Shortcuts: 1. Basic DNS | 2. Url-Checks | 3. Comments | 4. Connections | 5. Certificates | 6. CT-Logs | 7. Html-Content | 8. CAA | 9. TXT |


W

wrong Web-Response

Checked:
15.05.2019 15:21:26


Older results

No older results found

1. Basic DNS and Nameserver Checks

HostTIP-Addressis auth.∑ Queries∑ Timeout
ssl-services.dev.suite.auterion.com
C
dev-reverse-proxy-ssl-nlb-eda145d7ca8cecb3.elb.us-east-1.amazonaws.com
yes
1
0

A
3.83.210.83
yes



A
3.93.160.216
yes


www.ssl-services.dev.suite.auterion.com

Name Error
yes
1
0


Zone (*)DNSSEC - Informations (beta)
(root)
1 DS RR published

Status: Valid because published

2 DNSKEY RR found

Public Key with Algorithm 8, KeyTag 20326, Flags 257 (SEP = Secure Entry Point)

Public Key with Algorithm 8, KeyTag 25266, Flags 256

1 RRSIG RR to validate DNSKEY RR found

Algorithm: 8, 0 Labels, original TTL: 172800 sec, Signature-expiration: 01.06.2019, 00:00:00, Signature-Inception: 11.05.2019, 00:00:00, KeyTag 20326, Signer-Name: (root)

Status: Good - Algorithmus 8 and DNSKEY with KeyTag 20326 used to validate the DNSKEY RRSet

Status: Valid Chain of trust. Parent-DS with Algorithm 8, KeyTag 20326, DigestType 2 and Digest "4G1EuAuPHTmpXAsNfGXQhFjogECbvGg0VxBCN8f47I0=" validates local Key with the same values, Key ist Secure Entry Point (SEP) of the zone
com
1 DS RR in the parent zone found

2 RRSIG RR to validate DS RR found

Algorithm: 8, 1 Labels, original TTL: 86400 sec, Signature-expiration: 28.05.2019, 05:00:00, Signature-Inception: 15.05.2019, 04:00:00, KeyTag 25266, Signer-Name: (root)

Status: Good - Algorithmus 8 and DNSKEY with KeyTag 25266 used to validate the DS RRSet in the parent zone

2 DNSKEY RR found

Public Key with Algorithm 8, KeyTag 3800, Flags 256

Public Key with Algorithm 8, KeyTag 30909, Flags 257 (SEP = Secure Entry Point)

1 RRSIG RR to validate DNSKEY RR found

Algorithm: 8, 1 Labels, original TTL: 86400 sec, Signature-expiration: 27.05.2019, 18:25:33, Signature-Inception: 12.05.2019, 18:20:33, KeyTag 30909, Signer-Name: com

Status: Good - Algorithmus 8 and DNSKEY with KeyTag 30909 used to validate the DNSKEY RRSet

Status: Valid Chain of trust. Parent-DS with Algorithm 8, KeyTag 30909, DigestType 2 and Digest "4tPJFvbe6scylOgmj7WIUESoM/xUWViPSpGEz8QaV2Y=" validates local Key with the same values, Key ist Secure Entry Point (SEP) of the zone
auterion.com
0 DS RR in the parent zone found

DS-Query in the parent zone has a valid NSEC3 RR as result with the hashed domain name between the hashed NSEC3-owner and the hashed NextOwner. So the parent zone confirmes the non-existence of a DS RR.

