Check DNS, Urls + Redirects, Certificates and Content of your Website


 

 

A

 

Top config

 

Checked:
22.12.2022 16:39:00

 

Older results

 

 

1. IP-Addresses

HostTypeIP-Addressis auth.∑ Queries∑ Timeout
uomorando.it
A
104.198.14.52
The Dalles/Oregon/United States (US) - Google LLC
Hostname: 52.14.198.104.bc.googleusercontent.com
yes
1
0

AAAA

yes


www.uomorando.it
CNAME
uomorando.netlify.app
yes
1
0

A
34.159.132.250
Frankfurt/Hesse/Germany (DE) - Google LLC
Hostname: 250.132.159.34.bc.googleusercontent.com
yes



A
35.198.80.163
Frankfurt/Hesse/Germany (DE) - Google LLC
Hostname: 163.80.198.35.bc.googleusercontent.com
yes



AAAA
2a05:d014:275:cb01::c8
Frankfurt am Main/Hesse/Germany (DE) - Amazon.com, Inc.

yes



AAAA
2a05:d014:275:cb02::c8
Frankfurt am Main/Hesse/Germany (DE) - Amazon.com, Inc.

yes


www.uomorando.it
A
3.72.140.173
Frankfurt am Main/Hesse/Germany (DE) - Amazon Technologies Inc.
No Hostname found
no



A
18.192.231.252
Frankfurt am Main/Hesse/Germany (DE) - Amazon Technologies Inc.
No Hostname found
no


*.uomorando.it
A
135.181.60.167
yes



AAAA

yes



CNAME
falcon.uomorando.it
yes


 

2. DNSSEC

Zone (*)DNSSEC - Informations


Zone: (root)

(root)
1 DS RR published






DS with Algorithm 8, KeyTag 20326, DigestType 2 and Digest 4G1EuAuPHTmpXAsNfGXQhFjogECbvGg0VxBCN8f47I0=






Status: Valid because published






3 DNSKEY RR found






Public Key with Algorithm 8, KeyTag 951, Flags 256






Public Key with Algorithm 8, KeyTag 18733, Flags 256






Public Key with Algorithm 8, KeyTag 20326, Flags 257 (SEP = Secure Entry Point)






1 RRSIG RR to validate DNSKEY RR found






RRSIG-Owner (root), Algorithm: 8, 0 Labels, original TTL: 172800 sec, Signature-expiration: 10.01.2023, 00:00:00 +, Signature-Inception: 20.12.2022, 00:00:00 +, KeyTag 20326, Signer-Name: (root)






Status: Good - Algorithmus 8 and DNSKEY with KeyTag 20326 used to validate the DNSKEY RRSet






Status: Valid Chain of trust. Parent-DS with Algorithm 8, KeyTag 20326, DigestType 2 and Digest "4G1EuAuPHTmpXAsNfGXQhFjogECbvGg0VxBCN8f47I0=" validates local Key with the same values, Key ist Secure Entry Point (SEP) of the zone



Zone: it

it
1 DS RR in the parent zone found






DS with Algorithm 10, KeyTag 41901, DigestType 2 and Digest R/f3uiHkhZH2Fy7tE+NbZrk62fKID8m62mT2jOKOu5A=






1 RRSIG RR to validate DS RR found






RRSIG-Owner it., Algorithm: 8, 1 Labels, original TTL: 86400 sec, Signature-expiration: 04.01.2023, 05:00:00 +, Signature-Inception: 22.12.2022, 04:00:00 +, KeyTag 18733, Signer-Name: (root)






Status: Good - Algorithmus 8 and DNSKEY with KeyTag 18733 used to validate the DS RRSet in the parent zone






2 DNSKEY RR found






Public Key with Algorithm 10, KeyTag 18395, Flags 256






Public Key with Algorithm 10, KeyTag 41901, Flags 257 (SEP = Secure Entry Point)






2 RRSIG RR to validate DNSKEY RR found






RRSIG-Owner it., Algorithm: 10, 1 Labels, original TTL: 10800 sec, Signature-expiration: 21.01.2023, 14:04:30 +, Signature-Inception: 22.12.2022, 14:04:30 +, KeyTag 18395, Signer-Name: it






RRSIG-Owner it., Algorithm: 10, 1 Labels, original TTL: 10800 sec, Signature-expiration: 21.01.2023, 14:04:30 +, Signature-Inception: 22.12.2022, 14:04:30 +, KeyTag 41901, Signer-Name: it






Status: Good - Algorithmus 10 and DNSKEY with KeyTag 18395 used to validate the DNSKEY RRSet






Status: Good - Algorithmus 10 and DNSKEY with KeyTag 41901 used to validate the DNSKEY RRSet






Status: Valid Chain of trust. Parent-DS with Algorithm 10, KeyTag 41901, DigestType 2 and Digest "R/f3uiHkhZH2Fy7tE+NbZrk62fKID8m62mT2jOKOu5A=" validates local Key with the same values, Key ist Secure Entry Point (SEP) of the zone



Zone: uomorando.it

uomorando.it
0 DS RR in the parent zone found






DS-Query in the parent zone has a valid NSEC3 RR as result with the hashed query name "57mgf04c4ga6vpl57j894pfh6mf89iah" between the hashed NSEC3-owner "57kongmid78u0k28fkt7dab5th1pm5b4" and the hashed NextOwner "57o4hur6u10qohpr1e72oo55d2spu6p2". So the parent zone confirmes the not-existence of a DS RR.
Bitmap: NS, DS, RRSIG Validated: RRSIG-Owner 57kongmid78u0k28fkt7dab5th1pm5b4.it., Algorithm: 10, 2 Labels, original TTL: 3600 sec, Signature-expiration: 21.01.2023, 14:04:30 +, Signature-Inception: 22.12.2022, 14:04:30 +, KeyTag 18395, Signer-Name: it






DS-Query in the parent zone sends valid NSEC3 RR with the Hash "rs1n3n7m54pdem5eunv9npkh3b6cgpjc" as Owner. That's the Hash of "it" with the NextHashedOwnerName "rs45884srcl7kjjiep3cu8c925t3vlvn". So that domain name is the Closest Encloser of "uomorando.it". Opt-Out: True.
Bitmap: NS, SOA, RRSIG, DNSKEY, NSEC3PARAM Validated: RRSIG-Owner rs1n3n7m54pdem5eunv9npkh3b6cgpjc.it., Algorithm: 10, 2 Labels, original TTL: 3600 sec, Signature-expiration: 21.01.2023, 14:04:30 +, Signature-Inception: 22.12.2022, 14:04:30 +, KeyTag 18395, Signer-Name: it






0 DNSKEY RR found









Zone: www.uomorando.it

www.uomorando.it
0 DS RR in the parent zone found



Zone: (root)

(root)
1 DS RR published






DS with Algorithm 8, KeyTag 20326, DigestType 2 and Digest 4G1EuAuPHTmpXAsNfGXQhFjogECbvGg0VxBCN8f47I0=






Status: Valid because published






3 DNSKEY RR found






Public Key with Algorithm 8, KeyTag 951, Flags 256






Public Key with Algorithm 8, KeyTag 18733, Flags 256






Public Key with Algorithm 8, KeyTag 20326, Flags 257 (SEP = Secure Entry Point)






1 RRSIG RR to validate DNSKEY RR found






RRSIG-Owner (root), Algorithm: 8, 0 Labels, original TTL: 172800 sec, Signature-expiration: 10.01.2023, 00:00:00 +, Signature-Inception: 20.12.2022, 00:00:00 +, KeyTag 20326, Signer-Name: (root)






Status: Good - Algorithmus 8 and DNSKEY with KeyTag 20326 used to validate the DNSKEY RRSet






Status: Valid Chain of trust. Parent-DS with Algorithm 8, KeyTag 20326, DigestType 2 and Digest "4G1EuAuPHTmpXAsNfGXQhFjogECbvGg0VxBCN8f47I0=" validates local Key with the same values, Key ist Secure Entry Point (SEP) of the zone



Zone: app

app
1 DS RR in the parent zone found






DS with Algorithm 8, KeyTag 23684, DigestType 2 and Digest OlzIox4CyUq6ZGGRL6u36fXjSVe7YRSlWoZNlq7DGDY=






1 RRSIG RR to validate DS RR found






RRSIG-Owner app., Algorithm: 8, 1 Labels, original TTL: 86400 sec, Signature-expiration: 04.01.2023, 05:00:00 +, Signature-Inception: 22.12.2022, 04:00:00 +, KeyTag 18733, Signer-Name: (root)






Status: Good - Algorithmus 8 and DNSKEY with KeyTag 18733 used to validate the DS RRSet in the parent zone






2 DNSKEY RR found






Public Key with Algorithm 8, KeyTag 23684, Flags 257 (SEP = Secure Entry Point)






Public Key with Algorithm 8, KeyTag 42591, Flags 256






1 RRSIG RR to validate DNSKEY RR found






RRSIG-Owner app., Algorithm: 8, 1 Labels, original TTL: 300 sec, Signature-expiration: 12.01.2023, 03:06:51 +, Signature-Inception: 21.12.2022, 03:06:51 +, KeyTag 23684, Signer-Name: app






Status: Good - Algorithmus 8 and DNSKEY with KeyTag 23684 used to validate the DNSKEY RRSet






Status: Valid Chain of trust. Parent-DS with Algorithm 8, KeyTag 23684, DigestType 2 and Digest "OlzIox4CyUq6ZGGRL6u36fXjSVe7YRSlWoZNlq7DGDY=" validates local Key with the same values, Key ist Secure Entry Point (SEP) of the zone



Zone: netlify.app

netlify.app
0 DS RR in the parent zone found






DS-Query in the parent zone has a valid NSEC3 RR as result with the hashed query name "haqa3ebohni63ah1pgrs4ojlotehoudk" between the hashed NSEC3-owner "haqa3ebohni63ah1pgrs4ojlotehoudk" and the hashed NextOwner "haqadmfvr2m3s5etppsbv9eissjmb4ui". So the parent zone confirmes the not-existence of a DS RR.
Bitmap: No Bitmap? Validated: RRSIG-Owner haqa3ebohni63ah1pgrs4ojlotehoudk.app., Algorithm: 8, 2 Labels, original TTL: 900 sec, Signature-expiration: 12.01.2023, 03:06:51 +, Signature-Inception: 21.12.2022, 03:06:51 +, KeyTag 42591, Signer-Name: app






0 DNSKEY RR found









Zone: uomorando.netlify.app

uomorando.netlify.app
0 DS RR in the parent zone found






0 DNSKEY RR found







 

3. Name Servers

DomainNameserverNS-IP
uomorando.it
  ns-1363.awsdns-42.org / 1b0dd431bbab75f1ba38c5bd87648827 -
205.251.197.83
Dublin/Leinster/Ireland (IE) - Amazon.com


 
2600:9000:5305:5300::1
Seattle/Washington/United States (US) - Amazon.com


  ns-1816.awsdns-35.co.uk / 069d9eacb1c39f187625f2ad12ef56da -
205.251.199.24
Herndon/Virginia/United States (US) - Amazon.com


 
2600:9000:5307:1800::1
Seattle/Washington/United States (US) - Amazon.com


  ns-196.awsdns-24.com / ac6590edfbe112b11d7262371e529f24 -
205.251.192.196
Dublin/Leinster/Ireland (IE) - Amazon.com


 
2600:9000:5300:c400::1
Seattle/Washington/United States (US) - Amazon.com


  ns-810.awsdns-37.net / 32916b59a8fc3fd49c838657f0c4e7af -
205.251.195.42
Ashburn/Virginia/United States (US) - Amazon.com


 
2600:9000:5303:2a00::1
Seattle/Washington/United States (US) - Amazon.com

it
  a.dns.it


  dns.nic.it


  m.dns.it


  nameserver.cnr.it


  r.dns.it


  s.dns.it / s2.wie


uomorando.netlify.app
  dns1.p01.nsone.net / ns1dns-fra03-912-5302-0
198.51.44.1
New York/United States (US) - NSONE Inc


 
2620:4d:4000:6259:7:1:0:1
New York/United States (US) - NSONE Inc

netlify.app
  dns1.p01.nsone.net / ns1dns-fra03-912-5310-0
198.51.44.1
New York/United States (US) - NSONE Inc


 
2620:4d:4000:6259:7:1:0:1
New York/United States (US) - NSONE Inc


  dns2.p01.nsone.net / ns1dns-fra03-387-5303-0
198.51.45.1
New York/United States (US) - NSONE Inc


 
2a00:edc0:6259:7:1::2
Amsterdam/North Holland/Netherlands (NL) - NS1


  dns3.p01.nsone.net / ns1dns-fra03-386-5313-0
198.51.44.65
New York/United States (US) - NSONE Inc


 
2620:4d:4000:6259:7:1:0:3
New York/United States (US) - NSONE Inc


  dns4.p01.nsone.net / ns1dns-fra03-387-5300-0
198.51.45.65
New York/United States (US) - NSONE Inc


 
2a00:edc0:6259:7:1::4
Amsterdam/North Holland/Netherlands (NL) - NS1

app
  ns-tld1.charlestonroadregistry.com


  ns-tld2.charlestonroadregistry.com


  ns-tld3.charlestonroadregistry.com


  ns-tld4.charlestonroadregistry.com


  ns-tld5.charlestonroadregistry.com

 

4. SOA-Entries


Domain:it
Zone-Name:it
Primary:dns.nic.it
Mail:hostmaster.nic.it
Serial:2022122216
Refresh:10800
Retry:900
Expire:604800
TTL:3600
num Entries:6


Domain:uomorando.it
Zone-Name:uomorando.it
Primary:ns-1363.awsdns-42.org
Mail:awsdns-hostmaster.amazon.com
Serial:1
Refresh:7200
Retry:900
Expire:1209600
TTL:86400
num Entries:8



Domain:app
Zone-Name:app
Primary:ns-tld1.charlestonroadregistry.com
Mail:cloud-dns-hostmaster.google.com
Serial:101427
Refresh:21600
Retry:3600
Expire:259200
TTL:900
num Entries:5


Domain:netlify.app
Zone-Name:netlify.app
Primary:dns1.p01.nsone.net
Mail:hostmaster.nsone.net
Serial:1664979656
Refresh:43200
Retry:7200
Expire:1209600
TTL:300
num Entries:8


Domain:uomorando.netlify.app
Zone-Name:netlify.app
Primary:dns1.p01.nsone.net
Mail:hostmaster.nsone.net
Serial:1664979656
Refresh:43200
Retry:7200
Expire:1209600
TTL:300
num Entries:2


5. Screenshots

Startaddress: https://uomorando.it/, address used: https://uomorando.it/, Screenshot created 2022-12-22 16:46:46 +00:0

 

Mobil (412px x 732px)

 

902 milliseconds

 

Screenshot mobile - https://uomorando.it/
Mobil + Landscape (732px x 412px)

 

853 milliseconds

 

Screenshot mobile landscape - https://uomorando.it/
Screen (1280px x 1680px)

 

2724 milliseconds

 

Screenshot Desktop - https://uomorando.it/

 

Mobile- and other Chrome-Checks


widthheight
visual Viewport412732
content Size412732

 

Good: No horizontal scrollbar. Content-size width = visual Viewport width.

