.2022, 04:24:03 +, Signature-Inception: 21.06.2022, 03:14:03 +, KeyTag 37269, Signer-Name: com



0 DNSKEY RR found




Zone: market.diana-enterprise.com
market.diana-enterprise.com
0 DS RR in the parent zone found



0 DNSKEY RR found




Zone: www.market.diana-enterprise.com
www.market.diana-enterprise.com
0 DS RR in the parent zone found


3. Name Servers

DomainNameserverNS-IP
www.market.diana-enterprise.com
  ns1.hostingww.com

market.diana-enterprise.com
  ns1.hostingww.com

diana-enterprise.com
  ns1.hostingww.com / de-01.instradns.com
75.2.6.34
Seattle/Washington/United States (US) - Amazon.com, Inc.


  ns1.onlydomains.com / de-01.instradns.com
75.2.6.34
Seattle/Washington/United States (US) - Amazon.com, Inc.


  ns2.hostingww.com / de-01.instradns.com
75.2.85.37
Seattle/Washington/United States (US) - Amazon.com, Inc.


  ns2.onlydomains.com / de-01.instradns.com
75.2.85.37
Seattle/Washington/United States (US) - Amazon.com, Inc.


  ns3.hostingww.com / de-01.instradns.com
99.83.188.20
Seattle/Washington/United States (US) - Amazon.com, Inc.


  ns3.onlydomains.com / de-01.instradns.com
99.83.188.20
Seattle/Washington/United States (US) - Amazon.com, Inc.

com
  a.gtld-servers.net / nnn1-stk4


  b.gtld-servers.net / nnn1-elpar7


  c.gtld-servers.net / nnn1-stk4


  d.gtld-servers.net / nnn1-stk4


  e.gtld-servers.net / nnn1-stk4


  f.gtld-servers.net / nnn1-wie1


  g.gtld-servers.net / nnn1-wie5


  h.gtld-servers.net / nnn1-wie1


  i.gtld-servers.net / nnn1-ham5


  j.gtld-servers.net / nnn1-lon5


  k.gtld-servers.net / nnn1-lon5


  l.gtld-servers.net / nnn1-lon5


  m.gtld-servers.net / nnn1-lon5


4. SOA-Entries


Domain:com
Zone-Name:com
Primary:a.gtld-servers.net
Mail:nstld.verisign-grs.com
Serial:1655980240
Refresh:1800
Retry:900
Expire:604800
TTL:86400
num Entries:1


Domain:com
Zone-Name:com
Primary:a.gtld-servers.net
Mail:nstld.verisign-grs.com
Serial:1655980240
Refresh:1800
Retry:900
Expire:604800
TTL:86400
num Entries:1


Domain:com
Zone-Name:com
Primary:a.gtld-servers.net
Mail:nstld.verisign-grs.com
Serial:1655980255
Refresh:1800
Retry:900
Expire:604800
TTL:86400
num Entries:9


Domain:com
Zone-Name:com
Primary:a.gtld-servers.net
Mail:nstld.verisign-grs.com
Serial:1655980255
Refresh:1800
Retry:900
Expire:604800
TTL:86400
num Entries:9


Domain:com
Zone-Name:com
Primary:a.gtld-servers.net
Mail:nstld.verisign-grs.com
Serial:1655980270
Refresh:1800
Retry:900
Expire:604800
TTL:86400
num Entries:3


Domain:com
Zone-Name:com
Primary:a.gtld-servers.net
Mail:nstld.verisign-grs.com
Serial:1655980270
Refresh:1800
Retry:900
Expire:604800
TTL:86400
num Entries:3


Domain:diana-enterprise.com
Zone-Name:diana-enterprise.com
Primary:ns1.hostingww.com
Mail:root.hostingww.com
Serial:2021122901
Refresh:28800
Retry:7200
Expire:604800
TTL:86400
num Entries:6


Domain:market.diana-enterprise.com
Zone-Name:
Primary:
Mail:
Serial:
Refresh:
Retry:
Expire:
TTL:
num Entries:1


Domain:www.market.diana-enterprise.com
Zone-Name:
Primary:
Mail:
Serial:
Refresh:
Retry:
Expire:
TTL:
num Entries:1


5. Screenshots

Startaddress: https://market.diana-enterprise.com, address used: https://market.diana-enterprise.com/, Screenshot created 2022-06-23 12:33:00 +00:0 url is insecure, certificate invalid

Mobil (412px x 732px)

282 milliseconds

Screenshot mobile - https://market.diana-enterprise.com/
Mobil + Landscape (732px x 412px)

259 milliseconds

Screenshot mobile landscape - https://market.diana-enterprise.com/
Screen (1280px x 1680px)

458 milliseconds

Screenshot Desktop - https://market.diana-enterprise.com/

Mobile- and other Chrome-Checks

widthheight
visual Viewport396732
content Size3963078

Good: No horizontal scrollbar. Content-size width = visual Viewport width.

6. Url-Checks


:

:
DomainnameHttp-StatusredirectSec.G
• http://market.diana-enterprise.com/
18.133.60.229 GZip used - 5271 / 21230 - 75.17 %
200

Html is minified: 109.90 %
0.160

Connection: close
x-powered-by: PHP/7.4.29
set-cookie: ceid=438cdd0052741886c34a38bec606c676; path=/; domain=market.diana-enterprise.com; secure; SameSite=Lax
expires: Thu, 19 Nov 1981 08:52:00 GMT
cache-control: no-store, no-cache, must-revalidate
pragma: no-cache
content-type: text/html; charset=UTF-8
transfer-encoding: chunked
content-encoding: gzip
vary: Accept-Encoding
date: Thu, 23 Jun 2022 10:31:56 GMT
server: LiteSpeed

• https://market.diana-enterprise.com/
18.133.60.229 GZip used - 5303 / 21200 - 74.99 %
Inline-JavaScript (∑/total): 4/143 Inline-CSS (∑/total): 1/433
200

Html is minified: 109.92 %
2.383
N
Certificate error: RemoteCertificateChainErrors
Connection: close
x-powered-by: PHP/7.4.29
set-cookie: ceid=f746e9a795143e9d3a26757120226e4c; path=/; domain=market.diana-enterprise.com; secure; SameSite=Lax
expires: Thu, 19 Nov 1981 08:52:00 GMT
cache-control: no-store, no-cache, must-revalidate
pragma: no-cache
content-type: text/html; charset=UTF-8
transfer-encoding: chunked
content-encoding: gzip
vary: Accept-Encoding
date: Thu, 23 Jun 2022 10:31:56 GMT
server: LiteSpeed
alt-svc: h3=":443"; ma=2592000, h3-29=":443"; ma=2592000, h3-Q050=":443"; ma=2592000, h3-Q046=":443"; ma=2592000, h3-Q043=":443"; ma=2592000, quic=":443"; ma=2592000; v="43,46"

• http://market.diana-enterprise.com/.well-known/acme-challenge/check-your-website-dot-server-daten-dot-de
18.133.60.229
Inline-JavaScript (∑/total): 0/0 Inline-CSS (∑/total): 0/0
404

Html is minified: 101.39 %
0.056
A
Not Found
Visible Content: 404 Not Found The resource requested could not be found on this server! Proudly powered by LiteSpeed Web Server Please be advised that LiteSpeed Technologies Inc. is not a web hosting company and, as such, has no control over content found on this site.
Connection: close
cache-control: private, no-cache, no-store, must-revalidate, max-age=0
pragma: no-cache
content-type: text/html
content-length: 1238
date: Thu, 23 Jun 2022 10:32:00 GMT
server: LiteSpeed

• https://18.133.60.229/
18.133.60.229 GZip used - 627 / 1258 - 50.16 %
Inline-JavaScript (∑/total): 3/56 Inline-CSS (∑/total): 0/0
200

Html is minified: 106.43 %
2.403
N
Certificate error: RemoteCertificateNameMismatch, RemoteCertificateChainErrors
small visible content (num chars: 126)
Index of / Name Last Modified Size cgi-bin 2013-02-17 22:09 - Proudly Served by LiteSpeed Web Server at 18.133.60.229 Port 443
Connection: close
content-type: text/html; charset=UTF-8
content-length: 627
content-encoding: gzip
vary: Accept-Encoding
date: Thu, 23 Jun 2022 10:32:01 GMT
server: LiteSpeed
alt-svc: h3=":443"; ma=2592000, h3-29=":443"; ma=2592000, h3-Q050=":443"; ma=2592000, h3-Q046=":443"; ma=2592000, h3-Q043=":443"; ma=2592000, quic=":443"; ma=2592000; v="43,46"