0 DNSKEY RR found


suite.auterion.com
0 DS RR in the parent zone found

0 DNSKEY RR found


dev.suite.auterion.com
0 DS RR in the parent zone found

0 DNSKEY RR found


ssl-services.dev.suite.auterion.com
0 DS RR in the parent zone found
www.ssl-services.dev.suite.auterion.com
0 DS RR in the parent zone found
(root)
1 DS RR published

Status: Valid because published

2 DNSKEY RR found

Public Key with Algorithm 8, KeyTag 20326, Flags 257 (SEP = Secure Entry Point)

Public Key with Algorithm 8, KeyTag 25266, Flags 256

1 RRSIG RR to validate DNSKEY RR found

Algorithm: 8, 0 Labels, original TTL: 172800 sec, Signature-expiration: 01.06.2019, 00:00:00, Signature-Inception: 11.05.2019, 00:00:00, KeyTag 20326, Signer-Name: (root)

Status: Good - Algorithmus 8 and DNSKEY with KeyTag 20326 used to validate the DNSKEY RRSet

Status: Valid Chain of trust. Parent-DS with Algorithm 8, KeyTag 20326, DigestType 2 and Digest "4G1EuAuPHTmpXAsNfGXQhFjogECbvGg0VxBCN8f47I0=" validates local Key with the same values, Key ist Secure Entry Point (SEP) of the zone
com
1 DS RR in the parent zone found

2 RRSIG RR to validate DS RR found

Algorithm: 8, 1 Labels, original TTL: 86400 sec, Signature-expiration: 28.05.2019, 05:00:00, Signature-Inception: 15.05.2019, 04:00:00, KeyTag 25266, Signer-Name: (root)

Status: Good - Algorithmus 8 and DNSKEY with KeyTag 25266 used to validate the DS RRSet in the parent zone

2 DNSKEY RR found

Public Key with Algorithm 8, KeyTag 3800, Flags 256

Public Key with Algorithm 8, KeyTag 30909, Flags 257 (SEP = Secure Entry Point)

1 RRSIG RR to validate DNSKEY RR found

Algorithm: 8, 1 Labels, original TTL: 86400 sec, Signature-expiration: 27.05.2019, 18:25:33, Signature-Inception: 12.05.2019, 18:20:33, KeyTag 30909, Signer-Name: com

Status: Good - Algorithmus 8 and DNSKEY with KeyTag 30909 used to validate the DNSKEY RRSet

Status: Valid Chain of trust. Parent-DS with Algorithm 8, KeyTag 30909, DigestType 2 and Digest "4tPJFvbe6scylOgmj7WIUESoM/xUWViPSpGEz8QaV2Y=" validates local Key with the same values, Key ist Secure Entry Point (SEP) of the zone
amazonaws.com
0 DS RR in the parent zone found

DS-Query in the parent zone has a valid NSEC3 RR as result with the hashed domain name between the hashed NSEC3-owner and the hashed NextOwner. So the parent zone confirmes the non-existence of a DS RR.

0 DNSKEY RR found


us-east-1.amazonaws.com
0 DS RR in the parent zone found

0 DNSKEY RR found


elb.us-east-1.amazonaws.com
0 DS RR in the parent zone found

0 DNSKEY RR found


dev-reverse-proxy-ssl-nlb-eda145d7ca8cecb3.elb.us-east-1.amazonaws.com
0 DS RR in the parent zone found

0 DNSKEY RR found



DomainNameserverNS-IP
www.ssl-services.dev.suite.auterion.com
  ns-179.awsdns-22.com

dev.suite.auterion.com
  ns-1052.awsdns-03.org / 7049fd7aca92a33e7fae5795c61be1f5 -