 

6. Url-Checks


:

:
DomainnameHttp-StatusredirectSec.G
• http://uomorando.it/
104.198.14.52
301
https://uomorando.it/
Html is minified: 100.00 %
0.430
A
Location: https://uomorando.it/
Server: Netlify
X-Nf-Request-Id: 01GMX7WDPJSCE2DX1Z041C2SQ7
Date: Thu, 22 Dec 2022 15:40:28 GMT
Content-Length: 36
Content-Type: text/plain; charset=utf-8
Connection: close

• http://www.uomorando.it/
3.72.140.173
301
https://www.uomorando.it/
Html is minified: 100.00 %
0.044
A
Location: https://www.uomorando.it/
Server: Netlify
X-Nf-Request-Id: 01GMX7WG2BX32V0ESNJRF3K8QN
Date: Thu, 22 Dec 2022 15:40:30 GMT
Content-Length: 40
Content-Type: text/plain; charset=utf-8
Connection: close

• http://www.uomorando.it/
18.192.231.252
301
https://www.uomorando.it/
Html is minified: 100.00 %
0.043
A
Location: https://www.uomorando.it/
Server: Netlify
X-Nf-Request-Id: 01GMX7WFRK22DXWPRK1STM63YA
Date: Thu, 22 Dec 2022 15:40:30 GMT
Content-Length: 40
Content-Type: text/plain; charset=utf-8
Connection: close

• http://www.uomorando.it/
34.159.132.250
301
https://www.uomorando.it/
Html is minified: 100.00 %
0.220
A
Location: https://www.uomorando.it/
Server: Netlify
X-Nf-Request-Id: 01GMX7WE4JEP93S79CEXK14PHK
Date: Thu, 22 Dec 2022 15:40:28 GMT
Content-Length: 40
Content-Type: text/plain; charset=utf-8
Connection: close

• http://www.uomorando.it/
35.198.80.163
301
https://www.uomorando.it/
Html is minified: 100.00 %
0.246
A
Location: https://www.uomorando.it/
Server: Netlify
X-Nf-Request-Id: 01GMX7WEEK4J1V0B8P55DJWYCR
Date: Thu, 22 Dec 2022 15:40:29 GMT
Content-Length: 40
Content-Type: text/plain; charset=utf-8
Connection: close

• http://www.uomorando.it/
2a05:d014:275:cb01::c8
301
https://www.uomorando.it/
Html is minified: 100.00 %
0.153
A
Location: https://www.uomorando.it/
Server: Netlify
X-Nf-Request-Id: 01GMX7WEN4GHAY1JB1SWQH2C6D
Date: Thu, 22 Dec 2022 15:40:29 GMT
Content-Length: 40
Content-Type: text/plain; charset=utf-8
Connection: close

• http://www.uomorando.it/
2a05:d014:275:cb02::c8
301
https://www.uomorando.it/
Html is minified: 100.00 %
0.154
A
Location: https://www.uomorando.it/
Server: Netlify
X-Nf-Request-Id: 01GMX7WEX7EJS8G0EZ3BFT7PWP
Date: Thu, 22 Dec 2022 15:40:29 GMT
Content-Length: 40
Content-Type: text/plain; charset=utf-8
Connection: close

• https://www.uomorando.it/
3.72.140.173
301
https://uomorando.it/
Html is minified: 100.00 %
1.756
A
Location: https://uomorando.it/
Server: Netlify
Strict-Transport-Security: max-age=31536000; includeSubDomains; preload
X-Nf-Request-Id: 01GMX7X4XMR618MKWNAEYQSZ18
Date: Thu, 22 Dec 2022 15:40:52 GMT
Content-Length: 36
Content-Type: text/plain; charset=utf-8
Connection: close

• https://www.uomorando.it/
18.192.231.252
301
https://uomorando.it/
Html is minified: 100.00 %
1.867
A
Location: https://uomorando.it/
Server: Netlify
Strict-Transport-Security: max-age=31536000; includeSubDomains; preload
X-Nf-Request-Id: 01GMX7X2DAQ892FM6SXMT7NEF2
Date: Thu, 22 Dec 2022 15:40:49 GMT
Content-Length: 36
Content-Type: text/plain; charset=utf-8
Connection: close

• https://www.uomorando.it/
34.159.132.250
301
https://uomorando.it/
Html is minified: 100.00 %
2.380
A
Location: https://uomorando.it/
Server: Netlify
Strict-Transport-Security: max-age=31536000; includeSubDomains; preload
X-Nf-Request-Id: 01GMX7WQA8DQP3ADCT27V4GFQN
Date: Thu, 22 Dec 2022 15:40:38 GMT
Content-Length: 36
Content-Type: text/plain; charset=utf-8
Connection: close

• https://www.uomorando.it/
35.198.80.163
301
https://uomorando.it/
Html is minified: 100.00 %
2.470
A
Location: https://uomorando.it/
Server: Netlify
Strict-Transport-Security: max-age=31536000; includeSubDomains; preload
X-Nf-Request-Id: 01GMX7WTN23S82VWZ20JVGJQX7
Date: Thu, 22 Dec 2022 15:40:41 GMT
Content-Length: 36
Content-Type: text/plain; charset=utf-8
Connection: close

• https://www.uomorando.it/
2a05:d014:275:cb01::c8
301
https://uomorando.it/
Html is minified: 100.00 %
1.710
A
Location: https://uomorando.it/
Server: Netlify
Strict-Transport-Security: max-age=31536000; includeSubDomains; preload
X-Nf-Request-Id: 01GMX7WXPE11DWP1MB063GQ4EA
Date: Thu, 22 Dec 2022 15:40:44 GMT
Content-Length: 36
Content-Type: text/plain; charset=utf-8
Connection: close

• https://www.uomorando.it/
2a05:d014:275:cb02::c8
301
https://uomorando.it/
Html is minified: 100.00 %
1.760
A
Location: https://uomorando.it/
Server: Netlify
Strict-Transport-Security: max-age=31536000; includeSubDomains; preload
X-Nf-Request-Id: 01GMX7X02BS8FFHEVZNNED23EB
Date: Thu, 22 Dec 2022 15:40:47 GMT
Content-Length: 36
Content-Type: text/plain; charset=utf-8
Connection: close

• https://uomorando.it/
104.198.14.52
Inline-JavaScript (∑/total): 7/0 Inline-CSS (∑/total): 0/0
200

Html is minified: 108.80 %
Other inline scripts (∑/total): 0/0
5.483
A
small visible content (num chars: 186)
Stefano Morandi Senior GNU/Linux Sysadmin and DevOps Engineer FLOSS entusiast, Fanatic Debian geek, PNLUG founder stuff © Stefano Morandi. CC-BY-4.0 . Powered by Hugo v0.76.0 & Goa .
Age: 0
Cache-Control: public, max-age=0, must-revalidate
Content-Encoding: gzip
Content-Security-Policy: default-src 'none'; img-src 'self'; base-uri 'self' ; script-src 'self' https://cdnjs.cloudflare.com https://code.jquery.com https://cdn.jsdelivr.net https://stackpath.bootstrapcdn.com ; style-src 'self' https://cdnjs.cloudflare.com https://stackpath.bootstrapcdn.com https://use.fontawesome.com https://fonts.googleapis.com ; font-src 'self' https://fonts.googleapis.com https://fonts.gstatic.com https://use.fontawesome.com ; frame-ancestors 'self' ; form-action 'none' ;
Content-Type: text/html; charset=UTF-8
Date: Thu, 22 Dec 2022 15:40:31 GMT
Etag: "eeefbfd2abe3756f339992acbd44008c-ssl-df"
Permissions-Policy: interest-cohort=()
Referrer-Policy: no-referrer
Server: Netlify
Strict-Transport-Security: max-age=31536000; includeSubDomains; preload
Vary: Accept-Encoding
X-Content-Type-Options: nosniff
X-Frame-Options: DENY
X-Nf-Request-Id: 01GMX7WH2A3C08RNEEEN3KH47E
X-Xss-Protection: 1; mode=block
Connection: close
Transfer-Encoding: chunked

• http://uomorando.it/.well-known/acme-challenge/check-your-website-dot-server-daten-dot-de
104.198.14.52
Inline-JavaScript (∑/total): 0/0 Inline-CSS (∑/total): 0/0
301
https://uomorando.it/.well-known/acme-challenge/check-your-website-dot-server-daten-dot-de
Html is minified: 100.00 %
Other inline scripts (∑/total): 0/0
0.446
A
Visible Content: Redirecting to https://uomorando.it/.well-known/acme-challenge/check-your-website-dot-server-daten-dot-de
Age: 0
Cache-Control: public, max-age=0, must-revalidate
Content-Length: 105
Content-Security-Policy: default-src 'none'; img-src 'self'; base-uri 'self' ; script-src 'self' https://cdnjs.cloudflare.com https://code.jquery.com https://cdn.jsdelivr.net https://stackpath.bootstrapcdn.com ; style-src 'self' https://cdnjs.cloudflare.com https://stackpath.bootstrapcdn.com https://use.fontawesome.com https://fonts.googleapis.com ; font-src 'self' https://fonts.googleapis.com https://fonts.gstatic.com https://use.fontawesome.com ; frame-ancestors 'self' ; form-action 'none' ;
Content-Type: text/plain
Date: Thu, 22 Dec 2022 15:40:54 GMT
Location: https://uomorando.it/.well-known/acme-challenge/check-your-website-dot-server-daten-dot-de
Permissions-Policy: interest-cohort=()
Referrer-Policy: no-referrer
Server: Netlify
X-Content-Type-Options: nosniff
X-Frame-Options: DENY
X-Nf-Request-Id: 01GMX7X7GP0GMD30Y4MJBMCA15
X-Xss-Protection: 1; mode=block
Connection: close

• http://www.uomorando.it/.well-known/acme-challenge/check-your-website-dot-server-daten-dot-de
3.72.140.173
Inline-JavaScript (∑/total): 0/0 Inline-CSS (∑/total): 0/0
301
https://www.uomorando.it/.well-known/acme-challenge/check-your-website-dot-server-daten-dot-de
Html is minified: 100.00 %
Other inline scripts (∑/total): 0/0
0.050
A
Visible Content: Redirecting to https://www.uomorando.it/.well-known/acme-challenge/check-your-website-dot-server-daten-dot-de
Age: 2
Cache-Control: public, max-age=0, must-revalidate
Content-Length: 109
Content-Security-Policy: default-src 'none'; img-src 'self'; base-uri 'self' ; script-src 'self' https://cdnjs.cloudflare.com https://code.jquery.com https://cdn.jsdelivr.net https://stackpath.bootstrapcdn.com ; style-src 'self' https://cdnjs.cloudflare.com https://stackpath.bootstrapcdn.com https://use.fontawesome.com https://fonts.googleapis.com ; font-src 'self' https://fonts.googleapis.com https://fonts.gstatic.com https://use.fontawesome.com ; frame-ancestors 'self' ; form-action 'none' ;
Content-Type: text/plain
Date: Thu, 22 Dec 2022 15:40:57 GMT
Location: https://www.uomorando.it/.well-known/acme-challenge/check-your-website-dot-server-daten-dot-de
Permissions-Policy: interest-cohort=()
Referrer-Policy: no-referrer
Server: Netlify
X-Content-Type-Options: nosniff
X-Frame-Options: DENY
X-Nf-Request-Id: 01GMX7XC37DC39E55D20E1VZWQ
X-Xss-Protection: 1; mode=block
Connection: close

• http://www.uomorando.it/.well-known/acme-challenge/check-your-website-dot-server-daten-dot-de
18.192.231.252
Inline-JavaScript (∑/total): 0/0 Inline-CSS (∑/total): 0/0
301
https://www.uomorando.it/.well-known/acme-challenge/check-your-website-dot-server-daten-dot-de
Html is minified: 100.00 %
Other inline scripts (∑/total): 0/0
0.490
A
Visible Content: Redirecting to https://www.uomorando.it/.well-known/acme-challenge/check-your-website-dot-server-daten-dot-de
Age: 0
Cache-Control: public, max-age=0, must-revalidate
Content-Length: 109
Content-Security-Policy: default-src 'none'; img-src 'self'; base-uri 'self' ; script-src 'self' https://cdnjs.cloudflare.com https://code.jquery.com https://cdn.jsdelivr.net https://stackpath.bootstrapcdn.com ; style-src 'self' https://cdnjs.cloudflare.com https://stackpath.bootstrapcdn.com https://use.fontawesome.com https://fonts.googleapis.com ; font-src 'self' https://fonts.googleapis.com https://fonts.gstatic.com https://use.fontawesome.com ; frame-ancestors 'self' ; form-action 'none' ;
Content-Type: text/plain
Date: Thu, 22 Dec 2022 15:40:58 GMT
Location: https://www.uomorando.it/.well-known/acme-challenge/check-your-website-dot-server-daten-dot-de
Permissions-Policy: interest-cohort=()
Referrer-Policy: no-referrer
Server: Netlify
X-Content-Type-Options: nosniff
X-Frame-Options: DENY
X-Nf-Request-Id: 01GMX7XB95QWR3YRZNDHCJBETE
X-Xss-Protection: 1; mode=block
Connection: close

• http://www.uomorando.it/.well-known/acme-challenge/check-your-website-dot-server-daten-dot-de
34.159.132.250
Inline-JavaScript (∑/total): 0/0 Inline-CSS (∑/total): 0/0
301
https://www.uomorando.it/.well-known/acme-challenge/check-your-website-dot-server-daten-dot-de
Html is minified: 100.00 %
Other inline scripts (∑/total): 0/0
0.207
A
Visible Content: Redirecting to https://www.uomorando.it/.well-known/acme-challenge/check-your-website-dot-server-daten-dot-de
Age: 0
Cache-Control: public, max-age=0, must-revalidate
Content-Length: 109
Content-Security-Policy: default-src 'none'; img-src 'self'; base-uri 'self' ; script-src 'self' https://cdnjs.cloudflare.com https://code.jquery.com https://cdn.jsdelivr.net https://stackpath.bootstrapcdn.com ; style-src 'self' https://cdnjs.cloudflare.com https://stackpath.bootstrapcdn.com https://use.fontawesome.com https://fonts.googleapis.com ; font-src 'self' https://fonts.googleapis.com https://fonts.gstatic.com https://use.fontawesome.com ; frame-ancestors 'self' ; form-action 'none' ;
Content-Type: text/plain
Date: Thu, 22 Dec 2022 15:40:55 GMT
Location: https://www.uomorando.it/.well-known/acme-challenge/check-your-website-dot-server-daten-dot-de
Permissions-Policy: interest-cohort=()
Referrer-Policy: no-referrer
Server: Netlify
X-Content-Type-Options: nosniff
X-Frame-Options: DENY
X-Nf-Request-Id: 01GMX7X83BMHBXT4DVB5J26JHV
X-Xss-Protection: 1; mode=block
Connection: close

