From 2bf4a8b4a398c610c7f55272c18192a25157a506 Mon Sep 17 00:00:00 2001 From: DashlordBetaGouvBot Date: Sun, 12 Dec 2021 08:32:35 +0000 Subject: [PATCH] update: https://mon-suivi-justice.beta.gouv.fr --- .../http.json | 2 +- .../lhr.html | 2 +- .../lhr.json | 1773 +++++++++-------- .../nmapvuln.gnmap | 4 +- .../nmapvuln.html | 2 +- .../nmapvuln.nmap | 6 +- .../nmapvuln.xml | 14 +- .../testssl.csv | 308 +-- .../testssl.html | 26 +- .../testssl.json | 620 +++--- .../thirdparties.json | 16 +- .../updownio.json | 2 +- .../zap.html | 64 +- .../zap.json | 74 +- 14 files changed, 1457 insertions(+), 1456 deletions(-) diff --git a/results/aHR0cHM6Ly9tb24tc3VpdmktanVzdGljZS5iZXRhLmdvdXYuZnI=/http.json b/results/aHR0cHM6Ly9tb24tc3VpdmktanVzdGljZS5iZXRhLmdvdXYuZnI=/http.json index 04b1f7e7b95..23916b90baf 100644 --- a/results/aHR0cHM6Ly9tb24tc3VpdmktanVzdGljZS5iZXRhLmdvdXYuZnI=/http.json +++ b/results/aHR0cHM6Ly9tb24tc3VpdmktanVzdGljZS5iZXRhLmdvdXYuZnI=/http.json @@ -1 +1 @@ -{"url":"https://mon-suivi-justice.beta.gouv.fr","algorithm_version":2,"end_time":"Sun, 05 Dec 2021 08:10:19 GMT","grade":"B-","hidden":false,"likelihood_indicator":"MEDIUM","response_headers":{"Cache-Control":"max-age=0, private, must-revalidate","Connection":"keep-alive","Content-Encoding":"gzip","Content-Type":"text/html; charset=utf-8","Date":"Sun, 05 Dec 2021 08:10:18 GMT","ETag":"W/\"41746021648fa75981458c3776b4a674\"","Link":"; rel=preload; as=style; nopush,; rel=preload; as=script; nopush","Referrer-Policy":"strict-origin-when-cross-origin","Server":"openresty","Set-Cookie":"_mon_suivi_justice_session=Z6qgM8kZ%2FC9s%2FXAmvKlxui1AFAQAuyiE8BOU%2FTV%2BqlUZdYNrSR74w%2F1WSTvDUClJatJEZqDtdCtMBfXyDnyA5dcgjLlWtIfdDYDsSL5ZBSMXCS7pCFvhaEeEUf%2FxO5pyRjWsBdWRjTCNEqylKjuHGx1mgkJIPM88seLb9ZoxkKqcgKn5fDJbUJHk6k8%2BrBv1IfX2g2HA9i5GCQhwGAWIXtosYOht9jaZSWt20WBTVdANZ6i8ao8DGFsAuv54Yg2eNxJf4gqGF3CWXfIM1%2Fznc1UYGH9mpkg60vHlufvvXWFE4w%3D%3D--armGU%2B6GMMyojD8W--WJ6tl8%2BDsL7cRkSnu8oOyg%3D%3D; path=/; HttpOnly; SameSite=Lax","Strict-Transport-Security":"max-age=31536000","Transfer-Encoding":"chunked","Vary":"Accept","X-Content-Type-Options":"nosniff","X-Download-Options":"noopen","X-Frame-Options":"SAMEORIGIN","X-Permitted-Cross-Domain-Policies":"none","X-Request-ID":"1d426c5d-2c82-4ff3-90a1-29db59434a57, 1d426c5d-2c82-4ff3-90a1-29db59434a57","X-Runtime":"0.006498","X-XSS-Protection":"1; mode=block"},"scan_id":23121513,"score":65,"start_time":"Sun, 05 Dec 2021 08:10:13 GMT","state":"FINISHED","status_code":200,"tests_failed":2,"tests_passed":10,"tests_quantity":12,"details":{"content-security-policy":{"expectation":"csp-implemented-with-no-unsafe","name":"content-security-policy","output":{"data":null,"http":false,"meta":false,"policy":null},"pass":false,"result":"csp-not-implemented","score_description":"Content Security Policy (CSP) header not implemented","score_modifier":-25},"contribute":{"expectation":"contribute-json-only-required-on-mozilla-properties","name":"contribute","output":{"data":null},"pass":true,"result":"contribute-json-only-required-on-mozilla-properties","score_description":"Contribute.json isn't required on websites that don't belong to Mozilla","score_modifier":0},"cookies":{"expectation":"cookies-secure-with-httponly-sessions","name":"cookies","output":{"data":{"_mon_suivi_justice_session":{"domain":"mon-suivi-justice.beta.gouv.fr","expires":null,"httponly":true,"max-age":null,"path":"/","port":null,"samesite":"Lax","secure":false}},"sameSite":null},"pass":false,"result":"cookies-session-without-secure-flag-but-protected-by-hsts","score_description":"Session cookie set without the Secure flag, but transmission over HTTP prevented by HSTS","score_modifier":-10},"cross-origin-resource-sharing":{"expectation":"cross-origin-resource-sharing-not-implemented","name":"cross-origin-resource-sharing","output":{"data":{"acao":null,"clientaccesspolicy":null,"crossdomain":null}},"pass":true,"result":"cross-origin-resource-sharing-not-implemented","score_description":"Content is not visible via cross-origin resource sharing (CORS) files or headers","score_modifier":0},"public-key-pinning":{"expectation":"hpkp-not-implemented","name":"public-key-pinning","output":{"data":null,"includeSubDomains":false,"max-age":null,"numPins":null,"preloaded":false},"pass":true,"result":"hpkp-not-implemented","score_description":"HTTP Public Key Pinning (HPKP) header not implemented","score_modifier":0},"redirection":{"expectation":"redirection-to-https","name":"redirection","output":{"destination":"https://mon-suivi-justice.beta.gouv.fr/","redirects":true,"route":["http://mon-suivi-justice.beta.gouv.fr/","https://mon-suivi-justice.beta.gouv.fr/"],"status_code":200},"pass":true,"result":"redirection-to-https","score_description":"Initial