Infrastructure
· 9 checks — DNS, redirects, IPv6, crawlability, URL variants, and domain intelligence rolled into one auditable list.BRedirect Chain1 redirect(s), 1793 ms totalREVIEW
https://kbs.co.kr
597 ms · HTTP/1.1
https://www.kbs.co.kr/
1197 ms · HTTP/1.1 FINAL
| # | URL | Status | Time | Protocol | Server |
|---|---|---|---|---|---|
| 1 | https://kbs.co.kr | 307 | 597 ms | HTTP/1.1 | AmazonS3 |
| 2 | https://www.kbs.co.kr/ | 200 | 1197 ms | HTTP/1.1 | Apache |
See the visual redirect chain in the HTTP Probe tab →
CIPv6 ReadinessActionNo IPv6 supportREVIEW
IPv6 support is increasingly important for global accessibility. About 40% of internet users have IPv6 connectivity.
No AAAA records — same impact as 'no IPv6 (AAAA) records'; IPv6-preferring clients pay extra latency falling back to IPv4.
Source: Google IPv6 stats
CCrawlabilityActionrobots.txt present, sitemap with 27 URLsREVIEW
Disallow: / for all user-agents prevents search engines from indexing any page. This will remove the site from search results.
Disallow: / in robots.txt blocks every search crawler — the site becomes invisible in organic search.
Learn more ▾ ▴
Common deployment mistake: a staging robots.txt with `User-agent: * / Disallow: /` ships to prod. The site falls out of search results within days. Verify your robots.txt is the production-intended version. If this is intentional (private site), no action needed.
Source: Google Search Central
User-agent: Googlebot
User-agent: Yeti
User-agent: Daumoa
User-agent: ChatGPT-User
User-agent: GPTBot
User-agent: grapeshot
Allow: /
User-agent: *
Disallow: /
Sitemap: https://www.kbs.co.kr/sitemap.xml
CURL VariantsActionwww/non-www, trailing slash, HTTP→HTTPSREVIEW
www / non-www
Inconsistent — duplicate content risk
HTTP → HTTPS
Use 301 (permanent) instead of 302 (temporary)
BTLS Certificate Expiry & Recommendations170 days until leaf cert expires — 3 issues to addressREVIEW
Certificate validity
Recommended actions
- Enable HSTS: Strict-Transport-Security: max-age=31536000; includeSubDomains
- Enable DNSSEC on your domain for DNS spoofing protection
- Enable OCSP stapling on your TLS server to remove a CA roundtrip and protect user privacy
A+DNS Records4 A records, 53 ms lookupPASS
| A | 18.245.199.107, 18.245.199.80, 18.245.199.68, 18.245.199.100 |
| AAAA | — |
| CNAME | — |
| NS | ns-755.awsdns-30.net, ns-432.awsdns-54.com, ns-1605.awsdns-08.co.uk, ns-1481.awsdns-57.org |
| MX | 10 mailapp.hiworks.co.kr |
| TXT | amazonses:Ifd6rdKuIh2NuZRjzt6obAtbc7Qq+PZ0g+4+uqn6FCw= SPF v=spf1 ip4:220.73.212.100 ip4:211.233.93.58 ip4:211.233.93.59 ip4:211.233.53.4 i... google-site-verification=QVbCZwUTKW89lRTjASKPcybDr17De0WvnNwhffvDaj0 |
| CAA | Lookup not available with standard resolver |
CAA record lookup requires a specialized DNS resolver. This check will be available in a future update.
Informational: CAA (Certification Authority Authorization) records weren't checked in this scan.
A+Domain Intelligencekbs.co.kr — via Whois Corp.(http://whois.co.kr), hosted on AWSPASS
Unknown
170 days
Issued by Amazon
Unknown
Status unknown
Protects against DNS spoofing
AWS
ASN AS16509
18.245.199.80
Whois Corp.(http://whois.co.kr)
Expiry timeline
Domain cannot be transferred without explicit unlock from the registrar. This protects against unauthorized transfers.
Registrar lock (clientTransferProhibited et al.) prevents unauthorized domain transfers — strongest defense against domain hijacking.
Source: ICANN / domain-security best practice