Check DNS, Urls + Redirects, Certificates and Content of your Website


 

 

O

 

old / weak connection, 1 invalid Headers

 

Checked:
02.12.2025 19:43:55

 

Older results

No older results found

 

1. IP-Addresses

HostTypeIP-Addressis auth.∑ Queries∑ Timeout
pmg.fitnessauthority.pl
A
185.36.169.121
Warsaw/Mazovia/Poland (PL) - EcoSerwers
Hostname: pmg.fitnessauthority.pl
yes
1
0

AAAA

yes


www.pmg.fitnessauthority.pl
CNAME
fitnessauthority.pl.fitnessauthority.pl
yes
1
0

CNAME
fitnessauthority.pl.fitnessauthority.pl
yes


*.fitnessauthority.pl
A

yes



AAAA

yes



CNAME
fitnessauthority.pl.fitnessauthority.pl
yes


*.pmg.fitnessauthority.pl
A

yes



AAAA

yes



CNAME
fitnessauthority.pl.fitnessauthority.pl
yes


 

2. DNSSEC

Zone (*)DNSSEC - Informations


Zone: (root)

(root)
1 DS RR published






DS with Algorithm 8, KeyTag 20326, DigestType 2 and Digest 4G1EuAuPHTmpXAsNfGXQhFjogECbvGg0VxBCN8f47I0=






Status: Valid because published






3 DNSKEY RR found






Public Key with Algorithm 8, KeyTag 20326, Flags 257 (SEP = Secure Entry Point)






Public Key with Algorithm 8, KeyTag 38696, Flags 257 (SEP = Secure Entry Point)






Public Key with Algorithm 8, KeyTag 61809, Flags 256






1 RRSIG RR to validate DNSKEY RR found






RRSIG-Owner (root), Algorithm: 8, 0 Labels, original TTL: 172800 sec, Signature-expiration: 21.12.2025, 00:00:00 +, Signature-Inception: 30.11.2025, 00:00:00 +, KeyTag 20326, Signer-Name: (root)






Status: Good - Algorithmus 8 and DNSKEY with KeyTag 20326 used to validate the DNSKEY RRSet






Status: Valid Chain of trust. Parent-DS with Algorithm 8, KeyTag 20326, DigestType 2 and Digest "4G1EuAuPHTmpXAsNfGXQhFjogECbvGg0VxBCN8f47I0=" validates local Key with the same values, Key ist Secure Entry Point (SEP) of the zone



Zone: pl

pl
1 DS RR in the parent zone found






DS with Algorithm 8, KeyTag 35456, DigestType 2 and Digest wfzIjHPMuvqi1taFdbAe11N4bNczpKI5Mk1WCX8Xkws=






2 RRSIG RR to validate DS RR found






RRSIG-Owner pl., Algorithm: 8, 1 Labels, original TTL: 86400 sec, Signature-expiration: 15.12.2025, 17:00:00 +, Signature-Inception: 02.12.2025, 16:00:00 +, KeyTag 61809, Signer-Name: (root)






Status: Good - Algorithmus 8 and DNSKEY with KeyTag 61809 used to validate the DS RRSet in the parent zone






3 DNSKEY RR found






Public Key with Algorithm 8, KeyTag 1753, Flags 256






Public Key with Algorithm 8, KeyTag 10680, Flags 256






Public Key with Algorithm 8, KeyTag 35456, Flags 257 (SEP = Secure Entry Point)






1 RRSIG RR to validate DNSKEY RR found






RRSIG-Owner pl., Algorithm: 8, 1 Labels, original TTL: 86400 sec, Signature-expiration: 30.12.2025, 12:00:00 +, Signature-Inception: 30.11.2025, 12:00:00 +, KeyTag 35456, Signer-Name: pl






Status: Good - Algorithmus 8 and DNSKEY with KeyTag 35456 used to validate the DNSKEY RRSet






Status: Valid Chain of trust. Parent-DS with Algorithm 8, KeyTag 35456, DigestType 2 and Digest "wfzIjHPMuvqi1taFdbAe11N4bNczpKI5Mk1WCX8Xkws=" validates local Key with the same values, Key ist Secure Entry Point (SEP) of the zone



Zone: fitnessauthority.pl

fitnessauthority.pl
0 DS RR in the parent zone found






DS-Query in the parent zone has a valid NSEC3 RR as result with the hashed query name "olu0kguq0mmidt7eol4bp68o3ka9a1a4" between the hashed NSEC3-owner "oltutj8jkb28pr33i48p0eft9utgokc5" and the hashed NextOwner "olu0phd5gds5hvddatts0mcaaqk95t40". So the parent zone confirmes the not-existence of a DS RR.
Bitmap: NS, DS, RRSIG Validated: RRSIG-Owner oltutj8jkb28pr33i48p0eft9utgokc5.pl., Algorithm: 8, 2 Labels, original TTL: 3600 sec, Signature-expiration: 30.12.2025, 12:00:00 +, Signature-Inception: 30.11.2025, 12:00:00 +, KeyTag 10680, Signer-Name: pl






DS-Query in the parent zone sends valid NSEC3 RR with the Hash "sualaklp6ik32je6b8eqsa2pv2p834ij" as Owner. That's the Hash of "pl" with the NextHashedOwnerName "suamfpq84kpqi3kcmf1qpu1bdclbmp1b". So that domain name is the Closest Encloser of "fitnessauthority.pl". Opt-Out: True.
Bitmap: NS, SOA, TXT, RRSIG, DNSKEY, NSEC3PARAM Validated: RRSIG-Owner sualaklp6ik32je6b8eqsa2pv2p834ij.pl., Algorithm: 8, 2 Labels, original TTL: 3600 sec, Signature-expiration: 30.12.2025, 12:00:00 +, Signature-Inception: 30.11.2025, 12:00:00 +, KeyTag 10680, Signer-Name: pl






0 DNSKEY RR found









Zone: pmg.fitnessauthority.pl

pmg.fitnessauthority.pl
0 DS RR in the parent zone found






0 DNSKEY RR found









Zone: www.pmg.fitnessauthority.pl

www.pmg.fitnessauthority.pl
0 DS RR in the parent zone found



Zone: (root)

(root)
1 DS RR published






DS with Algorithm 8, KeyTag 20326, DigestType 2 and Digest 4G1EuAuPHTmpXAsNfGXQhFjogECbvGg0VxBCN8f47I0=






Status: Valid because published






3 DNSKEY RR found






Public Key with Algorithm 8, KeyTag 20326, Flags 257 (SEP = Secure Entry Point)






Public Key with Algorithm 8, KeyTag 38696, Flags 257 (SEP = Secure Entry Point)






Public Key with Algorithm 8, KeyTag 61809, Flags 256






1 RRSIG RR to validate DNSKEY RR found






RRSIG-Owner (root), Algorithm: 8, 0 Labels, original TTL: 172800 sec, Signature-expiration: 21.12.2025, 00:00:00 +, Signature-Inception: 30.11.2025, 00:00:00 +, KeyTag 20326, Signer-Name: (root)






Status: Good - Algorithmus 8 and DNSKEY with KeyTag 20326 used to validate the DNSKEY RRSet






Status: Valid Chain of trust. Parent-DS with Algorithm 8, KeyTag 20326, DigestType 2 and Digest "4G1EuAuPHTmpXAsNfGXQhFjogECbvGg0VxBCN8f47I0=" validates local Key with the same values, Key ist Secure Entry Point (SEP) of the zone



Zone: pl

pl
1 DS RR in the parent zone found






DS with Algorithm 8, KeyTag 35456, DigestType 2 and Digest wfzIjHPMuvqi1taFdbAe11N4bNczpKI5Mk1WCX8Xkws=






2 RRSIG RR to validate DS RR found






RRSIG-Owner pl., Algorithm: 8, 1 Labels, original TTL: 86400 sec, Signature-expiration: 15.12.2025, 17:00:00 +, Signature-Inception: 02.12.2025, 16:00:00 +, KeyTag 61809, Signer-Name: (root)






Status: Good - Algorithmus 8 and DNSKEY with KeyTag 61809 used to validate the DS RRSet in the parent zone






3 DNSKEY RR found






Public Key with Algorithm 8, KeyTag 1753, Flags 256






Public Key with Algorithm 8, KeyTag 10680, Flags 256






Public Key with Algorithm 8, KeyTag 35456, Flags 257 (SEP = Secure Entry Point)






1 RRSIG RR to validate DNSKEY RR found






RRSIG-Owner pl., Algorithm: 8, 1 Labels, original TTL: 86400 sec, Signature-expiration: 30.12.2025, 12:00:00 +, Signature-Inception: 30.11.2025, 12:00:00 +, KeyTag 35456, Signer-Name: pl






Status: Good - Algorithmus 8 and DNSKEY with KeyTag 35456 used to validate the DNSKEY RRSet






Status: Valid Chain of trust. Parent-DS with Algorithm 8, KeyTag 35456, DigestType 2 and Digest "wfzIjHPMuvqi1taFdbAe11N4bNczpKI5Mk1WCX8Xkws=" validates local Key with the same values, Key ist Secure Entry Point (SEP) of the zone



Zone: fitnessauthority.pl

fitnessauthority.pl
0 DS RR in the parent zone found






DS-Query in the parent zone has a valid NSEC3 RR as result with the hashed query name "olu0kguq0mmidt7eol4bp68o3ka9a1a4" between the hashed NSEC3-owner "oltutj8jkb28pr33i48p0eft9utgokc5" and the hashed NextOwner "olu0phd5gds5hvddatts0mcaaqk95t40". So the parent zone confirmes the not-existence of a DS RR.
Bitmap: NS, DS, RRSIG Validated: RRSIG-Owner oltutj8jkb28pr33i48p0eft9utgokc5.pl., Algorithm: 8, 2 Labels, original TTL: 3600 sec, Signature-expiration: 30.12.2025, 12:00:00 +, Signature-Inception: 30.11.2025, 12:00:00 +, KeyTag 10680, Signer-Name: pl