redirection is to HTTPS on same host, final destination is HTTPS","score_modifier":0},"referrer-policy":{"expectation":"referrer-policy-private","name":"referrer-policy","output":{"data":"strict-origin-when-cross-origin","http":true,"meta":false},"pass":true,"result":"referrer-policy-private","score_description":"Referrer-Policy header set to \"no-referrer\", \"same-origin\", \"strict-origin\" or \"strict-origin-when-cross-origin\"","score_modifier":5},"strict-transport-security":{"expectation":"hsts-implemented-max-age-at-least-six-months","name":"strict-transport-security","output":{"data":"max-age=31536000","includeSubDomains":false,"max-age":31536000,"preload":false,"preloaded":false},"pass":true,"result":"hsts-implemented-max-age-at-least-six-months","score_description":"HTTP Strict Transport Security (HSTS) header set to a minimum of six months (15768000)","score_modifier":0},"subresource-integrity":{"expectation":"sri-implemented-and-external-scripts-loaded-securely","name":"subresource-integrity","output":{"data":{}},"pass":true,"result":"sri-not-implemented-but-all-scripts-loaded-from-secure-origin","score_description":"Subresource Integrity (SRI) not implemented, but all scripts are loaded from a similar origin","score_modifier":0},"x-content-type-options":{"expectation":"x-content-type-options-nosniff","name":"x-content-type-options","output":{"data":"nosniff"},"pass":true,"result":"x-content-type-options-nosniff","score_description":"X-Content-Type-Options header set to \"nosniff\"","score_modifier":0},"x-frame-options":{"expectation":"x-frame-options-sameorigin-or-deny","name":"x-frame-options","output":{"data":"SAMEORIGIN"},"pass":true,"result":"x-frame-options-sameorigin-or-deny","score_description":"X-Frame-Options (XFO) header set to SAMEORIGIN or DENY","score_modifier":0},"x-xss-protection":{"expectation":"x-xss-protection-1-mode-block","name":"x-xss-protection","output":{"data":"1; mode=block"},"pass":true,"result":"x-xss-protection-enabled-mode-block","score_description":"X-XSS-Protection header set to \"1; mode=block\"","score_modifier":0}}} \ No newline at end of file +{"url":"https://mon-suivi-justice.beta.gouv.fr","algorithm_version":2,"end_time":"Sun, 12 Dec 2021 08:20:52 GMT","grade":"B-","hidden":false,"likelihood_indicator":"MEDIUM","response_headers":{"Cache-Control":"max-age=0, private, must-revalidate","Connection":"keep-alive","Content-Encoding":"gzip","Content-Type":"text/html; charset=utf-8","Date":"Sun, 12 Dec 2021 08:20:51 GMT","ETag":"W/\"f039ef04850fe654cd8ac3ba36c2a173\"","Link":"; rel=preload; as=style; nopush,; rel=preload; as=script; nopush","Referrer-Policy":"strict-origin-when-cross-origin","Server":"openresty","Set-Cookie":"_mon_suivi_justice_session=LbKzPBWo7sEObo5D8hjdk54QFxtaStF7t0ojQd8XppNtCqas5gQUizAa5xtwJvouFwOm60OVJJZqFrrtGMSZYiarEb6g5HMlvHyRR%2BzBbSVL6NezLhwVlxpWZq%2B6jDeor6LIlYNMcwagcFni90QQNkijbLLEXvM08vlp9yokx3AMEml0nrfvBbFdQbRdhpn%2F%2BU3fSutxOz%2B2UxVol5dMnVh62lB9%2FntmjwrgF36rgxj%2BEdTKLqMWWNw0Up%2FDnUE0ZoauwgD4TTWTZojIkKghJXp5WqLx9gTfFN3az0V%2BKHxOxw%3D%3D--cJMBWr3u703sPgM3--0Oxdrrhf%2BJDdU4vve0OgfQ%3D%3D; path=/; HttpOnly; SameSite=Lax","Strict-Transport-Security":"max-age=31536000","Transfer-Encoding":"chunked","Vary":"Accept","X-Content-Type-Options":"nosniff","X-Download-Options":"noopen","X-Frame-Options":"SAMEORIGIN","X-Permitted-Cross-Domain-Policies":"none","X-Request-ID":"0fbb87f2-a5e1-4c23-b015-ecf94c06fbe2, 0fbb87f2-a5e1-4c23-b015-ecf94c06fbe2","X-Runtime":"0.007928","X-XSS-Protection":"1; mode=block"},"scan_id":23235601,"score":65,"start_time":"Sun, 12 Dec 2021 08:20:48 GMT","state":"FINISHED","status_code":200,"tests_failed":2,"tests_passed":10,"tests_quantity":12,"details":{"content-security-policy":{"expectation":"csp-implemented-with-no-unsafe","name":"content-security-policy","output":{"data":null,"http":false,"meta":false,"policy":null},"pass":false,"result":"csp-not-implemented","score_description":"Content Security Policy (CSP) header not implemented","score_modifier":-25},"contribute":{"expectation":"contribute-json-only-required-on-mozilla-properties","name":"contribute","output":{"data":null},"pass":true,"result":"contribute-json-only-required-on-mozilla-properties","score_description":"Contribute.json isn't required on websites that don't belong to