서버 SSL/TLS 테스트 받아보기 정보
서버 SSL/TLS 테스트 받아보기
관련링크
https://www.ssllabs.com/ssltest/
184회 연결
본문
| Protocol Details | ||||||
| DROWN | No, server keys and hostname not seen elsewhere with SSLv2
|
|||||
| Secure Renegotiation | Supported | |||||
| Secure Client-Initiated Renegotiation | No | |||||
| Insecure Client-Initiated Renegotiation | No | |||||
| BEAST attack | Not mitigated server-side (more info) SSL 3: 0xa, TLS 1.0: 0xa | |||||
| POODLE (SSLv3) | Vulnerable INSECURE (more info) SSL 3: 0xa | |||||
| POODLE (TLS) | No (more info) | |||||
| Downgrade attack prevention | Yes, TLS_FALLBACK_SCSV supported (more info) | |||||
| SSL/TLS compression | No | |||||
| RC4 | Yes INSECURE (more info) | |||||
| Heartbeat (extension) | Yes | |||||
| Heartbleed (vulnerability) | No (more info) | |||||
| Ticketbleed (vulnerability) | No (more info) | |||||
| OpenSSL CCS vuln. (CVE-2014-0224) | No (more info) | |||||
| OpenSSL Padding Oracle vuln. (CVE-2016-2107) |
No (more info) | |||||
| Forward Secrecy | With some browsers (more info) | |||||
등등......
SSL 인증서랑 서버의 프로토콜 체크 해주네요
아파치 SSL 설정 보완해야 할거 같아요
추천
1
1
댓글 1개

좋은 사이트네요 ㅎ