• http://www.uomorando.it/.well-known/acme-challenge/check-your-website-dot-server-daten-dot-de
35.198.80.163
Inline-JavaScript (∑/total): 0/0 Inline-CSS (∑/total): 0/0
301
https://www.uomorando.it/.well-known/acme-challenge/check-your-website-dot-server-daten-dot-de
Html is minified: 100.00 %
Other inline scripts (∑/total): 0/0
0.213
A
Visible Content: Redirecting to https://www.uomorando.it/.well-known/acme-challenge/check-your-website-dot-server-daten-dot-de
Age: 1
Cache-Control: public, max-age=0, must-revalidate
Content-Length: 109
Content-Security-Policy: default-src 'none'; img-src 'self'; base-uri 'self' ; script-src 'self' https://cdnjs.cloudflare.com https://code.jquery.com https://cdn.jsdelivr.net https://stackpath.bootstrapcdn.com ; style-src 'self' https://cdnjs.cloudflare.com https://stackpath.bootstrapcdn.com https://use.fontawesome.com https://fonts.googleapis.com ; font-src 'self' https://fonts.googleapis.com https://fonts.gstatic.com https://use.fontawesome.com ; frame-ancestors 'self' ; form-action 'none' ;
Content-Type: text/plain
Date: Thu, 22 Dec 2022 15:40:56 GMT
Location: https://www.uomorando.it/.well-known/acme-challenge/check-your-website-dot-server-daten-dot-de
Permissions-Policy: interest-cohort=()
Referrer-Policy: no-referrer
Server: Netlify
X-Content-Type-Options: nosniff
X-Frame-Options: DENY
X-Nf-Request-Id: 01GMX7X8SGSYH0JMB1F5PSRAZE
X-Xss-Protection: 1; mode=block
Connection: close

• http://www.uomorando.it/.well-known/acme-challenge/check-your-website-dot-server-daten-dot-de
2a05:d014:275:cb01::c8
Inline-JavaScript (∑/total): 0/0 Inline-CSS (∑/total): 0/0
301
https://www.uomorando.it/.well-known/acme-challenge/check-your-website-dot-server-daten-dot-de
Html is minified: 100.00 %
Other inline scripts (∑/total): 0/0
0.157
A
Visible Content: Redirecting to https://www.uomorando.it/.well-known/acme-challenge/check-your-website-dot-server-daten-dot-de
Age: 0
Cache-Control: public, max-age=0, must-revalidate
Content-Length: 109
Content-Security-Policy: default-src 'none'; img-src 'self'; base-uri 'self' ; script-src 'self' https://cdnjs.cloudflare.com https://code.jquery.com https://cdn.jsdelivr.net https://stackpath.bootstrapcdn.com ; style-src 'self' https://cdnjs.cloudflare.com https://stackpath.bootstrapcdn.com https://use.fontawesome.com https://fonts.googleapis.com ; font-src 'self' https://fonts.googleapis.com https://fonts.gstatic.com https://use.fontawesome.com ; frame-ancestors 'self' ; form-action 'none' ;
Content-Type: text/plain
Date: Thu, 22 Dec 2022 15:40:56 GMT
Location: https://www.uomorando.it/.well-known/acme-challenge/check-your-website-dot-server-daten-dot-de
Permissions-Policy: interest-cohort=()
Referrer-Policy: no-referrer
Server: Netlify
X-Content-Type-Options: nosniff
X-Frame-Options: DENY
X-Nf-Request-Id: 01GMX7X9GWCWFDK4CJ1N50BXQ0
X-Xss-Protection: 1; mode=block
Connection: close

• http://www.uomorando.it/.well-known/acme-challenge/check-your-website-dot-server-daten-dot-de
2a05:d014:275:cb02::c8
Inline-JavaScript (∑/total): 0/0 Inline-CSS (∑/total): 0/0
301
https://www.uomorando.it/.well-known/acme-challenge/check-your-website-dot-server-daten-dot-de
Html is minified: 100.00 %
Other inline scripts (∑/total): 0/0
0.157
A
Visible Content: Redirecting to https://www.uomorando.it/.well-known/acme-challenge/check-your-website-dot-server-daten-dot-de
Age: 0
Cache-Control: public, max-age=0, must-revalidate
Content-Length: 109
Content-Security-Policy: default-src 'none'; img-src 'self'; base-uri 'self' ; script-src 'self' https://cdnjs.cloudflare.com https://code.jquery.com https://cdn.jsdelivr.net https://stackpath.bootstrapcdn.com ; style-src 'self' https://cdnjs.cloudflare.com https://stackpath.bootstrapcdn.com https://use.fontawesome.com https://fonts.googleapis.com ; font-src 'self' https://fonts.googleapis.com https://fonts.gstatic.com https://use.fontawesome.com ; frame-ancestors 'self' ; form-action 'none' ;
Content-Type: text/plain
Date: Thu, 22 Dec 2022 15:40:57 GMT
Location: https://www.uomorando.it/.well-known/acme-challenge/check-your-website-dot-server-daten-dot-de
Permissions-Policy: interest-cohort=()
Referrer-Policy: no-referrer
Server: Netlify
X-Content-Type-Options: nosniff
X-Frame-Options: DENY
X-Nf-Request-Id: 01GMX7XA4XZHCTV2S1V09P8YAG
X-Xss-Protection: 1; mode=block
Connection: close

• https://www.uomorando.it/.well-known/acme-challenge/check-your-website-dot-server-daten-dot-de

Inline-JavaScript (∑/total): 0/0 Inline-CSS (∑/total): 0/0
301
https://uomorando.it/.well-known/acme-challenge/check-your-website-dot-server-daten-dot-de
Html is minified: 100.00 %
Other inline scripts (∑/total): 0/0
2.380
A
Visible Content: Redirecting to https://uomorando.it/.well-known/acme-challenge/check-your-website-dot-server-daten-dot-de
Age: 0
Cache-Control: public, max-age=0, must-revalidate
Content-Length: 105
Content-Security-Policy: default-src 'none'; img-src 'self'; base-uri 'self' ; script-src 'self' https://cdnjs.cloudflare.com https://code.jquery.com https://cdn.jsdelivr.net https://stackpath.bootstrapcdn.com ; style-src 'self' https://cdnjs.cloudflare.com https://stackpath.bootstrapcdn.com https://use.fontawesome.com https://fonts.googleapis.com ; font-src 'self' https://fonts.googleapis.com https://fonts.gstatic.com https://use.fontawesome.com ; frame-ancestors 'self' ; form-action 'none' ;
Content-Type: text/plain
Date: Thu, 22 Dec 2022 15:41:32 GMT
Location: https://uomorando.it/.well-known/acme-challenge/check-your-website-dot-server-daten-dot-de
Permissions-Policy: interest-cohort=()
Referrer-Policy: no-referrer
Server: Netlify
Strict-Transport-Security: max-age=31536000; includeSubDomains; preload
X-Content-Type-Options: nosniff
X-Frame-Options: DENY
X-Nf-Request-Id: 01GMX7YCA58C70WQCGH3822G1H
X-Xss-Protection: 1; mode=block
Connection: close

• https://uomorando.it/.well-known/acme-challenge/check-your-website-dot-server-daten-dot-de

Inline-JavaScript (∑/total): 7/0 Inline-CSS (∑/total): 0/0
404

Html is minified: 103.47 %
Other inline scripts (∑/total): 0/0
5.567
A
Not Found
Visible Content: 404 Sorry! That page does not exist. It may have been removed or moved to a new section on the site. Click here go back to the home page. © Stefano Morandi. CC-BY-4.0 . Powered by Hugo v0.76.0 & Goa .
Info: Html-Content with meta and/or script, may be a problem creating a Letsencrypt certificate using http-01 validation
Age: 0
Cache-Control: public, max-age=0, must-revalidate
Content-Encoding: gzip
Content-Security-Policy: default-src 'none'; img-src 'self'; base-uri 'self' ; script-src 'self' https://cdnjs.cloudflare.com https://code.jquery.com https://cdn.jsdelivr.net https://stackpath.bootstrapcdn.com ; style-src 'self' https://cdnjs.cloudflare.com https://stackpath.bootstrapcdn.com https://use.fontawesome.com https://fonts.googleapis.com ; font-src 'self' https://fonts.googleapis.com https://fonts.gstatic.com https://use.fontawesome.com ; frame-ancestors 'self' ; form-action 'none' ;
Content-Type: text/html; charset=utf-8
Date: Thu, 22 Dec 2022 15:41:26 GMT
Etag: 1599727575-ssl-df
Permissions-Policy: interest-cohort=()
Referrer-Policy: no-referrer
Server: Netlify
Strict-Transport-Security: max-age=31536000; includeSubDomains; preload
Vary: Accept-Encoding
X-Content-Type-Options: nosniff
X-Frame-Options: DENY
X-Nf-Request-Id: 01GMX7Y67ER9NG1G8ETZX12GKT
X-Xss-Protection: 1; mode=block
Connection: close
Transfer-Encoding: chunked

• https://3.72.140.173/
3.72.140.173
404


1.880
N
Not Found
Certificate error: RemoteCertificateNameMismatch
small visible content (num chars: 0)
Server: Netlify
X-Nf-Request-Id: 01GMX7Y2PFWAKY9KPDRCGA9EVW
Date: Thu, 22 Dec 2022 15:41:22 GMT
Content-Length: 0
Connection: close

• https://35.198.80.163/
35.198.80.163
404


2.356
N
Not Found
Certificate error: RemoteCertificateNameMismatch
small visible content (num chars: 0)
Server: Netlify
X-Nf-Request-Id: 01GMX7XPZ75ZAN3FHBA1Z40MAD
Date: Thu, 22 Dec 2022 15:41:10 GMT
Content-Length: 0
Connection: close

• https://104.198.14.52/
104.198.14.52
404


5.346
N
Not Found
Certificate error: RemoteCertificateNameMismatch
small visible content (num chars: 0)
Server: Netlify
X-Nf-Request-Id: 01GMX7XD9M721KTMTRBJMMFT8P
Date: Thu, 22 Dec 2022 15:41:00 GMT
Content-Length: 0
Connection: close

• https://18.192.231.252/
18.192.231.252
404


1.947
N
Not Found
Certificate error: RemoteCertificateNameMismatch
small visible content (num chars: 0)
Server: Netlify
X-Nf-Request-Id: 01GMX7XZR320H4SYRF7BRR6339
Date: Thu, 22 Dec 2022 15:41:19 GMT
Content-Length: 0
Connection: close

• https://34.159.132.250/
34.159.132.250
404


2.490
N
Not Found
Certificate error: RemoteCertificateNameMismatch
small visible content (num chars: 0)
Server: Netlify
X-Nf-Request-Id: 01GMX7XK8EFEM7RNN2HXDJZCHF
Date: Thu, 22 Dec 2022 15:41:06 GMT
Content-Length: 0
Connection: close

• https://[2a05:d014:0275:cb01:0000:0000:0000:00c8]/
2a05:d014:275:cb01::c8
404


1.544
N
Not Found
Certificate error: RemoteCertificateNameMismatch
small visible content (num chars: 0)
Server: Netlify
X-Nf-Request-Id: 01GMX7XTB8VDMQP41CF5QN4DWY
Date: Thu, 22 Dec 2022 15:41:13 GMT
Content-Length: 0
Connection: close

• https://[2a05:d014:0275:cb02:0000:0000:0000:00c8]/
2a05:d014:275:cb02::c8
404


1.577
N
Not Found
Certificate error: RemoteCertificateNameMismatch
small visible content (num chars: 0)
Server: Netlify
X-Nf-Request-Id: 01GMX7XX4N0CJXP4DTJRA62GDD
Date: Thu, 22 Dec 2022 15:41:16 GMT
Content-Length: 0
Connection: close

 

7. Comments


1. General Results, most used to calculate the result

Aname "uomorando.it" is domain, public suffix is ".it", top-level-domain is ".it", top-level-domain-type is "country-code", Country is Italy, tld-manager is "IIT - CNR", num .it-domains preloaded: 1691 (complete: 210599)
AGood: All ip addresses are public addresses
AGood: Minimal 2 ip addresses per domain name found: www.uomorando.it has 4 different ip addresses (authoritative).
AGood: Ipv4 and Ipv6 addresses per domain name found: www.uomorando.it has 2 ipv4, 2 ipv6 addresses
Warning: Only one ip address found: uomorando.it has only one ip address.
Warning: No ipv6 address found. Ipv6 is the future with a lot of new features. So every domain name should have an ipv6 address. See https://en.wikipedia.org/wiki/IPv6: uomorando.it has no ipv6 address.
AGood: No asked Authoritative Name Server had a timeout
AGood: destination is https
AGood - only one version with Http-Status 200
AGood: one preferred version: non-www is preferred
AGood: No cookie sent via http.
AGood: HSTS has preload directive
Warning: HSTS preload sent, but not in Preload-List. Never send a preload directive if you don't know what preload means. Check https://hstspreload.org/ to learn the basics about the Google-Preload list. If you send a preload directive, you should **immediately** add your domain to the HSTS preload list via https://hstspreload.org/ . If Google accepts the domain, so the status is "pending": Note that new entries are hardcoded into the Chrome source code and can take several months before they reach the stable version. So you will see this message some months. If you don't want that or if you don't understand "preload", but if you send a preload directive and if you have correct A-redirects, everybody can add your domain to that list. Then you may have problems, it's not easy to undo that. So if you don't want your domain preloaded, remove the preload directive.
HSTS-Preload-Status: unknown. Domain never included in the Preload-list. Check https://hstspreload.org/ to learn some basics about the Google-Preload-List.
Ahttp://uomorando.it/ 104.198.14.52
301
https://uomorando.it/
Correct redirect http - https with the same domain name
Ahttp://www.uomorando.it/ 3.72.140.173
301
https://www.uomorando.it/
Correct redirect http - https with the same domain name
Ahttp://www.uomorando.it/ 18.192.231.252
301
https://www.uomorando.it/
Correct redirect http - https with the same domain name
Ahttp://www.uomorando.it/ 34.159.132.250
301
https://www.uomorando.it/
Correct redirect http - https with the same domain name
Ahttp://www.uomorando.it/ 35.198.80.163
301
https://www.uomorando.it/
Correct redirect http - https with the same domain name
Ahttp://www.uomorando.it/ 2a05:d014:275:cb01::c8
301
https://www.uomorando.it/
Correct redirect http - https with the same domain name
Ahttp://www.uomorando.it/ 2a05:d014:275:cb02::c8
301
https://www.uomorando.it/
Correct redirect http - https with the same domain name
Mhttps://104.198.14.52/ 104.198.14.52
404