DS-Query in the parent zone sends valid NSEC3 RR with the Hash "sualaklp6ik32je6b8eqsa2pv2p834ij" as Owner. That's the Hash of "pl" with the NextHashedOwnerName "suamfpq84kpqi3kcmf1qpu1bdclbmp1b". So that domain name is the Closest Encloser of "fitnessauthority.pl". Opt-Out: True.
Bitmap: NS, SOA, TXT, RRSIG, DNSKEY, NSEC3PARAM Validated: RRSIG-Owner sualaklp6ik32je6b8eqsa2pv2p834ij.pl., Algorithm: 8, 2 Labels, original TTL: 3600 sec, Signature-expiration: 30.12.2025, 12:00:00 +, Signature-Inception: 30.11.2025, 12:00:00 +, KeyTag 10680, Signer-Name: pl






0 DNSKEY RR found









Zone: pl.fitnessauthority.pl

pl.fitnessauthority.pl
0 DS RR in the parent zone found



Zone: fitnessauthority.pl.fitnessauthority.pl

fitnessauthority.pl.fitnessauthority.pl
0 DS RR in the parent zone found

 

3. Name Servers

DomainNameserverNS-IP
pmg.fitnessauthority.pl
  a.eco.atman.pl
31.186.80.80
Warsaw/Mazovia/Poland (PL) - ECO-ATMAN

fitnessauthority.pl
  a.eco.atman.pl
31.186.80.80
Warsaw/Mazovia/Poland (PL) - ECO-ATMAN


  b.eco.atman.pl
213.189.54.84
Warsaw/Mazovia/Poland (PL) - Atman Sp. z o.o.

pl
  a-dns.pl / a-atm


  b-dns.pl / b-decix


  d-dns.pl / LHR4


  f-dns.pl / tld-all-ffm1@53029


  h-dns.pl / FRA1


  j-dns.pl / 5.fra.pch


fitnessauthority.pl
  a.eco.atman.pl
31.186.80.80
Warsaw/Mazovia/Poland (PL) - ECO-ATMAN


  b.eco.atman.pl
213.189.54.84
Warsaw/Mazovia/Poland (PL) - Atman Sp. z o.o.

pl
  a-dns.pl / a-atm


  b-dns.pl / b-decix


  d-dns.pl / LHR3


  f-dns.pl / tld-all-ffm1@53029


  h-dns.pl / FRA2


  j-dns.pl / 9.fra.pch

 

4. SOA-Entries


Domain:pl
Zone-Name:pl
Primary:a-dns.pl
Mail:dnsmaster.nask.pl
Serial:1764700803
Refresh:900
Retry:300
Expire:2592000
TTL:3600
num Entries:6


Domain:fitnessauthority.pl
Zone-Name:fitnessauthority.pl
Primary:a.eco.atman.pl
Mail:admin.fitnessauthority.pl
Serial:1533723501
Refresh:16384
Retry:2048
Expire:1048576
TTL:2560
num Entries:2


Domain:pmg.fitnessauthority.pl
Zone-Name:fitnessauthority.pl
Primary:a.eco.atman.pl
Mail:admin.fitnessauthority.pl
Serial:1533723501
Refresh:16384
Retry:2048
Expire:1048576
TTL:2560
num Entries:1



Domain:pl
Zone-Name:pl
Primary:a-dns.pl
Mail:dnsmaster.nask.pl
Serial:1764700803
Refresh:900
Retry:300
Expire:2592000
TTL:3600
num Entries:5


Domain:pl
Zone-Name:pl
Primary:a-dns.pl
Mail:dnsmaster.nask.pl
Serial:1764701051
Refresh:900
Retry:300
Expire:2592000
TTL:3600
num Entries:1


Domain:fitnessauthority.pl
Zone-Name:fitnessauthority.pl
Primary:a.eco.atman.pl
Mail:admin.fitnessauthority.pl
Serial:1533723501
Refresh:16384
Retry:2048
Expire:1048576
TTL:2560
num Entries:2


5. Screenshots

Startaddress: https://pmg.fitnessauthority.pl/, address used: https://pmg.fitnessauthority.pl/, Screenshot created 2025-12-02 19:49:08 +00:0

 

Mobil (412px x 732px)

 

1080 milliseconds

 

Screenshot mobile - https://pmg.fitnessauthority.pl/
Mobil + Landscape (732px x 412px)

 

1085 milliseconds

 

Screenshot mobile landscape - https://pmg.fitnessauthority.pl/
Screen (1280px x 1680px)

 

1151 milliseconds

 

Screenshot Desktop - https://pmg.fitnessauthority.pl/

 

Mobile- and other Chrome-Checks


widthheight
visual Viewport397732
content Size397896

 

Good: No horizontal scrollbar. Content-size width = visual Viewport width.

 

6. Url-Checks


:

:
DomainnameHttp-StatusredirectSec.G
• http://pmg.fitnessauthority.pl/
185.36.169.121
301
https://pmg.fitnessauthority.pl/
Html is minified: 109.03 %
0.067
A
Server: nginx/1.29.0
Date: Tue, 02 Dec 2025 18:44:40 GMT
Connection: keep-alive
Location: https://pmg.fitnessauthority.pl/
Content-Type: text/html
Content-Length: 169

• https://pmg.fitnessauthority.pl/
185.36.169.121 gzip used - 10655 / 38869 - 72.59 %
Inline-JavaScript (∑/total): 2/27159 Inline-CSS (∑/total): 0/0
200

Html is minified: 478.45 %
Other inline scripts (∑/total): 0/0
3.074
I-
Server: nginx
Date: Tue, 02 Dec 2025 18:44:40 GMT
Transfer-Encoding: chunked
Connection: keep-alive
Vary: Accept-Encoding
Set-Cookie: PHPSESSID=5ffb01c5b2be2524686fcece6aecdeda; path=/; secure; HttpOnly
Cache-Control: no-store, must-revalidate, no-cache
Pragma: no-cache
Strict-Transport-Security: max-age=15768000;
X-Content-Type-Options: nosniff
X-XSS-Protection: 1; mode=block
X-Robots-Tag: none
X-Download-Options: noopen
X-Frame-Options: SAMEORIGIN
X-Permitted-Cross-Domain-Policies: none
Referrer-Policy: strict-origin
Content-Type: text/html; charset=utf-8
Expires: Thu, 19 Nov 1981 08:52:00 GMT
Content-Encoding: gzip
Content-Length: 10655

• http://pmg.fitnessauthority.pl/.well-known/acme-challenge/check-your-website-dot-server-daten-dot-de
185.36.169.121
Inline-JavaScript (∑/total): 0/0 Inline-CSS (∑/total): 0/0
404

Html is minified: 110.07 %
Other inline scripts (∑/total): 0/0
0.036
A
Not Found
Visible Content:
Server: nginx/1.29.0
Date: Tue, 02 Dec 2025 18:44:45 GMT
Connection: keep-alive
Content-Type: text/html
Content-Length: 153

• https://185.36.169.121/
185.36.169.121 gzip used - 10655 / 38869 - 72.59 %
Inline-JavaScript (∑/total): 2/27159 Inline-CSS (∑/total): 0/0
200

Html is minified: 478.45 %
Other inline scripts (∑/total): 0/0
2.574
N-
Certificate error: RemoteCertificateNameMismatch
Server: nginx
Date: Tue, 02 Dec 2025 18:44:45 GMT
Transfer-Encoding: chunked
Connection: keep-alive
Vary: Accept-Encoding
Cache-Control: no-store, must-revalidate, no-cache
Pragma: no-cache
Strict-Transport-Security: max-age=15768000;
X-Content-Type-Options: nosniff
X-XSS-Protection: 1; mode=block
X-Robots-Tag: none
X-Download-Options: noopen
X-Frame-Options: SAMEORIGIN
X-Permitted-Cross-Domain-Policies: none
Referrer-Policy: strict-origin
Content-Type: text/html; charset=utf-8
Expires: Thu, 19 Nov 1981 08:52:00 GMT
Content-Encoding: gzip
Content-Length: 10655

 

7. Comments


1. General Results, most used to calculate the result

Aname "pmg.fitnessauthority.pl" is subdomain, public suffix is ".pl", top-level-domain is ".pl", top-level-domain-type is "country-code", Country is Poland, tld-manager is "Research and Academic Computer Network", num .pl-domains preloaded: 2145 (complete: 276475)
AGood: All ip addresses are public addresses
Warning: Only one ip address found: pmg.fitnessauthority.pl has only one ip address.
Warning: No ipv6 address found. Ipv6 is the future with a lot of new features. So every domain name should have an ipv6 address. See https://en.wikipedia.org/wiki/IPv6: pmg.fitnessauthority.pl has no ipv6 address.
AGood: No asked Authoritative Name Server had a timeout
AGood: destination is https
AGood - only one version with Http-Status 200
AGood: one preferred version: non-www is preferred
AGood: No cookie sent via http.
AGood: every cookie sent via https is marked as secure
AGood: every https has a Strict Transport Security Header
HSTS-Preload-Status: unknown. Domain never included in the Preload-list. Check https://hstspreload.org/ to learn some basics about the Google-Preload-List.
AGood: Some urls with http status 200/404 have a complete Content-Type header (MediaType / MediaSubType + correct charset):2 complete Content-Type - header (3 urls)
http://pmg.fitnessauthority.pl/.well-known/acme-challenge/check-your-website-dot-server-daten-dot-de 185.36.169.121


Url with incomplete Content-Type - header - missing charset
Ahttp://pmg.fitnessauthority.pl/ 185.36.169.121
301
https://pmg.fitnessauthority.pl/
Correct redirect http - https with the same domain name
BWarning: HSTS max-age is too short - minimum 31536000 = 365 days required, 15768000 seconds = 182 days found
Bhttps://pmg.fitnessauthority.pl/ 185.36.169.121
200
max-age=15768000;
Critical: HSTS-Header has Parse-Errors. Empty entry, remove the semicolon at the end., Value of max-age is too small. Should be minimal one year = 31536000., Unknown directive found. Only max-age (with value), includeSubdomains or preload allowed.
Bhttps://185.36.169.121/ 185.36.169.121
200
max-age=15768000;
Critical: HSTS-Header has Parse-Errors. Empty entry, remove the semicolon at the end., Value of max-age is too small. Should be minimal one year = 31536000., Unknown directive found. Only max-age (with value), includeSubdomains or preload allowed.
Bhttps://pmg.fitnessauthority.pl/ 185.36.169.121
200
PHPSESSID=5ffb01c5b2be2524686fcece6aecdeda; path=/; secure; HttpOnly
Cookie without a SameSite-Attribute. Possible values are: Strict/Lax/None. Cookie may not work as expected, if "None" is wanted, but browsers use "Lax" as default value.
Ihttps://pmg.fitnessauthority.pl/ 185.36.169.121
200

