updated: Sunday, 16 August 2020, 09:42:43


Validity

Valid fromMonday, 04 June 2018, 19:38:06
Valid untilFriday, 16 August 2019, 14:44:16
Certificate Matches Server Hostnameyes (about.com)
Trust Store 'Microsoft - 04/2014'ok
Trust Store 'Mozilla NSS - 01/2014'ok (not EV)
Trust Store 'Apple - OS X 10.9.2'ok
Trust Store 'Java 6 - Update 65'certificate has expired
OCSPTrusted By Mozilla CA Store

Vulnerability

Heartbleed (CVE-2014-0160)yes
Session Resumption With TLS Ticketsyes
Session Resumption With Session IDs5 / 5
Session Renegotiation Can Be Client Initiatedno
TLS compressionno
Renegotiation (CVE 2009-3555)NOT vulnerable (ok)
CRIME, TLS (CVE-2012-4929)NOT vulnerable (ok)

Server

SSL Report Forabout.com (151.101.1.121:443)
OCSP staplingyes
HSTSno
ServerApache/2.4.33 (Amazon) OpenSSL/1.0.2k-fips
Application (None)
Default negotiated protocolTLSv1.2
Default negotiated cipherECDHE-RSA-AES128-GCM-SHA256
Default server key size2048 bit
TLS server extensionsrenegotiation info, server name, EC point formats, session ticket
Session Tickets RFC 50777200 seconds
SPDY/NPNnot offered

Certificate

Common Name*.about.com
Alternative names*.about.com, *.aboutespanol.com, *.babynames.net, *.caloriecount.com, *.dotdash.com, *.espanol.staging.aws.aboutespanol.com, *.fashion.staging.aws.liveabout.com, *.life-wire.com, *.lifewire.com, *.liveabout.com, *.seo.aws.about.com, *.thebalance.com, *.thebalancecareers.com, *.thebalanceeveryday.com, *.thebalancesmb.com, *.thespruce.com, *.thesprucecrafts.com, *.thespruceeats.com, *.thesprucepets.com, *.thoughtco.com, *.tqn.com, *.tripsavvy.com, *.verywell.com, *.verywellfamily.com, *.verywellfit.com, *.verywellhealth.com, *.verywellmind.com, aboutespanol.com, babynames.net, dd-xt.com, dotdash.com, espanol.staging.aws.aboutespanol.com, fashion.staging.aws.liveabout.com, life-wire.com, lifewire.com, liveabout.com, thebalance.com, thebalancecareers.com, thebalanceeveryday.com, thebalancesmb.com, thespruce.com, thesprucecrafts.com, thespruceeats.com, thesprucepets.com, thoughtco.com, tripsavvy.com, verywell.com, verywellfamily.com, verywellfit.com, verywellhealth.com, verywellmind.com, about.com
KeyrsaEncryption, 2048 bit
OrganizationAbout, Inc.
State/ProvinceNew York
CountryUS
LocalityNew York
IssuerGlobalSign CloudSSL CA - SHA256 - G3, BE
Signature algorithmsha256WithRSAEncryption
Revocation OCSPOCSP (http://ocsp2.globalsign.com/cloudsslsha2g3)

Protocols

SSL 2NOT offered (ok)
SSL 3NOT offered (ok)
TLS 1.0not offered
TLS 1.1not offered
TLS 1.2offered (ok)

Standard cipher lists

Null CipherNOT offered (ok)
Anonymous NULL CipherNOT offered (ok)
Anonymous DH CipherNOT offered (ok)
40 Bit encryptionNOT offered (ok)
56 Bit encryptionNOT offered (ok)
DES CipherNOT offered (ok)
Triple DES Ciphernot offered
Medium grade encryptionnot offered
High grade encryptionoffered (ok)
Labels in table: strong strong, default for protocol weak vulnerable