Misconfiguration - main pages should never send http status 400 - 499
Mhttps://3.72.140.173/ 3.72.140.173
404

Misconfiguration - main pages should never send http status 400 - 499
Mhttps://18.192.231.252/ 18.192.231.252
404

Misconfiguration - main pages should never send http status 400 - 499
Mhttps://34.159.132.250/ 34.159.132.250
404

Misconfiguration - main pages should never send http status 400 - 499
Mhttps://35.198.80.163/ 35.198.80.163
404

Misconfiguration - main pages should never send http status 400 - 499
Mhttps://[2a05:d014:0275:cb01:0000:0000:0000:00c8]/ 2a05:d014:275:cb01::c8
404

Misconfiguration - main pages should never send http status 400 - 499
Mhttps://[2a05:d014:0275:cb02:0000:0000:0000:00c8]/ 2a05:d014:275:cb02::c8
404

Misconfiguration - main pages should never send http status 400 - 499
Nhttps://104.198.14.52/ 104.198.14.52
404

Error - Certificate isn't trusted, RemoteCertificateNameMismatch
Nhttps://3.72.140.173/ 3.72.140.173
404

Error - Certificate isn't trusted, RemoteCertificateNameMismatch
Nhttps://18.192.231.252/ 18.192.231.252
404

Error - Certificate isn't trusted, RemoteCertificateNameMismatch
Nhttps://34.159.132.250/ 34.159.132.250
404

Error - Certificate isn't trusted, RemoteCertificateNameMismatch
Nhttps://35.198.80.163/ 35.198.80.163
404

Error - Certificate isn't trusted, RemoteCertificateNameMismatch
Nhttps://[2a05:d014:0275:cb01:0000:0000:0000:00c8]/ 2a05:d014:275:cb01::c8
404

Error - Certificate isn't trusted, RemoteCertificateNameMismatch
Nhttps://[2a05:d014:0275:cb02:0000:0000:0000:00c8]/ 2a05:d014:275:cb02::c8
404

Error - Certificate isn't trusted, RemoteCertificateNameMismatch
AGood: More then one ip address per domain name found, checking all ip addresses the same http status and the same certificate found: Domain www.uomorando.it, 4 ip addresses.
Info: Checking all ip addresses of that domain without sending the hostname only one certificate found. Checking all ip addresses and sending the hostname only one certificate found. Both certificates are different. So that domain requires Server Name Indication (SNI), so the server is able to select the correct certificate.: Domain uomorando.it, 1 ip addresses.
Info: Checking all ip addresses of that domain without sending the hostname only one certificate found. Checking all ip addresses and sending the hostname only one certificate found. Both certificates are different. So that domain requires Server Name Indication (SNI), so the server is able to select the correct certificate.: Domain www.uomorando.it, 4 ip addresses.
BNo _mta-sts TXT record found (mta-sts: Mail Transfer Agent Strict Transport Security - see RFC 8461). Read the result of server-daten.de (Url-Checks, Comments, Connections and DomainServiceRecords) to see a complete definition. Domainname: _mta-sts.uomorando.it

2. Header-Checks

Auomorando.it 104.198.14.52
Content-Security-Policy
Ok: Header without syntax errors found: default-src 'none'; img-src 'self'; base-uri 'self' ; script-src 'self' https://cdnjs.cloudflare.com https://code.jquery.com https://cdn.jsdelivr.net https://stackpath.bootstrapcdn.com ; style-src 'self' https://cdnjs.cloudflare.com https://stackpath.bootstrapcdn.com https://use.fontawesome.com https://fonts.googleapis.com ; font-src 'self' https://fonts.googleapis.com https://fonts.gstatic.com https://use.fontawesome.com ; frame-ancestors 'self' ; form-action 'none' ;
A

Good: default-src directive only with 'none' or 'self', additional sources are blocked.
A

Good: default-src without 'unsafe-inline' or 'unsave-eval'.
A

Good: form-action directive found. That reduces the risk sending data to unwanted domains. form-action is a navigation-directive, so default-src isn't used.
A

Good: frame-ancestors directive found. That limits pages who are allowed to use this page in a frame / iframe / object / embed / applet. frame-ancestors is a navigation-directive, so default-src isn't used.
A

Good: base-uri directive found. That limits the URLs which can be used in a document's <base> element. Because it's a document directive, default-src isn't used, so an own directive is required.
A

Good: No object-src found, but the default-src used as fallback is defined and restricted.
A

Good: script-src without 'unsafe-inline' and 'unsafe-eval' found. That's the recommended configuration.
A

Good: script-src without * and a scheme found.
A

Good: script-src without data: schema found. Why is this important? The data: schema allows hidden code injection. Insert <script src='data:application/javascript;base64,YWxlcnQoJ1hTUycpOw=='></script> in your page and see what happens.
A

Good: frame-src without data: defined or frame-src missing and the default-src used as fallback not allows the data: schema. That blocks hidden code injection. Insert <iframe src="data:text/html;charset=utf-8;base64,PCFET0NUWVBFIGh0bWw+PGh0bWw+PGJvZHk+PHA+YmVmb3JlPHNjcmlwdCB0eXBlPSJ0ZXh0L2phdmFzY3JpcHQiPmFsZXJ0KCdYU1MnKTwvc2NyaXB0PjxwPmFmdGVyPC9ib2R5PjwvaHRtbD4="></iframe> in your page and see what happens.
A
X-Content-Type-Options
Ok: Header without syntax errors found: nosniff
A
Referrer-Policy
Ok: Header without syntax errors found: no-referrer
A
Permissions-Policy
Ok: Header without syntax errors found: interest-cohort=()
A
X-Frame-Options
Ok: Header without syntax errors found: DENY
B

Info: Header is deprecated. May not longer work in modern browsers. DENY. Better solution: Use a Content-Security-Policy Header with a frame-ancestors directive. DENY - use 'none', SAMEORIGIN - use 'self'. If you want to allow some domains to frame your page, add these urls.
A
X-Xss-Protection
Ok: Header without syntax errors found: 1; mode=block
B

Info: Header is deprecated. May not longer work in modern browsers. 1; mode=block

3. DNS- and NameServer - Checks

AInfo:: 16 Root-climbing DNS Queries required to find all IPv4- and IPv6-Addresses of 4 Name Servers.
AInfo:: 16 Queries complete, 16 with IPv6, 0 with IPv4.
AGood: All DNS Queries done via IPv6.
Ok (4 - 8):: An average of 4.0 queries per domain name server required to find all ip addresses of all name servers.
AInfo:: 4 different Name Servers found: ns-1363.awsdns-42.org, ns-1816.awsdns-35.co.uk, ns-196.awsdns-24.com, ns-810.awsdns-37.net, 4 Name Servers included in Delegation: ns-1363.awsdns-42.org, ns-1816.awsdns-35.co.uk, ns-196.awsdns-24.com, ns-810.awsdns-37.net, 4 Name Servers included in 1 Zone definitions: ns-1363.awsdns-42.org, ns-1816.awsdns-35.co.uk, ns-196.awsdns-24.com, ns-810.awsdns-37.net, 1 Name Servers listed in SOA.Primary: ns-1363.awsdns-42.org.
AGood: Only one SOA.Primary Name Server found.: ns-1363.awsdns-42.org.
AGood: SOA.Primary Name Server included in the delegation set.: ns-1363.awsdns-42.org.
AGood: Consistency between delegation and zone. The set of NS records served by the authoritative name servers must match those proposed for the delegation in the parent zone. Ordered list of name servers: ns-1363.awsdns-42.org, ns-1816.awsdns-35.co.uk, ns-196.awsdns-24.com, ns-810.awsdns-37.net
AGood: All Name Server Domain Names have a Public Suffix.
AGood: All Name Server Domain Names ending with a Public Suffix have minimal one IPv4- or IPv6 address.
AGood: All Name Server ip addresses are public.
AGood: Minimal 2 different name servers (public suffix and public ip address) found: 4 different Name Servers found
AGood: All name servers have ipv4- and ipv6-addresses.: 4 different Name Servers found
AGood: Name servers with different Top Level Domains / Public Suffix List entries found: 4 Name Servers, 4 Top Level Domains: org, net, com, co.uk
AGood: Name Servers with different domain names found.: 4 different Domains found
AGood: Name servers with different Country locations found: 4 Name Servers, 2 Countries: IE, US
AInfo: Ipv4-Subnet-list: 4 Name Servers, 1 different subnets (first Byte): 205., 1 different subnets (first two Bytes): 205.251., 4 different subnets (first three Bytes): 205.251.192., 205.251.195., 205.251.197., 205.251.199.
AGood: Name Server IPv4-addresses from different subnet found:
AInfo: IPv6-Subnet-list: 4 Name Servers with IPv6, 1 different subnets (first block): 2600:, 1 different subnets (first two blocks): 2600:9000:, 4 different subnets (first three blocks): 2600:9000:5300:, 2600:9000:5303:, 2600:9000:5305:, 2600:9000:5307:, 4 different subnets (first four blocks): 2600:9000:5300:c400:, 2600:9000:5303:2a00:, 2600:9000:5305:5300:, 2600:9000:5307:1800:
AGood: Name Server IPv6 addresses from different subnets found.
AGood: Nameserver supports TCP connections: 8 good Nameserver
AGood: Nameserver supports Echo Capitalization: 8 good Nameserver
AGood: Nameserver supports EDNS with max. 512 Byte Udp payload, message is smaller: 8 good Nameserver
AGood: Nameserver has passed 10 EDNS-Checks (OP100, FLAGS, V1, V1OP100, V1FLAGS, DNSSEC, V1DNSSEC, NSID, COOKIE, CLIENTSUBNET): 8 good Nameserver
AGood: All SOA have the same Serial Number
AGood: CAA entries found, creating certificate is limited: digicert.com is allowed to create certificates
AGood: CAA entries found, creating certificate is limited: amazon.com is allowed to create wildcard-certificates
AGood: CAA entries found, creating certificate is limited: amazonaws.com is allowed to create wildcard-certificates
AGood: CAA entries found, creating certificate is limited: amazontrust.com is allowed to create wildcard-certificates
AGood: CAA entries found, creating certificate is limited: awstrust.com is allowed to create wildcard-certificates
AGood: CAA entries found, creating certificate is limited: letsencrypt.org is allowed to create wildcard-certificates

4. Content- and Performance-critical Checks

AGood: All checks /.well-known/acme-challenge/random-filename without redirects answer with the expected http status 404 - Not Found. Creating a Letsencrypt certificate via http-01 challenge should work. If it doesn't work: Check your vHost configuration (apachectl -S, httpd -S, nginx -T). Every combination of port and ServerName / ServerAlias (Apache) or Server (Nginx) must be unique. Merge duplicated entries in one vHost. If you use an IIS, extensionless files must be allowed in the /.well-known/acme-challenge subdirectory. Create a web.config in that directory. Content: <configuration><system.webServer><staticContent><mimeMap fileExtension="." mimeType="text/plain" /></staticContent></system.webServer></configuration>. If you have a redirect http ⇒ https, that's ok, Letsencrypt follows such redirects to port 80 / 443 (same or other server). There must be a certificate. But the certificate may be expired, self signed or with a not matching domain name. Checking the validation file Letsencrypt ignores such certificate errors. Trouble creating a certificate? Use https://community.letsencrypt.org/ to ask.
AGood: Every https result with status 200 and greater 1024 Bytes is compressed (gzip, deflate, br checked).
https://uomorando.it/ 104.198.14.52
200

Warning: Https + http status 200 + Inline CSS / JavaScript found. Don't use inline CSS / JavaScript. These are compiled and re-used ressources, save these with a long Cache-Control max-age - header.
AGood: Every https result with status 200 has a minified Html-Content with a quota lower then 110 %.
AGood: Every https connection via port 443 supports the http/2 protocol via ALPN.
https://uomorando.it/ 104.198.14.52
200

Critical: Some script Elements (type text/javascript) with a src-Attribute don't have a defer / async - Attribute. Loading and executing these JavaScripts blocks parsing and rendering the Html-Output. That's bad if your site is large or the connection is slow / mobile usage. Use "async" if the js file has only functions (so nothing is executed after parsing the file) or is independend. Use "defer" if the order of the scripts is important. All "defer" scripts are executed before the DOMContentLoaded event is fired. Check https://developer.mozilla.org/en-US/docs/Web/HTML/Element/script to see some details.: 7 script elements without defer/async.
https://uomorando.it/.well-known/acme-challenge/check-your-website-dot-server-daten-dot-de
404