Content problems or problems with resources included - http links, files doesn't exist, different Content-Type definitions. Check the Html-Content - Part.
Nhttps://185.36.169.121/ 185.36.169.121
200

Error - Certificate isn't trusted, RemoteCertificateNameMismatch
Opmg.fitnessauthority.pl / 185.36.169.121 / 587


Old connection: Cipher Suites without Forward Secrecy (FS) found. Remove all of these Cipher Suites, use only Cipher Suites with Forward Secrecy: Starting with ECDHE- or DHE - the last "E" says: "ephemeral". Or use Tls.1.3, then all Cipher Suites use FS. 16 Cipher Suites without Forward Secrecy found
Info: Checking all ip addresses of that domain without sending the hostname only one certificate found. Checking all ip addresses and sending the hostname only one certificate found. Both certificates are the same. So that domain doesn't require Server Name Indication (SNI), it's the primary certificate of that set of ip addresses.: Domain pmg.fitnessauthority.pl, 1 ip addresses, 1 different http results.
BNo _mta-sts TXT record found (mta-sts: Mail Transfer Agent Strict Transport Security - see RFC 8461). Read the result of server-daten.de (Url-Checks, Comments, Connections and DomainServiceRecords) to see a complete definition. Domainname: _mta-sts.pmg.fitnessauthority.pl

2. Header-Checks

Apmg.fitnessauthority.pl 185.36.169.121
X-Content-Type-Options
Ok: Header without syntax errors found: nosniff
A
Referrer-Policy
Ok: Header without syntax errors found: strict-origin
A
X-Frame-Options
Ok: Header without syntax errors found: SAMEORIGIN
B

Info: Header is deprecated. May not longer work in modern browsers. SAMEORIGIN. Better solution: Use a Content-Security-Policy Header with a frame-ancestors directive. DENY - use 'none', SAMEORIGIN - use 'self'. If you want to allow some domains to frame your page, add these urls.
A
X-Xss-Protection
Ok: Header without syntax errors found: 1; mode=block
B

Info: Header is deprecated. May not longer work in modern browsers. 1; mode=block
Fpmg.fitnessauthority.pl 185.36.169.121
Content-Security-Policy
Critical: Missing Header:
Fpmg.fitnessauthority.pl 185.36.169.121
Permissions-Policy
Critical: Missing Header:
Bpmg.fitnessauthority.pl 185.36.169.121
Cross-Origin-Embedder-Policy
Info: Missing Header
Bpmg.fitnessauthority.pl 185.36.169.121
Cross-Origin-Opener-Policy
Info: Missing Header
Bpmg.fitnessauthority.pl 185.36.169.121
Cross-Origin-Resource-Policy
Info: Missing Header

3. DNS- and NameServer - Checks

AInfo:: 7 Root-climbing DNS Queries required to find all IPv4- and IPv6-Addresses of 0 Name Servers.
AInfo:: 7 Queries complete, 7 with IPv6, 0 with IPv4.
AGood: All DNS Queries done via IPv6.
AInfo:: 2 different Name Servers found: a.eco.atman.pl, b.eco.atman.pl, 2 Name Servers included in Delegation: a.eco.atman.pl, b.eco.atman.pl, 2 Name Servers included in 1 Zone definitions: a.eco.atman.pl, b.eco.atman.pl, 1 Name Servers listed in SOA.Primary: a.eco.atman.pl.
AGood: Only one SOA.Primary Name Server found.: a.eco.atman.pl.
AGood: SOA.Primary Name Server included in the delegation set.: a.eco.atman.pl.
AGood: Consistency between delegation and zone. The set of NS records served by the authoritative name servers must match those proposed for the delegation in the parent zone. Ordered list of name servers: a.eco.atman.pl, b.eco.atman.pl
AGood: All Name Server Domain Names have a Public Suffix.
AGood: All Name Server Domain Names ending with a Public Suffix have minimal one IPv4- or IPv6 address.
AGood: All Name Server ip addresses are public.
AGood: Minimal 2 different name servers (public suffix and public ip address) found: 2 different Name Servers found
Warning: No Name Server IPv6 address found. IPv6 is the future, so your name servers should be visible via IPv6.: 2 different Name Servers found
Warning: All Name Servers have the same Top Level Domain / Public Suffix. If there is a problem with that Top Level Domain, your domain may be affected. Better: Use Name Servers with different top level domains.: 2 Name Servers, 1 Top Level Domain: pl
Warning: All Name Servers have the same domain name. If there is a problem with that domain name (or with the name servers of that domain name), your domain may be affected. Better: Use Name Servers with different domain names / different top level domains.: Only one domain name used: atman.pl
Warning: All Name Servers from the same Country / IP location.: 2 Name Servers, 1 Countries: PL
AInfo: Ipv4-Subnet-list: 2 Name Servers, 2 different subnets (first Byte): 213., 31., 2 different subnets (first two Bytes): 213.189., 31.186., 2 different subnets (first three Bytes): 213.189.54., 31.186.80.
AExcellent: Every Name Server IPv4-address starts with an unique Byte.
AGood: Nameserver supports TCP connections: 1 good Nameserver
AGood: Nameserver supports Echo Capitalization: 1 good Nameserver
XFatal error: Nameserver doesn't support EDNS with max. 512 Byte Udp payload or sends more then 512 Bytes: a.eco.atman.pl
XFatal error: Nameserver doesn't support EDNS with max. 512 Byte Udp payload or sends more then 512 Bytes: b.eco.atman.pl
Nameserver doesn't pass all EDNS-Checks: a.eco.atman.pl / 31.186.80.80: OP100: no result. FLAGS: no result. V1: no result. V1OP100: no result. V1FLAGS: no result. DNSSEC: no result. V1DNSSEC: no result. NSID: no result. COOKIE: no result. CLIENTSUBNET: no result.
Nameserver doesn't pass all EDNS-Checks: a.eco.atman.pl / 31.186.80.80: OP100: no result. FLAGS: no result. V1: no result. V1OP100: no result. V1FLAGS: no result. DNSSEC: no result. V1DNSSEC: no result. NSID: no result. COOKIE: no result. CLIENTSUBNET: no result.
Nameserver doesn't pass all EDNS-Checks: a.eco.atman.pl / 31.186.80.80: OP100: no result. FLAGS: no result. V1: no result. V1OP100: no result. V1FLAGS: no result. DNSSEC: no result. V1DNSSEC: no result. NSID: no result. COOKIE: no result. CLIENTSUBNET: no result.
Nameserver doesn't pass all EDNS-Checks: b.eco.atman.pl / 213.189.54.84: OP100: no result. FLAGS: no result. V1: no result. V1OP100: no result. V1FLAGS: no result. DNSSEC: no result. V1DNSSEC: no result. NSID: no result. COOKIE: no result. CLIENTSUBNET: no result.
Nameserver doesn't pass all EDNS-Checks: b.eco.atman.pl / 213.189.54.84: OP100: no result. FLAGS: no result. V1: no result. V1OP100: no result. V1FLAGS: no result. DNSSEC: no result. V1DNSSEC: no result. NSID: no result. COOKIE: no result. CLIENTSUBNET: no result.
AGood: All SOA have the same Serial Number
Warning: No CAA entry with issue/issuewild found, every CAA can create a certificate. Read https://en.wikipedia.org/wiki/DNS_Certification_Authority_Authorization to learn some basics about the idea of CAA. Your name server must support such an entry. Not all dns providers support CAA entries.

4. Content- and Performance-critical Checks

AGood: All checks /.well-known/acme-challenge/random-filename without redirects answer with the expected http status 404 - Not Found. Creating a Letsencrypt certificate via http-01 challenge should work. If it doesn't work: Check your vHost configuration (apachectl -S, httpd -S, nginx -T). Every combination of port and ServerName / ServerAlias (Apache) or Server (Nginx) must be unique. Merge duplicated entries in one vHost. If you use an IIS, extensionless files must be allowed in the /.well-known/acme-challenge subdirectory. Create a web.config in that directory. Content: <configuration><system.webServer><staticContent><mimeMap fileExtension="." mimeType="text/plain" /></staticContent></system.webServer></configuration>. If you have a redirect http ⇒ https, that's ok, Letsencrypt follows such redirects to port 80 / 443 (same or other server). There must be a certificate. But the certificate may be expired, self signed or with a not matching domain name. Checking the validation file Letsencrypt ignores such certificate errors. Trouble creating a certificate? Use https://community.letsencrypt.org/ to ask.
AGood: Every https result with status 200 and greater 1024 Bytes is compressed (gzip, deflate, br checked).
https://pmg.fitnessauthority.pl/ 185.36.169.121
200

Warning: Https + http status 200 + Inline CSS / JavaScript found. Don't use inline CSS / JavaScript. These are compiled and re-used ressources, save these with a long Cache-Control max-age - header.
https://185.36.169.121/ 185.36.169.121
200

Warning: Https + http status 200 + Inline CSS / JavaScript found. Don't use inline CSS / JavaScript. These are compiled and re-used ressources, save these with a long Cache-Control max-age - header.
https://pmg.fitnessauthority.pl/ 185.36.169.121
200

Warning: Https result with status 200 found, Html-Content is too big. Should be max. 110 %. May contain inline CSS / JavaScript, too much comments or white space. Re-used ressources - create files with a long Cache-Control max-age header. Remove comments and white space.
https://185.36.169.121/ 185.36.169.121
200

Warning: Https result with status 200 found, Html-Content is too big. Should be max. 110 %. May contain inline CSS / JavaScript, too much comments or white space. Re-used ressources - create files with a long Cache-Control max-age header. Remove comments and white space.
AGood: Every https connection via port 443 supports the http/2 protocol via ALPN.
https://pmg.fitnessauthority.pl/ 185.36.169.121
200

Critical: Some script Elements (type text/javascript) with a src-Attribute don't have a defer / async - Attribute. Loading and executing these JavaScripts blocks parsing and rendering the Html-Output. That's bad if your site is large or the connection is slow / mobile usage. Use "async" if the js file has only functions (so nothing is executed after parsing the file) or is independend. Use "defer" if the order of the scripts is important. All "defer" scripts are executed before the DOMContentLoaded event is fired. Check https://developer.mozilla.org/en-US/docs/Web/HTML/Element/script to see some details.: 1 script elements without defer/async.
https://185.36.169.121/ 185.36.169.121
200

