In Headers/ Padlocks / site Seals / CA’s we trust !
Certificate authorities…
Available online testing services
checking: - server headers - https cert instalations
Certificate authorities…
checking: - server headers - https cert instalations
Test my server please
Certificate authorities…
Test my server please
Certificate authorities… checking https / cert instalations
GeoTrust
GeoTrust, a leading certificate authority,
provides retail and reseller services for SSL encryption, and website authentication, digital
signatures, code signing, secure email, and enterprise SSL products
Certificate authorities… checking https / cert instalations
GeoTrust
Certificate authorities… checking https / cert instalations
GeoTrust
Certificate authorities… checking https / cert instalations
Server: header field :)
Certificate authorities… checking https / cert instalations
HSTS header field :)
Certificate authorities… checking https / cert instalations
HSTS header field :)
Certificate authorities… checking https / cert instalations
RapidSSL
RapidSSL is on a mission to help you secure your domain with SSL as fast as possible. We’ve
streamlined and automated every part of the enrollment and authentication processes
Certificate authorities… checking https / cert instalations
RapidSSL
Certificate authorities… checking https / cert instalations
Server: header field :)
Certificate authorities… checking https / cert instalations
HSTS header field :)
Certificate authorities… checking https / cert instalations
HSTS header field :)
Certificate authorities… checking https / cert instalations
Symantec
Cyber Security Services
Strengthen your security with our experts,
global threat intelligence, advanced monitoring, incident response, and cyber readiness services.
Certificate authorities… checking https / cert instalations
Symantec
Certificate authorities… checking https / cert instalations
Server: header field :)
Certificate authorities… checking https / cert instalations
HSTS header field :)
Certificate authorities… checking https / cert instalations
HSTS field :)
Certificate authorities… checking https / cert instalations
wait there must be something better…
Certificate authorities… checking https / cert instalations
Thawte
As a leading global certificate authority,
Thawte provides online security trusted by millions
around the world. Expert support, robust
authentication practices, and easy online management make Thawte the best value for SSL
certificates and code signing certificates.
Certificate authorities… checking https / cert instalations
Thawte
Certificate authorities… checking https / cert instalations
Server: header field :)
Certificate authorities… checking https / cert instalations
HSTS header field :)
Certificate authorities… checking https / cert instalations
HSTS header field :)
Certificate authorities… checking https / cert instalations
See a pattern here?
Certificate authorities… checking https / cert instalations
Security headers in apache2.conf
Certificate authorities… checking https / cert instalations
My Server Signature =)
It runs on ZxSpectrum !!
Certificate authorities… checking https / cert instalations
should i report this?…i’ve tried…
Certificate authorities… checking https / cert instalations
should i report this?…i’ve tried
Certificate authorities… checking https / cert instalations
should i report this?…i’ve tried
Certificate authorities… checking https / cert instalations
and…got a hit
Certificate authorities… checking https / cert instalations
and…got a hit
Certificate authorities… checking https / cert instalations
OK, now someone who really knows security…
Certificate authorities… checking https / cert instalations
OK, now someone who really knows security…
Certificate authorities… checking https / cert instalations
OK, now someone who really knows security…
Certificate authorities… checking https / cert instalations
OK, now someone who really knows security…
Certificate authorities… checking https / cert instalations
OK, now someone who really knows security…
Certificate fields: OU, CN, blah
Certificate authorities… checking https / cert instalations
OK, now someone who really knows security…
Certificate authorities… checking https / cert instalations
OK, now someone who really knows security…
Certificate authorities… checking https / cert instalations
OK, now someone who really knows security…
Certificate authorities… checking https / cert instalations
OK, now someone who really knows security…
Certificate authorities… checking https / cert instalations
OK, now someone who really knows security…
Certificate authorities… checking https / cert instalations
OK, now RapidSSLonline.com
Now, let’s check the CSR checking service
OK, now RapidSSLonline.com
OK, now RapidSSLonline.com
OK, now RapidSSLonline.com
CSR email field
OK, back to RapidSSLonline.com
OK, i’ve tried to report… and got this mail…
OK, back to RapidSSLonline.com
OK, i’ve tried to report… and got this mail…
https://sslshopper.com Both tests:
SSL checker / server header CSR decoder
https://sslshopper.com Both tests:
SSL checker / server header CSR decoder
https://sslshopper.com
https://sslshopper.com
https://sslshopper.com
https://sslshopper.com
https://sslshopper.com
https://sslshopper.com -> private key?? what ??
Let’s try “European leader in website security…”
Let’s try “European leader in website security…”
Let’s try “European leader in website security…”
Let’s try “European leader in website security…”
Let’s try “European leader in website security…”
Let’s try “European leader in website security…”
Let’s try “European leader in website security…”
Let’s try “European leader in website security…”
Let’s try “European leader in website security…”
Let’s try “European leader in website security…”
Let’s try “European leader in website security…”
Let’s try “European leader in website security…”
OK, now some other sites:
OK, other sites: private key??
OK, other sites: CDN
KEYCDN also offers a great test
OK, other sites: CDN
OK, other sites: CDN
OK, other sites: CDN