Critical: Some script Elements (type text/javascript) with a src-Attribute don't have a defer / async - Attribute. Loading and executing these JavaScripts blocks parsing and rendering the Html-Output. That's bad if your site is large or the connection is slow / mobile usage. Use "async" if the js file has only functions (so nothing is executed after parsing the file) or is independend. Use "defer" if the order of the scripts is important. All "defer" scripts are executed before the DOMContentLoaded event is fired. Check https://developer.mozilla.org/en-US/docs/Web/HTML/Element/script to see some details.: 7 script elements without defer/async.
Warning: CSS / JavaScript found without Compression. Compress these ressources, gzip, deflate, br are checked. 10 external CSS / JavaScript files without GZip found - 14 with GZip, 24 complete
AGood: All images with internal compression not compressed. Some Images (.png, .jpg, .jpeg, .webp, .gif) are already compressed, so an additional compression isn't helpful. 1 images (type image/png, image/jpg) found without additional GZip. Not required because these images are already compressed
Warning: CSS / JavaScript files with a missing or too short Cache-Control header found. Browsers should cache and re-use these files. 0 external CSS / JavaScript files without Cache-Control-Header, 0 with Cache-Control, but no max-age, 24 with Cache-Control max-age too short (minimum 7 days), 0 with Cache-Control long enough, 24 complete.
Warning: Images with a missing or too short Cache-Control header found. Browsers should cache and re-use these files. 0 image files without Cache-Control-Header, 0 with Cache-Control, but no max-age, 1 with Cache-Control max-age too short (minimum 7 days), 0 with Cache-Control long enough, 1 complete.
AGood: All checked attribute values are enclosed in quotation marks (" or ').
AGood: All img-elements have a valid alt-attribute.: 1 img-elements found.
AGood: Domainname is not on the "Specially Designated Nationals And Blocked Persons List" (SDN). That's an US-list of individuals and companies owned or controlled by, or acting for or on behalf of, targeted countries. It also lists individuals, groups, and entities, such as terrorists and narcotics traffickers designated under programs that are not country-specific. Collectively, such individuals and companies are called "Specially Designated Nationals" or "SDNs." Their assets are blocked and U.S. persons are generally prohibited from dealing with them. So if a domain name is on that list, it's impossible to create a Letsencrypt certificate with that domain name. Check the list manual - https://www.treasury.gov/resource-center/sanctions/sdn-list/pages/default.aspx
https://uomorando.it/.well-known/acme-challenge/check-your-website-dot-server-daten-dot-de
404
5.567 seconds
Warning: 404 needs more then one second
https://104.198.14.52/ 104.198.14.52
404
5.346 seconds
Warning: 404 needs more then one second
https://3.72.140.173/ 3.72.140.173
404
1.880 seconds
Warning: 404 needs more then one second
https://18.192.231.252/ 18.192.231.252
404
1.947 seconds
Warning: 404 needs more then one second
https://34.159.132.250/ 34.159.132.250
404
2.490 seconds
Warning: 404 needs more then one second
https://35.198.80.163/ 35.198.80.163
404
2.356 seconds
Warning: 404 needs more then one second
https://[2a05:d014:0275:cb01:0000:0000:0000:00c8]/ 2a05:d014:275:cb01::c8
404
1.544 seconds
Warning: 404 needs more then one second
https://[2a05:d014:0275:cb02:0000:0000:0000:00c8]/ 2a05:d014:275:cb02::c8
404
1.577 seconds
Warning: 404 needs more then one second
ADuration: 478667 milliseconds, 478.667 seconds

 

8. Connections

DomainIPPortCert.ProtocolKeyExchangeStrengthCipherStrengthHashAlgorithmOCSP stapling
Domain/KeyExchangeIP/StrengthPort/CipherCert./StrengthProtocol/HashAlgorithmOCSP stapling
uomorando.it
104.198.14.52
443
ok
Tls12
ECDH Ephermal
255
Aes128
128
Sha256
not supported
ok
uomorando.it
104.198.14.52
443
ok
Tls12

ECDH Ephermal
255
Aes128
128
Sha256
not supported
ok
http/2 via ALPN supported 
SNI required
Tls.1.2
no Tls.1.1
no Tls.1.0
no Ssl3
no Ssl2
http/2 via ALPN supported
SNI required
Tls.1.2
no Tls.1.1
no Tls.1.0
no Ssl3
no Ssl2
Chain - too much certificates, don't send root certificates

1CN=uomorando.it


2CN=R3, O=Let's Encrypt, C=US


3CN=ISRG Root X1, O=Internet Security Research Group, C=US


www.uomorando.it
3.72.140.173
443
ok
Tls12
ECDH Ephermal
255
Aes128
128
Sha256
not supported
ok

www.uomorando.it
3.72.140.173
443
ok
Tls12

ECDH Ephermal
255
Aes128
128
Sha256
not supported
ok
http/2 via ALPN supported 
SNI required
Tls.1.2
no Tls.1.1
no Tls.1.0
no Ssl3
no Ssl2
http/2 via ALPN supported
SNI required
Tls.1.2
no Tls.1.1
no Tls.1.0
no Ssl3
no Ssl2
Chain - too much certificates, don't send root certificates

1CN=uomorando.it


2CN=R3, O=Let's Encrypt, C=US


3CN=ISRG Root X1, O=Internet Security Research Group, C=US


www.uomorando.it
18.192.231.252
443
ok
Tls12
ECDH Ephermal
255
Aes128
128
Sha256
not supported
ok

www.uomorando.it
18.192.231.252
443
ok
Tls12

ECDH Ephermal
255
Aes128
128
Sha256
not supported
ok
http/2 via ALPN supported 
SNI required
Tls.1.2
no Tls.1.1
no Tls.1.0
no Ssl3
no Ssl2
http/2 via ALPN supported
SNI required
Tls.1.2
no Tls.1.1
no Tls.1.0
no Ssl3
no Ssl2
Chain - too much certificates, don't send root certificates

1CN=uomorando.it


2CN=R3, O=Let's Encrypt, C=US


3CN=ISRG Root X1, O=Internet Security Research Group, C=US


www.uomorando.it
34.159.132.250
443
ok
Tls12
ECDH Ephermal
255
Aes128
128
Sha256
not supported
ok

www.uomorando.it
34.159.132.250
443
ok
Tls12

ECDH Ephermal
255
Aes128
128
Sha256
not supported
ok
http/2 via ALPN supported 
SNI required
Tls.1.2
no Tls.1.1
no Tls.1.0
no Ssl3
no Ssl2
http/2 via ALPN supported
SNI required
Tls.1.2
no Tls.1.1
no Tls.1.0
no Ssl3
no Ssl2
Chain - too much certificates, don't send root certificates

1CN=uomorando.it


2CN=R3, O=Let's Encrypt, C=US


3CN=ISRG Root X1, O=Internet Security Research Group, C=US


www.uomorando.it
35.198.80.163
443
ok
Tls12
ECDH Ephermal
255
Aes128
128
Sha256
not supported
ok

www.uomorando.it
35.198.80.163
443
ok
Tls12

ECDH Ephermal
255
Aes128
128
Sha256
not supported
ok
http/2 via ALPN supported 
SNI required
Tls.1.2
no Tls.1.1
no Tls.1.0
no Ssl3
no Ssl2
http/2 via ALPN supported
SNI required
Tls.1.2
no Tls.1.1
no Tls.1.0
no Ssl3
no Ssl2
Chain - too much certificates, don't send root certificates

1CN=uomorando.it


2CN=R3, O=Let's Encrypt, C=US


3CN=ISRG Root X1, O=Internet Security Research Group, C=US


www.uomorando.it
2a05:d014:275:cb01::c8
443
ok
Tls12
ECDH Ephermal
255
Aes128
128
Sha256
not supported
ok

www.uomorando.it
2a05:d014:275:cb01::c8
443
ok
Tls12

ECDH Ephermal
255
Aes128
128
Sha256
not supported
ok
http/2 via ALPN supported 
SNI required
Tls.1.2
no Tls.1.1
no Tls.1.0
no Ssl3
no Ssl2
http/2 via ALPN supported
SNI required
Tls.1.2
no Tls.1.1
no Tls.1.0
no Ssl3
no Ssl2
Chain - too much certificates, don't send root certificates

1CN=uomorando.it


2CN=R3, O=Let's Encrypt, C=US


3CN=ISRG Root X1, O=Internet Security Research Group, C=US


www.uomorando.it
2a05:d014:275:cb02::c8
443
ok
Tls12
ECDH Ephermal
255
Aes128
128
Sha256
not supported
ok

www.uomorando.it
2a05:d014:275:cb02::c8
443
ok
Tls12

ECDH Ephermal
255
Aes128
128
Sha256
not supported
ok
http/2 via ALPN supported 
SNI required
Tls.1.2
no Tls.1.1
no Tls.1.0
no Ssl3
no Ssl2
http/2 via ALPN supported
SNI required
Tls.1.2
no Tls.1.1
no Tls.1.0
no Ssl3
no Ssl2
Chain - too much certificates, don't send root certificates

1CN=uomorando.it


2CN=R3, O=Let's Encrypt, C=US


3CN=ISRG Root X1, O=Internet Security Research Group, C=US


uomorando.it
uomorando.it
443
ok
Tls12
ECDH Ephermal
255
Aes128
128
Sha256
not supported
ok

uomorando.it
uomorando.it
443
ok
Tls12

ECDH Ephermal
255
Aes128
128
Sha256
not supported
ok
http/2 via ALPN supported 
Tls.1.2
no Tls.1.1
no Tls.1.0
no Ssl3
no Ssl2
http/2 via ALPN supported
Tls.1.2
no Tls.1.1
no Tls.1.0
no Ssl3
no Ssl2
Chain - too much certificates, don't send root certificates

1CN=uomorando.it


2CN=R3, O=Let's Encrypt, C=US


3CN=ISRG Root X1, O=Internet Security Research Group, C=US


www.uomorando.it
www.uomorando.it
443
ok
Tls12
ECDH Ephermal
255
Aes128
128
Sha256
not supported
ok

www.uomorando.it
www.uomorando.it
443
ok
Tls12

ECDH Ephermal
255
Aes128
128
Sha256
not supported
ok
http/2 via ALPN supported 
Tls.1.2
no Tls.1.1
no Tls.1.0
no Ssl3
no Ssl2
http/2 via ALPN supported
Tls.1.2
no Tls.1.1
no Tls.1.0
no Ssl3
no Ssl2
Chain - too much certificates, don't send root certificates

1CN=uomorando.it


2CN=R3, O=Let's Encrypt, C=US


3CN=ISRG Root X1, O=Internet Security Research Group, C=US


3.72.140.173
3.72.140.173
443
name does not match
Tls12
ECDH Ephermal
255
Aes128
128
Sha256
not supported
ok

3.72.140.173
3.72.140.173
443
name does not match
Tls12

ECDH Ephermal
255
Aes128
128
Sha256
not supported
ok
http/2 via ALPN supported 
Cert sent without SNI
Tls.1.2
no Tls.1.1
no Tls.1.0
no Ssl3
no Ssl2
http/2 via ALPN supported
Cert sent without SNI
Tls.1.2
no Tls.1.1
no Tls.1.0
no Ssl3
no Ssl2
Chain (complete)

1CN=*.netlify.app, O="Netlify, Inc", L=San Francisco, C=US, ST=California


2CN=DigiCert TLS Hybrid ECC SHA384 2020 CA1, O=DigiCert Inc, C=US


35.198.80.163
35.198.80.163
443
name does not match
Tls12
ECDH Ephermal
255
Aes128
128
Sha256
not supported
ok

35.198.80.163
35.198.80.163
443
name does not match
Tls12

ECDH Ephermal
255
Aes128
128
Sha256
not supported
ok
http/2 via ALPN supported 
Cert sent without SNI
Tls.1.2
no Tls.1.1
no Tls.1.0
no Ssl3
no Ssl2
http/2 via ALPN supported
Cert sent without SNI
Tls.1.2
no Tls.1.1
no Tls.1.0
no Ssl3
no Ssl2
Chain (complete)

1CN=*.netlify.app, O="Netlify, Inc", L=San Francisco, C=US, ST=California


2CN=DigiCert TLS Hybrid ECC SHA384 2020 CA1, O=DigiCert Inc, C=US


104.198.14.52
104.198.14.52
443
name does not match
Tls12
ECDH Ephermal
255
Aes128
128
Sha256
not supported
ok

104.198.14.52
104.198.14.52
443
name does not match
Tls12

ECDH Ephermal
255
Aes128
128
Sha256
not supported
ok
http/2 via ALPN supported 
Cert sent without SNI
Tls.1.2
no Tls.1.1
no Tls.1.0
no Ssl3
no Ssl2
http/2 via ALPN supported
Cert sent without SNI
Tls.1.2
no Tls.1.1
no Tls.1.0
no Ssl3
no Ssl2
Chain (complete)

1CN=*.netlify.app, O="Netlify, Inc", L=San Francisco, C=US, ST=California


2CN=DigiCert TLS Hybrid ECC SHA384 2020 CA1, O=DigiCert Inc, C=US


18.192.231.252
18.192.231.252
443
name does not match
Tls12
ECDH Ephermal
255
Aes128
128
Sha256
not supported
ok

18.192.231.252
18.192.231.252
443
name does not match
Tls12

ECDH Ephermal
255
Aes128
128
Sha256
not supported
ok
http/2 via ALPN supported 
Cert sent without SNI
Tls.1.2
no Tls.1.1
no Tls.1.0
no Ssl3
no Ssl2
http/2 via ALPN supported
Cert sent without SNI
Tls.1.2
no Tls.1.1
no Tls.1.0
no Ssl3
no Ssl2
Chain (complete)

1CN=*.netlify.app, O="Netlify, Inc", L=San Francisco, C=US, ST=California


2CN=DigiCert TLS Hybrid ECC SHA384 2020 CA1, O=DigiCert Inc, C=US


34.159.132.250
34.159.132.250
443
name does not match
Tls12
ECDH Ephermal
255
Aes128
128
Sha256
not supported
ok

34.159.132.250
34.159.132.250
443
name does not match
Tls12

ECDH Ephermal
255
Aes128
128
Sha256
not supported
ok
http/2 via ALPN supported 
Cert sent without SNI
Tls.1.2
no Tls.1.1
no Tls.1.0
no Ssl3
no Ssl2
http/2 via ALPN supported
Cert sent without SNI
Tls.1.2
no Tls.1.1
no Tls.1.0
no Ssl3
no Ssl2
Chain (complete)

1CN=*.netlify.app, O="Netlify, Inc", L=San Francisco, C=US, ST=California


2CN=DigiCert TLS Hybrid ECC SHA384 2020 CA1, O=DigiCert Inc, C=US


[2a05:d014:0275:cb01:0000:0000:0000:00c8]
2a05:d014:275:cb01::c8
443
name does not match
Tls12
ECDH Ephermal
255
Aes128
128
Sha256
not supported
ok

[2a05:d014:0275:cb01:0000:0000:0000:00c8]
2a05:d014:275:cb01::c8
443
name does not match
Tls12

ECDH Ephermal
255
Aes128
128
Sha256
not supported
ok
http/2 via ALPN supported 
Cert sent without SNI
Tls.1.2
no Tls.1.1
no Tls.1.0
no Ssl3
no Ssl2
http/2 via ALPN supported
Cert sent without SNI
Tls.1.2
no Tls.1.1
no Tls.1.0
no Ssl3
no Ssl2
Chain (complete)

1CN=*.netlify.app, O="Netlify, Inc", L=San Francisco, C=US, ST=California


2CN=DigiCert TLS Hybrid ECC SHA384 2020 CA1, O=DigiCert Inc, C=US


[2a05:d014:0275:cb02:0000:0000:0000:00c8]
2a05:d014:275:cb02::c8
443
name does not match
Tls12
ECDH Ephermal
255
Aes128
128
Sha256
not supported
ok

[2a05:d014:0275:cb02:0000:0000:0000:00c8]
2a05:d014:275:cb02::c8
443
name does not match
Tls12

