Infrastructure
· 9 checks — DNS, redirects, IPv6, crawlability, URL variants, and domain intelligence rolled into one auditable list.DURL VariantsActionwww/non-www, trailing slash, HTTP→HTTPSFIX
www / non-www
Inconsistent — duplicate content risk
HTTP → HTTPS
HTTP version does not redirect to HTTPS
DCDN & DeliveryActionNo CDN detectedFIX
Consider using a CDN to improve global delivery speed and reduce origin load.
CIPv6 ReadinessActionNo IPv6 supportREVIEW
IPv6 support is increasingly important for global accessibility. About 40% of internet users have IPv6 connectivity.
No AAAA records — same impact as 'no IPv6 (AAAA) records'; IPv6-preferring clients pay extra latency falling back to IPv4.
Source: Google IPv6 stats
CCrawlabilityActionrobots.txt present, sitemap with 399 URLsREVIEW
Disallow: / for all user-agents prevents search engines from indexing any page. This will remove the site from search results.
Disallow: / in robots.txt blocks every search crawler — the site becomes invisible in organic search.
Learn more ▾ ▴
Common deployment mistake: a staging robots.txt with `User-agent: * / Disallow: /` ships to prod. The site falls out of search results within days. Verify your robots.txt is the production-intended version. If this is intentional (private site), no action needed.
Source: Google Search Central
User-agent: Funnelback
Disallow:
User-agent: Googlebot
Disallow:
User-agent: googlebot-image
Disallow:
User-agent: googlebot-mobile
Disallow:
User-agent: AdsBot-Google
Disallow:
User-agent: Googlebot-Image
Disallow:
User-agent: Bingbot
Disallow:
User-agent: MSNBot
Disallow:
User-agent: Slurp
Disallow:
User-agent: DuckDuckBot
Disallow:
User-agent: ai-crawler
Disallow:
User-agent: Amazonbot
Disallow:
User-agent: Applebot
Disallow:
User-agent: CCBot
Disallow:
User-agent: ClaudeBot
User-agent: Claude-User
User-agent: Claude-SearchBot
Disallow:
User-agent: Google-Extended
Disallow:
User-agent: GPTBot
Disallow:
User-agent: LinkedInBot
Disallow:
User-agent: Meta-ExternalAgent
Disallow:
User-agent: PerplexityBot
Disallow:
User-agent: Twitterbot
Disallow:
User-agent: YouBot
Disallow:
User-agent: OAI-SearchBot
Disallow:
User-agent: FirecrawlAgent
Disallow:
User-agent: Dubbotbot
Disallow:
User-agent: *
Disallow: /
Sitemap: https://www.umt.edu/sitemap.xml
BTLS Certificate Expiry & Recommendations177 days until leaf cert expires — 3 issues to addressREVIEW
Certificate validity
Recommended actions
- Enable HSTS: Strict-Transport-Security: max-age=31536000; includeSubDomains
- Enable DNSSEC on your domain for DNS spoofing protection
- Enable OCSP stapling on your TLS server to remove a CA roundtrip and protect user privacy
A+DNS Records1 A records, 60 ms lookupPASS
| A | 150.131.194.46 |
| AAAA | — |
| CNAME | — |
| NS | cudess1.umt.edu, ens-o1.umt.edu, cudess2.umt.edu |
| MX | 0 umt-edu.mail.protection.outlook.com |
| TXT | SPF v=spf1 include:spf.protection.outlook.com include:spf.elluciancloud.com -all RGE-945-PLE google-site-verification=p7d4_W-0jJUSrmOZFN7ztPV7taDmsaHfFC6_JzS-azM facebook-domain-verification=ozp2kozcqlev2nal3zt6dvge7uh7wk MS=ms17814729 knowbe4-site-verification=71e8ccd82ad12bfcae2906cde2ec972e atlassian-sending-domain-verification=125417b6-ded4-4000-97be-75de570fa3dd google-site-verification=RpxED2eslPW1va3aLUk3F8tWm6Sxp-2_0W71HxhmB4o google-site-verification=Q3VRY2znp92yzQ__kXFTzBLjsY70XubMBbqZHFG8xh4 google-site-verification=FJs8n8GjnL3Gr_0BVkKrWu-xsXoCLd_T6aHP83gs7JM amazonses:vnMW9AoYD2Hh0aWhoeUubx6EQg4KCQmcpecsHYYxCG4= apple-domain-verification=qFgOL5NjBV4AvzX2 jamf-site-verification=WYagbZN_QMYG4DwpwbTsYA apple-domain-verification=p1KkVT6fb8FcMM5h atlassian-domain-verification=5aTGUAvLPd1EaUbFa3jDhqP6VTKwfoJ4gaZQ/nttoalxJJkPwN... |
| CAA | Lookup not available with standard resolver |
Multiple A records provide failover if one server goes down.
Single A record means a single point of failure — if that IP goes down, your site is unreachable until DNS TTL expires.
Learn more ▾ ▴
Add multiple A records for round-robin failover, or use a managed DNS provider with health-checked failover (Route 53, Cloudflare, NS1). Short TTL (60-300s) lets clients recover faster on outages.
Source: SRE practice / DNS architecture
CAA record lookup requires a specialized DNS resolver. This check will be available in a future update.
Informational: CAA (Certification Authority Authorization) records weren't checked in this scan.
ARedirect Chain1 redirect(s), 320 ms totalPASS
https://umt.edu
144 ms · HTTP/1.1
https://www.umt.edu/
177 ms · HTTP/1.1 FINAL
| # | URL | Status | Time | Protocol | Server |
|---|---|---|---|---|---|
| 1 | https://umt.edu | 302 | 144 ms | HTTP/1.1 | Apache |
| 2 | https://www.umt.edu/ | 200 | 177 ms | HTTP/1.1 | Apache |
See the visual redirect chain in the HTTP Probe tab →
If permanent, use 301 instead.
302 (Found) is for genuinely temporary redirects — if this redirect is permanent, switch to 301 to preserve SEO equity.
Learn more ▾ ▴
Search engines treat 302 as temporary, keeping the original URL indexed and not transferring full link equity to the destination. Use 301 (Moved Permanently) for permanent redirects (HTTP→HTTPS, www-vs-non-www, URL restructures).
Source: Google Search Central
A+Domain Intelligenceumt.edu — 36 years, 1 months old, hosted on UMTNET-ASN - University of Montana, USPASS
778 days
July 31, 2028
177 days
Issued by Internet2
36 years, 1 months
Registered September 19, 1990
Status unknown
Protects against DNS spoofing
UMTNET-ASN - University of Montana, US
ASN AS3807
150.131.194.46
Registrar unknown