  ns-1758.awsdns-27.co.uk / b340d564a4767d4fe02f9753ab7fd59b -


  ns-179.awsdns-22.com / eaa5fd01ce2a81f5fa220e82d6143760 -


  ns-574.awsdns-07.net / a3f4c95fd4082dff4c6f2da186ae4a16 -

suite.auterion.com
  ns-1264.awsdns-30.org / 52e094ca86f2e81578c1ddf2b27f74ab -


  ns-1828.awsdns-36.co.uk / 4299825d66b7b6cedccbcacfe4d8362c -


  ns-320.awsdns-40.com / 8d11ee001268fdda1377c036589eb73b -


  ns-797.awsdns-35.net / 069d9eacb1c39f187625f2ad12ef56da -

auterion.com
T  ns1kwy.name.com


  ns2fkr.name.com / hivecast-179-defra.as15135.net namecom-red-ns


T  ns3bgq.name.com


  ns4cfn.name.com / hivecast-177-defra.as15135.net namecom-red-ns

com
  a.gtld-servers.net


  b.gtld-servers.net


  c.gtld-servers.net


  d.gtld-servers.net


  e.gtld-servers.net


  f.gtld-servers.net


  g.gtld-servers.net


  h.gtld-servers.net


  i.gtld-servers.net


  j.gtld-servers.net


  k.gtld-servers.net


  l.gtld-servers.net


  m.gtld-servers.net


dev-reverse-proxy-ssl-nlb-eda145d7ca8cecb3.elb.us-east-1.amazonaws.com
  ns-1826.awsdns-36.co.uk / a360837b3ebb690b8ebc65a794e97a3f -
205.251.199.34

 
2600:9000:5307:2200::1
elb.us-east-1.amazonaws.com
  ns-1286.awsdns-32.org / 841fedd5093f028bd1a5f996bb53f427 -


  ns-1826.awsdns-36.co.uk / 49b6fd13a62b90f037a69098b119597d -


  ns-281.awsdns-35.com / b2011fb97fe0b7a76269055489f99c01 -


  ns-844.awsdns-41.net / 13a53454be0096060822812b0d34896e -

us-east-1.amazonaws.com
  ns1.p31.dynect.net / proxy-113-defra.hivecast-113-defra.as15135.net


  ns2.p31.dynect.net / proxy-341-nlams2.hivecast-341-nlams2.as15135.net


  ns3.p31.dynect.net / proxy-73-defra.hivecast-73-defra.as15135.net


  ns4.p31.dynect.net / proxy-113-defra.hivecast-113-defra.as15135.net


  pdns1.ultradns.net


  pdns3.ultradns.org


  pdns5.ultradns.info


  u1.amazonaws.com


  u2.amazonaws.com


  u3.amazonaws.com


  u4.amazonaws.com


  u5.amazonaws.com


  u6.amazonaws.com

amazonaws.com
  r1.amazonaws.com / ccca21402ce071b64a145c13ba2cd7c3 -


  r2.amazonaws.com / a50c7c46d74217c10ed26284a8fbf9f5 -


  u1.amazonaws.com


  u2.amazonaws.com

com
  a.gtld-servers.net


  b.gtld-servers.net


  c.gtld-servers.net


  d.gtld-servers.net


  e.gtld-servers.net


  f.gtld-servers.net


  g.gtld-servers.net


  h.gtld-servers.net


  i.gtld-servers.net


  j.gtld-servers.net


  k.gtld-servers.net


  l.gtld-servers.net


  m.gtld-servers.net



SOA - records (beta)

Domain:com
Primary:a.gtld-servers.net
Mail:nstld.verisign-grs.com
Serial:1557926467
Refresh:1800
Retry:900
Expire:604800
TTL:86400
num Entries:10


Domain:com
Primary:a.gtld-servers.net
Mail:nstld.verisign-grs.com
Serial:1557926482
Refresh:1800
Retry:900
Expire:604800
TTL:86400
num Entries:3


Domain:auterion.com
Primary:ns1kwy.name.com
Mail:support.name.com
Serial:1557360000
Refresh:10800
Retry:3600
Expire:604800
TTL:3600
num Entries:4


Domain:suite.auterion.com
Primary:ns-1264.awsdns-30.org
Mail:awsdns-hostmaster.amazon.com
Serial:1
Refresh:7200
Retry:900
Expire:1209600
TTL:86400
num Entries:4


Domain:dev.suite.auterion.com
Primary:ns-179.awsdns-22.com
Mail:awsdns-hostmaster.amazon.com
Serial:1
Refresh:7200
Retry:900
Expire:1209600
TTL:86400
num Entries:4