ECDH Ephermal
255
Aes128
128
Sha256
not supported
ok
http/2 via ALPN supported 
Cert sent without SNI
Tls.1.2
no Tls.1.1
no Tls.1.0
no Ssl3
no Ssl2
http/2 via ALPN supported
Cert sent without SNI
Tls.1.2
no Tls.1.1
no Tls.1.0
no Ssl3
no Ssl2
Chain (complete)

1CN=*.netlify.app, O="Netlify, Inc", L=San Francisco, C=US, ST=California


2CN=DigiCert TLS Hybrid ECC SHA384 2020 CA1, O=DigiCert Inc, C=US

 

9. Certificates

1.
1.
CN=uomorando.it
11.11.2022
09.02.2023
767 days expired
uomorando.it, www.uomorando.it - 2 entries
1.
1.
CN=uomorando.it
11.11.2022

09.02.2023
767 days expired


uomorando.it, www.uomorando.it - 2 entries

KeyalgorithmEC Public Key (256 bit, prime256v1)
Signatur:SHA256 With RSA-Encryption
Serial Number:038C830803424A8F298C608EAE343B0C64BE
Thumbprint:777E72BEEB541262A0A73B3B8D64FB02C39A7DEA
SHA256 / Certificate:i/6+dKCFKpqxJ6Tz4pQ7qfFgXhF35R8ZSsJH/U6D+6w=
SHA256 hex / Cert (DANE * 0 1):e3b0c44298fc1c149afbf4c8996fb92427ae41e4649b934ca495991b7852b855
SHA256 hex / PublicKey (DANE * 1 1):a6a20ebe4e151343f7277d1b65443830b801b627eef55b4c20f637c7fabb6376
SHA256 hex / Subject Public Key Information (SPKI):a6a20ebe4e151343f7277d1b65443830b801b627eef55b4c20f637c7fabb6376 (is buggy, ignore the result)
SPKI checked via https://v1.pwnedkeys.com/spki-hash:Check unknown. No result 404 / 200
OCSP - Url:http://r3.o.lencr.org
OCSP - must staple:no
Certificate Transparency:yes
Enhanced Key Usage:Serverauthentifizierung (1.3.6.1.5.5.7.3.1), Clientauthentifizierung (1.3.6.1.5.5.7.3.2)




2.
CN=R3, O=Let's Encrypt, C=US
04.09.2020
15.09.2025
expires in 182 days


2.
CN=R3, O=Let's Encrypt, C=US
04.09.2020

15.09.2025
expires in 182 days




KeyalgorithmRSA encryption (2048 bit)
Signatur:SHA256 With RSA-Encryption
Serial Number:00912B084ACF0C18A753F6D62E25A75F5A
Thumbprint:A053375BFE84E8B748782C7CEE15827A6AF5A405
SHA256 / Certificate:Z63RFmsCCuYbj1/JaBPATCqliZYHloZVcqPH5zdhPf0=
SHA256 hex / Cert (DANE * 0 1):e3b0c44298fc1c149afbf4c8996fb92427ae41e4649b934ca495991b7852b855
SHA256 hex / PublicKey (DANE * 1 1):8d02536c887482bc34ff54e41d2ba659bf85b341a0a20afadb5813dcfbcf286d
SHA256 hex / Subject Public Key Information (SPKI):8d02536c887482bc34ff54e41d2ba659bf85b341a0a20afadb5813dcfbcf286d
SPKI checked via https://v1.pwnedkeys.com/spki-hash:Check unknown. No result 404 / 200
OCSP - Url:
OCSP - must staple:no
Certificate Transparency:no
Enhanced Key Usage:Clientauthentifizierung (1.3.6.1.5.5.7.3.2), Serverauthentifizierung (1.3.6.1.5.5.7.3.1)




3.
CN=ISRG Root X1, O=Internet Security Research Group, C=US
04.06.2015
04.06.2035
expires in 3731 days


3.
CN=ISRG Root X1, O=Internet Security Research Group, C=US
04.06.2015

04.06.2035
expires in 3731 days




KeyalgorithmRSA encryption (4096 bit)
Signatur:SHA256 With RSA-Encryption
Serial Number:008210CFB0D240E3594463E0BB63828B00
Thumbprint:CABD2A79A1076A31F21D253635CB039D4329A5E8
SHA256 / Certificate:lrzsBiZJdvN0YHeazyjFp8/oo8Cq4RqP/O4FwL3fCMY=
SHA256 hex / Cert (DANE * 0 1):96bcec06264976f37460779acf28c5a7cfe8a3c0aae11a8ffcee05c0bddf08c6
SHA256 hex / PublicKey (DANE * 1 1):0b9fa5a59eed715c26c1020c711b4f6ec42d58b0015e14337a39dad301c5afc3
SHA256 hex / Subject Public Key Information (SPKI):0b9fa5a59eed715c26c1020c711b4f6ec42d58b0015e14337a39dad301c5afc3
SPKI checked via https://v1.pwnedkeys.com/spki-hash:Good: Key isn't compromised
OCSP - Url:
OCSP - must staple:no
Certificate Transparency:no
Enhanced Key Usage:




2.
1.
CN=*.netlify.app, O="Netlify, Inc", L=San Francisco, S=California, C=US
15.02.2022
03.03.2023
745 days expired
*.netlify.app, netlify.app - 2 entries
2.
1.
CN=*.netlify.app, O="Netlify, Inc", L=San Francisco, S=California, C=US
15.02.2022

03.03.2023
745 days expired


*.netlify.app, netlify.app - 2 entries

KeyalgorithmEC Public Key (256 bit, prime256v1)
Signatur:ECDSA SHA384
Serial Number:0F54F8FF8852B037478AF5B5F27231D4
Thumbprint:C2914BFEF17A3B5FE87CB88198C25ABA7B7D9245
SHA256 / Certificate:VIWlq9yV48pKewZqhBN9mBQS1UDpyt7fbmSzoCg2OK4=
SHA256 hex / Cert (DANE * 0 1):e3b0c44298fc1c149afbf4c8996fb92427ae41e4649b934ca495991b7852b855
SHA256 hex / PublicKey (DANE * 1 1):bffd82e8c5a5642fbe96777b3099fbbe8e3b492131a9a17fb15cc650ef31f293
SHA256 hex / Subject Public Key Information (SPKI):bffd82e8c5a5642fbe96777b3099fbbe8e3b492131a9a17fb15cc650ef31f293 (is buggy, ignore the result)
SPKI checked via https://v1.pwnedkeys.com/spki-hash:Check unknown. No result 404 / 200
OCSP - Url:http://ocsp.digicert.com
OCSP - must staple:no
Certificate Transparency:yes
Enhanced Key Usage:Serverauthentifizierung (1.3.6.1.5.5.7.3.1), Clientauthentifizierung (1.3.6.1.5.5.7.3.2)




2.
CN=DigiCert TLS Hybrid ECC SHA384 2020 CA1, O=DigiCert Inc, C=US
14.04.2021
14.04.2031
expires in 2219 days


2.
CN=DigiCert TLS Hybrid ECC SHA384 2020 CA1, O=DigiCert Inc, C=US
14.04.2021

14.04.2031
expires in 2219 days




KeyalgorithmEC Public Key (384 bit, secp384r1)
Signatur:SHA384 With RSA Encryption
Serial Number:07F2F35C87A877AF7AEFE947993525BD
Thumbprint:AEC13CDD5EA6A3998AEC14AC331AD96BEDBB770F
SHA256 / Certificate:96mhsv2WSj8mcL1mjVYft8VdOqmrg5Hn4WlwLbij288=
SHA256 hex / Cert (DANE * 0 1):e3b0c44298fc1c149afbf4c8996fb92427ae41e4649b934ca495991b7852b855
SHA256 hex / PublicKey (DANE * 1 1):7b4211cf94e2a37180d57b387d4556987d711c3887d9d31b56d0814a438876a3
SHA256 hex / Subject Public Key Information (SPKI):
SPKI checked via https://v1.pwnedkeys.com/spki-hash:Check unknown. No result 404 / 200
OCSP - Url:http://ocsp.digicert.com
OCSP - must staple:no
Certificate Transparency:no
Enhanced Key Usage:Serverauthentifizierung (1.3.6.1.5.5.7.3.1), Clientauthentifizierung (1.3.6.1.5.5.7.3.2)




3.
CN=DigiCert Global Root CA, OU=www.digicert.com, O=DigiCert Inc, C=US
10.11.2006
10.11.2031
expires in 2429 days


3.
CN=DigiCert Global Root CA, OU=www.digicert.com, O=DigiCert Inc, C=US
10.11.2006

10.11.2031
expires in 2429 days




KeyalgorithmRSA encryption (2048 bit)
Signatur:SHA-1 with RSA Encryption
Serial Number:083BE056904246B1A1756AC95991C74A
Thumbprint:A8985D3A65E5E5C4B2D7D66D40C6DD2FB19C5436
SHA256 / Certificate:Q0ig6URMeMsmXgWNXolEtNhPlmK9Jtslf4k0pEPHAWE=
SHA256 hex / Cert (DANE * 0 1):4348a0e9444c78cb265e058d5e8944b4d84f9662bd26db257f8934a443c70161
SHA256 hex / PublicKey (DANE * 1 1):aff988906dde12955d9bebbf928fdcc31cce328d5b9384f21c8941ca26e20391
SHA256 hex / Subject Public Key Information (SPKI):aff988906dde12955d9bebbf928fdcc31cce328d5b9384f21c8941ca26e20391
SPKI checked via https://v1.pwnedkeys.com/spki-hash:Good: Key isn't compromised
OCSP - Url:
OCSP - must staple:no
Certificate Transparency:no
Enhanced Key Usage:




 

10. Last Certificates - Certificate Transparency Log Check

1. Source CertSpotter - active certificates (one check per day)

Small Code Update - wait one minute

 

2. Source crt.sh - old and new certificates, sometimes very slow - only certificates with "not after" > of the last months are listed

Small Code Update - wait one minute

 

11. Html-Content - Entries

Summary


Subresource Integrity (SRI)
DomainnameHtmlElementrel/property∑ size∑ problems∑ int.∑ ext.∑ Origin poss.∑ SRI ParseErrors∑ SRI valid∑ SRI missing
https://uomorando.it/
104.198.14.52
a

8

0


0
0
0


img

1
9,842 Bytes
0
1
0
0
0
0


link
alternate
1

0


0
0
0


link
stylesheet
5
38,033 Bytes
0
5
0
0
0
0


link
other
5
5,037 Bytes
0
4
0
0
0
0


meta
other
7

0


0
0
0


script

7
66,132 Bytes
0
7
0
0
0
0

 

Details (currently limited to 500 rows - some problems with spam users)

DomainnameHtml-Elementname/equiv/ property/relhref/src/contentHttpStatusmsgStatus
https://uomorando.it/
104.198.14.52
a

/stuff/index.html


1
ok















a

https://creativecommons.org/licenses/by-sa/4.0/legalcode


1
ok















a

https://debian.org


1
ok















a

https://github.com/shenoybr/hugo-goa


1
ok















a

https://gohugo.io/


1
ok















a

https://linkedin.com/in/stefanomorandi


1
ok















a

https://www.pnlug.it


1
ok















a

mailto:stefano.morandi@gmail.com


1
ok















img
src
/img/uomorando_home.png
200

1
ok
alt: Author Imageimage/png
X-Content-Type-Options nosniff found





Cache-Control: public, max-age=0, must-revalidate - max-age too short.
No Compression - 9842 Bytes








link
alternate
https://uomorando.it/index.xml


1
ok















link
apple-touch-icon
/apple-touch-icon.png
200

1
ok
image/png
X-Content-Type-Options nosniff found





Cache-Control: public, max-age=0, must-revalidate - max-age too short.
No Compression - 3366 Bytes








link
icon
/favicon-16x16.png
200

1
ok
image/png
X-Content-Type-Options nosniff found





Cache-Control: public, max-age=0, must-revalidate - max-age too short.
No Compression - 269 Bytes








link
icon
/favicon-32x32.png
200

1
ok
image/png
X-Content-Type-Options nosniff found





Cache-Control: public, max-age=0, must-revalidate - max-age too short.
No Compression - 436 Bytes








link
manifest
/manifest.json


1
ok















link
mask-icon
/safari-pinned-tab.svg
200

1
ok
image/svg+xml
X-Content-Type-Options nosniff found





Cache-Control: public, max-age=0, must-revalidate - max-age too short.
No Compression - 966 Bytes








link
stylesheet
https://uomorando.it/css/bootstrap-4.5.2.min.css
200

1
ok
text/css; charset=UTF-8
X-Content-Type-Options nosniff found





Cache-Control: public, max-age=0, must-revalidate - max-age too short.
Compression required: 23841 Bytes






local SRI possible, possible hash-values:

 

sha256-e6f2uUJG2KYJkZ9hPYGTcntqH9xPjM8o/2BgSEHd4Fk=
sha384-/ZqTxaF9NZV4NIqKcaY0HrHFr66oUu0CfCrf4kk1aUiODpOgIo+YFHbTMxQ7Yd6j
sha512-FjCehiiokCAJiBdeiwrLKRe+7LYGLhlyc/oMTXaECAzSoYCj44GzKI0hjuWekqwzh91+hZTZpLZaw2FhPJYfBQ==

 

<link rel="stylesheet" href="https://uomorando.it/css/bootstrap-4.5.2.min.css" crossorigin="anonymous" integrity="sha256-e6f2uUJG2KYJkZ9hPYGTcntqH9xPjM8o/2BgSEHd4Fk=" />


Content loaded via url("...")

