Tools Server SSL Test

Testing Server Check Result

webfilter.khug.or.kr:443 - Summary

webfilter.khug.or.kr -> 1.252.186.51
webfilter.khug.or.kr -> 1.252.186.51 certificate does not match supplied URI (same w/o SNI)
webfilter.khug.or.kr -> 1.252.186.51 failed (self signed CA in chain).
webfilter.khug.or.kr -> 1.252.186.51 2102400 days
webfilter.khug.or.kr -> 1.252.186.51 Neither CRL nor OCSP URI provided

Certificate and Configuration

Certificate Information
signatureAlgorithmOKSHA256 with RSA
keySizeINFORSA 2048 bits
serialNumberINFOD902BE9F140FC0ED
commonNameOK*.webfilter.co.kr
commonName wo SNIINFO*.webfilter.co.kr
subjectAltNameINFO*.webfilter.co.kr *.webfilter.com
caIssuersINFOJIRANSOFT Signed CA (JIRANSOFT Inc. from KR)
trustHIGHcertificate does not match supplied URI (same w/o SNI)
chain of trustCRITICALfailed (self signed CA in chain).
certificatePolicies EVINFOno
expirationStatusOK1269 >= 60 days
notBeforeINFO2016-01-26 22:35
notAfterOK2026-01-23 22:35
OCSP staplingINFOnot offered
DNS CAArecordLOW--
certificate transparencyINFON/A
Protocols Information webfilter.khug.or.kr/1.252.186.51
SSLv2 OKnot offered
SSLv3 OKnot offered
TLS1 INFOoffered
2020년 브라우저 TLS1.0, 1.1 지원중지 - Apache[예제]
TLS1.1 INFOoffered
2020년 브라우저 TLS1.0, 1.1 지원중지 - Apache[예제]
TLS1.2 OKoffered
TLS1.3 INFOnot offered and downgraded to a weaker protocol
ALPN INFOnot offered
Server Information
cipher negotiated OKDHE-RSA-AES128-GCM-SHA256, 1024 bit DH (matching cipher in list missing)
Cipher order
TLSv1 INFOECDHE-RSA-AES128-SHA at TLSv1 (matching cipher in list missing)
TLSv1.1 INFOECDHE-RSA-AES128-SHA at TLSv1.1 (matching cipher in list missing)
TLSv1.2 INFOECDHE-RSA-AES128-GCM-SHA256 at TLSv1.2 (matching cipher in list missing)
Cipher Suite
Client Handshake Simulation
android 422 INFOTLSv1.0 ECDHE-RSA-AES128-SHA
android 442 INFOTLSv1.2 ECDHE-RSA-AES128-GCM-SHA256
android 500 INFOTLSv1.2 ECDHE-RSA-AES128-GCM-SHA256
android 60 INFOTLSv1.2 ECDHE-RSA-AES128-GCM-SHA256
android 70 INFOTLSv1.2 ECDHE-RSA-AES128-GCM-SHA256
android 81 INFOTLSv1.2 ECDHE-RSA-AES128-GCM-SHA256
android 90 INFOTLSv1.2 ECDHE-RSA-AES128-GCM-SHA256
chrome 65 win7 INFOTLSv1.2 ECDHE-RSA-AES128-GCM-SHA256
chrome 74 win10 INFOTLSv1.2 ECDHE-RSA-AES128-GCM-SHA256
firefox 62 win7 INFOTLSv1.2 ECDHE-RSA-AES128-GCM-SHA256
firefox 66 win81 INFOTLSv1.2 ECDHE-RSA-AES128-GCM-SHA256
ie 6 xp INFONo connection
ie 7 vista INFOTLSv1.0 AES128-SHA
ie 8 win7 INFOTLSv1.0 AES128-SHA
ie 8 xp INFOTLSv1.0 DES-CBC3-SHA
ie 11 win7 INFOTLSv1.2 ECDHE-RSA-AES128-SHA256
ie 11 win81 INFOTLSv1.2 ECDHE-RSA-AES128-SHA256
ie 11 winphone81 INFOTLSv1.2 AES128-SHA256
ie 11 win10 INFOTLSv1.2 ECDHE-RSA-AES128-GCM-SHA256
edge 15 win10 INFOTLSv1.2 ECDHE-RSA-AES128-GCM-SHA256
edge 17 win10 INFOTLSv1.2 ECDHE-RSA-AES128-GCM-SHA256
opera 60 win10 INFOTLSv1.2 ECDHE-RSA-AES128-GCM-SHA256
safari 9 ios9 INFOTLSv1.2 ECDHE-RSA-AES128-GCM-SHA256
safari 9 osx1011 INFOTLSv1.2 ECDHE-RSA-AES128-GCM-SHA256
safari 10 osx1012 INFOTLSv1.2 ECDHE-RSA-AES128-GCM-SHA256
apple ats 9 ios9 INFOTLSv1.2 ECDHE-RSA-AES128-GCM-SHA256
tor 1709 win7 INFOTLSv1.0 ECDHE-RSA-AES128-SHA
java 6u45 INFOTLSv1.0 AES128-SHA
java 7u25 INFOTLSv1.0 ECDHE-RSA-AES128-SHA
java 8u161 INFOTLSv1.2 ECDHE-RSA-AES128-SHA256
java 904 INFOTLSv1.2 ECDHE-RSA-AES128-GCM-SHA256
openssl 101l INFOTLSv1.2 ECDHE-RSA-AES128-GCM-SHA256
openssl 102e INFOTLSv1.2 ECDHE-RSA-AES128-GCM-SHA256
openssl 110j INFOTLSv1.2 ECDHE-RSA-AES128-GCM-SHA256
openssl 111b INFOTLSv1.2 ECDHE-RSA-AES128-GCM-SHA256
thunderbird 60 6 1 INFOTLSv1.2 ECDHE-RSA-AES128-GCM-SHA256