Domain:com
Primary:a.gtld-servers.net
Mail:nstld.verisign-grs.com
Serial:1557926512
Refresh:1800
Retry:900
Expire:604800
TTL:86400
num Entries:6


Domain:com
Primary:a.gtld-servers.net
Mail:nstld.verisign-grs.com
Serial:1557926527
Refresh:1800
Retry:900
Expire:604800
TTL:86400
num Entries:7


Domain:amazonaws.com
Primary:dns-external-master.amazon.com
Mail:hostmaster.amazon.com
Serial:2012708585
Refresh:180
Retry:60
Expire:2592000
TTL:3593
num Entries:2


Domain:amazonaws.com
Primary:pdns1.ultradns.net
Mail:hostmaster.amazon.com
Serial:2014062440
Refresh:180
Retry:60
Expire:2592000
TTL:3593
num Entries:2


Domain:us-east-1.amazonaws.com
Primary:dns-external-master.amazon.com
Mail:root.amazon.com
Serial:1477
Refresh:180
Retry:60
Expire:2592000
TTL:5
num Entries:13


Domain:elb.us-east-1.amazonaws.com
Primary:ns-1826.awsdns-36.co.uk
Mail:awsdns-hostmaster.amazon.com
Serial:1
Refresh:7200
Retry:900
Expire:1209600
TTL:60
num Entries:4


Domain:dev-reverse-proxy-ssl-nlb-eda145d7ca8cecb3.elb.us-east-1.amazonaws.com
Primary:ns-1826.awsdns-36.co.uk
Mail:awsdns-hostmaster.amazon.com
Serial:1
Refresh:7200
Retry:900
Expire:1209600
TTL:60
num Entries:2


2. Url-Checks

Domainname Http-StatusredirectSec.G
• http://ssl-services.dev.suite.auterion.com:51053/
3.83.210.83
-8

0.414
W
ConnectionClosed - The underlying connection was closed: The connection was closed unexpectedly.

• http://ssl-services.dev.suite.auterion.com:51053/
3.93.160.216
-8

0.423
W
ConnectionClosed - The underlying connection was closed: The connection was closed unexpectedly.

• https://ssl-services.dev.suite.auterion.com:51053/
3.83.210.83
-8

0.750
W
ConnectionClosed - The underlying connection was closed: The connection was closed unexpectedly.

• https://ssl-services.dev.suite.auterion.com:51053/
3.93.160.216
-8

0.767
W
ConnectionClosed - The underlying connection was closed: The connection was closed unexpectedly.

• http://ssl-services.dev.suite.auterion.com:51053/.well-known/acme-challenge/check-your-website-dot-server-daten-dot-de
3.83.210.83
-8

0.420
W
ConnectionClosed - The underlying connection was closed: The connection was closed unexpectedly.
Visible Content:

• http://ssl-services.dev.suite.auterion.com:51053/.well-known/acme-challenge/check-your-website-dot-server-daten-dot-de
3.93.160.216
-8

0.420
W
ConnectionClosed - The underlying connection was closed: The connection was closed unexpectedly.
Visible Content:

