Infrastructure
· 9 checks — DNS, redirects, IPv6, crawlability, URL variants, and domain intelligence rolled into one auditable list.DCDN & DeliveryActionNo CDN detectedFIX
Consider using a CDN to improve global delivery speed and reduce origin load.
CIPv6 ReadinessActionNo IPv6 supportREVIEW
IPv6 support is increasingly important for global accessibility. About 40% of internet users have IPv6 connectivity.
No AAAA records — same impact as 'no IPv6 (AAAA) records'; IPv6-preferring clients pay extra latency falling back to IPv4.
Source: Google IPv6 stats
BCrawlabilityrobots.txt present, sitemap with 1 URLsREVIEW
Search engines may not be able to parse the sitemap. Fix XML validation errors.
An unparseable sitemap is silently ignored by Google — the URLs it advertises are never queued for crawl.
Learn more ▾ ▴
Google's sitemap parser is strict about XML validity. A single unescaped `&` or unclosed tag invalidates the whole file. Run your sitemap through a validator (Search Console's Sitemaps report flags it) and fix the offending entry. Most generators escape correctly; mistakes usually come from manually-written entries.
Source: sitemaps.org / Google Search Central
Add a 'Sitemap:' directive to robots.txt so search engines can discover your sitemap.
robots.txt omits Sitemap: directive — crawlers must fetch /sitemap.xml by convention; reliable but missing the explicit hint.
Source: sitemaps.org
User-agent: *
Disallow: /student_info/omega_phi_alpha/images/members
Disallow: /academic/rotc/afrotc/CurrentCadets/
CURL VariantsActionwww/non-www, trailing slash, HTTP→HTTPSREVIEW
www / non-www
Inconsistent — duplicate content risk
HTTP → HTTPS
Use 301 (permanent) instead of 302 (temporary)
BHTTP Probe TimingTotal 880 ms — DNS, TCP, TLS, TTFB, content transfer breakdownREVIEW
Connection waterfall
BTLS Certificate Expiry & Recommendations189 days until leaf cert expires — 4 issues to addressREVIEW
Certificate validity
Recommended actions
- Prefer TLS 1.3 — TLS 1.2 is acceptable but TLS 1.3 removes RSA key exchange and improves latency
- Enable HSTS: Strict-Transport-Security: max-age=31536000; includeSubDomains
- Enable DNSSEC on your domain for DNS spoofing protection
- Enable OCSP stapling on your TLS server to remove a CA roundtrip and protect user privacy
ADNS Records1 A records, 872 ms lookupPASS
| A | 131.204.138.170 |
| AAAA | — |
| CNAME | — |
| NS | asnsvr.asc.edu, dns.eng.auburn.edu, dns.auburn.edu |
| MX | 10 auburn-edu.mail.protection.outlook.com |
| TXT | google-site-verification=OcdCBhxVeEgkZ5_19KT4s6g7HFjgoxYeT9DNeyugwzE wpe-verification=v3mg5 detectify-verification=905d8e6df6d0b54248c2296fe4898a86 google-site-verification=SmE6QR9ECK1Wy6_kQZYzfv9mUmDYbndcKquFIBsXb2M sending_domain164641=c2c849a73e57fcfc81ed8fe3efaccee815fcc64b873c8b1f87c661eb9d9... nintex.5aea1cbdbff50f6d7df852b5 e2ma-verification=321fb ZOOM_verify_Rz58dHSpZtPXbBM05QvJ1O google-site-verification=zLfpIaMO5fLPvTOY7_5NHPBsN25pDO8YvvZaIWnwlRo contractworksverify=K7qXpZWTJYLoN3Cb9aMV onetrust-domain-verification=4fa5a3e8eb2b4d8d8bfee680f34c8a61 rhino_accounts=ff9401069cd5dca516578f6fc93e6642 google-site-verification=6cW0Zcu7XP6ZWqioO1UZjM2Nh-F-Gh3SJXCh2lR6Tbs adobe-idp-site-verification=913b9d59-cc5b-4588-8f7b-5b3ec589d1c3 ZPV0S3EARF6MYAYK6LDYAHM9DCUTE63EREPBQ0EXO docusign=3b414259-8407-4655-a9c7-7d505ddd1c97 nintex.62472803c8cf150069a83182 SFMC-qjblPKON0ZZ4AGwZHuq_6ZDEDeiJsX4BdF3N9kGJ google-site-verification=Q6A-7Cl6rXxKkc5ReRnmPTPnyw3nDnNznC0fc8OaNu4 00D4P000001d6iP=1TBUg00000002hl 00DHo0000018QLa=1TBUo00000001P7 wpe-verification=cfwe fwDCqCWG3sOX9UwNE0Nuij6gsGw79Q9a2HNhcaJT7y0EJ/afzZnE3FIzR54UAZ4dnj8MNufna+H6ePGT... ms-domain-verification=784ec703-4b61-4025-9936-462b4eacc035 atlassian-domain-verification=IjmDOt88djnLjEvhWX2Qkc4OKk4RuxRNv/p8TPwErDdZI00Ipp... docusign=42911627-a26c-405e-97de-4db5ee56a718 apple-domain-verification=ui3lcIvLCKGZc8zT asv=904de25cc7790e2f05b6f9a829d76e22 SPF v=spf1 ip4:131.204.0.0/16 ip4:23.253.182.0/23 ip4:23.253.213.70 ip4:72.10.184.10... 00DVG000006hcQE=1TBVG0000000FlR |
| CAA | Lookup not available with standard resolver |
Multiple A records provide failover if one server goes down.
Single A record means a single point of failure — if that IP goes down, your site is unreachable until DNS TTL expires.
Learn more ▾ ▴
Add multiple A records for round-robin failover, or use a managed DNS provider with health-checked failover (Route 53, Cloudflare, NS1). Short TTL (60-300s) lets clients recover faster on outages.
Source: SRE practice / DNS architecture
CAA record lookup requires a specialized DNS resolver. This check will be available in a future update.
Informational: CAA (Certification Authority Authorization) records weren't checked in this scan.
Slow DNS adds latency to every page load. Consider a faster DNS provider.
DNS resolution is slow — anycast DNS providers (Cloudflare, Route 53) typically resolve <50ms globally.
Source: DNS performance benchmarks
A+Redirect ChainNo redirects — direct accessPASS
https://auburn.edu
746 ms · HTTP/1.1 FINAL
| # | URL | Status | Time | Protocol | Server |
|---|---|---|---|---|---|
| 1 | https://auburn.edu | 200 | 746 ms | HTTP/1.1 | Apache/2.4.62 (Red Hat Enterprise Linux) |
A+Domain Intelligenceauburn.edu — 38 years, 5 months old, hosted on AUBURN - Auburn University, USPASS
776 days
July 31, 2028
189 days
Issued by Internet2
38 years, 5 months
Registered May 12, 1988
Status unknown
Protects against DNS spoofing
AUBURN - Auburn University, US
ASN AS6112
131.204.138.170
Registrar unknown