Mozilla","score_modifier":0},"cookies":{"expectation":"cookies-secure-with-httponly-sessions","name":"cookies","output":{"data":{"_mon_suivi_justice_session":{"domain":"mon-suivi-justice.beta.gouv.fr","expires":null,"httponly":true,"max-age":null,"path":"/","port":null,"samesite":"Lax","secure":false}},"sameSite":null},"pass":false,"result":"cookies-session-without-secure-flag-but-protected-by-hsts","score_description":"Session cookie set without the Secure flag, but transmission over HTTP prevented by HSTS","score_modifier":-10},"cross-origin-resource-sharing":{"expectation":"cross-origin-resource-sharing-not-implemented","name":"cross-origin-resource-sharing","output":{"data":{"acao":null,"clientaccesspolicy":null,"crossdomain":null}},"pass":true,"result":"cross-origin-resource-sharing-not-implemented","score_description":"Content is not visible via cross-origin resource sharing (CORS) files or headers","score_modifier":0},"public-key-pinning":{"expectation":"hpkp-not-implemented","name":"public-key-pinning","output":{"data":null,"includeSubDomains":false,"max-age":null,"numPins":null,"preloaded":false},"pass":true,"result":"hpkp-not-implemented","score_description":"HTTP Public Key Pinning (HPKP) header not implemented","score_modifier":0},"redirection":{"expectation":"redirection-to-https","name":"redirection","output":{"destination":"https://mon-suivi-justice.beta.gouv.fr/","redirects":true,"route":["http://mon-suivi-justice.beta.gouv.fr/","https://mon-suivi-justice.beta.gouv.fr/"],"status_code":200},"pass":true,"result":"redirection-to-https","score_description":"Initial redirection is to HTTPS on same host, final destination is HTTPS","score_modifier":0},"referrer-policy":{"expectation":"referrer-policy-private","name":"referrer-policy","output":{"data":"strict-origin-when-cross-origin","http":true,"meta":false},"pass":true,"result":"referrer-policy-private","score_description":"Referrer-Policy header set to \"no-referrer\", \"same-origin\", \"strict-origin\" or \"strict-origin-when-cross-origin\"","score_modifier":5},"strict-transport-security":{"expectation":"hsts-implemented-max-age-at-least-six-months","name":"strict-transport-security","output":{"data":"max-age=31536000","includeSubDomains":false,"max-age":31536000,"preload":false,"preloaded":false},"pass":true,"result":"hsts-implemented-max-age-at-least-six-months","score_description":"HTTP Strict Transport Security (HSTS) header set to a minimum of six months (15768000)","score_modifier":0},"subresource-integrity":{"expectation":"sri-implemented-and-external-scripts-loaded-securely","name":"subresource-integrity","output":{"data":{}},"pass":true,"result":"sri-not-implemented-but-all-scripts-loaded-from-secure-origin","score_description":"Subresource Integrity (SRI) not implemented, but all scripts are loaded from a similar origin","score_modifier":0},"x-content-type-options":{"expectation":"x-content-type-options-nosniff","name":"x-content-type-options","output":{"data":"nosniff"},"pass":true,"result":"x-content-type-options-nosniff","score_description":"X-Content-Type-Options header set to \"nosniff\"","score_modifier":0},"x-frame-options":{"expectation":"x-frame-options-sameorigin-or-deny","name":"x-frame-options","output":{"data":"SAMEORIGIN"},"pass":true,"result":"x-frame-options-sameorigin-or-deny","score_description":"X-Frame-Options (XFO) header set to SAMEORIGIN or DENY","score_modifier":0},"x-xss-protection":{"expectation":"x-xss-protection-1-mode-block","name":"x-xss-protection","output":{"data":"1; mode=block"},"pass":true,"result":"x-xss-protection-enabled-mode-block","score_description":"X-XSS-Protection header set to \"1; mode=block\"","score_modifier":0}}} \ No newline at end of file diff --git a/results/aHR0cHM6Ly9tb24tc3VpdmktanVzdGljZS5iZXRhLmdvdXYuZnI=/lhr.html b/results/aHR0cHM6Ly9tb24tc3VpdmktanVzdGljZS5iZXRhLmdvdXYuZnI=/lhr.html index 4a6dc638412..6b1cca3f2b3 100644 --- a/results/aHR0cHM6Ly9tb24tc3VpdmktanVzdGljZS5iZXRhLmdvdXYuZnI=/lhr.html +++ b/results/aHR0cHM6Ly9tb24tc3VpdmktanVzdGljZS5iZXRhLmdvdXYuZnI=/lhr.html @@ -7751,7 +7751,7 @@ //# sourceURL=compiled-reportrenderer.js - + -cpe:/a:openresty:ngx_openresty - + - + diff --git a/results/aHR0cHM6Ly9tb24tc3VpdmktanVzdGljZS5iZXRhLmdvdXYuZnI=/testssl.csv b/results/aHR0cHM6Ly9tb24tc3VpdmktanVzdGljZS5iZXRhLmdvdXYuZnI=/testssl.csv index 6151e972319..d5bda818664 100644 --- a/results/aHR0cHM6Ly9tb24tc3VpdmktanVzdGljZS5iZXRhLmdvdXYuZnI=/testssl.csv +++ b/results/aHR0cHM6Ly9tb24tc3VpdmktanVzdGljZS5iZXRhLmdvdXYuZnI=/testssl.csv @@ -1,157 +1,4 @@ "id","fqdn/ip","port","severity","finding","cve","cwe" -"service","mon-suivi-justice.beta.gouv.fr/148.253.96.193","443","INFO","HTTP","","" -"pre_128cipher","mon-suivi-justice.beta.gouv.fr/148.253.96.193","443","INFO","No 128 cipher limit