3. Comments

Aname "ssl-services.dev.suite.auterion.com" is subdomain, public suffix is "com", top-level-domain-type is "generic", tld-manager is "VeriSign Global Registry Services"
Agood: All ip addresses are public addresses
Agood: No asked Authoritative Name Server had a timeout
ADNS: "Name Error" means: No www-dns-entry defined. This isn't a problem
AGood: Nameserver supports TCP connections: 4 good Nameserver
AGood: Nameserver supports Echo Capitalization: 4 good Nameserver
XNameserver Timeout checking Echo Capitalization: ns1kwy.name.com
XNameserver Timeout checking Echo Capitalization: ns3bgq.name.com
AGood: Nameserver supports EDNS with max. 512 Byte Udp payload, message is smaller: 4 good Nameserver
XNameserver Timeout checking EDNS512: ns1kwy.name.com
AGood: Nameserver has passed 10 EDNS-Checks (OP100, FLAGS, V1, V1OP100, V1FLAGS, DNSSEC, V1DNSSEC, NSID, COOKIE, CLIENTSUBNET): 4 good Nameserver
Nameserver doesn't pass all EDNS-Checks: ns-179.awsdns-22.com: OP100: no result. FLAGS: no result. V1: no result. V1OP100: no result. V1FLAGS: no result. DNSSEC: no result. V1DNSSEC: no result. NSID: no result. COOKIE: no result. CLIENTSUBNET: no result.
Nameserver doesn't pass all EDNS-Checks: ns1kwy.name.com: OP100: ok. FLAGS: ok. V1: SOA NOT expected, but found, BADVER expected, NOERR found, Version 0 expectend and found. V1OP100: SOA NOT expected, but found, BADVER expected, NOERR found, Version 0 expectend and found, no OPT100 expected, no OPT100 found. V1FLAGS: fatal timeout. DNSSEC: ok. V1DNSSEC: SOA NOT expected, but found, BADVER expected, NOERR found, Version 0 expectend and found. NSID: fatal timeout. COOKIE: ok. CLIENTSUBNET: ok.
Nameserver doesn't pass all EDNS-Checks: ns2fkr.name.com: OP100: ok. FLAGS: ok. V1: SOA NOT expected, but found, BADVER expected, NOERR found, Version 0 expectend and found. V1OP100: SOA NOT expected, but found, BADVER expected, NOERR found, Version 0 expectend and found, no OPT100 expected, no OPT100 found. V1FLAGS: SOA NOT expected, but found, BADVER expected, NOERR found, Version 0 expectend and found. DNSSEC: ok. V1DNSSEC: SOA NOT expected, but found, BADVER expected, NOERR found, Version 0 expectend and found. NSID: ok (hivecast-179-defra.as15135.net namecom-red-ns). COOKIE: ok. CLIENTSUBNET: ok.
Nameserver doesn't pass all EDNS-Checks: ns3bgq.name.com: OP100: fatal timeout. FLAGS: fatal timeout. V1: fatal timeout. V1OP100: ok. V1FLAGS: SOA NOT expected, but found, BADVER expected, NOERR found, Version 0 expectend and found. DNSSEC: fatal timeout. V1DNSSEC: SOA NOT expected, but found, BADVER expected, NOERR found, Version 0 expectend and found. NSID: fatal timeout. COOKIE: ok. CLIENTSUBNET: ok.
Nameserver doesn't pass all EDNS-Checks: ns4cfn.name.com: OP100: ok. FLAGS: ok. V1: SOA NOT expected, but found, BADVER expected, NOERR found, Version 0 expectend and found. V1OP100: SOA NOT expected, but found, BADVER expected, NOERR found, Version 0 expectend and found, no OPT100 expected, no OPT100 found. V1FLAGS: SOA NOT expected, but found, BADVER expected, NOERR found, Version 0 expectend and found. DNSSEC: ok. V1DNSSEC: SOA NOT expected, but found, BADVER expected, NOERR found, Version 0 expectend and found. NSID: ok (hivecast-177-defra.as15135.net namecom-red-ns). COOKIE: ok. CLIENTSUBNET: ok.
AGood: All SOA have the same Serial Number
Warning: No CAA entry with issue/issuewild found, every CAA can create a certificate
ADuration: 184784 milliseconds, 184.784 seconds


4. Connections

No connection informations found. Perhaps only http - connections.


5. Certificates

No certificate informations found. Perhaps only http - connections.


