SSL Test
Secure Transaction LayerFree test

Check SSL Certificat

SSL
0/100
Score
Global score is 70/100
npr.org
SSL npr.org

The SSL (Secure Sockets Layer) Certificate for npr.org is delivered by "thawte, it's valid until Thursday, January 18, 2018

Certificat (0 / 100)
Protocol Support (100 / 100)
Key Exchange (90 / 100)
Cipher Strength (93 / 100)
Last report: 10/20/2017 2:04:00 AM

Info

CS006 => Server supports cipher suites with no forward secrecy.
SK002 => Server uses DH parameters smaller than 2048 bits.
XC001 => Server certificate was signed with a weak/deprecated/unknown hash function.
validTo => The certificat was valid until 1/17/2018 11:59:59 PM (2312 days after today)
validTo => The certificat was valid until 10/30/2023 11:59:59 PM (200 days after today)
validTo => The certificat was valid until 12/30/2020 11:59:59 PM (1234 days after today)
RemoteCertificateChainErrors => ChainStatus has returned a non empty array
Score: 70
NameDate Joined
Domain Name npr.org
Effective1/13/2015 1:00:00 AM
Expiration
1/18/2018 12:59:59 AM (-2312 days)
The certificat was valid until 1/17/2018 11:59:59 PM (2312 days after today)
Key Size 0
Country US
CNthawte SSL CA - G2
DNS Server
DNS Host
Subject Alternative Name (SAN)

Other websites using the same SSL certificat

*.npr.org

Info

NameValue
Country"thawte
CNthawte SSL CA - G2
FormatX509
ArchivedFalse
Algorithm Parameters0500
Cipher AlgorithmAes256
Cipher Strength256
Hash AlgorithmSha384
Hash Strength0
Key Exchange Algorithm
Key Exchange Strength0
Ssl ProtocolTls12
Serial Number3D46073E85FE316E44E9C5F77D1A9A9F
VerifyTrue
Is SynchronizedFalse
Version3
Private Key
ThumbprintBE01E26245FFFEDFEEB684B81FF122CE9CEBF0FE

Cypher TLSv12

NameKey TypeForward SecrecyStrength
DHE_RSA_WITH_AES_256_GCM_SHA384RSA3 / 3True
DHE_RSA_WITH_AES_128_GCM_SHA256RSA3 / 3True
DHE_RSA_WITH_AES_256_CBC_SHA256RSA3 / 3True
DHE_RSA_WITH_AES_256_CBC_SHARSA3 / 3True
DHE_RSA_WITH_AES_128_CBC_SHA256RSA3 / 3True
DHE_RSA_WITH_AES_128_CBC_SHARSA3 / 3True
RSA_WITH_AES_256_GCM_SHA384RSA3 / 3True
RSA_WITH_AES_128_GCM_SHA256RSA3 / 3True
RSA_WITH_AES_256_CBC_SHA256RSA3 / 3True
RSA_WITH_AES_256_CBC_SHARSA3 / 3True
RSA_WITH_AES_128_CBC_SHA256RSA3 / 3True
RSA_WITH_AES_128_CBC_SHARSA3 / 3True
ECDHE_RSA_WITH_AES_256_GCM_SHA384RSA3 / 3True
ECDHE_RSA_WITH_AES_128_GCM_SHA256RSA3 / 3True
ECDHE_RSA_WITH_AES_256_CBC_SHA384RSA3 / 3True
ECDHE_RSA_WITH_AES_256_CBC_SHARSA3 / 3True
ECDHE_RSA_WITH_AES_128_CBC_SHA256RSA3 / 3True
ECDHE_RSA_WITH_AES_128_CBC_SHARSA3 / 3True

Cypher TLSv11

NameKey TypeForward SecrecyStrength
DHE_RSA_WITH_AES_256_CBC_SHARSA3 / 3True
DHE_RSA_WITH_AES_128_CBC_SHARSA3 / 3True
RSA_WITH_AES_256_CBC_SHARSA3 / 3True
RSA_WITH_AES_128_CBC_SHARSA3 / 3True
ECDHE_RSA_WITH_AES_256_CBC_SHARSA3 / 3True
ECDHE_RSA_WITH_AES_128_CBC_SHARSA3 / 3True

Cypher TLSv10

NameKey TypeForward SecrecyStrength
DHE_RSA_WITH_AES_256_CBC_SHARSA3 / 3True
DHE_RSA_WITH_AES_128_CBC_SHARSA3 / 3True
RSA_WITH_AES_256_CBC_SHARSA3 / 3True
RSA_WITH_AES_128_CBC_SHARSA3 / 3True
ECDHE_RSA_WITH_AES_256_CBC_SHARSA3 / 3True
ECDHE_RSA_WITH_AES_128_CBC_SHARSA3 / 3True
Model
SSL Alert
SSL expiration alert
You will receive notification if any of your certificates expire.
Domain NameExpiration
zing.vn11/17/2018
npr.org1/18/2018
sputniknews.com12/17/2017
lapatilla.com3/4/2018
almasryalyoum.com10/14/2018
namnak.com9/5/2018
investing.com1/18/2019
focus.de12/3/2018
1tv.ru8/8/2018
lifehacker.com4/12/2018
Domain NameExpiration
metropoles.com10/2/2018
videoyoum7.com12/19/2017
theatlantic.com9/22/2018
westernjournalism.com11/17/2017
cbsnews.com9/18/2018
welt.de7/22/2020
vnexpress.net4/16/2018
toutiao.com1/30/2018
udn.com9/26/2018
rbc.ru1/26/2018
Domain NameExpiration
prothom-alo.com9/2/2018
mathrubhumi.com1/29/2018
innfrad.com4/25/2018
thesun.co.uk12/2/2019
nypost.com12/10/2017
wired.com5/5/2018
hamariweb.com12/17/2017
lenta.ru11/16/2018
kknews.cc12/17/2017
lefigaro.fr4/24/2018