7. Comments


1. General Results, most used to calculate the result

Aname "market.diana-enterprise.com" is subdomain, public suffix is ".com", top-level-domain is ".com", top-level-domain-type is "generic", tld-manager is "VeriSign Global Registry Services", num .com-domains preloaded: 63591 (complete: 175327)
AGood: All ip addresses are public addresses
Warning: Only one ip address found: market.diana-enterprise.com has only one ip address.
Warning: No ipv6 address found. Ipv6 is the future with a lot of new features. So every domain name should have an ipv6 address. See https://en.wikipedia.org/wiki/IPv6: market.diana-enterprise.com has no ipv6 address.
AGood: No asked Authoritative Name Server had a timeout
ADNS: "Name Error" means: No www-dns-entry defined. This isn't a problem
AGood: one preferred version: non-www is preferred
AGood: every cookie sent via https is marked as secure
AGood: Every cookie has a SameSite Attribute with a correct value Strict/Lax/None
HSTS-Preload-Status: unknown. Domain never included in the Preload-list. Check https://hstspreload.org/ to learn some basics about the Google-Preload-List.
AGood: Some urls with http status 200/404 have a complete Content-Type header (MediaType / MediaSubType + correct charset):3 complete Content-Type - header (4 urls)
http://market.diana-enterprise.com/.well-known/acme-challenge/check-your-website-dot-server-daten-dot-de 18.133.60.229


Url with incomplete Content-Type - header - missing charset
Bhttps://market.diana-enterprise.com/ 18.133.60.229
200

Missing HSTS-Header
http://market.diana-enterprise.com/ 18.133.60.229
200
ceid=438cdd0052741886c34a38bec606c676; path=/; domain=market.diana-enterprise.com; secure; SameSite=Lax
Fatal: Cookie sent via http. Never send Cookies / Session-Cookies via http. If a user uses an insecure WLan and if the same cookie is used to managed the authenticated session, it's possible to hack that user. Same with HttpOnly - without https that's only decorative.
CError - more then one version with Http-Status 200. After all redirects, all users (and search engines) should see the same https url: Non-www or www, but not both with http status 200.
HFatal error: http result with http-status 200, no encryption. Add a redirect http ⇒ https, so every connection is secure. Perhaps in your port 80 vHost something like "RewriteEngine on" + "RewriteRule ^ https://%{SERVER_NAME}%{REQUEST_URI} [END,QSA,R=permanent]" (two rows, without the "). Don't add this in your port 443 vHost, that would create a loop.
Nhttps://market.diana-enterprise.com/ 18.133.60.229
200

Error - Certificate isn't trusted, RemoteCertificateChainErrors
Nhttps://18.133.60.229/ 18.133.60.229
200

Error - Certificate isn't trusted, RemoteCertificateNameMismatch, RemoteCertificateChainErrors
Nmarket.diana-enterprise.com:465


Error - Certificate isn't trusted, RemoteCertificateNameMismatch
Nmarket.diana-enterprise.com:2083


Error - Certificate isn't trusted, RemoteCertificateNameMismatch
Nmarket.diana-enterprise.com:2087


Error - Certificate isn't trusted, RemoteCertificateNameMismatch
Nmarket.diana-enterprise.com:2096


Error - Certificate isn't trusted, RemoteCertificateNameMismatch
N18.133.60.229:465


Error - Certificate isn't trusted, RemoteCertificateNameMismatch
N18.133.60.229:2083


Error - Certificate isn't trusted, RemoteCertificateNameMismatch
N18.133.60.229:2087


Error - Certificate isn't trusted, RemoteCertificateNameMismatch
N18.133.60.229:2096


Error - Certificate isn't trusted, RemoteCertificateNameMismatch
Info: Checking all ip addresses of that domain without sending the hostname only one certificate found. Checking all ip addresses and sending the hostname only one certificate found. Both certificates are different. So that domain requires Server Name Indication (SNI), so the server is able to select the correct certificate.: Domain market.diana-enterprise.com, 1 ip addresses.

2. Header-Checks (alpha, started 2022-10-23, may be buggy / incomplete)


3. DNS- and NameServer - Checks

AInfo:: 11 Root-climbing DNS Queries required to find all IPv4- and IPv6-Addresses of 6 Name Servers.
AInfo:: 11 Queries complete, 5 with IPv6, 6 with IPv4.
Warning: Only some DNS Queries done via ipv6. IPv6 is the future, so the name servers of your name servers should have ipv6 addresses.
AGood: Some ip addresses of name servers found with the minimum of two DNS Queries. One to find the TLD-Zone, one to ask the TLD-Zone.ns1.onlydomains.com (75.2.6.34), ns2.onlydomains.com (75.2.85.37), ns3.onlydomains.com (99.83.188.20)
AGood (1 - 3.0):: An average of 1.8 queries per domain name server required to find all ip addresses of all name servers.
AInfo:: 6 different Name Servers found: ns1.hostingww.com, ns1.onlydomains.com, ns2.hostingww.com, ns2.onlydomains.com, ns3.hostingww.com, ns3.onlydomains.com, 3 Name Servers included in Delegation: ns1.onlydomains.com, ns2.onlydomains.com, ns3.onlydomains.com, 3 Name Servers included in 1 Zone definitions: ns1.hostingww.com, ns2.hostingww.com, ns3.hostingww.com, 1 Name Servers listed in SOA.Primary: ns1.hostingww.com.
AGood: Only one SOA.Primary Name Server found.: ns1.hostingww.com.
Error: SOA.Primary Name Server not included in the delegation set.: ns1.hostingww.com.
XFatal: Inconsistency between delegation and zone. The set of NS records served by the authoritative name servers must match those proposed for the delegation in the parent zone. Read https://www.iana.org/help/nameserver-requirements and send it to your Name Server Hoster.: ns1.hostingww.com (75.2.6.34): Delegation: ns1.onlydomains.com, ns2.onlydomains.com, ns3.onlydomains.com, Zone: ns1.hostingww.com, ns2.hostingww.com, ns3.hostingww.com. Name Servers defined in Delegation, missing in Zone: ns1.onlydomains.com, ns2.onlydomains.com, ns3.onlydomains.com.Name Servers defined in Zone, missing in Delegation: ns1.hostingww.com, ns2.hostingww.com, ns3.hostingww.com.
XFatal: Inconsistency between delegation and zone. The set of NS records served by the authoritative name servers must match those proposed for the delegation in the parent zone. Read https://www.iana.org/help/nameserver-requirements and send it to your Name Server Hoster.: ns1.onlydomains.com (75.2.6.34): Delegation: ns1.onlydomains.com, ns2.onlydomains.com, ns3.onlydomains.com, Zone: ns1.hostingww.com, ns2.hostingww.com, ns3.hostingww.com. Name Servers defined in Delegation, missing in Zone: ns1.onlydomains.com, ns2.onlydomains.com, ns3.onlydomains.com.Name Servers defined in Zone, missing in Delegation: ns1.hostingww.com, ns2.hostingww.com, ns3.hostingww.com.
XFatal: Inconsistency between delegation and zone. The set of NS records served by the authoritative name servers must match those proposed for the delegation in the parent zone. Read https://www.iana.org/help/nameserver-requirements and send it to your Name Server Hoster.: ns2.hostingww.com (75.2.85.37): Delegation: ns1.onlydomains.com, ns2.onlydomains.com, ns3.onlydomains.com, Zone: ns1.hostingww.com, ns2.hostingww.com, ns3.hostingww.com. Name Servers defined in Delegation, missing in Zone: ns1.onlydomains.com, ns2.onlydomains.com, ns3.onlydomains.com.Name Servers defined in Zone, missing in Delegation: ns1.hostingww.com, ns2.hostingww.com, ns3.hostingww.com.
XFatal: Inconsistency between delegation and zone. The set of NS records served by the authoritative name servers must match those proposed for the delegation in the parent zone. Read https://www.iana.org/help/nameserver-requirements and send it to your Name Server Hoster.: ns2.onlydomains.com (75.2.85.37): Delegation: ns1.onlydomains.com, ns2.onlydomains.com, ns3.onlydomains.com, Zone: ns1.hostingww.com, ns2.hostingww.com, ns3.hostingww.com. Name Servers defined in Delegation, missing in Zone: ns1.onlydomains.com, ns2.onlydomains.com, ns3.onlydomains.com.Name Servers defined in Zone, missing in Delegation: ns1.hostingww.com, ns2.hostingww.com, ns3.hostingww.com.
XFatal: Inconsistency between delegation and zone. The set of NS records served by the authoritative name servers must match those proposed for the delegation in the parent zone. Read https://www.iana.org/help/nameserver-requirements and send it to your Name Server Hoster.: ns3.hostingww.com (99.83.188.20): Delegation: ns1.onlydomains.com, ns2.onlydomains.com, ns3.onlydomains.com, Zone: ns1.hostingww.com, ns2.hostingww.com, ns3.hostingww.com. Name Servers defined in Delegation, missing in Zone: ns1.onlydomains.com, ns2.onlydomains.com, ns3.onlydomains.com.Name Servers defined in Zone, missing in Delegation: ns1.hostingww.com, ns2.hostingww.com, ns3.hostingww.com.
XFatal: Inconsistency between delegation and zone. The set of NS records served by the authoritative name servers must match those proposed for the delegation in the parent zone. Read https://www.iana.org/help/nameserver-requirements and send it to your Name Server Hoster.: ns3.onlydomains.com (99.83.188.20): Delegation: ns1.onlydomains.com, ns2.onlydomains.com, ns3.onlydomains.com, Zone: ns1.hostingww.com, ns2.hostingww.com, ns3.hostingww.com. Name Servers defined in Delegation, missing in Zone: ns1.onlydomains.com, ns2.onlydomains.com, ns3.onlydomains.com.Name Servers defined in Zone, missing in Delegation: ns1.hostingww.com, ns2.hostingww.com, ns3.hostingww.com.
AGood: All Name Server Domain Names have a Public Suffix.
AGood: All Name Server Domain Names ending with a Public Suffix have minimal one IPv4- or IPv6 address.
AGood: All Name Server ip addresses are public.
AInfo: Ipv4-Subnet-list: 6 Name Servers, 2 different subnets (first Byte): 75., 99., 2 different subnets (first two Bytes): 75.2., 99.83., 3 different subnets (first three Bytes): 75.2.6., 75.2.85., 99.83.188.
AGood: Name Server IPv4-addresses from different subnet found:
AGood: Nameserver supports TCP connections: 6 good Nameserver
AGood: Nameserver supports Echo Capitalization: 6 good Nameserver
AGood: Nameserver supports EDNS with max. 512 Byte Udp payload, message is smaller: 6 good Nameserver
Nameserver doesn't pass all EDNS-Checks: ns1.hostingww.com: OP100: no result. FLAGS: no result. V1: no result. V1OP100: no result. V1FLAGS: no result. DNSSEC: no result. V1DNSSEC: no result. NSID: no result. COOKIE: no result. CLIENTSUBNET: no result.
Nameserver doesn't pass all EDNS-Checks: ns1.hostingww.com: OP100: no result. FLAGS: no result. V1: no result. V1OP100: no result. V1FLAGS: no result. DNSSEC: no result. V1DNSSEC: no result. NSID: no result. COOKIE: no result. CLIENTSUBNET: no result.
AGood: All SOA have the same Serial Number
Warning: No CAA entry with issue/issuewild found, every CAA can create a certificate. Read https://en.wikipedia.org/wiki/DNS_Certification_Authority_Authorization to learn some basics about the idea of CAA. Your name server must support such an entry. Not all dns providers support CAA entries.

