Infrastructure
· 9 checks — DNS, redirects, IPv6, crawlability, URL variants, and domain intelligence rolled into one auditable list.DCDN & DeliveryActionNo CDN detectedFIX
Consider using a CDN to improve global delivery speed and reduce origin load.
CIPv6 ReadinessActionNo IPv6 supportREVIEW
IPv6 support is increasingly important for global accessibility. About 40% of internet users have IPv6 connectivity.
No AAAA records — same impact as 'no IPv6 (AAAA) records'; IPv6-preferring clients pay extra latency falling back to IPv4.
Source: Google IPv6 stats
BCrawlabilityrobots.txt present, no sitemapREVIEW
A sitemap helps search engines discover and index your pages more efficiently.
No sitemap.xml — Google relies on crawl-graph discovery alone, slowing indexing of deep or fresh URLs.
Learn more ▾ ▴
A sitemap accelerates Google's discovery of new and updated content. Most CMSes auto-generate one; static-site frameworks need a build-step plugin. Reference it from robots.txt and submit in Search Console to confirm Google can fetch it.
Source: sitemaps.org / Google Search Central
Add a 'Sitemap:' directive to robots.txt so search engines can discover your sitemap.
robots.txt omits Sitemap: directive — crawlers must fetch /sitemap.xml by convention; reliable but missing the explicit hint.
Source: sitemaps.org
# robots.txt for http://www.lehigh.edu/~ -- blank disallow means allow all - 2007-01-26
User-agent: *
Disallow:
No sitemap found
Adding a sitemap helps search engines discover your pages.
BTLS Certificate Expiry & Recommendations227 days until leaf cert expires — 5 issues to addressREVIEW
Certificate validity
Recommended actions
- Extend HSTS max-age to at least 31536000 (1 year) to meet the preload list criteria
- Add includeSubDomains to the HSTS directive
- Add the preload directive and submit to hstspreload.org once max-age + includeSubDomains are in place
- Enable DNSSEC on your domain for DNS spoofing protection
- Enable OCSP stapling on your TLS server to remove a CA roundtrip and protect user privacy
A+DNS Records1 A records, 118 ms lookupPASS
| A | 128.180.1.81 |
| AAAA | — |
| CNAME | — |
| NS | dns3.lehigh.edu, dns1.lehigh.edu, dns2.lehigh.edu |
| MX | 1 aspmx.l.google.com 5 alt1.aspmx.l.google.com 5 alt2.aspmx.l.google.com 10 alt3.aspmx.l.google.com 10 alt4.aspmx.l.google.com |
| TXT | MS=ms42681240 SPF v=spf1 ip4:128.180.0.0/16 include:_spf.google.com include:spf.elluciancloud.com ... docusign=43c03dab-30ab-430c-8d89-3ffa6d41ce7f anthropic-domain-verification-24a42b=49AX9zgxLnCYiqpETqxu0l1A9 apple-domain-verification=IPiUR6GaqScXAI3Z rhino_accounts=7ad5a6b3afa8271aae45d47a000c7f5d google-site-verification=gezvJKSFmRwgEPdl0XmQxTOuWujAMfnWxoZi1MOryVQ adobe-idp-site-verification=0d1529611e9911860e10ab80ad44dec37cda0cb662d6f61cafa5... v=mozautoconfig1 url:http://www.lehigh.edu/mail/tb3.xml docusign=24d1b057-4b13-4922-acdd-fb1b82d6b66c 4405b39ad7eb7a601eb42d89e48f8dc2f57676a388b1e92e20501bc57e980202 canva-site-verification=bYU4vUxaGyEHqjBHawhgMg miro-verification=f690999e93503641cf1a5f808984b605178b47eb |
| CAA | Lookup not available with standard resolver |
Multiple A records provide failover if one server goes down.
Single A record means a single point of failure — if that IP goes down, your site is unreachable until DNS TTL expires.
Learn more ▾ ▴
Add multiple A records for round-robin failover, or use a managed DNS provider with health-checked failover (Route 53, Cloudflare, NS1). Short TTL (60-300s) lets clients recover faster on outages.
Source: SRE practice / DNS architecture
CAA record lookup requires a specialized DNS resolver. This check will be available in a future update.
Informational: CAA (Certification Authority Authorization) records weren't checked in this scan.
ARedirect Chain1 redirect(s), 817 ms totalPASS
https://lehigh.edu
302 ms · HTTP/1.1
https://www2.lehigh.edu/
515 ms · HTTP/1.1 FINAL
| # | URL | Status | Time | Protocol | Server |
|---|---|---|---|---|---|
| 1 | https://lehigh.edu | 302 | 302 ms | HTTP/1.1 | Apache/2.4.66 (Debian) |
| 2 | https://www2.lehigh.edu/ | 200 | 515 ms | HTTP/1.1 | Apache/2.4.66 (Debian) |
See the visual redirect chain in the HTTP Probe tab →
If permanent, use 301 instead.
302 (Found) is for genuinely temporary redirects — if this redirect is permanent, switch to 301 to preserve SEO equity.
Learn more ▾ ▴
Search engines treat 302 as temporary, keeping the original URL indexed and not transferring full link equity to the destination. Use 301 (Moved Permanently) for permanent redirects (HTTP→HTTPS, www-vs-non-www, URL restructures).
Source: Google Search Central
A+URL Variantswww/non-www, trailing slash, HTTP→HTTPSPASS
www / non-www
Preferred variant: non-www
HTTP → HTTPS
Consistent
A+Domain Intelligencelehigh.edu — 38 years, 7 months old, hosted on LEHIGH - Lehigh University, USPASS
45 days
July 31, 2026
227 days
Issued by GoDaddy.com, Inc.
38 years, 7 months
Registered March 29, 1988
Status unknown
Protects against DNS spoofing
LEHIGH - Lehigh University, US
ASN AS6522
128.180.1.81
Registrar unknown
Expiry timeline
Recommended actions
- Renew the domain or enable auto-renewal to prevent accidental expiry