bug","","" -"SSLv2","mon-suivi-justice.beta.gouv.fr/148.253.96.193","443","OK","not offered","","" -"SSLv3","mon-suivi-justice.beta.gouv.fr/148.253.96.193","443","OK","not offered","","" -"TLS1","mon-suivi-justice.beta.gouv.fr/148.253.96.193","443","INFO","not offered","","" -"TLS1_1","mon-suivi-justice.beta.gouv.fr/148.253.96.193","443","INFO","not offered","","" -"TLS1_2","mon-suivi-justice.beta.gouv.fr/148.253.96.193","443","OK","offered","","" -"TLS1_3","mon-suivi-justice.beta.gouv.fr/148.253.96.193","443","OK","offered with final","","" -"ALPN_HTTP2","mon-suivi-justice.beta.gouv.fr/148.253.96.193","443","OK","h2","","" -"ALPN","mon-suivi-justice.beta.gouv.fr/148.253.96.193","443","INFO","http/1.1","","" -"cipherlist_NULL","mon-suivi-justice.beta.gouv.fr/148.253.96.193","443","OK","not offered","","CWE-327" -"cipherlist_aNULL","mon-suivi-justice.beta.gouv.fr/148.253.96.193","443","OK","not offered","","CWE-327" -"cipherlist_EXPORT","mon-suivi-justice.beta.gouv.fr/148.253.96.193","443","OK","not offered","","CWE-327" -"cipherlist_LOW","mon-suivi-justice.beta.gouv.fr/148.253.96.193","443","OK","not offered","","CWE-327" -"cipherlist_3DES_IDEA","mon-suivi-justice.beta.gouv.fr/148.253.96.193","443","INFO","not offered","","CWE-310" -"cipherlist_AVERAGE","mon-suivi-justice.beta.gouv.fr/148.253.96.193","443","LOW","offered","","CWE-310" -"cipherlist_GOOD","mon-suivi-justice.beta.gouv.fr/148.253.96.193","443","INFO","not offered","","" -"cipherlist_STRONG","mon-suivi-justice.beta.gouv.fr/148.253.96.193","443","OK","offered","","" -"cipher_order","mon-suivi-justice.beta.gouv.fr/148.253.96.193","443","OK","server","","" -"protocol_negotiated","mon-suivi-justice.beta.gouv.fr/148.253.96.193","443","OK","Default protocol TLS1.3","","" -"cipher_negotiated","mon-suivi-justice.beta.gouv.fr/148.253.96.193","443","OK","TLS_AES_256_GCM_SHA384, 253 bit ECDH (X25519)","","" -"cipherorder_TLSv1_2","mon-suivi-justice.beta.gouv.fr/148.253.96.193","443","INFO","ECDHE-RSA-AES256-GCM-SHA384","","" -"FS","mon-suivi-justice.beta.gouv.fr/148.253.96.193","443","OK","offered","","" -"FS_ciphers","mon-suivi-justice.beta.gouv.fr/148.253.96.193","443","INFO","DHE-RSA-AES256-GCM-SHA384 ECDHE-RSA-AES128-GCM-SHA256 ECDHE-RSA-AES256-GCM-SHA384 ECDHE-RSA-AES256-SHA384","","" -"FS_ECDHE_curves","mon-suivi-justice.beta.gouv.fr/148.253.96.193","443","OK","prime256v1 secp384r1 secp521r1","","" -"TLS_extensions","mon-suivi-justice.beta.gouv.fr/148.253.96.193","443","INFO","'renegotiation info/#65281' 'server name/#0' 'EC point formats/#11' 'session ticket/#35' 'next protocol/#13172' 'supported versions/#43' 'key share/#51' 'supported_groups/#10' 'max fragment length/#1' 'application layer protocol negotiation/#16' 'encrypt-then-mac/#22' 'extended master secret/#23'","","" -"TLS_session_ticket","mon-suivi-justice.beta.gouv.fr/148.253.96.193","443","INFO","valid for 300 seconds only (= 60 days","","" -"cert_notBefore","mon-suivi-justice.beta.gouv.fr/148.253.96.193","443","INFO","2021-09-30 00:00","","" -"cert_notAfter","mon-suivi-justice.beta.gouv.fr/148.253.96.193","443","OK","2022-09-30 23:59","","" -"cert_extlifeSpan","mon-suivi-justice.beta.gouv.fr/148.253.96.193","443","OK","certificate has no extended life time according to browser forum","","" -"cert_eTLS","mon-suivi-justice.beta.gouv.fr/148.253.96.193","443","INFO","not present","","" -"cert_crlDistributionPoints","mon-suivi-justice.beta.gouv.fr/148.253.96.193","443","INFO","http://crl.usertrust.com/GandiStandardSSLCA2.crl","","" -"cert_ocspURL","mon-suivi-justice.beta.gouv.fr/148.253.96.193","443","INFO","http://ocsp.usertrust.com","","" -"OCSP_stapling","mon-suivi-justice.beta.gouv.fr/148.253.96.193","443","LOW","not offered","","" -"cert_mustStapleExtension","mon-suivi-justice.beta.gouv.fr/148.253.96.193","443","INFO","--","","" -"DNS_CAArecord","mon-suivi-justice.beta.gouv.fr/148.253.96.193","443","LOW","--","","" -"certificate_transparency","mon-suivi-justice.beta.gouv.fr/148.253.96.193","443","OK","yes (certificate extension)","","" -"certs_countServer","mon-suivi-justice.beta.gouv.fr/148.253.96.193","443","INFO","2","","" -"certs_list_ordering_problem","mon-suivi-justice.beta.gouv.fr/148.253.96.193","443","INFO","no","","" -"cert_caIssuers","mon-suivi-justice.beta.gouv.fr/148.253.96.193","443","INFO","Gandi Standard SSL CA 2 (Gandi from FR)","","" -"intermediate_cert <#1>","mon-suivi-justice.beta.gouv.fr/148.253.96.193","443","INFO","-----BEGIN CERTIFICATE----- MIIF6TCCA9GgAwIBAgIQBeTcO5Q4qzuFl8umoZhQ4zANBgkqhkiG9w0BAQwFADCB iDELMAkGA1UEBhMCVVMxEzARBgNVBAgTCk5ldyBKZXJzZXkxFDASBgNVBAcTC0pl cnNleSBDaXR5MR4wHAYDVQQKExVUaGUgVVNFUlRSVVNUIE5ldHdvcmsxLjAsBgNV