Critical: Some script Elements (type text/javascript) with a src-Attribute don't have a defer / async - Attribute. Loading and executing these JavaScripts blocks parsing and rendering the Html-Output. That's bad if your site is large or the connection is slow / mobile usage. Use "async" if the js file has only functions (so nothing is executed after parsing the file) or is independend. Use "defer" if the order of the scripts is important. All "defer" scripts are executed before the DOMContentLoaded event is fired. Check https://developer.mozilla.org/en-US/docs/Web/HTML/Element/script to see some details.: 1 script elements without defer/async.
AGood: All CSS / JavaScript files are sent compressed (gzip, deflate, br checked). That reduces the content of the files. 2 external CSS / JavaScript files found
AGood: All svg-Images greater 1024 Bytes without internal compression are compressed. Svg is an Xml-Application, so Compression reduces the size of the file. 2 images (type image/svg+xml, image/x-icon, image/vnd.microsoft.icon) found with compression.
AGood: All CSS / JavaScript files are sent with a long Cache-Control header (minimum 7 days). So the browser can re-use these files, no download is required. 2 external CSS / JavaScript files with long Cache-Control max-age found
AGood: All images are sent with a long Cache-Control header (minimum 7 days). So the browser can reuse these files, no download is required. 2 image files with long Cache-Control max-age found
AGood: All checked attribute values are enclosed in quotation marks (" or ').
AGood: All img-elements have a valid alt-attribute.: 4 img-elements found.
AGood: Domainname is not on the "Specially Designated Nationals And Blocked Persons List" (SDN). That's an US-list of individuals and companies owned or controlled by, or acting for or on behalf of, targeted countries. It also lists individuals, groups, and entities, such as terrorists and narcotics traffickers designated under programs that are not country-specific. Collectively, such individuals and companies are called "Specially Designated Nationals" or "SDNs." Their assets are blocked and U.S. persons are generally prohibited from dealing with them. So if a domain name is on that list, it's impossible to create a Letsencrypt certificate with that domain name. Check the list manual - https://www.treasury.gov/resource-center/sanctions/sdn-list/pages/default.aspx
https://pmg.fitnessauthority.pl/ 185.36.169.121
200
Strict-Transport-Security: max-age=15768000;
Parse Error - Header can't be parsed
https://185.36.169.121/ 185.36.169.121
200
Strict-Transport-Security: max-age=15768000;
Parse Error - Header can't be parsed
AInfo: Different Server-Headers found
ADuration: 320216 milliseconds, 320.216 seconds

 

8. Connections

DomainIPPortCert.ProtocolKeyExchangeStrengthCipherStrengthHashAlgorithmOCSP stapling
Domain/KeyExchangeIP/StrengthPort/CipherCert./StrengthProtocol/HashAlgorithmOCSP stapling
pmg.fitnessauthority.pl
185.36.169.121
443
ok
Tls12
ECDH Ephermal
255
Aes256
256
Sha384
not supported
ok
pmg.fitnessauthority.pl
185.36.169.121
443
ok
Tls12

ECDH Ephermal
255
Aes256
256
Sha384
not supported
ok
http/2 via ALPN supported 
No SNI required - domain included in main certificate
Tls.1.2
no Tls.1.1
no Tls.1.0
no Ssl3
no Ssl2
http/2 via ALPN supported
No SNI required - domain included in main certificate
Tls.1.2
no Tls.1.1
no Tls.1.0
no Ssl3
no Ssl2
Chain (complete)

1CN=*.fitnessauthority.pl, O=Fitness Authority Sp. z o.o., L=Otomin, C=PL, ST=Wojew\C3\B3dztwo Pomorskie


2CN=GeoTrust TLS RSA CA G1, OU=www.digicert.com, O=DigiCert Inc, C=US


3CN=DigiCert Global Root G2, OU=www.digicert.com, O=DigiCert Inc, C=US


185.36.169.121
185.36.169.121
443
name does not match
Tls12
ECDH Ephermal
255
Aes256
256
Sha384
not supported
ok

185.36.169.121
185.36.169.121
443
name does not match
Tls12

ECDH Ephermal
255
Aes256
256
Sha384
not supported
ok
http/2 via ALPN supported 
Cert sent without SNI
Tls.1.2
no Tls.1.1
no Tls.1.0
no Ssl3
no Ssl2
http/2 via ALPN supported
Cert sent without SNI
Tls.1.2
no Tls.1.1
no Tls.1.0
no Ssl3
no Ssl2
Chain (complete)

1CN=*.fitnessauthority.pl, O=Fitness Authority Sp. z o.o., L=Otomin, C=PL, ST=Wojew\C3\B3dztwo Pomorskie


2CN=GeoTrust TLS RSA CA G1, OU=www.digicert.com, O=DigiCert Inc, C=US


3CN=DigiCert Global Root G2, OU=www.digicert.com, O=DigiCert Inc, C=US


pmg.fitnessauthority.pl
185.36.169.121
587
ok
Tls12
ECDH Ephermal
255
Aes256
256
Sha384
not supported
ok

pmg.fitnessauthority.pl
185.36.169.121
587
ok
Tls12

ECDH Ephermal
255
Aes256
256
Sha384
not supported
ok
 
Tls.1.2
Tls.1.1
Tls.1.0
no Ssl3
no Ssl2

Tls.1.2
Tls.1.1
Tls.1.0
no Ssl3
no Ssl2
Chain (complete)

1CN=*.fitnessauthority.pl, O=Fitness Authority Sp. z o.o., L=Otomin, C=PL, ST=Wojew\C3\B3dztwo Pomorskie


2CN=GeoTrust TLS RSA CA G1, OU=www.digicert.com, O=DigiCert Inc, C=US


3CN=DigiCert Global Root G2, OU=www.digicert.com, O=DigiCert Inc, C=US

 

9. Certificates

1.
1.
CN=*.fitnessauthority.pl, O=Fitness Authority Sp. z o.o., L=Otomin, S=Województwo Pomorskie, C=PL
04.07.2025
08.07.2026
expires in 211 days
*.fitnessauthority.pl, fitnessauthority.pl - 2 entries
1.
1.
CN=*.fitnessauthority.pl, O=Fitness Authority Sp. z o.o., L=Otomin, S=Województwo Pomorskie, C=PL
04.07.2025

08.07.2026
expires in 211 days


*.fitnessauthority.pl, fitnessauthority.pl - 2 entries

KeyalgorithmRSA encryption (2048 bit)
Signatur:SHA256 With RSA-Encryption
Serial Number:080FCFE4D526437E9C75D5AA8C7F0C16
Thumbprint:86FAC370739117883E529E0980ADBFC227824F69
SHA256 / Certificate:OlXuy1uAkcihui+FAOx9J17hj3QiMkOQqk0Trk/10T0=
SHA256 hex / Cert (DANE * 0 1):e3b0c44298fc1c149afbf4c8996fb92427ae41e4649b934ca495991b7852b855
SHA256 hex / PublicKey (DANE * 1 1):91e3de0abc729997ecdfc177bff41bed70727b4a8596c450e32e49190b293b1c
SHA256 hex / Subject Public Key Information (SPKI):91e3de0abc729997ecdfc177bff41bed70727b4a8596c450e32e49190b293b1c (is buggy, ignore the result)
SPKI checked via https://v1.pwnedkeys.com/spki-hash:Good: Key isn't compromised
OCSP - Url:http://status.geotrust.com
OCSP - must staple:no
Certificate Transparency:yes
Enhanced Key Usage:Serverauthentifizierung (1.3.6.1.5.5.7.3.1), Clientauthentifizierung (1.3.6.1.5.5.7.3.2)




2.
CN=*.fitnessauthority.pl, O=Fitness Authority Sp. z o.o., L=Otomin, S=Województwo Pomorskie, C=PL
04.07.2025
08.07.2026
expires in 211 days
*.fitnessauthority.pl, fitnessauthority.pl - 2 entries

2.
CN=*.fitnessauthority.pl, O=Fitness Authority Sp. z o.o., L=Otomin, S=Województwo Pomorskie, C=PL
04.07.2025

08.07.2026
expires in 211 days


*.fitnessauthority.pl, fitnessauthority.pl - 2 entries

KeyalgorithmRSA encryption (2048 bit)
Signatur:SHA256 With RSA-Encryption
Serial Number:080FCFE4D526437E9C75D5AA8C7F0C16
Thumbprint:86FAC370739117883E529E0980ADBFC227824F69
SHA256 / Certificate:OlXuy1uAkcihui+FAOx9J17hj3QiMkOQqk0Trk/10T0=
SHA256 hex / Cert (DANE * 0 1):e3b0c44298fc1c149afbf4c8996fb92427ae41e4649b934ca495991b7852b855
SHA256 hex / PublicKey (DANE * 1 1):91e3de0abc729997ecdfc177bff41bed70727b4a8596c450e32e49190b293b1c
SHA256 hex / Subject Public Key Information (SPKI):91e3de0abc729997ecdfc177bff41bed70727b4a8596c450e32e49190b293b1c (is buggy, ignore the result)
SPKI checked via https://v1.pwnedkeys.com/spki-hash:Good: Key isn't compromised
OCSP - Url:http://status.geotrust.com
OCSP - must staple:no
Certificate Transparency:yes
Enhanced Key Usage:Serverauthentifizierung (1.3.6.1.5.5.7.3.1), Clientauthentifizierung (1.3.6.1.5.5.7.3.2)




3.
CN=GeoTrust TLS RSA CA G1, OU=www.digicert.com, O=DigiCert Inc, C=US
02.11.2017
02.11.2027
expires in 693 days


3.
CN=GeoTrust TLS RSA CA G1, OU=www.digicert.com, O=DigiCert Inc, C=US
02.11.2017

02.11.2027
expires in 693 days




KeyalgorithmRSA encryption (2048 bit)
Signatur:SHA256 With RSA-Encryption
Serial Number:0D07782A133FC6F9A57296E131FFD179
Thumbprint:8B3C5B9B867D4BE46D1CB5A01D45D67DC8E94082
SHA256 / Certificate:wG4wf3z8HTL6cqTAM8h7kAGa8hbwd11kl4ouymyKIw4=
SHA256 hex / Cert (DANE * 0 1):c06e307f7cfc1d32fa72a4c033c87b90019af216f0775d64978a2eca6c8a230e
SHA256 hex / PublicKey (DANE * 1 1):4831b9a2b12ff225fa30d7a7200c5af2740536944e07febe965b197571d936ab
SHA256 hex / Subject Public Key Information (SPKI):4831b9a2b12ff225fa30d7a7200c5af2740536944e07febe965b197571d936ab
SPKI checked via https://v1.pwnedkeys.com/spki-hash:Good: Key isn't compromised
OCSP - Url:http://ocsp.digicert.com
OCSP - must staple:no
Certificate Transparency:no
Enhanced Key Usage:Server Authentication (1.3.6.1.5.5.7.3.1), Client Authentication (1.3.6.1.5.5.7.3.2)