4. Content- and Performance-critical Checks

AGood: All checks /.well-known/acme-challenge/random-filename without redirects answer with the expected http status 404 - Not Found. Creating a Letsencrypt certificate via http-01 challenge should work. If it doesn't work: Check your vHost configuration (apachectl -S, httpd -S, nginx -T). Every combination of port and ServerName / ServerAlias (Apache) or Server (Nginx) must be unique. Merge duplicated entries in one vHost. If you use an IIS, extensionless files must be allowed in the /.well-known/acme-challenge subdirectory. Create a web.config in that directory. Content: <configuration><system.webServer><staticContent><mimeMap fileExtension="." mimeType="text/plain" /></staticContent></system.webServer></configuration>. If you have a redirect http ⇒ https, that's ok, Letsencrypt follows such redirects to port 80 / 443 (same or other server). There must be a certificate. But the certificate may be expired, self signed or with a not matching domain name. Checking the validation file Letsencrypt ignores such certificate errors. Trouble creating a certificate? Use https://community.letsencrypt.org/ to ask.
AGood: Every https result with status 200 supports GZip.
https://market.diana-enterprise.com/ 18.133.60.229
200

Warning: Https + http status 200 + Inline CSS / JavaScript found. Don't use inline CSS / JavaScript. These are compiled and re-used ressources, save these with a long Cache-Control max-age - header.
https://18.133.60.229/ 18.133.60.229
200

Warning: Https + http status 200 + Inline CSS / JavaScript found. Don't use inline CSS / JavaScript. These are compiled and re-used ressources, save these with a long Cache-Control max-age - header.
AGood: Every https result with status 200 has a minified Html-Content with a quota lower then 110 %.
https://market.diana-enterprise.com/ 18.133.60.229
200

Warning: Https connections (Standard Port 443) found without support of the http/2 protocol via ALPN. Http/2 is the new Http-Version (old: http 1.1) with some important new features. Update your server software so http/2 is available. Only one TCP-connection per Server (that's a performance boost), Header-Compression and Server Pushs are available. Domain Sharding and Inline-CSS/Javascript shouldn't used with http/2.
https://18.133.60.229/ 18.133.60.229
200

Warning: Https connections (Standard Port 443) found without support of the http/2 protocol via ALPN. Http/2 is the new Http-Version (old: http 1.1) with some important new features. Update your server software so http/2 is available. Only one TCP-connection per Server (that's a performance boost), Header-Compression and Server Pushs are available. Domain Sharding and Inline-CSS/Javascript shouldn't used with http/2.
https://market.diana-enterprise.com/ 18.133.60.229
200

Critical: Some script Elements (type text/javascript) with a src-Attribute don't have a defer / async - Attribute. Loading and executing these JavaScripts blocks parsing and rendering the Html-Output. That's bad if your site is large or the connection is slow / mobile usage. Use "async" if the js file has only functions (so nothing is executed after parsing the file) or is independend. Use "defer" if the order of the scripts is important. All "defer" scripts are executed before the DOMContentLoaded event is fired. Check https://developer.mozilla.org/en-US/docs/Web/HTML/Element/script to see some details.: 3 script elements without defer/async.
https://18.133.60.229/ 18.133.60.229
200

Critical: Some script Elements (type text/javascript) with a src-Attribute don't have a defer / async - Attribute. Loading and executing these JavaScripts blocks parsing and rendering the Html-Output. That's bad if your site is large or the connection is slow / mobile usage. Use "async" if the js file has only functions (so nothing is executed after parsing the file) or is independend. Use "defer" if the order of the scripts is important. All "defer" scripts are executed before the DOMContentLoaded event is fired. Check https://developer.mozilla.org/en-US/docs/Web/HTML/Element/script to see some details.: 2 script elements without defer/async.
AGood: All CSS / JavaScript files are sent with GZip. That reduces the content of the files. 5 external CSS / JavaScript files found
Warning: CSS / JavaScript files with a missing or too short Cache-Control header found. Browsers should cache and re-use these files. 3 external CSS / JavaScript files without Cache-Control-Header, 0 with Cache-Control, but no max-age, 0 with Cache-Control max-age too short (minimum 7 days), 5 with Cache-Control long enough, 8 complete.
Warning: Images with a missing or too short Cache-Control header found. Browsers should cache and re-use these files. 8 image files without Cache-Control-Header, 0 with Cache-Control, but no max-age, 0 with Cache-Control max-age too short (minimum 7 days), 0 with Cache-Control long enough, 8 complete.
AGood: All checked attribute values are enclosed in quotation marks (" or ').
AGood: All img-elements have a valid alt-attribute.: 8 img-elements found.
AGood: Domainname is not on the "Specially Designated Nationals And Blocked Persons List" (SDN). That's an US-list of individuals and companies owned or controlled by, or acting for or on behalf of, targeted countries. It also lists individuals, groups, and entities, such as terrorists and narcotics traffickers designated under programs that are not country-specific. Collectively, such individuals and companies are called "Specially Designated Nationals" or "SDNs." Their assets are blocked and U.S. persons are generally prohibited from dealing with them. So if a domain name is on that list, it's impossible to create a Letsencrypt certificate with that domain name. Check the list manual - https://www.treasury.gov/resource-center/sanctions/sdn-list/pages/default.aspx
ADuration: 114677 milliseconds, 114.677 seconds


