Infrastructure
· 9 checks — DNS, redirects, IPv6, crawlability, URL variants, and domain intelligence rolled into one auditable list.DCDN & DeliveryActionNo CDN detectedFIX
Consider using a CDN to improve global delivery speed and reduce origin load.
CIPv6 ReadinessActionNo IPv6 supportREVIEW
IPv6 support is increasingly important for global accessibility. About 40% of internet users have IPv6 connectivity.
No AAAA records — same impact as 'no IPv6 (AAAA) records'; IPv6-preferring clients pay extra latency falling back to IPv4.
Source: Google IPv6 stats
CURL VariantsActionwww/non-www, trailing slash, HTTP→HTTPSREVIEW
www / non-www
Inconsistent — duplicate content risk
HTTP → HTTPS
Use 301 (permanent) instead of 302 (temporary)
BHTTP Probe TimingTotal 1274 ms — DNS, TCP, TLS, TTFB, content transfer breakdownREVIEW
Connection waterfall
BTLS Certificate Expiry & Recommendations212 days until leaf cert expires — 3 issues to addressREVIEW
Certificate validity
Recommended actions
- Enable HSTS: Strict-Transport-Security: max-age=31536000; includeSubDomains
- Enable DNSSEC on your domain for DNS spoofing protection
- Enable OCSP stapling on your TLS server to remove a CA roundtrip and protect user privacy
ADNS Records1 A records, 882 ms lookupPASS
| A | 157.181.152.2 |
| AAAA | — |
| CNAME | — |
| NS | darmol.elte.hu, filippa.elte.hu, unistar.bke.hu |
| MX | 0 elte-hu.mail.protection.outlook.com |
| TXT | HARICA-t3Srp7x9YenGlw1P46f google-site-verification=fmI6itoEhW1gYBxrSpMMeD8rKzoziaSRku9ECiLwgm4 SPF v=spf1 include:spf.protection.outlook.com -all MS=ABEEC841FCC486257F51A913DC32843A9D1C0BC2 |
| CAA | Lookup not available with standard resolver |
Multiple A records provide failover if one server goes down.
Single A record means a single point of failure — if that IP goes down, your site is unreachable until DNS TTL expires.
Learn more ▾ ▴
Add multiple A records for round-robin failover, or use a managed DNS provider with health-checked failover (Route 53, Cloudflare, NS1). Short TTL (60-300s) lets clients recover faster on outages.
Source: SRE practice / DNS architecture
CAA record lookup requires a specialized DNS resolver. This check will be available in a future update.
Informational: CAA (Certification Authority Authorization) records weren't checked in this scan.
Slow DNS adds latency to every page load. Consider a faster DNS provider.
DNS resolution is slow — anycast DNS providers (Cloudflare, Route 53) typically resolve <50ms globally.
Source: DNS performance benchmarks
A+Redirect ChainNo redirects — direct accessPASS
https://elte.hu
1203 ms · HTTP/1.1 FINAL
| # | URL | Status | Time | Protocol | Server |
|---|---|---|---|---|---|
| 1 | https://elte.hu | 200 | 1203 ms | HTTP/1.1 | Apache/2.4.58 (Ubuntu) |
A+Crawlabilityrobots.txt present, sitemap with 14 URLsPASS
Add a 'Sitemap:' directive to robots.txt so search engines can discover your sitemap.
robots.txt omits Sitemap: directive — crawlers must fetch /sitemap.xml by convention; reliable but missing the explicit hint.
Source: sitemaps.org
#
# robots.txt
#
# This file is to prevent the crawling and indexing of certain parts
# of your site by web crawlers and spiders run by sites like Yahoo!
# and Google. By telling these "robots" where not to go on your site,
# you save bandwidth and server resources.
#
# This file will be ignored unless it is at the root of your host:
# Used: http://example.com/robots.txt
# Ignored: http://example.com/site/robots.txt
#
# For more information about the robots.txt standard, see:
# http://www.robotstxt.org/robotstxt.html
User-agent: *
# CSS, JS, Images
Allow: /core/*.css$
Allow: /core/*.css?
Allow: /core/*.js$
Allow: /core/*.js?
Allow: /core/*.gif
Allow: /core/*.jpg
Allow: /core/*.jpeg
Allow: /core/*.png
Allow: /core/*.svg
Allow: /profiles/*.css$
Allow: /profiles/*.css?