TLS 1.2TLS 1.1TLS 1.0SSL 3SSL 2
ECDHE-RSA-AES128-GCM-SHA256128
ECDHE-RSA-AES256-SHA256
AES256-SHA256
ECDHE-RSA-AES256-SHA384256
ECDHE-RSA-AES256-GCM-SHA384256
AES128-SHA128
AES128-GCM-SHA256128
ECDHE-RSA-AES128-SHA256128
ECDHE-RSA-AES128-SHA128
EDH-DSS-DES-CBC-SHA
EDH-RSA-DES-CBC3-SHA
EXP-ADH-DES-CBC-SHA
ECDHE-RSA-RC4-SHA
EDH-RSA-DES-CBC-SHA
EDH-DSS-DES-CBC3-SHA
ECDHE-RSA-NULL-SHA
EXP-EDH-RSA-DES-CBC-SHA
EXP-EDH-DSS-DES-CBC-SHA
EXP-DES-CBC-SHA
EXP-RC2-CBC-MD5
EXP-ADH-RC4-MD5
ECDHE-ECDSA-AES256-SHA384
ECDHE-ECDSA-AES128-SHA256
ECDHE-ECDSA-AES128-SHA
ECDHE-ECDSA-AES128-GCM-SHA256
ECDH-RSA-RC4-SHA
ECDHE-ECDSA-AES256-GCM-SHA384
ECDHE-ECDSA-AES256-SHA
ECDHE-ECDSA-RC4-SHA
ECDHE-ECDSA-NULL-SHA
ECDHE-ECDSA-DES-CBC3-SHA
EXP-RC4-MD5
ECDHE-RSA-DES-CBC3-SHA
PSK-AES128-CBC-SHA
SRP-DSS-AES-256-CBC-SHA
SRP-RSA-3DES-EDE-CBC-SHA
SRP-DSS-AES-128-CBC-SHA
SRP-DSS-3DES-EDE-CBC-SHA
SRP-AES-256-CBC-SHA
SRP-RSA-AES-128-CBC-SHA
SRP-RSA-AES-256-CBC-SHA
RC2-CBC-MD5
IDEA-CBC-MD5
DES-CBC3-MD5
DES-CBC-MD5
SRP-AES-128-CBC-SHA
SRP-3DES-EDE-CBC-SHA
PSK-3DES-EDE-CBC-SHA
NULL-SHA256
NULL-SHA
NULL-MD5
ECDH-RSA-NULL-SHA
PSK-AES256-CBC-SHA
SEED-SHA
RC4-SHA
RC4-MD5
PSK-RC4-SHA
IDEA-CBC-SHA
ECDH-RSA-DES-CBC3-SHA
AES256-SHA256
CAMELLIA128-SHA
AES256-GCM-SHA384
AES128-SHA256
AECDH-NULL-SHA
AECDH-RC4-SHA
CAMELLIA256-SHA
DES-CBC-SHA
DHE-DSS-AES128-SHA256
DHE-DSS-AES256-GCM-SHA384
DHE-DSS-AES128-SHA
DHE-DSS-AES128-GCM-SHA256
DES-CBC3-SHA
AECDH-DES-CBC3-SHA
AECDH-AES256-SHA
ADH-AES256-SHA
ADH-AES256-SHA256
ADH-AES256-GCM-SHA384
ADH-AES128-SHA256
ADH-AES128-SHA
ADH-CAMELLIA128-SHA
ADH-CAMELLIA256-SHA
ADH-SEED-SHA
AECDH-AES128-SHA
ADH-RC4-MD5
ADH-DES-CBC3-SHA
ADH-DES-CBC-SHA
DHE-DSS-AES256-SHA
DHE-DSS-AES256-SHA256
ECDH-ECDSA-DES-CBC3-SHA
ECDH-ECDSA-NULL-SHA
ECDH-ECDSA-AES256-SHA384
ECDH-ECDSA-AES256-SHA
ECDH-ECDSA-AES128-SHA256
ECDH-ECDSA-AES256-GCM-SHA384
ECDH-ECDSA-RC4-SHA
ECDH-RSA-AES128-GCM-SHA256
ECDH-RSA-AES256-SHA
ECDH-RSA-AES256-SHA384
ECDH-RSA-AES256-GCM-SHA384
ECDH-RSA-AES128-SHA256
ECDH-RSA-AES128-SHA
ECDH-ECDSA-AES128-SHA
ECDH-ECDSA-AES128-GCM-SHA256
DHE-RSA-AES128-GCM-SHA256
DHE-RSA-AES128-SHA
DHE-DSS-SEED-SHA
DHE-DSS-CAMELLIA256-SHA
DHE-DSS-CAMELLIA128-SHA
DHE-RSA-AES128-SHA256
DHE-RSA-AES256-GCM-SHA384
DHE-RSA-CAMELLIA256-SHA
DHE-RSA-SEED-SHA
DHE-RSA-CAMELLIA128-SHA
DHE-RSA-AES256-SHA256
DHE-RSA-AES256-SHA
ADH-AES128-GCM-SHA256
OCSP Trusted
about.com (151.101.1.121:443)
OCSP Trusted By Mozilla CA Store
Trusted By Apple - OS X 10.9.2
about.com (151.101.1.121:443)
Trusted By Apple - OS X 10.9.2
Trusted By Microsoft - 04/2014
about.com (151.101.1.121:443)
Trusted By Microsoft - 04/2014
Trusted By Mozilla NSS - 01/2014
about.com (151.101.1.121:443)
Trusted By Mozilla NSS - 01/2014
Heartbleed Vulnerable
about.com (151.101.1.121:443)
certificate has expired
Java 6 - Update 65