8. Connections

DomainIPPortCert.ProtocolKeyExchangeStrengthCipherStrengthHashAlgorithmOCSP stapling
Domain/KeyExchangeIP/StrengthPort/CipherCert./StrengthProtocol/HashAlgorithmOCSP stapling
market.diana-enterprise.com
18.133.60.229
443
Certificate/chain invalid
Tls12
ECDH Ephermal
255
Aes128
128
Sha256
error checking OCSP stapling
ok
market.diana-enterprise.com
18.133.60.229
443
Certificate/chain invalid
Tls12

ECDH Ephermal
255
Aes128
128
Sha256
error checking OCSP stapling
ok
no http/2 via ALPN 
Tls.1.2
no Tls.1.1
no Tls.1.0
no http/2 via ALPN
Tls.1.2
no Tls.1.1
no Tls.1.0


18.133.60.229
18.133.60.229
443
Certificate/chain invalid and wrong name
Tls12
ECDH Ephermal
255
Aes128
128
Sha256
error checking OCSP stapling
ok

18.133.60.229
18.133.60.229
443
Certificate/chain invalid and wrong name
Tls12

ECDH Ephermal
255
Aes128
128
Sha256
error checking OCSP stapling
ok
no http/2 via ALPN 
Cert sent without SNI
Tls.1.2
no Tls.1.1
no Tls.1.0
no http/2 via ALPN
Cert sent without SNI
Tls.1.2
no Tls.1.1
no Tls.1.0


market.diana-enterprise.com
market.diana-enterprise.com
465
name does not match
Tls12
ECDH Ephermal
256
Aes256
256
Sha384
error checking OCSP stapling
ok

market.diana-enterprise.com
market.diana-enterprise.com
465
name does not match
Tls12

ECDH Ephermal
256
Aes256
256
Sha384
error checking OCSP stapling
ok
 
Tls.1.2
Tls.1.1
Tls.1.0

Tls.1.2
Tls.1.1
Tls.1.0
Chain - too much certificates, don't send root certificates
1CN=cpanel-014-lon.hostingww.com

2CN="cPanel, Inc. Certification Authority", O="cPanel, Inc.", L=Houston, C=US, ST=TX

3CN=COMODO RSA Certification Authority, O=COMODO CA Limited, L=Salford, C=GB, ST=Greater Manchester


market.diana-enterprise.com
market.diana-enterprise.com
2083
name does not match
Tls12
ECDH Ephermal
256
Aes128
128
Sha256
error checking OCSP stapling
ok

market.diana-enterprise.com
market.diana-enterprise.com
2083
name does not match
Tls12

ECDH Ephermal
256
Aes128
128
Sha256
error checking OCSP stapling
ok
no http/2 via ALPN 
Tls.1.2
no Tls.1.1
no Tls.1.0
no http/2 via ALPN
Tls.1.2
no Tls.1.1
no Tls.1.0
Chain - too much certificates, don't send root certificates
1CN=cpanel-014-lon.hostingww.com

2CN="cPanel, Inc. Certification Authority", O="cPanel, Inc.", L=Houston, C=US, ST=TX

3CN=COMODO RSA Certification Authority, O=COMODO CA Limited, L=Salford, C=GB, ST=Greater Manchester


market.diana-enterprise.com
market.diana-enterprise.com
2087
name does not match
Tls12
ECDH Ephermal
256
Aes128
128
Sha256
error checking OCSP stapling
ok

market.diana-enterprise.com
market.diana-enterprise.com
2087
name does not match
Tls12

ECDH Ephermal
256
Aes128
128
Sha256
error checking OCSP stapling
ok
no http/2 via ALPN 
Tls.1.2
no Tls.1.1
no Tls.1.0
no http/2 via ALPN
Tls.1.2
no Tls.1.1
no Tls.1.0
Chain - too much certificates, don't send root certificates
1CN=cpanel-014-lon.hostingww.com

2CN="cPanel, Inc. Certification Authority", O="cPanel, Inc.", L=Houston, C=US, ST=TX

3CN=COMODO RSA Certification Authority, O=COMODO CA Limited, L=Salford, C=GB, ST=Greater Manchester


market.diana-enterprise.com
market.diana-enterprise.com
2096
name does not match
Tls12
ECDH Ephermal
256
Aes128
128
Sha256
error checking OCSP stapling
ok

market.diana-enterprise.com
market.diana-enterprise.com
2096
name does not match
Tls12

ECDH Ephermal
256
Aes128
128
Sha256
error checking OCSP stapling
ok
no http/2 via ALPN 
Tls.1.2
no Tls.1.1
no Tls.1.0
no http/2 via ALPN
Tls.1.2
no Tls.1.1
no Tls.1.0
Chain - too much certificates, don't send root certificates
1CN=cpanel-014-lon.hostingww.com

2CN="cPanel, Inc. Certification Authority", O="cPanel, Inc.", L=Houston, C=US, ST=TX

3CN=COMODO RSA Certification Authority, O=COMODO CA Limited, L=Salford, C=GB, ST=Greater Manchester


18.133.60.229
18.133.60.229
465
name does not match
Tls12
ECDH Ephermal
256
Aes256
256
Sha384
error checking OCSP stapling
ok

18.133.60.229
18.133.60.229
465
name does not match
Tls12

ECDH Ephermal
256
Aes256
256
Sha384
error checking OCSP stapling
ok
 
Tls.1.2
Tls.1.1
Tls.1.0

Tls.1.2
Tls.1.1
Tls.1.0
Chain - too much certificates, don't send root certificates
1CN=cpanel-014-lon.hostingww.com

2CN="cPanel, Inc. Certification Authority", O="cPanel, Inc.", L=Houston, C=US, ST=TX

3CN=COMODO RSA Certification Authority, O=COMODO CA Limited, L=Salford, C=GB, ST=Greater Manchester


18.133.60.229
18.133.60.229
2083
name does not match
Tls12
ECDH Ephermal
256
Aes128
128
Sha256
error checking OCSP stapling
ok

18.133.60.229
18.133.60.229
2083
name does not match
Tls12

ECDH Ephermal
256
Aes128
128
Sha256
error checking OCSP stapling
ok
no http/2 via ALPN 
Tls.1.2
no Tls.1.1
no Tls.1.0
no http/2 via ALPN
Tls.1.2
no Tls.1.1
no Tls.1.0
Chain - too much certificates, don't send root certificates
1CN=cpanel-014-lon.hostingww.com

2CN="cPanel, Inc. Certification Authority", O="cPanel, Inc.", L=Houston, C=US, ST=TX

3CN=COMODO RSA Certification Authority, O=COMODO CA Limited, L=Salford, C=GB, ST=Greater Manchester


18.133.60.229
18.133.60.229
2087
name does not match
Tls12
ECDH Ephermal
256
Aes128
128
Sha256
error checking OCSP stapling
ok

18.133.60.229
18.133.60.229
2087
name does not match
Tls12

ECDH Ephermal
256
Aes128
128
Sha256
error checking OCSP stapling
ok
no http/2 via ALPN 
Tls.1.2
no Tls.1.1
no Tls.1.0
no http/2 via ALPN
Tls.1.2
no Tls.1.1
no Tls.1.0
Chain - too much certificates, don't send root certificates
1CN=cpanel-014-lon.hostingww.com

2CN="cPanel, Inc. Certification Authority", O="cPanel, Inc.", L=Houston, C=US, ST=TX

3CN=COMODO RSA Certification Authority, O=COMODO CA Limited, L=Salford, C=GB, ST=Greater Manchester


18.133.60.229
18.133.60.229
2096
name does not match
Tls12
ECDH Ephermal
256
Aes128
128
Sha256
error checking OCSP stapling
ok

18.133.60.229
18.133.60.229
2096
name does not match
Tls12

ECDH Ephermal
256
Aes128
128
Sha256
error checking OCSP stapling
ok
no http/2 via ALPN 
Tls.1.2
no Tls.1.1
no Tls.1.0
no http/2 via ALPN
Tls.1.2
no Tls.1.1
no Tls.1.0
Chain - too much certificates, don't send root certificates
1CN=cpanel-014-lon.hostingww.com

2CN="cPanel, Inc. Certification Authority", O="cPanel, Inc.", L=Houston, C=US, ST=TX