4.
CN=GeoTrust TLS RSA CA G1, OU=www.digicert.com, O=DigiCert Inc, C=US
02.11.2017
02.11.2027
expires in 693 days


4.
CN=GeoTrust TLS RSA CA G1, OU=www.digicert.com, O=DigiCert Inc, C=US
02.11.2017

02.11.2027
expires in 693 days




KeyalgorithmRSA encryption (2048 bit)
Signatur:SHA256 With RSA-Encryption
Serial Number:0D07782A133FC6F9A57296E131FFD179
Thumbprint:8B3C5B9B867D4BE46D1CB5A01D45D67DC8E94082
SHA256 / Certificate:wG4wf3z8HTL6cqTAM8h7kAGa8hbwd11kl4ouymyKIw4=
SHA256 hex / Cert (DANE * 0 1):e3b0c44298fc1c149afbf4c8996fb92427ae41e4649b934ca495991b7852b855
SHA256 hex / PublicKey (DANE * 1 1):4831b9a2b12ff225fa30d7a7200c5af2740536944e07febe965b197571d936ab
SHA256 hex / Subject Public Key Information (SPKI):
SPKI checked via https://v1.pwnedkeys.com/spki-hash:Check unknown. No result 404 / 200
OCSP - Url:http://ocsp.digicert.com
OCSP - must staple:no
Certificate Transparency:no
Enhanced Key Usage:Serverauthentifizierung (1.3.6.1.5.5.7.3.1), Clientauthentifizierung (1.3.6.1.5.5.7.3.2)




5.
CN=DigiCert Global Root G2, OU=www.digicert.com, O=DigiCert Inc, C=US
01.08.2013
15.01.2038
expires in 4420 days


5.
CN=DigiCert Global Root G2, OU=www.digicert.com, O=DigiCert Inc, C=US
01.08.2013

15.01.2038
expires in 4420 days




KeyalgorithmRSA encryption (2048 bit)
Signatur:SHA256 With RSA-Encryption
Serial Number:033AF1E6A711A9A0BB2864B11D09FAE5
Thumbprint:DF3C24F9BFD666761B268073FE06D1CC8D4F82A4
SHA256 / Certificate:yzzLt2Ax5eATj43TmiP53kf/w15DwRRM6ifUalqxy18=
SHA256 hex / Cert (DANE * 0 1):cb3ccbb76031e5e0138f8dd39a23f9de47ffc35e43c1144cea27d46a5ab1cb5f
SHA256 hex / PublicKey (DANE * 1 1):8bb593a93be1d0e8a822bb887c547890c3e706aad2dab76254f97fb36b82fc26
SHA256 hex / Subject Public Key Information (SPKI):8bb593a93be1d0e8a822bb887c547890c3e706aad2dab76254f97fb36b82fc26
SPKI checked via https://v1.pwnedkeys.com/spki-hash:Good: Key isn't compromised
OCSP - Url:
OCSP - must staple:no
Certificate Transparency:no
Enhanced Key Usage:





6.
CN=DigiCert Global Root G2, OU=www.digicert.com, O=DigiCert Inc, C=US
18.01.2024
10.11.2031
expires in 2162 days


6.
CN=DigiCert Global Root G2, OU=www.digicert.com, O=DigiCert Inc, C=US
18.01.2024

10.11.2031
expires in 2162 days




KeyalgorithmRSA encryption (2048 bit)
Signatur:SHA256 With RSA-Encryption
Serial Number:0FE032AB844D033106C50C8E13C8B068
Thumbprint:8BF7F178A745A11BAC6AE5B586FC1838EADCB2CF
SHA256 / Certificate:edV7Fd+mXChw6v4Rtjd2WQnP6Te0nBXOfxlAMMqzla0=
SHA256 hex / Cert (DANE * 0 1):e3b0c44298fc1c149afbf4c8996fb92427ae41e4649b934ca495991b7852b855
SHA256 hex / PublicKey (DANE * 1 1):8bb593a93be1d0e8a822bb887c547890c3e706aad2dab76254f97fb36b82fc26
SHA256 hex / Subject Public Key Information (SPKI):
SPKI checked via https://v1.pwnedkeys.com/spki-hash:Check unknown. No result 404 / 200
OCSP - Url:http://ocsp.digicert.cn
OCSP - must staple:no
Certificate Transparency:no
Enhanced Key Usage:




7.
CN=DigiCert Global Root CA, OU=www.digicert.com, O=DigiCert Inc, C=US
10.11.2006
10.11.2031
expires in 2162 days


7.
CN=DigiCert Global Root CA, OU=www.digicert.com, O=DigiCert Inc, C=US
10.11.2006

10.11.2031
expires in 2162 days




KeyalgorithmRSA encryption (2048 bit)
Signatur:SHA-1 with RSA Encryption
Serial Number:083BE056904246B1A1756AC95991C74A
Thumbprint:A8985D3A65E5E5C4B2D7D66D40C6DD2FB19C5436
SHA256 / Certificate:Q0ig6URMeMsmXgWNXolEtNhPlmK9Jtslf4k0pEPHAWE=
SHA256 hex / Cert (DANE * 0 1):4348a0e9444c78cb265e058d5e8944b4d84f9662bd26db257f8934a443c70161
SHA256 hex / PublicKey (DANE * 1 1):aff988906dde12955d9bebbf928fdcc31cce328d5b9384f21c8941ca26e20391
SHA256 hex / Subject Public Key Information (SPKI):aff988906dde12955d9bebbf928fdcc31cce328d5b9384f21c8941ca26e20391
SPKI checked via https://v1.pwnedkeys.com/spki-hash:Good: Key isn't compromised
OCSP - Url:
OCSP - must staple:no
Certificate Transparency:no
Enhanced Key Usage:




 

10. Last Certificates - Certificate Transparency Log Check

1. Source CertSpotter - active certificates (one check per day)

No CertSpotter - CT-Log entries found

 

2. Source crt.sh - old and new certificates, sometimes very slow - only certificates with "not after" > of the last months are listed

No CRT - CT-Log entries found

 

11. Html-Content - Entries

Summary


Subresource Integrity (SRI)
DomainnameHtmlElementrel/property∑ size∑ problems∑ int.∑ ext.∑ Origin poss.∑ SRI ParseErrors∑ SRI valid∑ SRI missing
https://pmg.fitnessauthority.pl/
185.36.169.121
a

33

0


0
0
0


form

2
10,655 Bytes
0
1
0
0
0
0


img

2
10,494 Bytes
0
2
0
0
0
0


link
stylesheet
1
52,850 Bytes
0
1
0
0
0
0


link
other
2
35,222 Bytes
0
2
0
0
0
0


meta
other
5

0


0
0
0


script

1
261,898 Bytes
1
1
0
0
0
0

https://185.36.169.121/
185.36.169.121
a

33

0


0
0
0


form

2

0


0
0
0


img

2

0


0
0
0


link
stylesheet
1

0


0
0
0


link
other
2

0


0
0
0


meta
other
5

0


0
0
0


script

1

0


0
0
0

 

Details (currently limited to 500 rows - some problems with spam users)

DomainnameHtml-Elementname/equiv/ property/relhref/src/contentHttpStatusmsgStatus
https://pmg.fitnessauthority.pl/
185.36.169.121
a

#


1
ok















a

/admin


1
ok















a

/domainadmin


1
ok















a

/reset-password


1
ok















a

?lang=bg-bg


1
ok















a

?lang=cs-cz


1
ok















a

?lang=da-dk


1
ok















a

?lang=de-de


1
ok















a

?lang=en-gb


1
ok















a

?lang=es-es


1
ok















a

?lang=fi-fi


1
ok















a

?lang=fr-fr


1
ok















a

?lang=gr-gr


1
ok















a

?lang=hu-hu


1
ok















a

?lang=it-it


1
ok















a

?lang=ja-jp


1
ok















a

?lang=ko-kr


1
ok















a

?lang=lt-lt


1
ok















a

?lang=lv-lv


1
ok















a

?lang=nb-no


1
ok















a

?lang=nl-nl


1
ok















a

?lang=pl-pl


1
ok















a

?lang=pt-br


1
ok















a

?lang=pt-pt


1
ok















a

?lang=ro-ro


1
ok















a

?lang=ru-ru


1
ok















a

?lang=si-si


1
ok















a

?lang=sk-sk


1
ok















a

?lang=sv-se


1
ok















a

?lang=tr-tr


1
ok















a

?lang=uk-ua


1
ok















a

?lang=zh-cn


1
ok















a

?lang=zh-tw


1
ok















form
post



1
ok















form
post
/
200

1
ok
text/html; charset=utf-8
X-Content-Type-Options nosniff found





10655 Bytes








img
src
/img/cow_mailcow.svg
200

1
ok
alt: mailcowimage/svg+xml
missing X-Content-Type-Options nosniff





Cache-Control: public, max-age=315360000 with long duration found.
Compression (gzip): 5247/14552 Bytes






ETag: W/"5c534a96-38d8"



img
src
/img/cow_mailcow.svg
200

1
ok
alt: mailcow-logo-darkimage/svg+xml
missing X-Content-Type-Options nosniff





Cache-Control: public, max-age=315360000 with long duration found.
Compression (gzip): 5247/14552 Bytes






ETag: W/"5c534a96-38d8"



link
icon
/favicon.png
200

1
ok
image/png
X-Content-Type-Options nosniff found





No Cache-Control header
No Compression - 17611 Bytes






ETag: "68d54cce-44cb"



link
shortcut icon
/favicon.png
200

1
ok
image/png
X-Content-Type-Options nosniff found





No Cache-Control header
No Compression - 17611 Bytes






ETag: "68d54cce-44cb"



link
stylesheet
/cache/3c8c8b3a1c6b3ce2aa532d167f918f5d056abec5.css
200

1
ok
text/css; charset=utf-8
X-Content-Type-Options nosniff found





Cache-Control: max-age=31536000 - with long duration found.
Compression (gzip): 52850/346102 Bytes






local SRI possible, possible hash-values:

 

sha256-xVsMf9a9IaiXrkPAxVy68cN1atKJUxdzaVFxKejovwE=
sha384-NGuVlUrtyqPo2m82rNYONmwh3uwm8ECaSlpXHDK/2bItVBp90Ug5U6yrKvux1CpT
sha512-/uXMXlBA+7+JbkMjcHsy8lqCDGhVDV7KnKbg/m6mfbnctOZIrl0PBjNd2073CR4Huu2/AVoGX7j7pDoQLIYg4Q==

 

<link rel="stylesheet" href="/cache/3c8c8b3a1c6b3ce2aa532d167f918f5d056abec5.css" crossorigin="anonymous" integrity="sha256-xVsMf9a9IaiXrkPAxVy68cN1atKJUxdzaVFxKejovwE=" />



meta
charset
utf-8


1
ok















meta
Referrer-Policy
same-origin


1
ok















meta
X-UA-Compatible
IE=edge


1
ok















meta
theme-color
#F5D76E


1
ok















meta
viewport
width=device-width, initial-scale=1, maximum-scale=1, user-scalable=0


1
ok















script
src
/cache/b9dfd188436c902e14fa2541778f8a6650d1163d.js
200

1
Problems with Content-Type - Header - see details
Missing defer / async attribute. application/javascript; charset=utf-8
X-Content-Type-Options nosniff found


This Combination of MediaType "application" and MediaSubType "javascript" is obsolete. Don't use it. See https://www.iana.org/assignments/media-types/media-types.xhtml to find a correct Combination. Use "text/javascript" instead.


Cache-Control: max-age=31536000 - with long duration found.
Compression (gzip): 261898/924036 Bytes






local SRI possible, possible hash-values:

 

sha256-ByglZJ1O1tv8b9Zp4f1BB/otwXP355w2Dlsq4hQ41Qo=
sha384-oQTmM4/F3jJPp5A8LAXJZbxXgCHQEKmWAJ3teW70DzAKIZXh7ccHkFkpzS78pjCn
sha512-J8FXyk7bwtlMfRQz4xM6XuaaRhFQn0cMov01/wmRIhI0/usTi1BRcQgmsPeRYR/1y1mG+VUl2YXZJ+EFltcFuQ==

 

<script src="/cache/b9dfd188436c902e14fa2541778f8a6650d1163d.js" crossorigin="anonymous" integrity="sha256-ByglZJ1O1tv8b9Zp4f1BB/otwXP355w2Dlsq4hQ41Qo=" />


https://185.36.169.121/
185.36.169.121
a

#


1
ok















a

/admin


1
ok















a

/domainadmin


1
ok















a

/reset-password


1
ok















a

?lang=bg-bg


1
ok















a

?lang=cs-cz


1
ok















a

?lang=da-dk


1
ok















a

?lang=de-de


1
ok















a

?lang=en-gb


1
ok















a

?lang=es-es


1
ok















a

?lang=fi-fi


1
ok















a

?lang=fr-fr


1
ok















a

?lang=gr-gr


1
ok















a

?lang=hu-hu


1
ok















a

?lang=it-it


1
ok















a

?lang=ja-jp


1
ok















a

?lang=ko-kr


1
ok















a

?lang=lt-lt


1
ok















a

?lang=lv-lv


1
ok















a

?lang=nb-no


1
ok















a

?lang=nl-nl


1
ok















a

?lang=pl-pl


1
ok















a

?lang=pt-br


1
ok















a

?lang=pt-pt


1
ok















a

?lang=ro-ro


1
ok















a

?lang=ru-ru


1
ok















a

?lang=si-si


1
ok















a

?lang=sk-sk


1
ok















a

?lang=sv-se


1
ok















a

?lang=tr-tr


1
ok















a

?lang=uk-ua


1
ok















a

?lang=zh-cn


1
ok















a

?lang=zh-tw


1
ok















form
post



1
ok















form
post
/


1
ok















img
src
/img/cow_mailcow.svg


1
ok
alt: mailcow














img
src
/img/cow_mailcow.svg


1
ok
alt: mailcow-logo-dark














link
icon
/favicon.png


1
ok















link
shortcut icon
/favicon.png


1
ok















link
stylesheet
/cache/3c8c8b3a1c6b3ce2aa532d167f918f5d056abec5.css


1
ok















meta
charset
utf-8


1
ok















meta
Referrer-Policy
same-origin


1
ok















meta
X-UA-Compatible
IE=edge


1
ok















meta
theme-color
#F5D76E


1
ok















meta
viewport
width=device-width, initial-scale=1, maximum-scale=1, user-scalable=0


1
ok















script
src
/cache/b9dfd188436c902e14fa2541778f8a6650d1163d.js


1
ok
Missing defer / async attribute.













 

12. Html-Parsing via https://validator.w3.org/nu/

Url used (first standard-https-result with http status 200): https://pmg.fitnessauthority.pl/

Summary

Good: No non-document-errors
3 errors
1 warnings

TypeMessagenum found
1.errorBad value Referrer-Policy for attribute http-equiv on element meta.1
2.errorElement legend not allowed as child of element div in this context. (Suppressing further errors from this subtree.)1
3.errorAttribute autofill not allowed on element form at this point.1
4.warningEmpty heading.1

Details


TypeMessage + Sample
1errorBad value Referrer-Policy for attribute http-equiv on element meta.

From line 8, column 3 to line 8, column 59

D76E"/> <meta http-equiv="Referrer-Policy" content="same-origin"> <ti
2errorElement legend not allowed as child of element div in this context. (Suppressing further errors from this subtree.)

From line 204, column 17 to line 204, column 24

<legend>mailco
3errorAttribute autofill not allowed on element form at this point.

From line 205, column 25 to line 205, column 59

<form method="post" autofill="off">
4warningEmpty heading.

From line 264, column 9 to line 264, column 32

> <h5 class="modal-title"></h5>

 

13. Nameserver - IP-Adresses

Required Root-climbing DNS-Queries to find ip addresses of all Name Servers: a.eco.atman.pl, b.eco.atman.pl

 

QNr.DomainTypeNS used
1
pl
NS
m.root-servers.net (2001:dc3::35)

Answer: a-dns.pl, b-dns.pl, d-dns.pl, f-dns.pl, h-dns.pl, j-dns.pl
2
a.eco.atman.pl
NS
a-dns.pl (2001:7f9::53)

Answer: dns.atman.pl, dns2.atman.pl

Answer: dns.atman.pl
2001:1a68::55e8:e266, 85.232.226.102

Answer: dns2.atman.pl
2001:1a68::4d4f:eb66, 77.79.235.102
3
b.eco.atman.pl
NS
a-dns.pl (2001:7f9::53)

Answer: dns.atman.pl, dns2.atman.pl

Answer: dns.atman.pl
2001:1a68::55e8:e266, 85.232.226.102

Answer: dns2.atman.pl
2001:1a68::4d4f:eb66, 77.79.235.102
4
a.eco.atman.pl: No A record found
A
dns.atman.pl (2001:1a68::55e8:e266)
5
a.eco.atman.pl: No AAAA record found
AAAA
dns.atman.pl (2001:1a68::55e8:e266)
6
b.eco.atman.pl: No A record found
A
dns.atman.pl (2001:1a68::55e8:e266)
7
b.eco.atman.pl: No AAAA record found
AAAA
dns.atman.pl (2001:1a68::55e8:e266)

 

14. CAA - Entries

DomainnameflagNameValue∑ Queries∑ Timeout
fitnessauthority.pl.fitnessauthority.pl



1
0
www.pmg.fitnessauthority.pl



1
0
pmg.fitnessauthority.pl
0

no CAA entry found
1
0
pl.fitnessauthority.pl



1
0
fitnessauthority.pl
0

no CAA entry found
1
0

0

no CAA entry found
1
0
pl
0

no CAA entry found
1
0

0

no CAA entry found
1
0

 

15. TXT - Entries

DomainnameTXT EntryStatus∑ Queries∑ Timeout
fitnessauthority.pl
google-site-verification=n0CuU4glYHTro6VwW02wqUNdLtzrAq33vZgQrjP0NGU
ok
1
0
fitnessauthority.pl
mojecertpl-site-verification-ayUZrTU2pkeLop4kyTmAD4OMU0ZUkuKP
ok
1
0
fitnessauthority.pl
v=spf1 a mx ~all
ok
1
0
pmg.fitnessauthority.pl

ok
1
0
www.pmg.fitnessauthority.pl


1
0
_acme-challenge.pmg.fitnessauthority.pl


1
0
_acme-challenge.www.pmg.fitnessauthority.pl


1
0
_acme-challenge.fitnessauthority.pl.fitnessauthority.pl


1
0
_acme-challenge.pmg.fitnessauthority.pl.fitnessauthority.pl


1
0
_acme-challenge.pmg.fitnessauthority.pl.pmg.fitnessauthority.pl


1
0
_acme-challenge.www.pmg.fitnessauthority.pl.pmg.fitnessauthority.pl


1
0
_acme-challenge.www.pmg.fitnessauthority.pl.www.pmg.fitnessauthority.pl


1
0
_acme-challenge.fitnessauthority.pl.fitnessauthority.pl.fitnessauthority.pl.fitnessauthority.pl


1
0

 

16. DomainService - Entries

TypeDomainPrefValueDNS-errornum AnswersStatusDescription
_mta-sts
CNAME
_mta-sts.pmg.fitnessauthority.pl

fitnessauthority.pl.fitnessauthority.pl
ok
_mta-sts
CNAME
fitnessauthority.pl.fitnessauthority.pl

fitnessauthority.pl.fitnessauthority.pl
ok
_mta-sts
CNAME
fitnessauthority.pl.fitnessauthority.pl

fitnessauthority.pl.fitnessauthority.pl
ok
_mta-sts
CNAME
fitnessauthority.pl.fitnessauthority.pl

fitnessauthority.pl.fitnessauthority.pl
ok
_mta-sts
CNAME
fitnessauthority.pl.fitnessauthority.pl

fitnessauthority.pl.fitnessauthority.pl
ok
_mta-sts
CNAME
fitnessauthority.pl.fitnessauthority.pl

fitnessauthority.pl.fitnessauthority.pl
ok
_mta-sts
CNAME
fitnessauthority.pl.fitnessauthority.pl

fitnessauthority.pl.fitnessauthority.pl
ok
_mta-sts
CNAME
fitnessauthority.pl.fitnessauthority.pl

fitnessauthority.pl.fitnessauthority.pl
ok
_mta-sts
CNAME
fitnessauthority.pl.fitnessauthority.pl

fitnessauthority.pl.fitnessauthority.pl
ok

 