 

data:image/svg+xml,%3csvg xmlns='http://www.w3.org/2000/svg' fill='%23fff' width='8' height='8' viewBox='0 0 8 8'%3e%3cpath d='M2.75 0l-1.5 1.5L3.75 4l-2.5 2.5L2.75 8l4-4-4-4z'/%3e%3c/svg%3e1
data:image/svg+xml,%3csvg xmlns='http://www.w3.org/2000/svg' fill='%23fff' width='8' height='8' viewBox='0 0 8 8'%3e%3cpath d='M5.25 0l-4 4 4 4 1.5-1.5L4.25 4l2.5-2.5L5.25 0z'/%3e%3c/svg%3e1
data:image/svg+xml,%3csvg xmlns='http://www.w3.org/2000/svg' width='12' height='12' fill='none' stroke='%23dc3545' viewBox='0 0 12 12'%3e%3ccircle cx='6' cy='6' r='4.5'/%3e%3cpath stroke-linejoin='round' d='M5.8 3.6h.4L6 6.5z'/%3e%3ccircle cx='6' cy='8.2' r='.6' fill='%23dc3545' stroke='none'/%3e%3c/svg%3e2
data:image/svg+xml,%3csvg xmlns='http://www.w3.org/2000/svg' width='12' height='12' viewBox='-4 -4 8 8'%3e%3ccircle r='3' fill='%23fff'/%3e%3c/svg%3e1
data:image/svg+xml,%3csvg xmlns='http://www.w3.org/2000/svg' width='30' height='30' viewBox='0 0 30 30'%3e%3cpath stroke='rgba%280, 0, 0, 0.5%29' stroke-linecap='round' stroke-miterlimit='10' stroke-width='2' d='M4 7h22M4 15h22M4 23h22'/%3e%3c/svg%3e1
data:image/svg+xml,%3csvg xmlns='http://www.w3.org/2000/svg' width='30' height='30' viewBox='0 0 30 30'%3e%3cpath stroke='rgba%28255, 255, 255, 0.5%29' stroke-linecap='round' stroke-miterlimit='10' stroke-width='2' d='M4 7h22M4 15h22M4 23h22'/%3e%3c/svg%3e1
data:image/svg+xml,%3csvg xmlns='http://www.w3.org/2000/svg' width='4' height='4' viewBox='0 0 4 4'%3e%3cpath stroke='%23fff' d='M0 2h4'/%3e%3c/svg%3e1
data:image/svg+xml,%3csvg xmlns='http://www.w3.org/2000/svg' width='4' height='5' viewBox='0 0 4 5'%3e%3cpath fill='%23343a40' d='M2 0L0 2h4zm0 5L0 3h4z'/%3e%3c/svg%3e3
data:image/svg+xml,%3csvg xmlns='http://www.w3.org/2000/svg' width='8' height='8' viewBox='0 0 8 8'%3e%3cpath fill='%2328a745' d='M2.3 6.73L.6 4.53c-.4-1.04.46-1.4 1.1-.8l1.1 1.4 3.4-3.8c.6-.63 1.6-.27 1.2.7l-4 4.6c-.43.5-.8.4-1.1.1z'/%3e%3c/svg%3e2
data:image/svg+xml,%3csvg xmlns='http://www.w3.org/2000/svg' width='8' height='8' viewBox='0 0 8 8'%3e%3cpath fill='%23fff' d='M6.564.75l-3.59 3.612-1.538-1.55L0 4.26l2.974 2.99L8 2.193z'/%3e%3c/svg%3e1

link
stylesheet
https://uomorando.it/css/custom.css
200

1
ok
text/css; charset=UTF-8
X-Content-Type-Options nosniff found





Cache-Control: public, max-age=0, must-revalidate - max-age too short.
532 Bytes






local SRI possible, possible hash-values:

 

sha256-XfQY6x1nBjqecn/Vpecd84sgqYYPwXp0fnpoHBHBiL0=
sha384-1vDyn6H8j5Y4FOmDJEYtFoOg5PyIYqYWuosXB0lczUqjNT+YgcTZ60Kmw/j3Jkdw
sha512-dxZnQ9uIpvsOLACNLZ22lbkaGboby/Wb56WSbmXmHEIoJnZjsxsKX0ieQ12taZH7kcjCgaYS54xCNbmO6fxsBQ==

 

<link rel="stylesheet" href="https://uomorando.it/css/custom.css" crossorigin="anonymous" integrity="sha256-XfQY6x1nBjqecn/Vpecd84sgqYYPwXp0fnpoHBHBiL0=" />


Content loaded via url("...")

 

../fonts/iosevka-medium.woff21
../fonts/iosevka-thin.woff21
../fonts/iosevka-thinitalic.woff21

link
stylesheet
https://uomorando.it/css/fontawesome-5.8.2-all.css
200

1
ok
text/css; charset=UTF-8
X-Content-Type-Options nosniff found





Cache-Control: public, max-age=0, must-revalidate - max-age too short.
Compression required: 12068 Bytes






local SRI possible, possible hash-values:

 

sha256-pp4l0xE+JsP3iCVzSmnYfUtXEq5O9OR9pRu6RcHSaE8=
sha384-D/O/crsJowA8c2lDjgyolETf/UebiIPirWD/xOfKfG8L34TEhMCPpSQIiL2bRn3U
sha512-ECPnfrb8zSzINzRnDzcwf7/4zQKbVwr/NNrB2iVkATxVh1P+Nj9yYrr6u37Fm+92vrrEkzD5ES8dojNPsWcbLQ==

 

<link rel="stylesheet" href="https://uomorando.it/css/fontawesome-5.8.2-all.css" crossorigin="anonymous" integrity="sha256-pp4l0xE+JsP3iCVzSmnYfUtXEq5O9OR9pRu6RcHSaE8=" />


Content loaded via url("...")

 

/fonts/fa-brands-400.eot1
/fonts/fa-brands-400.eot?#iefix1
/fonts/fa-brands-400.svg#fontawesome1
/fonts/fa-brands-400.ttf1
/fonts/fa-brands-400.woff1
/fonts/fa-brands-400.woff21
/fonts/fa-regular-400.eot1
/fonts/fa-regular-400.eot?#iefix1
/fonts/fa-regular-400.svg#fontawesome1
/fonts/fa-regular-400.ttf1
/fonts/fa-regular-400.woff1
/fonts/fa-regular-400.woff21
/fonts/fa-solid-900.eot1
/fonts/fa-solid-900.eot?#iefix1
/fonts/fa-solid-900.svg#fontawesome1
/fonts/fa-solid-900.ttf1
/fonts/fa-solid-900.woff1
/fonts/fa-solid-900.woff21

link
stylesheet
https://uomorando.it/css/highlight.js-9.12.0.css
200

1
ok
text/css; charset=UTF-8
X-Content-Type-Options nosniff found





Cache-Control: public, max-age=0, must-revalidate - max-age too short.
776 Bytes






local SRI possible, possible hash-values:

 

sha256-Zd1icfZ72UBmsId/mUcagrmN7IN5Qkrvh75ICHIQVTk=
sha384-zhIsEafzyQWHSoMCQ4BfT8ZlRXQyIFwAHAJn32PNdsb8n6tVysGZSLpEEIvCskw4
sha512-k6kuQA03z8AQhvjS6AbfmYN9B/N9C6suruJoVDmUbiVUUE17HGiamR8Y7LwUOWhx31wPuhonR5r8NNMqjsCn3w==

 

<link rel="stylesheet" href="https://uomorando.it/css/highlight.js-9.12.0.css" crossorigin="anonymous" integrity="sha256-Zd1icfZ72UBmsId/mUcagrmN7IN5Qkrvh75ICHIQVTk=" />



link
stylesheet
https://uomorando.it/css/main.css
200

1
ok
text/css; charset=UTF-8
X-Content-Type-Options nosniff found





Cache-Control: public, max-age=0, must-revalidate - max-age too short.
Compression required: 816 Bytes






local SRI possible, possible hash-values:

 

sha256-Enz2r1ITC5Z0w7w9TTBekR+u7BShmr+e11bgZzbLHfc=
sha384-SHp3a+yWZIk08+97ACit/WMa5tzH/3GmrpVbXGQIs5abPbKkxS2o7cSostgPd8No
sha512-jkghtni+iUQf1Snw+X2PxYUcGaOpbWaAniDlOp5VS/DTbyUXnr44DwV6t9p14NF3YwLFNPF3jwsMqLU+4R9RwQ==

 

<link rel="stylesheet" href="https://uomorando.it/css/main.css" crossorigin="anonymous" integrity="sha256-Enz2r1ITC5Z0w7w9TTBekR+u7BShmr+e11bgZzbLHfc=" />



meta
content-type
text/html; charset=utf-8


1
ok















meta
X-UA-Compatible
IE=edge


1
ok















meta
description
rantoli da nulla


1
ok















meta
generator
Hugo 0.76.0


1
ok















meta
keywords
sysadmin,devops,astronomy,apollo,gitlab,debian,linux,ansible


1
ok















meta
theme-color
#ffffff


1
ok















meta
viewport
width=device-width, initial-scale=1.0


1
ok















script
src
https://uomorando.it/js/bootstrap-4.5.2.min.js
200

1
ok
Missing defer / async attribute. application/javascript; charset=UTF-8
X-Content-Type-Options nosniff found





Cache-Control: public, max-age=0, must-revalidate - max-age too short.
Compression required: 14783 Bytes






local SRI possible, possible hash-values:

 

sha256-LO1vmX1/zhCjjdx1wvJMn4lF9E50YSjz3NYdkj6j/c4=
sha384-99q76vn14MMZ4m7evVg9PlGpmdfo7e8HvYQbS9UZ0Qn+EA1f68j3cJX2p96vQ7+p
sha512-ohzwG3EOEVg7A+4hUWPkWwUx/jDW62QTELjepa4jNgrNb18nrZQEJY7RkHAcQY9PhThsZANyyzjNAGHxDfSPew==

 

<script src="https://uomorando.it/js/bootstrap-4.5.2.min.js" crossorigin="anonymous" integrity="sha256-LO1vmX1/zhCjjdx1wvJMn4lF9E50YSjz3NYdkj6j/c4=" />



script
src
https://uomorando.it/js/custom.js
200

1
ok
Missing defer / async attribute. application/javascript; charset=UTF-8
X-Content-Type-Options nosniff found





Cache-Control: public, max-age=0, must-revalidate - max-age too short.
34 Bytes






local SRI possible, possible hash-values:

 

sha256-1f3nJAbWDZh4XynkVfTUQpB+frh3bsKmWBuKOGLUEzk=
sha384-h49dSX3UORCunDGugU0318oCFTnLUIpL0Ukx60kqwMEs4G1BAg+2VI1lHIP05bUq
sha512-TAb83kHpywJd1FaQhTg7ZI5IkrHifGJEBDGtAWe6rYeCQ0ID42a/q2go2AcJa1JyGkEd1yxDyvwBY2LB4wDcbQ==

 

<script src="https://uomorando.it/js/custom.js" crossorigin="anonymous" integrity="sha256-1f3nJAbWDZh4XynkVfTUQpB+frh3bsKmWBuKOGLUEzk=" />



script
src
https://uomorando.it/js/highlight-9.12.0.min.js
200

1
ok
Missing defer / async attribute. application/javascript; charset=UTF-8
X-Content-Type-Options nosniff found





Cache-Control: public, max-age=0, must-revalidate - max-age too short.
Compression required: 18684 Bytes






local SRI possible, possible hash-values:

 

sha256-/BfiIkHlHoVihZdc6TFuj7MmJ0TWcWsMXkeDFwhi0zw=
sha384-ZeLYJ2PNSQjvogWP559CDAf02Qb8FE5OyQicqtz/+UhZutbrwyr87Be7NPH/RgyC
sha512-ExaEi+x+Zqq50MIBraxsK23lQQJZd8Q7ZDlwJsxQwsWlO8XvRouQev9ZWaFxCKdTvrgb2fmf2pglwGp61/7qZA==

 

<script src="https://uomorando.it/js/highlight-9.12.0.min.js" crossorigin="anonymous" integrity="sha256-/BfiIkHlHoVihZdc6TFuj7MmJ0TWcWsMXkeDFwhi0zw=" />



script
src
https://uomorando.it/js/jquery-3.5.1.slim.min.js
200

1
ok
Missing defer / async attribute. application/javascript; charset=UTF-8
X-Content-Type-Options nosniff found





Cache-Control: public, max-age=0, must-revalidate - max-age too short.
Compression required: 24659 Bytes






local SRI possible, possible hash-values:

 

sha256-4+XzXVhsDmqanXGHaHvgh1gMQKX40OUvDEBTu8JcmNs=
sha384-DfXdz2htPH0lsSSs5nCTpuj/zy4C+OGpamoFVy38MVBnE+IbbVYUew+OrCXaRkfj
sha512-/DXTXr6nQodMUiq+IUJYCt2PPOUjrHJ9wFrqpJ3XkgPNOZVfMok7cRw6CSxyCQxXn6ozlESsSh1/sMCTF1rL/g==

 

<script src="https://uomorando.it/js/jquery-3.5.1.slim.min.js" crossorigin="anonymous" integrity="sha256-4+XzXVhsDmqanXGHaHvgh1gMQKX40OUvDEBTu8JcmNs=" />



script
src
https://uomorando.it/js/loadhighlight.js
200

1
ok
Missing defer / async attribute. application/javascript; charset=UTF-8
X-Content-Type-Options nosniff found





Cache-Control: public, max-age=0, must-revalidate - max-age too short.
72 Bytes






local SRI possible, possible hash-values:

 

sha256-xEgaDKAk5hs/LiWbquMUbeR7R0wGrr0oOH8r3eH/RgA=
sha384-X3Fxr5CMXXwdxL5Oxc49P+FavpzYFpKtKrDVN9RqjcGvE+KZGG7/fKiuGGvFfMFy
sha512-iPys8YW3utC8VyhcycrLgEl6VRYTaYkN728q+kGmwyleJKT3aVxsvtdcv6ZB6SXVl4a8z+3nOLopCgZ2xEeIeQ==

 

<script src="https://uomorando.it/js/loadhighlight.js" crossorigin="anonymous" integrity="sha256-xEgaDKAk5hs/LiWbquMUbeR7R0wGrr0oOH8r3eH/RgA=" />



script
src
https://uomorando.it/js/main.js
200

1
ok
Missing defer / async attribute. application/javascript; charset=UTF-8
X-Content-Type-Options nosniff found





Cache-Control: public, max-age=0, must-revalidate - max-age too short.
423 Bytes






local SRI possible, possible hash-values:

 

sha256-YdszUqK21CEyj7WyBPmztmCtLIdbkj+VDYVr3qmYEcM=
sha384-mjkBoNKLljoAMhFEjcOLM6KCnBPol2AOBxXcMNRaOeQ11kR/nGu1Cjb7BVQexGjW
sha512-T9X6Yb02FsZCxY/VYJadHd8tq+9YadP/FQovdoZhHKrk1GoM+/xcd5j30e/Zdqj6F7I5QmYfpGnR0vUoh0jcxg==

 

<script src="https://uomorando.it/js/main.js" crossorigin="anonymous" integrity="sha256-YdszUqK21CEyj7WyBPmztmCtLIdbkj+VDYVr3qmYEcM=" />



script
src
https://uomorando.it/js/popper-1.16.1.min.js
200

1
ok
Missing defer / async attribute. application/javascript; charset=UTF-8
X-Content-Type-Options nosniff found





Cache-Control: public, max-age=0, must-revalidate - max-age too short.
Compression required: 7477 Bytes






local SRI possible, possible hash-values:

 

sha256-XMro6YbByFiy8995v90NEqGuS7aonIOdO/xwpDz1goU=
sha384-4Fj6pGQk7EhD5BEH+wxaPKpmptk4LoTmmen4DyoSOb3kaZpa5wx33Lw36J36idhD
sha512-YiEqFD429Ci1froG9JVpJ9GelPlMSYtmgfzCsmcFx7W/ofb59j0hArwL6eMZbec521hTz4giVrqxV536DKJ53Q==