BAMTJVVTRVJUcnVzdCBSU0EgQ2VydGlmaWNhdGlvbiBBdXRob3JpdHkwHhcNMTQw OTEyMDAwMDAwWhcNMjQwOTExMjM1OTU5WjBfMQswCQYDVQQGEwJGUjEOMAwGA1UE CBMFUGFyaXMxDjAMBgNVBAcTBVBhcmlzMQ4wDAYDVQQKEwVHYW5kaTEgMB4GA1UE AxMXR2FuZGkgU3RhbmRhcmQgU1NMIENBIDIwggEiMA0GCSqGSIb3DQEBAQUAA4IB DwAwggEKAoIBAQCUBC2meZV0/9UAPPWu2JSxKXzAjwsLibmCg5duNyj1ohrP0pIL m6jTh5RzhBCf3DXLwi2SrCG5yzv8QMHBgyHwv/j2nPqcghDA0I5O5Q1MsJFckLSk QFEW2uSEEi0FXKEfFxkkUap66uEHG4aNAXLy59SDIzme4OFMH2sio7QQZrDtgpbX bmq08j+1QvzdirWrui0dOnWbMdw+naxb00ENbLAb9Tr1eeohovj0M1JLJC0epJmx bUi8uBL+cnB89/sCdfSN3tbawKAyGlLfOGsuRTg/PwSWAP2h9KK71RfWJ3wbWFmV XooS/ZyrgT5SKEhRhWvzkbKGPym1bgNi7tYFAgMBAAGjggF1MIIBcTAfBgNVHSME GDAWgBRTeb9aqitKz1SA4dibwJ3ysgNmyzAdBgNVHQ4EFgQUs5Cn2MmvTs1hPJ98 rV1/Qf1pMOowDgYDVR0PAQH/BAQDAgGGMBIGA1UdEwEB/wQIMAYBAf8CAQAwHQYD VR0lBBYwFAYIKwYBBQUHAwEGCCsGAQUFBwMCMCIGA1UdIAQbMBkwDQYLKwYBBAGy MQECAhowCAYGZ4EMAQIBMFAGA1UdHwRJMEcwRaBDoEGGP2h0dHA6Ly9jcmwudXNl cnRydXN0LmNvbS9VU0VSVHJ1c3RSU0FDZXJ0aWZpY2F0aW9uQXV0aG9yaXR5LmNy bDB2BggrBgEFBQcBAQRqMGgwPwYIKwYBBQUHMAKGM2h0dHA6Ly9jcnQudXNlcnRy dXN0LmNvbS9VU0VSVHJ1c3RSU0FBZGRUcnVzdENBLmNydDAlBggrBgEFBQcwAYYZ aHR0cDovL29jc3AudXNlcnRydXN0LmNvbTANBgkqhkiG9w0BAQwFAAOCAgEAWGf9 crJq13xhlhl+2UNG0SZ9yFP6ZrBrLafTqlb3OojQO3LJUP33WbKqaPWMcwO7lWUX zi8c3ZgTopHJ7qFAbjyY1lzzsiI8Le4bpOHeICQW8owRc5E69vrOJAKHypPstLbI FhfFcvwnQPYT/pOmnVHvPCvYd1ebjGU6NSU2t7WKY28HJ5OxYI2A25bUeo8tqxyI yW5+1mUfr13KFj8oRtygNeX56eXVlogMT8a3d2dIhCe2H7Bo26y/d7CQuKLJHDJd ArolQ4FCR7vY4Y8MDEZf7kYzawMUgtN+zY+vkNaOJH1AQrRqahfGlZfh8jjNp+20 J0CT33KpuMZmYzc4ZCIwojvxuch7yPspOqsactIGEk72gtQjbz7Dk+XYtsDe3CMW 1hMwt6CaDixVBgBwAc/qOR2A24j3pSC4W/0xJmmPLQphgzpHphNULB7j7UTKvGof KA5R2d4On3XNDgOVyvnFqSot/kGkoUeuDcL5OWYzSlvhhChZbH2UF3bkRYKtcCD9 0m9jqNf6oDP6N8v3smWe2lBvP+Sn845dWDKXcCMu5/3EFZucJ48y7RetWIExKREa m9T8bJUox04FB6b9HbwZ4ui3uRGKLXASUoWNjDNKD/yZkuBjcNqllEdjB+dYxzFf BT02Vf6Dsuimrdfp5gJ0iHRc2jTbkNJtUQoj1iM= -----END CERTIFICATE-----","","" -"intermediate_cert_fingerprintSHA256 <#1>","mon-suivi-justice.beta.gouv.fr/148.253.96.193","443","INFO","B9F2164323638DCE0B92218B43C41C1B2B2696389329DB19F5CF7AD49B5CB372","","" -"intermediate_cert_notBefore <#1>","mon-suivi-justice.beta.gouv.fr/148.253.96.193","443","INFO","2014-09-12 00:00","","" -"intermediate_cert_notAfter <#1>","mon-suivi-justice.beta.gouv.fr/148.253.96.193","443","OK","2024-09-11 23:59","","" -"intermediate_cert_expiration <#1>","mon-suivi-justice.beta.gouv.fr/148.253.96.193","443","OK","ok > 40 days","","" -"intermediate_cert_chain <#1>","mon-suivi-justice.beta.gouv.fr/148.253.96.193","443","INFO","Gandi Standard SSL CA 2 <-- USERTrust RSA Certification Authority","","" -"intermediate_cert_badOCSP","mon-suivi-justice.beta.gouv.fr/148.253.96.193","443","OK","intermediate certificate(s) is/are ok","","" -"HTTP_status_code","mon-suivi-justice.beta.gouv.fr/148.253.96.193","443","INFO","200 OK ('/')","","" -"HTTP_clock_skew","mon-suivi-justice.beta.gouv.fr/148.253.96.193","443","INFO","0 seconds from localtime","","" -"HSTS_time","mon-suivi-justice.beta.gouv.fr/148.253.96.193","443","OK","365 days (=31536000 seconds) > 15552000 seconds","","" -"HSTS_subdomains","mon-suivi-justice.beta.gouv.fr/148.253.96.193","443","INFO","only for this domain","","" -"HSTS_preload","mon-suivi-justice.beta.gouv.fr/148.253.96.193","443","INFO","domain is NOT marked for preloading","","" -"HPKP","mon-suivi-justice.beta.gouv.fr/148.253.96.193","443","INFO","No support for HTTP Public Key Pinning","","" -"banner_server","mon-suivi-justice.beta.gouv.fr/148.253.96.193","443","INFO","openresty","","" -"banner_application","mon-suivi-justice.beta.gouv.fr/148.253.96.193","443","INFO","No application banner found","","" -"cookie_count","mon-suivi-justice.beta.gouv.fr/148.253.96.193","443","INFO","1 at '/'","","" -"cookie_secure","mon-suivi-justice.beta.gouv.fr/148.253.96.193","443","INFO","0/1 at '/' marked as secure","","" -"cookie_httponly","mon-suivi-justice.beta.gouv.fr/148.253.96.193","443","OK","All (1) at '/' marked as HttpOnly","","" -"X-Frame-Options","mon-suivi-justice.beta.gouv.fr/148.253.96.193","443","OK","SAMEORIGIN","","" -"X-Content-Type-Options","mon-suivi-justice.beta.gouv.fr/148.253.96.193","443","OK","nosniff","","" -"X-XSS-Protection","mon-suivi-justice.beta.gouv.fr/148.253.96.193","443","INFO","1; mode=block","","" -"Referrer-Policy","mon-suivi-justice.beta.gouv.fr/148.253.96.193","443","INFO","strict-origin-when-cross-origin","","" -"Cache-Control","mon-suivi-justice.beta.gouv.fr/148.253.96.193","443","INFO","max-age=0, private, must-revalidate","","" -"banner_reverseproxy","mon-suivi-justice.beta.gouv.fr/148.253.96.193","443","INFO","--","","CWE-200" -"heartbleed","mon-suivi-justice.beta.gouv.fr/148.253.96.193","443","OK","not