 

17. Cipher Suites

Summary
DomainIPPortnum CipherstimeStd.ProtocolForward Secrecy
pmg.fitnessauthority.pl
185.36.169.121
443
3 Ciphers35.77 sec
0 without, 3 FS
100.00 %
pmg.fitnessauthority.pl
185.36.169.121
587
44 Ciphers170.79 secSMTP (encrypted, submission)
16 without, 28 FS
63.64 %
Complete

2
47 Ciphers
23.50 Ciphers/Check
206.56 sec103.28 sec/Check
16 without, 31 FS
65.96 %

Details
DomainIPPortCipher (OpenSsl / IANA)
pmg.fitnessauthority.pl
185.36.169.121
443
ECDHE-RSA-CHACHA20-POLY1305
(Secure)
TLSv1.2
0xCC,0xA8
FS
3 Ciphers, 35.77 sec
TLS_ECDHE_RSA_WITH_CHACHA20_POLY1305_SHA256

ECDH
RSA
CHACHA20/POLY1305(256)
AEAD




ECDHE-RSA-AES256-GCM-SHA384
(Secure)
TLSv1.2
0xC0,0x30
FS

TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384

ECDH
RSA
AESGCM(256)
AEAD




ECDHE-RSA-AES128-GCM-SHA256
(Secure)
TLSv1.2
0xC0,0x2F
FS

TLS_ECDHE_RSA_WITH_AES_128_GCM_SHA256

ECDH
RSA
AESGCM(128)
AEAD



587
ECDHE-RSA-CHACHA20-POLY1305
(Secure)
TLSv1.2
0xCC,0xA8
FS
44 Ciphers, 170.79 sec
TLS_ECDHE_RSA_WITH_CHACHA20_POLY1305_SHA256