3CN=COMODO RSA Certification Authority, O=COMODO CA Limited, L=Salford, C=GB, ST=Greater Manchester


9. Certificates

1.
1.
CN=market.diana-enterprise.com
22.06.2022
22.06.2023
expires in 19 days
market.diana-enterprise.com, www.market.diana-enterprise.com - 2 entries
1.
1.
CN=market.diana-enterprise.com
22.06.2022

22.06.2023
expires in 19 days
market.diana-enterprise.com, www.market.diana-enterprise.com - 2 entries

KeyalgorithmRSA encryption (2048 bit)
Signatur:SHA256 With RSA-Encryption
Serial Number:0225567D59
Thumbprint:14B9A94A4B2BAA459DD7ED38417841297E7B0CDD
SHA256 / Certificate:bj9Mh/SS8Lx6Yrz9X7bG7Ac77SAMyIDZshbizfHIb4I=
SHA256 hex / Cert (DANE * 0 1):e3b0c44298fc1c149afbf4c8996fb92427ae41e4649b934ca495991b7852b855
SHA256 hex / PublicKey (DANE * 1 1):85660fd47ea133207c879d4e26db72b1b21a1fdbcc613d631443125bb43a8daf
SHA256 hex / Subject Public Key Information (SPKI):85660fd47ea133207c879d4e26db72b1b21a1fdbcc613d631443125bb43a8daf (is buggy, ignore the result)
SPKI checked via https://v1.pwnedkeys.com/spki-hash:Check unknown. No result 404 / 200
OCSP - Url:
OCSP - must staple:no
Certificate Transparency:no
Enhanced Key Usage:Serverauthentifizierung (1.3.6.1.5.5.7.3.1), Clientauthentifizierung (1.3.6.1.5.5.7.3.2)

UntrustedRoot: A certificate chain processed, but terminated in a root certificate which is not trusted by the trust provider.

2.
1.
CN=africaregistryreseller.com
01.12.2021
01.12.2022
184 days expired
africaregistryreseller.com, mail.africaregistryreseller.com, www.africaregistryreseller.com, cpanel.africaregistryreseller.com, webmail.africaregistryreseller.com, webdisk.africaregistryreseller.com, cpcontacts.africaregistryreseller.com, cpcalendars.africaregistryreseller.com, whm.africaregistryreseller.com - 9 entries
2.
1.
CN=africaregistryreseller.com
01.12.2021

01.12.2022
184 days expired
africaregistryreseller.com, mail.africaregistryreseller.com, www.africaregistryreseller.com, cpanel.africaregistryreseller.com, webmail.africaregistryreseller.com, webdisk.africaregistryreseller.com, cpcontacts.africaregistryreseller.com, cpcalendars.africaregistryreseller.com, whm.africaregistryreseller.com - 9 entries

KeyalgorithmRSA encryption (2048 bit)
Signatur:SHA256 With RSA-Encryption
Serial Number:00EAB1522F
Thumbprint:2DFE07B83276DD9510D998FC1114A02A502734C1
SHA256 / Certificate:35FNWWY82UnhpjQ4JK9zU/Fb8bDjj4LxB/FGOI6yfmE=
SHA256 hex / Cert (DANE * 0 1):e3b0c44298fc1c149afbf4c8996fb92427ae41e4649b934ca495991b7852b855
SHA256 hex / PublicKey (DANE * 1 1):7384780538df32b2e5e07bfb0e59f8a258de49d826c3e5a1f3a0c9d16418b775
SHA256 hex / Subject Public Key Information (SPKI):7384780538df32b2e5e07bfb0e59f8a258de49d826c3e5a1f3a0c9d16418b775 (is buggy, ignore the result)
SPKI checked via https://v1.pwnedkeys.com/spki-hash:Check unknown. No result 404 / 200
OCSP - Url:
OCSP - must staple:no
Certificate Transparency:no
Enhanced Key Usage:Serverauthentifizierung (1.3.6.1.5.5.7.3.1), Clientauthentifizierung (1.3.6.1.5.5.7.3.2)

UntrustedRoot: A certificate chain processed, but terminated in a root certificate which is not trusted by the trust provider.

3.
1.
CN=cpanel-014-lon.hostingww.com
01.12.2021
02.12.2022
183 days expired
cpanel-014-lon.hostingww.com - 1 entry
3.
1.
CN=cpanel-014-lon.hostingww.com
01.12.2021

02.12.2022
183 days expired
cpanel-014-lon.hostingww.com - 1 entry

KeyalgorithmRSA encryption (2048 bit)
Signatur:SHA256 With RSA-Encryption
Serial Number:1D6281D015306D74DC496613B4CF24AE
Thumbprint:76EE979EFE5FF6419DC2CB4793AA2A851B698FFB
SHA256 / Certificate:p3xxa/hEjTatMjHlt3aXXO/+qko9263qY/iy/sd3Lt8=
SHA256 hex / Cert (DANE * 0 1):e3b0c44298fc1c149afbf4c8996fb92427ae41e4649b934ca495991b7852b855
SHA256 hex / PublicKey (DANE * 1 1):fc6928f4ad5393636d1317206e32a70963fc7637e64eb408521cdddac049bb0d
SHA256 hex / Subject Public Key Information (SPKI):fc6928f4ad5393636d1317206e32a70963fc7637e64eb408521cdddac049bb0d (is buggy, ignore the result)
SPKI checked via https://v1.pwnedkeys.com/spki-hash:Check unknown. No result 404 / 200
OCSP - Url:http://ocsp.comodoca.com
OCSP - must staple:no
Certificate Transparency:yes
Enhanced Key Usage:Serverauthentifizierung (1.3.6.1.5.5.7.3.1), Clientauthentifizierung (1.3.6.1.5.5.7.3.2)


2.
CN="cPanel, Inc. Certification Authority", O="cPanel, Inc.", L=Houston, S=TX, C=US
18.05.2015
18.05.2025
expires in 715 days


2.
CN="cPanel, Inc. Certification Authority", O="cPanel, Inc.", L=Houston, S=TX, C=US
18.05.2015

18.05.2025
expires in 715 days


KeyalgorithmRSA encryption (2048 bit)
Signatur:SHA384 With RSA Encryption
Serial Number:00F01D4BEE7B7CA37B3C0566AC05972458
Thumbprint:764D2FA59ED123F9C95570C403C92FEF338EA745
SHA256 / Certificate:ghzFXOfsXHT+u0L2JOtqNsR4IVox7Wfjz3I6Z+jHXro=
SHA256 hex / Cert (DANE * 0 1):e3b0c44298fc1c149afbf4c8996fb92427ae41e4649b934ca495991b7852b855
SHA256 hex / PublicKey (DANE * 1 1):84e175ba988efb17af9c3110d77837698dccdd4a9ae3844de6b565c2f536582f
SHA256 hex / Subject Public Key Information (SPKI):84e175ba988efb17af9c3110d77837698dccdd4a9ae3844de6b565c2f536582f
SPKI checked via https://v1.pwnedkeys.com/spki-hash:Check unknown. No result 404 / 200
OCSP - Url:http://ocsp.comodoca.com
OCSP - must staple:no
Certificate Transparency:no
Enhanced Key Usage:Serverauthentifizierung (1.3.6.1.5.5.7.3.1), Clientauthentifizierung (1.3.6.1.5.5.7.3.2)


3.
CN=COMODO RSA Certification Authority, O=COMODO CA Limited, L=Salford, S=Greater Manchester, C=GB
19.01.2010
19.01.2038
expires in 5344 days


3.
CN=COMODO RSA Certification Authority, O=COMODO CA Limited, L=Salford, S=Greater Manchester, C=GB
19.01.2010

19.01.2038
expires in 5344 days


KeyalgorithmRSA encryption (4096 bit)
Signatur:SHA384 With RSA Encryption
Serial Number:4CAAF9CADB636FE01FF74ED85B03869D
Thumbprint:AFE5D244A8D1194230FF479FE2F897BBCD7A8CB4
SHA256 / Certificate:UvDhxOWOxikpG2AxfwdGcbhdfqgNWwcnNGNTSzK0AjQ=
SHA256 hex / Cert (DANE * 0 1):52f0e1c4e58ec629291b60317f074671b85d7ea80d5b07273463534b32b40234
SHA256 hex / PublicKey (DANE * 1 1):82b5f84daf47a59c7ab521e4982aefa40a53406a3aec26039efa6b2e0e7244c1
SHA256 hex / Subject Public Key Information (SPKI):82b5f84daf47a59c7ab521e4982aefa40a53406a3aec26039efa6b2e0e7244c1
SPKI checked via https://v1.pwnedkeys.com/spki-hash:Good: Key isn't compromised
OCSP - Url:
OCSP - must staple:no
Certificate Transparency:no
Enhanced Key Usage:



10. Last Certificates - Certificate Transparency Log Check

1. Source CertSpotter - active certificates (one check per day)

No CertSpotter - CT-Log entries found


2. Source crt.sh - old and new certificates, sometimes very slow - only certificates with "not after" > of the last months are listed

No CRT - CT-Log entries found


11. Html-Content - Entries

Summary

Subresource Integrity (SRI)
DomainnameHtmlElementrel/property∑ size∑ problems∑ int.∑ ext.∑ Origin poss.∑ SRI ParseErrors∑ SRI valid∑ SRI missing
https://market.diana-enterprise.com/
18.133.60.229
a

55

0


0
0
0


form

1

0
1
0
0
0
0


img

7

0
7
0
0
0
0


link
stylesheet
2
36,627 Bytes
0
0
2
2
0
2
0

meta
other
3

0


0
0
0


script

3
53,434 Bytes
0
0
3
3
0
3
0
https://18.133.60.229/
18.133.60.229
a

4

0


0
0
0


img

1

0


0
0
0


link
stylesheet
1

0


0
0
0


meta
other
2

0


0
0
0


script

2

0


0
0
0

Details

DomainnameHtml-Elementname/equiv/ property/relhref/src/contentHttpStatusmsgStatus
https://market.diana-enterprise.com/
18.133.60.229
a

#


3
ok








a

https://market.diana-enterprise.com


1
ok








a

https://market.diana-enterprise.com/account.php?ceid=f746e9a795143e9d3a26757120226e4c


1
ok








a

https://market.diana-enterprise.com/account_history.php?ceid=f746e9a795143e9d3a26757120226e4c


1
ok








a

https://market.diana-enterprise.com/account_password.php?ceid=f746e9a795143e9d3a26757120226e4c


1
ok








a

https://market.diana-enterprise.com/address_book.php?ceid=f746e9a795143e9d3a26757120226e4c


1
ok








a

https://market.diana-enterprise.com/conditions.php?ceid=f746e9a795143e9d3a26757120226e4c


1
ok








a

https://market.diana-enterprise.com/contact_us.php?ceid=f746e9a795143e9d3a26757120226e4c


2
ok








a

https://market.diana-enterprise.com/create_account.php?ceid=f746e9a795143e9d3a26757120226e4c


3
ok








a

https://market.diana-enterprise.com/index.php?action=buy_now&products_id=6&ceid=f746e9a795143e9d3a26757120226e4c


1
ok








a

https://market.diana-enterprise.com/index.php?action=buy_now&products_id=7&ceid=f746e9a795143e9d3a26757120226e4c


1
ok








a

https://market.diana-enterprise.com/index.php?action=buy_now&products_id=8&ceid=f746e9a795143e9d3a26757120226e4c


1
ok








a

https://market.diana-enterprise.com/index.php?action=buy_now&products_id=9&ceid=f746e9a795143e9d3a26757120226e4c


1
ok








a

https://market.diana-enterprise.com/index.php?ceid=f746e9a795143e9d3a26757120226e4c


4
ok








a

https://market.diana-enterprise.com/index.php?cPath=1&ceid=f746e9a795143e9d3a26757120226e4c


1
ok








a

https://market.diana-enterprise.com/index.php?cPath=2&ceid=f746e9a795143e9d3a26757120226e4c


1
ok








a

https://market.diana-enterprise.com/index.php?currency=EUR&ceid=f746e9a795143e9d3a26757120226e4c


1
ok








a

https://market.diana-enterprise.com/index.php?currency=USD&ceid=f746e9a795143e9d3a26757120226e4c


1
ok








a

https://market.diana-enterprise.com/index.php?manufacturers_id=1&ceid=f746e9a795143e9d3a26757120226e4c


1
ok








a

https://market.diana-enterprise.com/index.php?manufacturers_id=2&ceid=f746e9a795143e9d3a26757120226e4c


1
ok








a

https://market.diana-enterprise.com/login.php?ceid=f746e9a795143e9d3a26757120226e4c


3
ok








a

https://market.diana-enterprise.com/privacy.php?ceid=f746e9a795143e9d3a26757120226e4c


1
ok








a

https://market.diana-enterprise.com/product_info.php?products_id=2&ceid=f746e9a795143e9d3a26757120226e4c


2
ok








a

https://market.diana-enterprise.com/product_info.php?products_id=4&ceid=f746e9a795143e9d3a26757120226e4c


2
ok








a

https://market.diana-enterprise.com/product_info.php?products_id=6&ceid=f746e9a795143e9d3a26757120226e4c


3
ok








a

https://market.diana-enterprise.com/product_info.php?products_id=7&ceid=f746e9a795143e9d3a26757120226e4c


3
ok








a

https://market.diana-enterprise.com/product_info.php?products_id=8&ceid=f746e9a795143e9d3a26757120226e4c


4
ok








a

https://market.diana-enterprise.com/product_info.php?products_id=9&ceid=f746e9a795143e9d3a26757120226e4c


3
ok








a

https://market.diana-enterprise.com/products_new.php?ceid=f746e9a795143e9d3a26757120226e4c


1
ok








a

https://market.diana-enterprise.com/shipping.php?ceid=f746e9a795143e9d3a26757120226e4c


1
ok








a

https://market.diana-enterprise.com/shopping_cart.php?ceid=f746e9a795143e9d3a26757120226e4c


1
ok








a

https://market.diana-enterprise.com/specials.php?ceid=f746e9a795143e9d3a26757120226e4c


1
ok








a

https://phoenixcart.org


1
ok








a

https://www.enable-javascript.com/


1
ok








form
get
https://market.diana-enterprise.com/advanced_search_result.php
302
https://market.diana-enterprise.com/advanced_search.php?ceid=c849cd8ccc3c111bae01e58f40394e1f
1
ok
, missing X-Content-Type-Options nosniff

0 Bytes






img
src
images/sample/apple-1.jpg
200

1
ok
alt: Shiny Red Apples, missing X-Content-Type-Options nosniff

23340 Bytes






img
src
images/sample/grapefruit-1.jpg
200

1
ok
alt: Grapefruit, missing X-Content-Type-Options nosniff

32865 Bytes






img
src
images/sample/green-apple-1.jpg
200

1
ok
alt: Green Apples, missing X-Content-Type-Options nosniff

24481 Bytes






img
src
images/sample/green-tomatoes-1.jpg
200

1
ok
alt: Green Tomatoes, missing X-Content-Type-Options nosniff

21937 Bytes






img
src
images/sample/lemon-1.jpg
200

1
ok
alt: Lemons, missing X-Content-Type-Options nosniff

37309 Bytes






img
src
images/sample/lime-1.jpg
200

1
ok
alt: Lime, missing X-Content-Type-Options nosniff

31558 Bytes






img
src
images/store_logo.png
200

1
ok
alt: Market DE, missing X-Content-Type-Options nosniff

8287 Bytes






link
stylesheet
https://cdnjs.cloudflare.com/ajax/libs/font-awesome/5.15.1/css/all.min.css
200

1
ok
text/css; charset=utf-8, X-Content-Type-Options nosniff found

Cache-Control: public, max-age=30672000 - with long duration found.
GZip: 12667/59344 Bytes




Server-Header Access-Control-Allow-Origin: *
Cross-Origin Resource Sharing (CORS) supported

integrity: sha512-+4zCK9k+qNFUR5X+cKL9EIR+ZOhtIloNl9GIKS57V1MyNsYpYcUrUeQc9vNfzsWfV28IaLL3i96P9sdNyeRssA==
crossorigin: anonymous
No SRI Parse errorvalid


Content loaded via url("...")