vulnerable, no heartbeat extension","CVE-2014-0160","CWE-119" -"CCS","mon-suivi-justice.beta.gouv.fr/148.253.96.193","443","OK","not vulnerable","CVE-2014-0224","CWE-310" -"ticketbleed","mon-suivi-justice.beta.gouv.fr/148.253.96.193","443","OK","not vulnerable","CVE-2016-9244","CWE-200" -"ROBOT","mon-suivi-justice.beta.gouv.fr/148.253.96.193","443","OK","not vulnerable, no RSA key transport cipher","CVE-2017-17382 CVE-2017-17427 CVE-2017-17428 CVE-2017-13098 CVE-2017-1000385 CVE-2017-13099 CVE-2016-6883 CVE-2012-5081 CVE-2017-6168","CWE-203" -"secure_renego","mon-suivi-justice.beta.gouv.fr/148.253.96.193","443","OK","supported","","CWE-310" -"secure_client_renego","mon-suivi-justice.beta.gouv.fr/148.253.96.193","443","OK","not vulnerable","CVE-2011-1473","CWE-310" -"CRIME_TLS","mon-suivi-justice.beta.gouv.fr/148.253.96.193","443","OK","not vulnerable","CVE-2012-4929","CWE-310" -"BREACH","mon-suivi-justice.beta.gouv.fr/148.253.96.193","443","MEDIUM","potentially VULNERABLE, gzip HTTP compression detected - only supplied '/' tested","CVE-2013-3587","CWE-310" -"POODLE_SSL","mon-suivi-justice.beta.gouv.fr/148.253.96.193","443","OK","not vulnerable, no SSLv3","CVE-2014-3566","CWE-310" -"fallback_SCSV","mon-suivi-justice.beta.gouv.fr/148.253.96.193","443","OK","no protocol below TLS 1.2 offered","","" -"SWEET32","mon-suivi-justice.beta.gouv.fr/148.253.96.193","443","OK","not vulnerable","CVE-2016-2183 CVE-2016-6329","CWE-327" -"FREAK","mon-suivi-justice.beta.gouv.fr/148.253.96.193","443","OK","not vulnerable","CVE-2015-0204","CWE-310" -"DROWN","mon-suivi-justice.beta.gouv.fr/148.253.96.193","443","OK","not vulnerable on this host and port","CVE-2016-0800 CVE-2016-0703","CWE-310" -"DROWN_hint","mon-suivi-justice.beta.gouv.fr/148.253.96.193","443","INFO","Make sure you don't use this certificate elsewhere with SSLv2 enabled services, see https://censys.io/ipv4?q=8320818C38BBD4B89EE828A19EE331D705BD17AFFDCA0681956D6EA1261D2F51","CVE-2016-0800 CVE-2016-0703","CWE-310" -"LOGJAM","mon-suivi-justice.beta.gouv.fr/148.253.96.193","443","OK","not vulnerable, no DH EXPORT ciphers,","CVE-2015-4000","CWE-310" -"LOGJAM-common_primes","mon-suivi-justice.beta.gouv.fr/148.253.96.193","443","OK","--","CVE-2015-4000","CWE-310" -"BEAST","mon-suivi-justice.beta.gouv.fr/148.253.96.193","443","OK","not vulnerable, no SSL3 or TLS1","CVE-2011-3389","CWE-20" -"LUCKY13","mon-suivi-justice.beta.gouv.fr/148.253.96.193","443","LOW","potentially vulnerable, uses TLS CBC ciphers","CVE-2013-0169","CWE-310" -"winshock","mon-suivi-justice.beta.gouv.fr/148.253.96.193","443","OK","not vulnerable","CVE-2014-6321","CWE-94" -"RC4","mon-suivi-justice.beta.gouv.fr/148.253.96.193","443","OK","not vulnerable","CVE-2013-2566 CVE-2015-2808","CWE-310" -"clientsimulation-android_442","mon-suivi-justice.beta.gouv.fr/148.253.96.193","443","INFO","TLSv1.2 ECDHE-RSA-AES256-GCM-SHA384","","" -"clientsimulation-android_500","mon-suivi-justice.beta.gouv.fr/148.253.96.193","443","INFO","TLSv1.2 ECDHE-RSA-AES128-GCM-SHA256","","" -"clientsimulation-android_60","mon-suivi-justice.beta.gouv.fr/148.253.96.193","443","INFO","TLSv1.2 ECDHE-RSA-AES128-GCM-SHA256","","" -"clientsimulation-android_70","mon-suivi-justice.beta.gouv.fr/148.253.96.193","443","INFO","TLSv1.2 ECDHE-RSA-AES256-GCM-SHA384","","" -"clientsimulation-android_81","mon-suivi-justice.beta.gouv.fr/148.253.96.193","443","INFO","TLSv1.2 ECDHE-RSA-AES256-GCM-SHA384","","" -"clientsimulation-android_90","mon-suivi-justice.beta.gouv.fr/148.253.96.193","443","INFO","TLSv1.3 TLS_AES_256_GCM_SHA384","","" -"clientsimulation-android_X","mon-suivi-justice.beta.gouv.fr/148.253.96.193","443","INFO","TLSv1.3 TLS_AES_256_GCM_SHA384","","" -"clientsimulation-chrome_74_win10","mon-suivi-justice.beta.gouv.fr/148.253.96.193","443","INFO","TLSv1.3 TLS_AES_256_GCM_SHA384","","" -"clientsimulation-chrome_79_win10","mon-suivi-justice.beta.gouv.fr/148.253.96.193","443","INFO","TLSv1.3 TLS_AES_256_GCM_SHA384","","" -"clientsimulation-firefox_66_win81","mon-suivi-justice.beta.gouv.fr/148.253.96.193","443","INFO","TLSv1.3 TLS_AES_256_GCM_SHA384","","" -"clientsimulation-firefox_71_win10","mon-suivi-justice.beta.gouv.fr/148.253.96.193","443","INFO","TLSv1.3 TLS_AES_256_GCM_SHA384","","" -"clientsimulation-ie_6_xp","mon-suivi-justice.beta.gouv.fr/148.253.96.193","443","INFO","No connection","","" -"clientsimulation-ie_8_win7","mon-suivi-justice.beta.gouv.fr/148.253.96.193","443","INFO","No connection","","" -"clientsimulation-ie_8_xp","mon-suivi-justice.beta.gouv.fr/148.253.96.193","443","INFO","No