ECDH
RSA
CHACHA20/POLY1305(256)
AEAD




ECDHE-RSA-AES256-GCM-SHA384
(Secure)
TLSv1.2
0xC0,0x30
FS

TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384

ECDH
RSA
AESGCM(256)
AEAD




DHE-RSA-ARIA256-GCM-SHA384
(Secure)
TLSv1.2
0xC0,0x53
FS

TLS_DHE_RSA_WITH_ARIA_256_GCM_SHA384

DH
RSA
ARIAGCM(256)
AEAD




DHE-RSA-CHACHA20-POLY1305
(Secure)
TLSv1.2
0xCC,0xAA
FS

TLS_DHE_RSA_WITH_CHACHA20_POLY1305_SHA256

DH
RSA
CHACHA20/POLY1305(256)
AEAD




DHE-RSA-AES256-GCM-SHA384
(Secure)
TLSv1.2
0x00,0x9F
FS

TLS_DHE_RSA_WITH_AES_256_GCM_SHA384

DH
RSA
AESGCM(256)
AEAD




ECDHE-ARIA256-GCM-SHA384
(Secure)
TLSv1.2
0xC0,0x61
FS

TLS_ECDHE_RSA_WITH_ARIA_256_GCM_SHA384

ECDH
RSA
ARIAGCM(256)
AEAD




DHE-RSA-AES256-CCM8
(Secure)
TLSv1.2
0xC0,0xA3
FS

TLS_DHE_RSA_WITH_AES_256_CCM_8

DH
RSA
AESCCM8(256)
AEAD




DHE-RSA-AES256-CCM
(Secure)
TLSv1.2
0xC0,0x9F
FS

TLS_DHE_RSA_WITH_AES_256_CCM

DH
RSA
AESCCM(256)
AEAD




ECDHE-RSA-AES128-GCM-SHA256
(Secure)
TLSv1.2
0xC0,0x2F
FS

TLS_ECDHE_RSA_WITH_AES_128_GCM_SHA256

ECDH
RSA
AESGCM(128)
AEAD




DHE-RSA-ARIA128-GCM-SHA256
(Secure)
TLSv1.2
0xC0,0x52
FS

TLS_DHE_RSA_WITH_ARIA_128_GCM_SHA256

DH
RSA
ARIAGCM(128)
AEAD




DHE-RSA-AES128-GCM-SHA256
(Secure)
TLSv1.2
0x00,0x9E
FS

TLS_DHE_RSA_WITH_AES_128_GCM_SHA256

DH
RSA
AESGCM(128)
AEAD




ECDHE-ARIA128-GCM-SHA256
(Secure)
TLSv1.2
0xC0,0x60
FS

TLS_ECDHE_RSA_WITH_ARIA_128_GCM_SHA256

ECDH
RSA
ARIAGCM(128)
AEAD




DHE-RSA-AES128-CCM8
(Secure)
TLSv1.2
0xC0,0xA2
FS

TLS_DHE_RSA_WITH_AES_128_CCM_8

DH
RSA
AESCCM8(128)
AEAD




DHE-RSA-AES128-CCM
(Secure)
TLSv1.2
0xC0,0x9E
FS

TLS_DHE_RSA_WITH_AES_128_CCM

DH
RSA
AESCCM(128)
AEAD




ECDHE-RSA-CAMELLIA256-SHA384
(Weak)
TLSv1.2
0xC0,0x77
FS

TLS_ECDHE_RSA_WITH_CAMELLIA_256_CBC_SHA384

ECDH
RSA
Camellia(256)
SHA384




DHE-RSA-CAMELLIA256-SHA256
(Weak)
TLSv1.2
0x00,0xC4
FS

TLS_DHE_RSA_WITH_CAMELLIA_256_CBC_SHA256

DH
RSA
Camellia(256)
SHA256




ECDHE-RSA-AES256-SHA384
(Weak)
TLSv1.2
0xC0,0x28
FS

TLS_ECDHE_RSA_WITH_AES_256_CBC_SHA384

ECDH
RSA
AES(256)
SHA384




DHE-RSA-AES256-SHA256
(Weak)
TLSv1.2
0x00,0x6B
FS

TLS_DHE_RSA_WITH_AES_256_CBC_SHA256

DH
RSA
AES(256)
SHA256




CAMELLIA256-SHA256
(Weak)
TLSv1.2
0x00,0xC0
No FS

TLS_RSA_WITH_CAMELLIA_256_CBC_SHA256

RSA
RSA
Camellia(256)
SHA256




ARIA256-GCM-SHA384
(Weak)
TLSv1.2
0xC0,0x51
No FS

TLS_RSA_WITH_ARIA_256_GCM_SHA384

RSA
RSA
ARIAGCM(256)
AEAD




AES256-GCM-SHA384
(Weak)
TLSv1.2
0x00,0x9D
No FS

TLS_RSA_WITH_AES_256_GCM_SHA384

RSA
RSA
AESGCM(256)
AEAD




AES256-SHA256
(Weak)
TLSv1.2
0x00,0x3D
No FS

TLS_RSA_WITH_AES_256_CBC_SHA256

RSA
RSA
AES(256)
SHA256




AES256-CCM8
(Weak)
TLSv1.2
0xC0,0xA1
No FS

TLS_RSA_WITH_AES_256_CCM_8

RSA
RSA
AESCCM8(256)
AEAD




AES256-CCM
(Weak)
TLSv1.2
0xC0,0x9D
No FS

TLS_RSA_WITH_AES_256_CCM

RSA
RSA
AESCCM(256)
AEAD




ECDHE-RSA-CAMELLIA128-SHA256
(Weak)
TLSv1.2
0xC0,0x76
FS

TLS_ECDHE_RSA_WITH_CAMELLIA_128_CBC_SHA256

ECDH
RSA
Camellia(128)
SHA256




DHE-RSA-CAMELLIA128-SHA256
(Weak)
TLSv1.2
0x00,0xBE
FS

TLS_DHE_RSA_WITH_CAMELLIA_128_CBC_SHA256

DH
RSA
Camellia(128)
SHA256




ECDHE-RSA-AES128-SHA256
(Weak)
TLSv1.2
0xC0,0x27
FS

TLS_ECDHE_RSA_WITH_AES_128_CBC_SHA256

ECDH
RSA
AES(128)
SHA256




DHE-RSA-AES128-SHA256
(Weak)
TLSv1.2
0x00,0x67
FS

TLS_DHE_RSA_WITH_AES_128_CBC_SHA256

DH
RSA
AES(128)
SHA256




CAMELLIA128-SHA256
(Weak)
TLSv1.2
0x00,0xBA
No FS

TLS_RSA_WITH_CAMELLIA_128_CBC_SHA256

RSA
RSA
Camellia(128)
SHA256




ARIA128-GCM-SHA256
(Weak)
TLSv1.2
0xC0,0x50
No FS

TLS_RSA_WITH_ARIA_128_GCM_SHA256

RSA
RSA
ARIAGCM(128)
AEAD




AES128-GCM-SHA256
(Weak)
TLSv1.2
0x00,0x9C
No FS

TLS_RSA_WITH_AES_128_GCM_SHA256

RSA
RSA
AESGCM(128)
AEAD




AES128-SHA256
(Weak)
TLSv1.2
0x00,0x3C
No FS

TLS_RSA_WITH_AES_128_CBC_SHA256

RSA
RSA
AES(128)
SHA256




AES128-CCM8
(Weak)
TLSv1.2
0xC0,0xA0
No FS

TLS_RSA_WITH_AES_128_CCM_8

RSA
RSA
AESCCM8(128)
AEAD




AES128-CCM
(Weak)
TLSv1.2
0xC0,0x9C
No FS

TLS_RSA_WITH_AES_128_CCM

RSA
RSA
AESCCM(128)
AEAD




ECDHE-RSA-AES256-SHA
(Weak)
TLSv1
0xC0,0x14
FS

TLS_ECDHE_RSA_WITH_AES_256_CBC_SHA

ECDH
RSA
AES(256)
SHA1




ECDHE-RSA-AES128-SHA
(Weak)
TLSv1
0xC0,0x13
FS

TLS_ECDHE_RSA_WITH_AES_128_CBC_SHA

ECDH
RSA
AES(128)
SHA1




DHE-RSA-CAMELLIA256-SHA
(Weak)
SSLv3
0x00,0x88
FS

TLS_DHE_RSA_WITH_CAMELLIA_256_CBC_SHA

DH
RSA
Camellia(256)
SHA1




DHE-RSA-AES256-SHA
(Weak)
SSLv3
0x00,0x39
FS

TLS_DHE_RSA_WITH_AES_256_CBC_SHA

DH
RSA
AES(256)
SHA1




CAMELLIA256-SHA
(Weak)
SSLv3
0x00,0x84
No FS

TLS_RSA_WITH_CAMELLIA_256_CBC_SHA

RSA
RSA
Camellia(256)
SHA1




AES256-SHA
(Weak)
SSLv3
0x00,0x35
No FS

TLS_RSA_WITH_AES_256_CBC_SHA

RSA
RSA
AES(256)
SHA1




DHE-RSA-CAMELLIA128-SHA
(Weak)
SSLv3
0x00,0x45
FS

TLS_DHE_RSA_WITH_CAMELLIA_128_CBC_SHA

DH
RSA
Camellia(128)
SHA1




DHE-RSA-AES128-SHA
(Weak)
SSLv3
0x00,0x33
FS

TLS_DHE_RSA_WITH_AES_128_CBC_SHA

DH
RSA
AES(128)
SHA1




CAMELLIA128-SHA
(Weak)
SSLv3
0x00,0x41
No FS

TLS_RSA_WITH_CAMELLIA_128_CBC_SHA

RSA
RSA
Camellia(128)
SHA1




AES128-SHA
(Weak)
SSLv3
0x00,0x2F
No FS

TLS_RSA_WITH_AES_128_CBC_SHA

RSA
RSA
AES(128)
SHA1

 

18. Portchecks

DomainIPPortDescriptionResultAnswer
pmg.fitnessauthority.pl
185.36.169.121
21
FTP



pmg.fitnessauthority.pl
185.36.169.121
21
FTP



pmg.fitnessauthority.pl
185.36.169.121
22
SSH



pmg.fitnessauthority.pl
185.36.169.121
22
SSH



pmg.fitnessauthority.pl
185.36.169.121
25
SMTP
open
220-pmg.fitnessauthority.pl ESMTP Proxmox

 

Answer EHLO: 250-pmg.fitnessauthority.pl 250-SIZE 104857600 250-VRFY 250-ETRN 250-ENHANCEDSTATUSCODES 250-8BITMIME 250-DSN 250-SMTPUTF8 250 CHUNKING

 

Answer AUTH LOGIN: (no AUTH option found)

pmg.fitnessauthority.pl
185.36.169.121
25
SMTP
open
220-pmg.fitnessauthority.pl ESMTP Proxmox


Answer EHLO: 250-pmg.fitnessauthority.pl 250-SIZE 104857600 250-VRFY 250-ETRN 250-ENHANCEDSTATUSCODES 250-8BITMIME 250-DSN 250-SMTPUTF8 250 CHUNKING Fatal: No STARTTLS found. Encryption not possible

pmg.fitnessauthority.pl
185.36.169.121
53
DNS



pmg.fitnessauthority.pl
185.36.169.121
53
DNS



pmg.fitnessauthority.pl
185.36.169.121
110
POP3
open
+OK Dovecot ready.

pmg.fitnessauthority.pl
185.36.169.121
110
POP3
open
+OK Dovecot ready.
This port ist unencrypted and deprecated. Don't use it.
pmg.fitnessauthority.pl
185.36.169.121
143
IMAP
open
* OK [CAPABILITY IMAP4rev1 SASL-IR LOGIN-REFERRALS ID ENABLE IDLE LITERAL+ STARTTLS LOGINDISABLED] Dovecot ready.

pmg.fitnessauthority.pl
185.36.169.121
143
IMAP
open
* OK [CAPABILITY IMAP4rev1 SASL-IR LOGIN-REFERRALS ID ENABLE IDLE LITERAL+ STARTTLS LOGINDISABLED] Dovecot ready.
This port ist unencrypted and deprecated. Don't use it.
pmg.fitnessauthority.pl
185.36.169.121
465
SMTP (encrypted)
open


pmg.fitnessauthority.pl
185.36.169.121
465
SMTP (encrypted)
open


pmg.fitnessauthority.pl
185.36.169.121
587
SMTP (encrypted, submission)
open
220 mail.fitnessauthority.pl ESMTP Postcow

 

Answer EHLO: 250-mail.fitnessauthority.pl 250-PIPELINING 250-SIZE 104857600 250-ETRN 250-STARTTLS 250-ENHANCEDSTATUSCODES 250-8BITMIME 250 DSN

 

Answer AUTH LOGIN: (no AUTH option found)
Mail certificate is valid
pmg.fitnessauthority.pl
185.36.169.121
587
SMTP (encrypted, submission)
open
220 mail.fitnessauthority.pl ESMTP Postcow
Mail certificate is valid

Answer EHLO: 250-mail.fitnessauthority.pl 250-PIPELINING 250-SIZE 104857600 250-ETRN 250-STARTTLS 250-ENHANCEDSTATUSCODES 250-8BITMIME 250 DSN Good: STARTTLS found


Mail From: openrelay-test@check-your-website.server-daten.de
RCPT TO: openrelay-result@check-your-website.server-daten.de
Excellent: Server want's Renegotiating after sending the RCPT TO - Command, no open relay after STARTTLS
pmg.fitnessauthority.pl
185.36.169.121
993
IMAP (encrypted)
open


pmg.fitnessauthority.pl
185.36.169.121
993
IMAP (encrypted)
open


pmg.fitnessauthority.pl
185.36.169.121
995
POP3 (encrypted)
open


pmg.fitnessauthority.pl
185.36.169.121
995
POP3 (encrypted)
open


pmg.fitnessauthority.pl
185.36.169.121
1433
MS SQL



pmg.fitnessauthority.pl
185.36.169.121
1433
MS SQL



pmg.fitnessauthority.pl
185.36.169.121
2082
cPanel (http)



pmg.fitnessauthority.pl
185.36.169.121
2082
cPanel (http)



pmg.fitnessauthority.pl
185.36.169.121
2083
cPanel (https)



pmg.fitnessauthority.pl
185.36.169.121
2083
cPanel (https)



pmg.fitnessauthority.pl
185.36.169.121
2086
WHM (http)



pmg.fitnessauthority.pl
185.36.169.121
2086
WHM (http)



pmg.fitnessauthority.pl
185.36.169.121
2087
WHM (https)



pmg.fitnessauthority.pl
185.36.169.121
2087
WHM (https)



pmg.fitnessauthority.pl
185.36.169.121
2089
cPanel Licensing



pmg.fitnessauthority.pl
185.36.169.121
2089
cPanel Licensing



pmg.fitnessauthority.pl
185.36.169.121
2095
cPanel Webmail (http)



pmg.fitnessauthority.pl
185.36.169.121
2095
cPanel Webmail (http)



pmg.fitnessauthority.pl
185.36.169.121
2096
cPanel Webmail (https)



pmg.fitnessauthority.pl
185.36.169.121
2096
cPanel Webmail (https)



pmg.fitnessauthority.pl
185.36.169.121
2222
DirectAdmin (http)



pmg.fitnessauthority.pl
185.36.169.121
2222
DirectAdmin (http)



pmg.fitnessauthority.pl
185.36.169.121
2222
DirectAdmin (https)



pmg.fitnessauthority.pl
185.36.169.121
2222
DirectAdmin (https)



pmg.fitnessauthority.pl
185.36.169.121
3306
mySql



pmg.fitnessauthority.pl
185.36.169.121
3306
mySql



pmg.fitnessauthority.pl
185.36.169.121
5224
Plesk Licensing



pmg.fitnessauthority.pl
185.36.169.121
5224
Plesk Licensing



pmg.fitnessauthority.pl
185.36.169.121
5432
PostgreSQL



pmg.fitnessauthority.pl
185.36.169.121
5432
PostgreSQL



pmg.fitnessauthority.pl
185.36.169.121
8080
Ookla Speedtest (http)



pmg.fitnessauthority.pl
185.36.169.121
8080
Ookla Speedtest (http)



pmg.fitnessauthority.pl
185.36.169.121
8080
Ookla Speedtest (https)



pmg.fitnessauthority.pl
185.36.169.121
8080
Ookla Speedtest (https)



pmg.fitnessauthority.pl
185.36.169.121
8083
VestaCP http



pmg.fitnessauthority.pl
185.36.169.121
8083
VestaCP http



pmg.fitnessauthority.pl
185.36.169.121
8083
VestaCP https



pmg.fitnessauthority.pl
185.36.169.121
8083
VestaCP https



pmg.fitnessauthority.pl
185.36.169.121
8443
Plesk Administration (https)



pmg.fitnessauthority.pl
185.36.169.121
8443
Plesk Administration (https)



pmg.fitnessauthority.pl
185.36.169.121
8447
Plesk Installer + Updates



pmg.fitnessauthority.pl
185.36.169.121
8447
Plesk Installer + Updates



pmg.fitnessauthority.pl
185.36.169.121
8880
Plesk Administration (http)



pmg.fitnessauthority.pl
185.36.169.121
8880
Plesk Administration (http)



pmg.fitnessauthority.pl
185.36.169.121
10000
Webmin (http)



pmg.fitnessauthority.pl
185.36.169.121
10000
Webmin (http)



pmg.fitnessauthority.pl
185.36.169.121
10000
Webmin (https)



pmg.fitnessauthority.pl
185.36.169.121
10000
Webmin (https)



 

 

Permalink: https://check-your-website.server-daten.de/?i=a4b3b130-9c4d-4515-86cf-49c979053da0

 

Last Result: https://check-your-website.server-daten.de/?q=pmg.fitnessauthority.pl - 2025-12-02 19:43:55

 

Do you like this page? Support this tool, add a link on your page:

 

<a href="https://check-your-website.server-daten.de/?q=pmg.fitnessauthority.pl" target="_blank">Check this Site: pmg.fitnessauthority.pl</a>

 

 

Do you really want to support this project? Donate: Check-your-website, IBAN DE98 1001 0010 0575 2211 07, SWIFT/BIC PBNKDEFF, Euro

 

QR-Code of this page - https://check-your-website.server-daten.de/?d=pmg.fitnessauthority.pl