Allow: /profiles/*.js$
Allow: /profiles/*.js?
Allow: /profiles/*.gif
Allow: /profiles/*.jpg
Allow: /profiles/*.jpeg
Allow: /profiles/*.png
Allow: /profiles/*.svg
# Directories
Disallow: /core/
Disallow: /profiles/
# Files
Disallow: /README.md
Disallow: /composer/Metapackage/README.txt
Disallow: /composer/Plugin/ProjectMessage/README.md
Disallow: /composer/Plugin/Scaffold/README.md
Disallow: /composer/Plugin/VendorHardening/README.txt
Disallow: /composer/Template/README.txt
Disallow: /modules/README.txt
Disallow: /sites/README.txt
Disallow: /themes/README.txt
# Paths (clean URLs)
Disallow: /admin/
Disallow: /comment/reply/
Disallow: /filter/tips
Disallow: /node/add/
Disallow: /search/
Disallow: /user/register
Disallow: /user/password
Disallow: /user/login
Disallow: /user/logout
Disallow: /media/oembed
Disallow: /*/media/oembed
# Paths (no clean URLs)
Disallow: /index.php/admin/
Disallow: /index.php/comment/reply/
Disallow: /index.php/filter/tips
Disallow: /index.php/node/add/
Disallow: /index.php/search/
Disallow: /index.php/user/password
Disallow: /index.php/user/register
Disallow: /index.php/user/login
Disallow: /index.php/user/logout
Disallow: /index.php/media/oembed
Disallow: /index.php/*/media/oembed
# Disallow query strings in URLs.
Disallow: /*?*
# Prevent bots from crawling SAML login redirects.
# Googlebot was generating ~1758 requests/2h to these URLs, causing
# unnecessary PHP-FPM load for authentication redirects.
# @see https://gitlab.studiopresent.com/k8s/drupal/elte/-/issues/266
Disallow: /saml/login
# Block aggressive crawlers that cause server overload.
# Scrapy bots: 27K+ requests/day, crawling entire site including SAML endpoints.
User-agent: Scrapy
Disallow: /
# GPTBot: OpenAI training crawler.
User-agent: GPTBot
Disallow: /
# CCBot: Common Crawl bot used for AI training.
User-agent: CCBot
Disallow: /
# SemrushBot: aggressive SEO crawler, 9K+ requests/day.
User-agent: SemrushBot
Crawl-delay: 10
Disallow: /saml/
Disallow: /node/
Disallow: /user/
# Baiduspider: 6K+ requests/day.
User-agent: Baiduspider
Crawl-delay: 10
Disallow: /saml/
Disallow: /node/
Disallow: /user/
# AhrefsBot: aggressive SEO crawler.
User-agent: AhrefsBot
Crawl-delay: 10
Disallow: /saml/
Disallow: /node/
Disallow: /user/
# ChatGPT: AI crawler, 4K+ requests/day.
User-agent: ChatGPT-User
Crawl-delay: 10
Disallow: /saml/
Disallow: /node/
Disallow: /user/
- https://elte.hu/sitemap.xml?page=1
- https://elte.hu/sitemap.xml?page=2
- https://elte.hu/sitemap.xml?page=3
- https://elte.hu/sitemap.xml?page=4
- https://elte.hu/sitemap.xml?page=5
- https://elte.hu/sitemap.xml?page=6
- https://elte.hu/sitemap.xml?page=7
- https://elte.hu/sitemap.xml?page=8
- https://elte.hu/sitemap.xml?page=9
- https://elte.hu/sitemap.xml?page=10
- https://elte.hu/sitemap.xml?page=11
- https://elte.hu/sitemap.xml?page=12
- https://elte.hu/sitemap.xml?page=13
- https://elte.hu/sitemap.xml?page=14
A+Domain Intelligenceelte.hu — 34 years, 1 months old, hosted on ELTENET ELTENET, HUPASS
Unknown
212 days
Issued by Hellenic Academic and Research Institutions CA
34 years, 1 months
Registered September 10, 1992
Status unknown
Protects against DNS spoofing
ELTENET ELTENET, HU
ASN AS2012
157.181.152.2
Registrar unknown