Jump to content
Residentcl

SSL Report: DVBViewer.tv

Recommended Posts

Residentcl
Hi.
Here I give notice of a security problem with the site members.
This server supports weak Diffie-Hellman (DH) key exchange parameters. Grade capped to B.
Intermediate certificate has a weak signature. Upgrade to SHA2 as soon as possible to avoid browser warnings.
The server supports only older protocols, but not the current best TLS 1.2. Grade capped to C.
The server does not support Forward Secrecy with the reference browsers.

 

more info: https://www.ssllabs.com/ssltest/analyze.html?d=DVBViewer.tv

Edited by Residentcl

Share this post


Link to post
esackbauer

I second this. If you offer https, then properly, otherwise you can stay with http...

Share this post


Link to post
Tjod

There are two certificate chains. And Path #1 has no problem.
https://shaaaaaaaaaaaaa.com/check/DVBViewer.tv
Path #2 with the SHA1 intermittent should be ignored in most software. And one trusted path is enough.

The GeoTrust DV SSL CA - G4 intermittent certificate is singed. By an old and a new GeoTrust Global CA certificate.
Only old outdated clients which don't know "GeoTrust Global CA" but the old Equifax certificate will use path #2.

The whole thing is configured by the web hosting provider. Mostly this will only change if there is a real problem or the hosting provider changes its settings.

  • Like 1

Share this post


Link to post
Residentcl

Ok, I had no idea about that :)

Share this post


Link to post

Join the conversation

You can post now and register later. If you have an account, sign in now to post with your account.

Guest
Reply to this topic...

×   Pasted as rich text.   Paste as plain text instead

  Only 75 emoji are allowed.

×   Your link has been automatically embedded.   Display as a link instead

×   Your previous content has been restored.   Clear editor

×   You cannot paste images directly. Upload or insert images from URL.


×
×
  • Create New...