Infrastructure
· 9 checks — DNS, redirects, IPv6, crawlability, URL variants, and domain intelligence rolled into one auditable list.BTLS Certificate Expiry & Recommendations264 days until leaf cert expires — 3 issues to addressREVIEW
Certificate validity
Recommended actions
- Enable HSTS: Strict-Transport-Security: max-age=31536000; includeSubDomains
- Enable DNSSEC on your domain for DNS spoofing protection
- Enable OCSP stapling on your TLS server to remove a CA roundtrip and protect user privacy
A+DNS Records4 A records, 63 ms lookupPASS
| A | 151.101.129.91, 151.101.65.91, 151.101.193.91, 151.101.1.91 |
| AAAA | 2a04:4e42:600::347, 2a04:4e42:400::347, 2a04:4e42:200::347, 2a04:4e42::347 |
| CNAME | — |
| NS | ns02.aalto.fi, ns03.aalto.fi, ns-secondary.funet.fi, ns01.aalto.fi |
| MX | 10 smtp1.aalto.fi 10 smtp2.aalto.fi |
| TXT | google-site-verification=0e89tSiMOE7lzXwfWCs-W2EeaZDmUsm1i8jhpGACXUs d365mktkey=28172mw456amrl3o5op4wb9s2 Lrg0rlr+GG7/T94/mAOzrByM0nuy64gm05gIToDVzcesqKJrJgeno64vLLVH9KUshBguEan/znm+ILLX... mentimeter-bd22f812-f982-4dda-943c-d1cd71813c34 facebook-domain-verification=2h73p6im48qpo4hhqw2qirp1bku5cd ZOOM_verify_PMHUKN5pShmrc4rPqLJM5Q msfpkey=73xv4fp0dk1zujh27agho6j0o d365mktkey=5zw974x1x36wr31nsfyx2fqo4 jamf-site-verification=Fi9H-MramHciYRCoeMvvkw SPF v=spf1 ip4:130.233.0.0/16 include:_spf.aalto.fi include:_spf2.aalto.fi include:s... d365mktkey=5rs07h8hiroicyfryi948kidv d365mktkey=2bkzm5nv4cd2hnwewk2a99lwe |
| CAA | Lookup not available with standard resolver |
CAA record lookup requires a specialized DNS resolver. This check will be available in a future update.
Informational: CAA (Certification Authority Authorization) records weren't checked in this scan.
ARedirect Chain1 redirect(s), 366 ms totalPASS
https://aalto.fi
8 ms · HTTP/1.1
https://www.aalto.fi/fi
357 ms · HTTP/1.1 FINAL
| # | URL | Status | Time | Protocol | Server |
|---|---|---|---|---|---|
| 1 | https://aalto.fi | 301 | 8 ms | HTTP/1.1 | Varnish |
| 2 | https://www.aalto.fi/fi | 200 | 357 ms | HTTP/1.1 |
See the visual redirect chain in the HTTP Probe tab →
A+IPv6 ReadinessIPv6 reachable (0 ms)PASS
A+Crawlabilityrobots.txt present, sitemap with 12 URLsPASS
#
# robots.txt
#
# This file is to prevent the crawling and indexing of certain parts
# of your site by web crawlers and spiders run by sites like Yahoo!
# and Google. By telling these "robots" where not to go on your site,
# you save bandwidth and server resources.
#
# This file will be ignored unless it is at the root of your host:
# Used: http://example.com/robots.txt
# Ignored: http://example.com/site/robots.txt
#
# For more information about the robots.txt standard, see:
# http://www.robotstxt.org/robotstxt.html
User-agent: *
# CSS, JS, Images
Allow: /core/*.css$
Allow: /core/*.css?
Allow: /core/*.js$
Allow: /core/*.js?
Allow: /core/*.gif
Allow: /core/*.jpg
Allow: /core/*.jpeg
Allow: /core/*.png
Allow: /core/*.svg
Allow: /profiles/*.css$
Allow: /profiles/*.css?
Allow: /profiles/*.js$
Allow: /profiles/*.js?
Allow: /profiles/*.gif
Allow: /profiles/*.jpg
Allow: /profiles/*.jpeg
Allow: /profiles/*.png
Allow: /profiles/*.svg
# Directories
Disallow: /core/
Disallow: /profiles/
# Files
Disallow: /README.txt
Disallow: /web.config
# Paths (clean URLs)
Disallow: /admin/
Disallow: /comment/reply/
Disallow: /filter/tips
Disallow: /node/add/
Disallow: /user/register/
Disallow: /user/password/
Disallow: /user/login/
Disallow: /user/logout/
Disallow: /logout
# Paths (no clean URLs)
Disallow: /index.php/admin/
Disallow: /index.php/comment/reply/
Disallow: /index.php/filter/tips
Disallow: /index.php/node/add/
Disallow: /index.php/search/
Disallow: /index.php/user/password/
Disallow: /index.php/user/register/
Disallow: /index.php/user/login/
Disallow: /index.php/user/logout/
# All pages meant for the public and search engines should have a nice path aliases in place.
Disallow: /node/*
Disallow: /fi/node/
Disallow: /sv/node/
Disallow: /en/node/
Disallow: /taxonomy/*
Disallow: /en/taxonomy/*
Disallow: /fi/taxonomy/*
Disallow: /sv/taxonomy/*
# Disallow automatic listing pages.
Disallow: /listing/*
Disallow: /en/listing/*
Disallow: /fi/listing/*
Disallow: /sv/listing/*
# Disallow search pages.
Disallow: /search/
Disallow: /en/search/
Disallow: /fi/search/
Disallow: /sv/search/
Sitemap: https://www.aalto.fi/sitemap.xml
- https://www.aalto.fi/sitemap.xml?page=1
- https://www.aalto.fi/sitemap.xml?page=2
- https://www.aalto.fi/sitemap.xml?page=3
- https://www.aalto.fi/sitemap.xml?page=4
- https://www.aalto.fi/sitemap.xml?page=5
- https://www.aalto.fi/sitemap.xml?page=6
- https://www.aalto.fi/sitemap.xml?page=7
- https://www.aalto.fi/sitemap.xml?page=8
- https://www.aalto.fi/sitemap.xml?page=9
- https://www.aalto.fi/sitemap.xml?page=10
- https://www.aalto.fi/sitemap.xml?page=11
- https://www.aalto.fi/sitemap.xml?page=12
A+URL Variantswww/non-www, trailing slash, HTTP→HTTPSPASS
www / non-www
Preferred variant: non-www
HTTP → HTTPS
Consistent
A+Domain Intelligenceaalto.fi — 16 years, 3 months oldPASS
Unknown
264 days
Issued by Hellenic Academic and Research Institutions CA
16 years, 3 months
Registered March 21, 2010
Status unknown
Protects against DNS spoofing
Unknown
2a04:4e42:600::347
Registrar unknown