../webfonts/fa-brands-400.eot1
../webfonts/fa-brands-400.eot?#iefix1
../webfonts/fa-brands-400.svg#fontawesome1
../webfonts/fa-brands-400.ttf1
../webfonts/fa-brands-400.woff1
../webfonts/fa-brands-400.woff21
../webfonts/fa-regular-400.eot1
../webfonts/fa-regular-400.eot?#iefix1
../webfonts/fa-regular-400.svg#fontawesome1
../webfonts/fa-regular-400.ttf1
../webfonts/fa-regular-400.woff1
../webfonts/fa-regular-400.woff21
../webfonts/fa-solid-900.eot1
../webfonts/fa-solid-900.eot?#iefix1
../webfonts/fa-solid-900.svg#fontawesome1
../webfonts/fa-solid-900.ttf1
../webfonts/fa-solid-900.woff1
../webfonts/fa-solid-900.woff21

link
stylesheet
https://cdnjs.cloudflare.com/ajax/libs/twitter-bootstrap/4.6.0/css/bootstrap.min.css
200

1
ok
text/css; charset=utf-8, X-Content-Type-Options nosniff found

Cache-Control: public, max-age=30672000 - with long duration found.
GZip: 23960/161409 Bytes




Server-Header Access-Control-Allow-Origin: *
Cross-Origin Resource Sharing (CORS) supported

integrity: sha512-P5MgMn1jBN01asBgU0z60Qk4QxiXo86+wlFahKrsQf37c9cro517WzVSPPV1tDKzhku2iJ2FVgL67wG03SGnNA==
crossorigin: anonymous
No SRI Parse errorvalid


Content loaded via url("...")

data:image/svg+xml,%3csvg xmlns='http://www.w3.org/2000/svg' fill='%23fff' width='8' height='8' viewBox='0 0 8 8'%3e%3cpath d='M2.75 0l-1.5 1.5L3.75 4l-2.5 2.5L2.75 8l4-4-4-4z'/%3e%3c/svg%3e1
data:image/svg+xml,%3csvg xmlns='http://www.w3.org/2000/svg' fill='%23fff' width='8' height='8' viewBox='0 0 8 8'%3e%3cpath d='M5.25 0l-4 4 4 4 1.5-1.5L4.25 4l2.5-2.5L5.25 0z'/%3e%3c/svg%3e1
data:image/svg+xml,%3csvg xmlns='http://www.w3.org/2000/svg' width='12' height='12' fill='none' stroke='%23dc3545' viewBox='0 0 12 12'%3e%3ccircle cx='6' cy='6' r='4.5'/%3e%3cpath stroke-linejoin='round' d='M5.8 3.6h.4L6 6.5z'/%3e%3ccircle cx='6' cy='8.2' r='.6' fill='%23dc3545' stroke='none'/%3e%3c/svg%3e2
data:image/svg+xml,%3csvg xmlns='http://www.w3.org/2000/svg' width='12' height='12' viewBox='-4 -4 8 8'%3e%3ccircle r='3' fill='%23fff'/%3e%3c/svg%3e1
data:image/svg+xml,%3csvg xmlns='http://www.w3.org/2000/svg' width='30' height='30' viewBox='0 0 30 30'%3e%3cpath stroke='rgba%280, 0, 0, 0.5%29' stroke-linecap='round' stroke-miterlimit='10' stroke-width='2' d='M4 7h22M4 15h22M4 23h22'/%3e%3c/svg%3e1
data:image/svg+xml,%3csvg xmlns='http://www.w3.org/2000/svg' width='30' height='30' viewBox='0 0 30 30'%3e%3cpath stroke='rgba%28255, 255, 255, 0.5%29' stroke-linecap='round' stroke-miterlimit='10' stroke-width='2' d='M4 7h22M4 15h22M4 23h22'/%3e%3c/svg%3e1
data:image/svg+xml,%3csvg xmlns='http://www.w3.org/2000/svg' width='4' height='4' viewBox='0 0 4 4'%3e%3cpath stroke='%23fff' d='M0 2h4'/%3e%3c/svg%3e1
data:image/svg+xml,%3csvg xmlns='http://www.w3.org/2000/svg' width='4' height='5' viewBox='0 0 4 5'%3e%3cpath fill='%23343a40' d='M2 0L0 2h4zm0 5L0 3h4z'/%3e%3c/svg%3e3
data:image/svg+xml,%3csvg xmlns='http://www.w3.org/2000/svg' width='8' height='8' viewBox='0 0 8 8'%3e%3cpath fill='%2328a745' d='M2.3 6.73L.6 4.53c-.4-1.04.46-1.4 1.1-.8l1.1 1.4 3.4-3.8c.6-.63 1.6-.27 1.2.7l-4 4.6c-.43.5-.8.4-1.1.1z'/%3e%3c/svg%3e2
data:image/svg+xml,%3csvg xmlns='http://www.w3.org/2000/svg' width='8' height='8' viewBox='0 0 8 8'%3e%3cpath fill='%23fff' d='M6.564.75l-3.59 3.612-1.538-1.55L0 4.26l2.974 2.99L8 2.193z'/%3e%3c/svg%3e1

meta

utf-8


1
ok








meta
X-UA-Compatible
IE=edge


1
ok








meta
viewport
width=device-width, initial-scale=1, shrink-to-fit=no


1
ok








script
src
https://cdnjs.cloudflare.com/ajax/libs/jquery/3.5.1/jquery.min.js
200

1
ok
Missing defer / async attribute. application/javascript; charset=utf-8, X-Content-Type-Options nosniff found

Cache-Control: public, max-age=30672000 - with long duration found.
GZip: 31021/89476 Bytes




Server-Header Access-Control-Allow-Origin: *
Cross-Origin Resource Sharing (CORS) supported

integrity: sha256-9/aliU8dGd2tb6OSsuzixeV4y/faTqgFtohetphbbj0=
crossorigin: anonymous
No SRI Parse errorvalid



script
src
https://cdnjs.cloudflare.com/ajax/libs/popper.js/1.16.0/umd/popper.min.js
200

1
ok
Missing defer / async attribute. application/javascript; charset=utf-8, X-Content-Type-Options nosniff found

Cache-Control: public, max-age=30672000 - with long duration found.
GZip: 7514/21257 Bytes




Server-Header Access-Control-Allow-Origin: *
Cross-Origin Resource Sharing (CORS) supported

integrity: sha384-Q6E9RHvbIyZFJoft+2mJbHaEWldlvI9IOYy5n3zV9zzTtmI3UksdQRVvoxMfooAo
crossorigin: anonymous
No SRI Parse errorvalid



script
src
https://cdnjs.cloudflare.com/ajax/libs/twitter-bootstrap/4.6.0/js/bootstrap.min.js
200

1
ok
Missing defer / async attribute. application/javascript; charset=utf-8, X-Content-Type-Options nosniff found

Cache-Control: public, max-age=30672000 - with long duration found.
GZip: 14899/63467 Bytes




Server-Header Access-Control-Allow-Origin: *
Cross-Origin Resource Sharing (CORS) supported

integrity: sha512-XKa9Hemdy1Ui3KSGgJdgMyYlUg1gM+QhL6cnlyTe2qzMCYm4nAZ1PsVerQzTTXzonUR+dmswHqgJPuwCq1MaAg==
crossorigin: anonymous
No SRI Parse errorvalid


https://18.133.60.229/
18.133.60.229
a

/cgi-bin/


1
ok








a

?MA


1
ok








a

?ND


1
ok








a

?SA


1
ok








img
src
/_autoindex/assets/icons/folder-fill.svg


1
ok
alt: Directory








link
stylesheet
/_autoindex/assets/css/autoindex.css


1
ok








meta
Content-type
text/html; charset=UTF-8


1
ok








meta
viewport
width=device-width, initial-scale=1.0


1
ok








script
src
/_autoindex/assets/js/tablesort.js


1
ok
Missing defer / async attribute.








script
src
/_autoindex/assets/js/tablesort.number.js


1
ok
Missing defer / async attribute.