6. Last Certificates - Certificate Transparency Log Check (BETA)

1. Source CertSpotter - active certificates

Issuerlast 7 daysactivenum Certs
CN=Let's Encrypt Authority X3, O=Let's Encrypt, C=US
0
2
2

CertSpotter-IdIssuernot beforenot afterDomain namesLE-Duplicatenext LE
913143575
CN=Let's Encrypt Authority X3, O=Let's Encrypt, C=US
2019-05-15 10:53:52
2019-08-13 10:53:52
ssl-services.dev.suite.auterion.com
1 entries


911505880
CN=Let's Encrypt Authority X3, O=Let's Encrypt, C=US
2019-05-14 12:48:52
2019-08-12 12:48:52
ssl-services.dev.suite.auterion.com
1 entries



2. Source crt.sh - old and new certificates, sometimes very slow.

Issuerlast 7 daysactivenum Certs
CN=Let's Encrypt Authority X3, O=Let's Encrypt, C=US
0
2
2

CRT-IdIssuernot beforenot afterDomain namesLE-Duplicatenext LE
1473539980
CN=Let's Encrypt Authority X3, O=Let's Encrypt, C=US
2019-05-15 08:53:52
2019-08-13 08:53:52
ssl-services.dev.suite.auterion.com
1 entries


1471208568
CN=Let's Encrypt Authority X3, O=Let's Encrypt, C=US
2019-05-14 10:48:52
2019-08-12 10:48:52
ssl-services.dev.suite.auterion.com
1 entries



7. Html-Content - Entries (BETA - mixed content and other checks)

No Html-Content entries found. Only checked if https + status 200/401/403/404


8. CAA - Entries

DomainnameflagNameValue∑ Queries∑ Timeout
dev-reverse-proxy-ssl-nlb-eda145d7ca8cecb3.elb.us-east-1.amazonaws.com
0

no CAA entry found
1
0
ssl-services.dev.suite.auterion.com



1
0
elb.us-east-1.amazonaws.com
0

no CAA entry found
1
0
us-east-1.amazonaws.com
0

no CAA entry found
1
0
dev.suite.auterion.com
0

no CAA entry found
1
0
suite.auterion.com
0

no CAA entry found
1
0
amazonaws.com
0

no CAA entry found
1
0
auterion.com
0

no CAA entry found
1
0
com
0

no CAA entry found
1
0

0

no CAA entry found
1
0


9. TXT - Entries

DomainnameTXT EntryStatus∑ Queries∑ Timeout
ssl-services.dev.suite.auterion.com


1
0
_acme-challenge.ssl-services.dev.suite.auterion.com

Name Error - The domain name does not exist
1
0
dev-reverse-proxy-ssl-nlb-eda145d7ca8cecb3.elb.us-east-1.amazonaws.com

ok
1
0
_acme-challenge.ssl-services.dev.suite.auterion.com.dev.suite.auterion.com

Name Error - The domain name does not exist
1
0
_acme-challenge.dev-reverse-proxy-ssl-nlb-eda145d7ca8cecb3.elb.us-east-1.amazonaws.com

Name Error - The domain name does not exist
1
0
_acme-challenge.ssl-services.dev.suite.auterion.com.ssl-services.dev.suite.auterion.com

Name Error - The domain name does not exist
1
0
_acme-challenge.dev-reverse-proxy-ssl-nlb-eda145d7ca8cecb3.elb.us-east-1.amazonaws.com.elb.us-east-1.amazonaws.com

Name Error - The domain name does not exist
1
0
_acme-challenge.dev-reverse-proxy-ssl-nlb-eda145d7ca8cecb3.elb.us-east-1.amazonaws.com.dev-reverse-proxy-ssl-nlb-eda145d7ca8cecb3.elb.us-east-1.amazonaws.com

Name Error - The domain name does not exist
1
0



Permalink: https://check-your-website.server-daten.de/?i=3d517efd-7184-44a3-a8ed-2f49f0f2a80e


Last Result: https://check-your-website.server-daten.de/?q=ssl-services.dev.suite.auterion.com%3a51053 - 2019-05-15 15:21:26