 

<script src="https://uomorando.it/js/popper-1.16.1.min.js" crossorigin="anonymous" integrity="sha256-XMro6YbByFiy8995v90NEqGuS7aonIOdO/xwpDz1goU=" />


 

12. Html-Parsing via https://validator.w3.org/nu/

Small Code update, wait one minute

 

13. Nameserver - IP-Adresses

Required Root-climbing DNS-Queries to find ip addresses of all Name Servers: ns-1363.awsdns-42.org, ns-1816.awsdns-35.co.uk, ns-196.awsdns-24.com, ns-810.awsdns-37.net

 

QNr.DomainTypeNS used
1
org
NS
d.root-servers.net (2001:500:2d::d)

Answer: a0.org.afilias-nst.info, a2.org.afilias-nst.info, b0.org.afilias-nst.org, b2.org.afilias-nst.org, c0.org.afilias-nst.info, d0.org.afilias-nst.org
2
ns-1363.awsdns-42.org
NS
a0.org.afilias-nst.info (2001:500:e::1)

Answer: g-ns-1069.awsdns-42.org, g-ns-1642.awsdns-42.org, g-ns-170.awsdns-42.org, g-ns-748.awsdns-42.org

Answer: g-ns-748.awsdns-42.org
205.251.194.236, 2600:9000:5302:ec00::1

Answer: g-ns-170.awsdns-42.org
205.251.192.170, 2600:9000:5300:aa00::1

Answer: g-ns-1642.awsdns-42.org
205.251.198.106, 2600:9000:5306:6a00::1

Answer: g-ns-1069.awsdns-42.org
205.251.196.45, 2600:9000:5304:2d00::1
3
uk
NS
l.root-servers.net (2001:500:9f::42)

Answer: dns1.nic.uk, dns2.nic.uk, dns3.nic.uk, dns4.nic.uk, nsa.nic.uk, nsb.nic.uk, nsc.nic.uk, nsd.nic.uk
4
ns-1816.awsdns-35.co.uk
NS
dns1.nic.uk (2a01:618:400::1)

Answer: g-ns-1510.awsdns-35.co.uk, g-ns-1831.awsdns-35.co.uk, g-ns-355.awsdns-35.co.uk, g-ns-931.awsdns-35.co.uk

Answer: g-ns-931.awsdns-35.co.uk
205.251.195.163, 2600:9000:5303:a300::1

Answer: g-ns-355.awsdns-35.co.uk
205.251.193.99, 2600:9000:5301:6300::1

Answer: g-ns-1831.awsdns-35.co.uk
205.251.199.39, 2600:9000:5307:2700::1

Answer: g-ns-1510.awsdns-35.co.uk
205.251.197.230, 2600:9000:5305:e600::1
5
com
NS
d.root-servers.net (2001:500:2d::d)

Answer: a.gtld-servers.net, b.gtld-servers.net, c.gtld-servers.net, d.gtld-servers.net, e.gtld-servers.net, f.gtld-servers.net, g.gtld-servers.net, h.gtld-servers.net, i.gtld-servers.net, j.gtld-servers.net, k.gtld-servers.net, l.gtld-servers.net, m.gtld-servers.net
6
ns-196.awsdns-24.com
NS
a.gtld-servers.net (2001:503:a83e::2:30)

Answer: g-ns-1176.awsdns-24.com, g-ns-1752.awsdns-24.com, g-ns-25.awsdns-24.com, g-ns-600.awsdns-24.com

Answer: g-ns-600.awsdns-24.com
205.251.194.88, 2600:9000:5302:5800::1

Answer: g-ns-25.awsdns-24.com
205.251.192.25, 2600:9000:5300:1900::1

Answer: g-ns-1752.awsdns-24.com
205.251.198.216, 2600:9000:5306:d800::1

Answer: g-ns-1176.awsdns-24.com
205.251.196.152, 2600:9000:5304:9800::1
7
net
NS
k.root-servers.net (2001:7fd::1)

Answer: a.gtld-servers.net, b.gtld-servers.net, c.gtld-servers.net, d.gtld-servers.net, e.gtld-servers.net, f.gtld-servers.net, g.gtld-servers.net, h.gtld-servers.net, i.gtld-servers.net, j.gtld-servers.net, k.gtld-servers.net, l.gtld-servers.net, m.gtld-servers.net
8
ns-810.awsdns-37.net
NS
a.gtld-servers.net (2001:503:a83e::2:30)

Answer: g-ns-1381.awsdns-37.net, g-ns-1957.awsdns-37.net, g-ns-486.awsdns-37.net, g-ns-807.awsdns-37.net

Answer: g-ns-807.awsdns-37.net
205.251.195.39, 2600:9000:5303:2700::1

Answer: g-ns-486.awsdns-37.net
205.251.193.230, 2600:9000:5301:e600::1

Answer: g-ns-1957.awsdns-37.net
205.251.199.165, 2600:9000:5307:a500::1

Answer: g-ns-1381.awsdns-37.net
205.251.197.101, 2600:9000:5305:6500::1
9
ns-1363.awsdns-42.org: 205.251.197.83
A
g-ns-1069.awsdns-42.org (2600:9000:5304:2d00::1)
10
ns-1363.awsdns-42.org: 2600:9000:5305:5300::1
AAAA
g-ns-1069.awsdns-42.org (2600:9000:5304:2d00::1)
11
ns-1816.awsdns-35.co.uk: 205.251.199.24
A
g-ns-1510.awsdns-35.co.uk (2600:9000:5305:e600::1)
12
ns-1816.awsdns-35.co.uk: 2600:9000:5307:1800::1
AAAA
g-ns-1510.awsdns-35.co.uk (2600:9000:5305:e600::1)
13
ns-196.awsdns-24.com: 205.251.192.196
A
g-ns-1176.awsdns-24.com (2600:9000:5304:9800::1)
14
ns-196.awsdns-24.com: 2600:9000:5300:c400::1
AAAA
g-ns-1176.awsdns-24.com (2600:9000:5304:9800::1)
15
ns-810.awsdns-37.net: 205.251.195.42
A
g-ns-1381.awsdns-37.net (2600:9000:5305:6500::1)
16
ns-810.awsdns-37.net: 2600:9000:5303:2a00::1
AAAA
g-ns-1381.awsdns-37.net (2600:9000:5305:6500::1)

 

14. CAA - Entries

DomainnameflagNameValue∑ Queries∑ Timeout
uomorando.netlify.app
0

no CAA entry found
1
0
www.uomorando.it



1
0
uomorando.it
9
issuewild
amazon.com
1
0

9
issuewild
amazonaws.com
1
0

9
issuewild
amazontrust.com
1
0

9
issuewild
awstrust.com
1
0

9
issuewild
letsencrypt.org
1
0
netlify.app
32773
issue
digicert.com;account=2d83e9ac9b6776c3f215150f6ebceea8cefe3bc2e1fb5efffb1d71e200575226
1
0

32773
iodef
mailto:security@netlify.com
1
0
app
0

no CAA entry found
1
0
it
0

no CAA entry found
1
0

 

15. TXT - Entries

DomainnameTXT EntryStatus∑ Queries∑ Timeout
uomorando.it
v=spf1 mx ip4:5.157.127.190/32 -all
ok
1
0
www.uomorando.it


1
0
uomorando.netlify.app

ok
1
0
_acme-challenge.uomorando.it


1
0
_acme-challenge.www.uomorando.it


1
0
_acme-challenge.uomorando.netlify.app

missing entry or wrong length
1
0
_acme-challenge.uomorando.it.uomorando.it


1
0
_acme-challenge.www.uomorando.it.uomorando.it


1
0
_acme-challenge.www.uomorando.it.www.uomorando.it


1
0
_acme-challenge.uomorando.netlify.app.uomorando.netlify.app

perhaps wrong
1
0

 

16. DomainService - Entries

TypeDomainPrefValueDNS-errornum AnswersStatusDescription
MX

uomorando.it
10
mail.uomorando.it
01ok

A


135.181.60.167
01ok

CNAME


00ok
_dmarc
TXT
_dmarc.uomorando.it

v=DMARC1; p=quarantine; adkim=r; aspf=r
ok

 

 

17. Cipher Suites

Summary
DomainIPPortnum CipherstimeStd.ProtocolForward Secrecy
uomorando.it
104.198.14.52
443
3 Ciphers88.98 sec
0 without, 3 FS
100.00 %
www.uomorando.it
34.159.132.250
443
3 Ciphers38.24 sec
0 without, 3 FS
100.00 %
www.uomorando.it
35.198.80.163
443
3 Ciphers39.14 sec
0 without, 3 FS
100.00 %
www.uomorando.it
2a05:d014:275:cb01::c8
443
3 Ciphers24.26 sec
0 without, 3 FS
100.00 %
www.uomorando.it
2a05:d014:275:cb02::c8
443
3 Ciphers24.63 sec
0 without, 3 FS
100.00 %
Complete

5
15 Ciphers
3.00 Ciphers/Check
215.25 sec43.05 sec/Check
0 without, 15 FS
100.00 %

Details
DomainIPPortCipher (OpenSsl / IANA)
uomorando.it
104.198.14.52
443
ECDHE-ECDSA-CHACHA20-POLY1305
(Recommended)
TLSv1.2
0xCC,0xA9
FS
3 Ciphers, 88.98 sec
TLS_ECDHE_ECDSA_WITH_CHACHA20_POLY1305_SHA256

ECDH
ECDSA
CHACHA20/POLY1305(256)
AEAD




ECDHE-ECDSA-AES256-GCM-SHA384
(Recommended)
TLSv1.2
0xC0,0x2C
FS

TLS_ECDHE_ECDSA_WITH_AES_256_GCM_SHA384

ECDH
ECDSA
AESGCM(256)
AEAD




ECDHE-ECDSA-AES128-GCM-SHA256
(Recommended)
TLSv1.2
0xC0,0x2B
FS

TLS_ECDHE_ECDSA_WITH_AES_128_GCM_SHA256

ECDH
ECDSA
AESGCM(128)
AEAD

www.uomorando.it
34.159.132.250
443
ECDHE-ECDSA-CHACHA20-POLY1305
(Recommended)
TLSv1.2
0xCC,0xA9
FS
3 Ciphers, 38.24 sec
TLS_ECDHE_ECDSA_WITH_CHACHA20_POLY1305_SHA256

ECDH
ECDSA
CHACHA20/POLY1305(256)
AEAD




ECDHE-ECDSA-AES256-GCM-SHA384
(Recommended)
TLSv1.2
0xC0,0x2C
FS

TLS_ECDHE_ECDSA_WITH_AES_256_GCM_SHA384

ECDH
ECDSA
AESGCM(256)
AEAD




ECDHE-ECDSA-AES128-GCM-SHA256
(Recommended)
TLSv1.2
0xC0,0x2B
FS

TLS_ECDHE_ECDSA_WITH_AES_128_GCM_SHA256

ECDH
ECDSA
AESGCM(128)
AEAD


35.198.80.163
443
ECDHE-ECDSA-CHACHA20-POLY1305
(Recommended)
TLSv1.2
0xCC,0xA9
FS
3 Ciphers, 39.14 sec
TLS_ECDHE_ECDSA_WITH_CHACHA20_POLY1305_SHA256

ECDH
ECDSA
CHACHA20/POLY1305(256)
AEAD




ECDHE-ECDSA-AES256-GCM-SHA384
(Recommended)
TLSv1.2
0xC0,0x2C
FS

TLS_ECDHE_ECDSA_WITH_AES_256_GCM_SHA384

ECDH
ECDSA
AESGCM(256)
AEAD




ECDHE-ECDSA-AES128-GCM-SHA256
(Recommended)
TLSv1.2
0xC0,0x2B
FS

TLS_ECDHE_ECDSA_WITH_AES_128_GCM_SHA256

ECDH
ECDSA
AESGCM(128)
AEAD


2a05:d014:275:cb01::c8
443
ECDHE-ECDSA-CHACHA20-POLY1305
(Recommended)
TLSv1.2
0xCC,0xA9
FS
3 Ciphers, 24.26 sec
TLS_ECDHE_ECDSA_WITH_CHACHA20_POLY1305_SHA256

ECDH
ECDSA
CHACHA20/POLY1305(256)
AEAD




ECDHE-ECDSA-AES256-GCM-SHA384
(Recommended)
TLSv1.2
0xC0,0x2C
FS

TLS_ECDHE_ECDSA_WITH_AES_256_GCM_SHA384

ECDH
ECDSA
AESGCM(256)
AEAD




ECDHE-ECDSA-AES128-GCM-SHA256
(Recommended)
TLSv1.2
0xC0,0x2B
FS

TLS_ECDHE_ECDSA_WITH_AES_128_GCM_SHA256

ECDH
ECDSA
AESGCM(128)
AEAD


2a05:d014:275:cb02::c8
443
ECDHE-ECDSA-CHACHA20-POLY1305
(Recommended)
TLSv1.2
0xCC,0xA9
FS
3 Ciphers, 24.63 sec
TLS_ECDHE_ECDSA_WITH_CHACHA20_POLY1305_SHA256

ECDH
ECDSA
CHACHA20/POLY1305(256)
AEAD




ECDHE-ECDSA-AES256-GCM-SHA384
(Recommended)
TLSv1.2
0xC0,0x2C
FS

TLS_ECDHE_ECDSA_WITH_AES_256_GCM_SHA384

ECDH
ECDSA
AESGCM(256)
AEAD




ECDHE-ECDSA-AES128-GCM-SHA256
(Recommended)
TLSv1.2
0xC0,0x2B
FS

TLS_ECDHE_ECDSA_WITH_AES_128_GCM_SHA256

ECDH
ECDSA
AESGCM(128)
AEAD

 

18. Portchecks

No open Ports <> 80 / 443 found, so no additional Ports checked.

 

 

Permalink: https://check-your-website.server-daten.de/?i=8adaf07a-69c9-445e-9785-843ba0fa1ec0

 

Last Result: https://check-your-website.server-daten.de/?q=uomorando.it - 2022-12-22 16:39:00

 

Do you like this page? Support this tool, add a link on your page:

 

<a href="https://check-your-website.server-daten.de/?q=uomorando.it" target="_blank">Check this Site: uomorando.it</a>

 

 

Do you really want to support this project? Donate: Check-your-website, IBAN DE98 1001 0010 0575 2211 07, SWIFT/BIC PBNKDEFF, Euro

 

QR-Code of this page - https://check-your-website.server-daten.de/?d=uomorando.it