12. Nameserver - IP-Adresses

Required Root-climbing DNS-Queries to find ip addresses of all Name Servers: ns1.hostingww.com, ns1.onlydomains.com, ns2.hostingww.com, ns2.onlydomains.com, ns3.hostingww.com, ns3.onlydomains.com

QNr.DomainTypeNS used
1
com
NS
k.root-servers.net (2001:7fd::1)

Answer: a.gtld-servers.net, b.gtld-servers.net, c.gtld-servers.net, d.gtld-servers.net, e.gtld-servers.net, f.gtld-servers.net, g.gtld-servers.net, h.gtld-servers.net, i.gtld-servers.net, j.gtld-servers.net, k.gtld-servers.net, l.gtld-servers.net, m.gtld-servers.net
2
ns1.hostingww.com
NS
a.gtld-servers.net (2001:503:a83e::2:30)

Answer: ns1.instradns.com, ns2.instradns.com, ns3.instradns.com

Answer: ns1.instradns.com
75.2.6.34

Answer: ns2.instradns.com
75.2.85.37

Answer: ns3.instradns.com
99.83.188.20
3
ns1.onlydomains.com: 75.2.6.34
NS
a.gtld-servers.net (2001:503:a83e::2:30)

Answer: ns2.onlydomains.com
75.2.85.37

Answer: ns3.onlydomains.com
99.83.188.20
4
ns2.hostingww.com
NS
a.gtld-servers.net (2001:503:a83e::2:30)

Answer: ns1.instradns.com, ns2.instradns.com, ns3.instradns.com

Answer: ns1.instradns.com
75.2.6.34

Answer: ns2.instradns.com
75.2.85.37

Answer: ns3.instradns.com
99.83.188.20
5
ns3.hostingww.com
NS
a.gtld-servers.net (2001:503:a83e::2:30)

Answer: ns1.instradns.com, ns2.instradns.com, ns3.instradns.com

Answer: ns1.instradns.com
75.2.6.34

Answer: ns2.instradns.com
75.2.85.37

Answer: ns3.instradns.com
99.83.188.20
6
ns1.hostingww.com: 75.2.6.34
A
ns1.instradns.com (75.2.6.34)
7
ns1.hostingww.com: No AAAA record found
AAAA
ns1.instradns.com (75.2.6.34)
8
ns2.hostingww.com: 75.2.85.37
A
ns1.instradns.com (75.2.6.34)
9
ns2.hostingww.com: No AAAA record found
AAAA
ns1.instradns.com (75.2.6.34)
10
ns3.hostingww.com: 99.83.188.20
A
ns1.instradns.com (75.2.6.34)
11
ns3.hostingww.com: No AAAA record found
AAAA
ns1.instradns.com (75.2.6.34)


13. CAA - Entries

DomainnameflagNameValue∑ Queries∑ Timeout
market.diana-enterprise.com
0

no CAA entry found
1
0
diana-enterprise.com
0

no CAA entry found
1
0
com
0

no CAA entry found
1
0


14. TXT - Entries

DomainnameTXT EntryStatus∑ Queries∑ Timeout
diana-enterprise.com
v=spf1 a:mail.hostingww.com mx include:mail.hostingww.com -all
ok
1
0
market.diana-enterprise.com

ok
1
0
_acme-challenge.market.diana-enterprise.com

Name Error - The domain name does not exist
1
0
_acme-challenge.market.diana-enterprise.com.diana-enterprise.com

Name Error - The domain name does not exist
1
0
_acme-challenge.market.diana-enterprise.com.market.diana-enterprise.com

Name Error - The domain name does not exist
1
0


15. DomainService - Entries (SSHFP Check is new - 2022-09-24, may be incomplete, alpha, some results are required)

No DomainServiceEntries entries found



16. Cipher Suites

No Ciphers found


17. Portchecks

DomainIPPortDescriptionResultAnswer
market.diana-enterprise.com
18.133.60.229
21
FTP



market.diana-enterprise.com
18.133.60.229
21
FTP



market.diana-enterprise.com
18.133.60.229
22
SSH



market.diana-enterprise.com
18.133.60.229
22
SSH



market.diana-enterprise.com
18.133.60.229
25
SMTP



market.diana-enterprise.com
18.133.60.229
25
SMTP



market.diana-enterprise.com
18.133.60.229
53
DNS



market.diana-enterprise.com
18.133.60.229
53
DNS



market.diana-enterprise.com
18.133.60.229
110
POP3



market.diana-enterprise.com
18.133.60.229
110
POP3



market.diana-enterprise.com
18.133.60.229
143
IMAP



market.diana-enterprise.com
18.133.60.229
143
IMAP



market.diana-enterprise.com
18.133.60.229
465
SMTP (encrypted)



market.diana-enterprise.com
18.133.60.229
465
SMTP (encrypted)



market.diana-enterprise.com
18.133.60.229
587
SMTP (encrypted, submission)



market.diana-enterprise.com
18.133.60.229
587
SMTP (encrypted, submission)



market.diana-enterprise.com
18.133.60.229
993
IMAP (encrypted)



market.diana-enterprise.com
18.133.60.229
993
IMAP (encrypted)



market.diana-enterprise.com
18.133.60.229
995
POP3 (encrypted)



market.diana-enterprise.com
18.133.60.229
995
POP3 (encrypted)



market.diana-enterprise.com
18.133.60.229
1433
MS SQL



market.diana-enterprise.com
18.133.60.229
1433
MS SQL



market.diana-enterprise.com
18.133.60.229
2082
cPanel (http)



market.diana-enterprise.com
18.133.60.229
2082
cPanel (http)



market.diana-enterprise.com
18.133.60.229
2083
cPanel (https)



market.diana-enterprise.com
18.133.60.229
2083
cPanel (https)



market.diana-enterprise.com
18.133.60.229
2086
WHM (http)



market.diana-enterprise.com
18.133.60.229
2086
WHM (http)



market.diana-enterprise.com
18.133.60.229
2087
WHM (https)



market.diana-enterprise.com
18.133.60.229
2087
WHM (https)



market.diana-enterprise.com
18.133.60.229
2089
cPanel Licensing



market.diana-enterprise.com
18.133.60.229
2089
cPanel Licensing



market.diana-enterprise.com
18.133.60.229
2095
cPanel Webmail (http)



market.diana-enterprise.com
18.133.60.229
2095
cPanel Webmail (http)



market.diana-enterprise.com
18.133.60.229
2096
cPanel Webmail (https)



market.diana-enterprise.com
18.133.60.229
2096
cPanel Webmail (https)



market.diana-enterprise.com
18.133.60.229
2222
DirectAdmin (http)



market.diana-enterprise.com
18.133.60.229
2222
DirectAdmin (http)



market.diana-enterprise.com
18.133.60.229
2222
DirectAdmin (https)



market.diana-enterprise.com
18.133.60.229
2222
DirectAdmin (https)



market.diana-enterprise.com
18.133.60.229
3306
mySql



market.diana-enterprise.com
18.133.60.229
3306
mySql



market.diana-enterprise.com
18.133.60.229
5224
Plesk Licensing



market.diana-enterprise.com
18.133.60.229
5224
Plesk Licensing



market.diana-enterprise.com
18.133.60.229
5432
PostgreSQL



market.diana-enterprise.com
18.133.60.229
5432
PostgreSQL



market.diana-enterprise.com
18.133.60.229
8080
Ookla Speedtest (http)



market.diana-enterprise.com
18.133.60.229
8080
Ookla Speedtest (http)



market.diana-enterprise.com
18.133.60.229
8080
Ookla Speedtest (https)



market.diana-enterprise.com
18.133.60.229
8080
Ookla Speedtest (https)



market.diana-enterprise.com
18.133.60.229
8083
VestaCP http



market.diana-enterprise.com
18.133.60.229
8083
VestaCP http



market.diana-enterprise.com
18.133.60.229
8083
VestaCP https



market.diana-enterprise.com
18.133.60.229
8083
VestaCP https



market.diana-enterprise.com
18.133.60.229
8443
Plesk Administration (https)



market.diana-enterprise.com
18.133.60.229
8443
Plesk Administration (https)



market.diana-enterprise.com
18.133.60.229
8447
Plesk Installer + Updates



market.diana-enterprise.com
18.133.60.229
8447
Plesk Installer + Updates



market.diana-enterprise.com
18.133.60.229
8880
Plesk Administration (http)



market.diana-enterprise.com
18.133.60.229
8880
Plesk Administration (http)



market.diana-enterprise.com
18.133.60.229
10000
Webmin (http)



market.diana-enterprise.com
18.133.60.229
10000
Webmin (http)



market.diana-enterprise.com
18.133.60.229
10000
Webmin (https)



market.diana-enterprise.com
18.133.60.229
10000
Webmin (https)





Permalink: https://check-your-website.server-daten.de/?i=4aa1743a-5d6d-4ed2-94b8-7aa9deeabb8f


Last Result: https://check-your-website.server-daten.de/?q=market.diana-enterprise.com - 2022-06-23 12:31:15


Do you like this page? Support this tool, add a link on your page:

<a href="https://check-your-website.server-daten.de/?q=market.diana-enterprise.com" target="_blank">Check this Site: market.diana-enterprise.com</a>

Do you really want to support this project? Donate: Check-your-website, IBAN DE98 1001 0010 0575 2211 07, SWIFT/BIC PBNKDEFF, Euro