connection","","" -"clientsimulation-ie_11_win7","mon-suivi-justice.beta.gouv.fr/148.253.96.193","443","INFO","TLSv1.2 DHE-RSA-AES256-GCM-SHA384","","" -"clientsimulation-ie_11_win81","mon-suivi-justice.beta.gouv.fr/148.253.96.193","443","INFO","TLSv1.2 DHE-RSA-AES256-GCM-SHA384","","" -"clientsimulation-ie_11_winphone81","mon-suivi-justice.beta.gouv.fr/148.253.96.193","443","INFO","No connection","","" -"clientsimulation-ie_11_win10","mon-suivi-justice.beta.gouv.fr/148.253.96.193","443","INFO","TLSv1.2 ECDHE-RSA-AES256-GCM-SHA384","","" -"clientsimulation-edge_15_win10","mon-suivi-justice.beta.gouv.fr/148.253.96.193","443","INFO","TLSv1.2 ECDHE-RSA-AES256-GCM-SHA384","","" -"clientsimulation-edge_17_win10","mon-suivi-justice.beta.gouv.fr/148.253.96.193","443","INFO","TLSv1.2 ECDHE-RSA-AES256-GCM-SHA384","","" -"clientsimulation-opera_66_win10","mon-suivi-justice.beta.gouv.fr/148.253.96.193","443","INFO","TLSv1.3 TLS_AES_256_GCM_SHA384","","" -"clientsimulation-safari_9_ios9","mon-suivi-justice.beta.gouv.fr/148.253.96.193","443","INFO","TLSv1.2 ECDHE-RSA-AES256-GCM-SHA384","","" -"clientsimulation-safari_9_osx1011","mon-suivi-justice.beta.gouv.fr/148.253.96.193","443","INFO","TLSv1.2 ECDHE-RSA-AES256-GCM-SHA384","","" -"clientsimulation-safari_10_osx1012","mon-suivi-justice.beta.gouv.fr/148.253.96.193","443","INFO","TLSv1.2 ECDHE-RSA-AES256-GCM-SHA384","","" -"clientsimulation-safari_121_ios_122","mon-suivi-justice.beta.gouv.fr/148.253.96.193","443","INFO","TLSv1.3 TLS_AES_256_GCM_SHA384","","" -"clientsimulation-safari_130_osx_10146","mon-suivi-justice.beta.gouv.fr/148.253.96.193","443","INFO","TLSv1.3 TLS_AES_256_GCM_SHA384","","" -"clientsimulation-apple_ats_9_ios9","mon-suivi-justice.beta.gouv.fr/148.253.96.193","443","INFO","TLSv1.2 ECDHE-RSA-AES256-GCM-SHA384","","" -"clientsimulation-java_6u45","mon-suivi-justice.beta.gouv.fr/148.253.96.193","443","INFO","No connection","","" -"clientsimulation-java_7u25","mon-suivi-justice.beta.gouv.fr/148.253.96.193","443","INFO","No connection","","" -"clientsimulation-java_8u161","mon-suivi-justice.beta.gouv.fr/148.253.96.193","443","INFO","TLSv1.2 ECDHE-RSA-AES256-GCM-SHA384","","" -"clientsimulation-java1102","mon-suivi-justice.beta.gouv.fr/148.253.96.193","443","INFO","TLSv1.3 TLS_AES_256_GCM_SHA384","","" -"clientsimulation-java1201","mon-suivi-justice.beta.gouv.fr/148.253.96.193","443","INFO","TLSv1.3 TLS_AES_256_GCM_SHA384","","" -"clientsimulation-openssl_102e","mon-suivi-justice.beta.gouv.fr/148.253.96.193","443","INFO","TLSv1.2 ECDHE-RSA-AES256-GCM-SHA384","","" -"clientsimulation-openssl_110l","mon-suivi-justice.beta.gouv.fr/148.253.96.193","443","INFO","TLSv1.2 ECDHE-RSA-AES256-GCM-SHA384","","" -"clientsimulation-openssl_111d","mon-suivi-justice.beta.gouv.fr/148.253.96.193","443","INFO","TLSv1.3 TLS_AES_256_GCM_SHA384","","" -"clientsimulation-thunderbird_68_3_1","mon-suivi-justice.beta.gouv.fr/148.253.96.193","443","INFO","TLSv1.3 TLS_AES_256_GCM_SHA384","","" -"rating_spec","mon-suivi-justice.beta.gouv.fr/148.253.96.193","443","INFO","SSL Labs's 'SSL Server Rating Guide' (version 2009q from 2020-01-30)","","" -"rating_doc","mon-suivi-justice.beta.gouv.fr/148.253.96.193","443","INFO","https://github.com/ssllabs/research/wiki/SSL-Server-Rating-Guide","","" -"protocol_support_score","mon-suivi-justice.beta.gouv.fr/148.253.96.193","443","INFO","100","","" -"protocol_support_score_weighted","mon-suivi-justice.beta.gouv.fr/148.253.96.193","443","INFO","30","","" -"key_exchange_score","mon-suivi-justice.beta.gouv.fr/148.253.96.193","443","INFO","90","","" -"key_exchange_score_weighted","mon-suivi-justice.beta.gouv.fr/148.253.96.193","443","INFO","27","","" -"cipher_strength_score","mon-suivi-justice.beta.gouv.fr/148.253.96.193","443","INFO","60","","" -"cipher_strength_score_weighted","mon-suivi-justice.beta.gouv.fr/148.253.96.193","443","INFO","24","","" -"final_score","mon-suivi-justice.beta.gouv.fr/148.253.96.193","443","INFO","81","","" -"overall_grade","mon-suivi-justice.beta.gouv.fr/148.253.96.193","443","OK","A+","","" "service","mon-suivi-justice.beta.gouv.fr/185.21.194.105","443","INFO","HTTP","","" "pre_128cipher","mon-suivi-justice.beta.gouv.fr/185.21.194.105","443","INFO","No 128 cipher limit bug","","" "SSLv2","mon-suivi-justice.beta.gouv.fr/185.21.194.105","443","OK","not offered","","" @@ -201,7 +48,7 @@ "cert_trust","mon-suivi-justice.beta.gouv.fr/185.21.194.105","443","OK","Ok via SAN and CN (SNI mandatory)","","" "cert_chain_of_trust","mon-suivi-justice.beta.gouv.fr/185.21.194.105","443","OK","passed.","","" "cert_certificatePolicies_EV","mon-suivi-justice.beta.gouv.fr/185.21.194.105","443","INFO","no","","" -"cert_expirationStatus","mon-suivi-justice.beta.gouv.fr/185.21.194.105","443","OK","299 >= 60 days","","" +"cert_expirationStatus","mon-suivi-justice.beta.gouv.fr/185.21.194.105","443","OK","292 >= 60 days","","" "cert_notBefore","mon-suivi-justice.beta.gouv.fr/185.21.194.105","443","INFO","2021-09-30 00:00","","" "cert_notAfter","mon-suivi-justice.beta.gouv.fr/185.21.194.105","443","OK","2022-09-30 23:59","","" "cert_extlifeSpan","mon-suivi-justice.beta.gouv.fr/185.21.194.105","443","OK","certificate has no extended life time according to browser forum","","" @@ -305,3 +152,156 @@ "cipher_strength_score_weighted","mon-suivi-justice.beta.gouv.fr/185.21.194.105","443","INFO","24","","" "final_score","mon-suivi-justice.beta.gouv.fr/185.21.194.105","443","INFO","81","","" "overall_grade","mon-suivi-justice.beta.gouv.fr/185.21.194.105","443","OK","A+","","" +"service","mon-suivi-justice.beta.gouv.fr/148.253.96.193","443","INFO","HTTP","","" +"pre_128cipher","mon-suivi-justice.beta.gouv.fr/148.253.96.193","443","INFO","No 128 cipher limit bug","","" +"SSLv2","mon-suivi-justice.beta.gouv.fr/148.253.96.193","443","OK","not offered","","" +"SSLv3","mon-suivi-justice.beta.gouv.fr/148.253.96.193","443","OK","not offered","","" +"TLS1","mon-suivi-justice.beta.gouv.fr/148.253.96.193","443","INFO","not offered","","" +"TLS1_1","mon-suivi-justice.beta.gouv.fr/148.253.96.193","443","INFO","not offered","","" +"TLS1_2","mon-suivi-justice.beta.gouv.fr/148.253.96.193","443","OK","offered","","" +"TLS1_3","mon-suivi-justice.beta.gouv.fr/148.253.96.193","443","OK","offered with final","","" +"ALPN_HTTP2","mon-suivi-justice.beta.gouv.fr/148.253.96.193","443","OK","h2","","" +"ALPN","mon-suivi-justice.beta.gouv.fr/148.253.96.193","443","INFO","http/1.1","","" +"cipherlist_NULL","mon-suivi-justice.beta.gouv.fr/148.253.96.193","443","OK","not offered","","CWE-327" +"cipherlist_aNULL","mon-suivi-justice.beta.gouv.fr/148.253.96.193","443","OK","not offered","","CWE-327" +"cipherlist_EXPORT","mon-suivi-justice.beta.gouv.fr/148.253.96.193","443","OK","not offered","","CWE-327" +"cipherlist_LOW","mon-suivi-justice.beta.gouv.fr/148.253.96.193","443","OK","not offered","","CWE-327" +"cipherlist_3DES_IDEA","mon-suivi-justice.beta.gouv.fr/148.253.96.193","443","INFO","not offered","","CWE-310" +"cipherlist_AVERAGE","mon-suivi-justice.beta.gouv.fr/148.253.96.193","443","LOW","offered","","CWE-310" +"cipherlist_GOOD","mon-suivi-justice.beta.gouv.fr/148.253.96.193","443","INFO","not offered","","" +"cipherlist_STRONG","mon-suivi-justice.beta.gouv.fr/148.253.96.193","443","OK","offered","","" +"cipher_order","mon-suivi-justice.beta.gouv.fr/148.253.96.193","443","OK","server","","" +"protocol_negotiated","mon-suivi-justice.beta.gouv.fr/148.253.96.193","443","OK","Default protocol TLS1.3","","" +"cipher_negotiated","mon-suivi-justice.beta.gouv.fr/148.253.96.193","443","OK","TLS_AES_256_GCM_SHA384, 253 bit ECDH (X25519)","","" +"cipherorder_TLSv1_2","mon-suivi-justice.beta.gouv.fr/148.253.96.193","443","INFO","ECDHE-RSA-AES256-GCM-SHA384","","" +"FS","mon-suivi-justice.beta.gouv.fr/148.253.96.193","443","OK","offered","","" +"FS_ciphers","mon-suivi-justice.beta.gouv.fr/148.253.96.193","443","INFO","DHE-RSA-AES256-GCM-SHA384 ECDHE-RSA-AES128-GCM-SHA256 ECDHE-RSA-AES256-GCM-SHA384 ECDHE-RSA-AES256-SHA384","","" +"FS_ECDHE_curves","mon-suivi-justice.beta.gouv.fr/148.253.96.193","443","OK","prime256v1 secp384r1 secp521r1","","" +"TLS_extensions","mon-suivi-justice.beta.gouv.fr/148.253.96.193","443","INFO","'renegotiation info/#65281' 'server name/#0' 'EC point formats/#11' 'session ticket/#35' 'next protocol/#13172' 'supported versions/#43' 'key share/#51' 'supported_groups/#10' 'max fragment length/#1' 'application layer protocol negotiation/#16' 'encrypt-then-mac/#22' 'extended master secret/#23'","","" +"TLS_session_ticket","mon-suivi-justice.beta.gouv.fr/148.253.96.193","443","INFO","valid for 300 seconds only (= 60 days","","" +"cert_notBefore","mon-suivi-justice.beta.gouv.fr/148.253.96.193","443","INFO","2021-09-30 00:00","","" +"cert_notAfter","mon-suivi-justice.beta.gouv.fr/148.253.96.193","443","OK","2022-09-30 23:59","","" +"cert_extlifeSpan","mon-suivi-justice.beta.gouv.fr/148.253.96.193","443","OK","certificate has no extended life time according to browser forum","","" +"cert_eTLS","mon-suivi-justice.beta.gouv.fr/148.253.96.193","443","INFO","not present","","" +"cert_crlDistributionPoints","mon-suivi-justice.beta.gouv.fr/148.253.96.193","443","INFO","http://crl.usertrust.com/GandiStandardSSLCA2.crl","","" +"cert_ocspURL","mon-suivi-justice.beta.gouv.fr/148.253.96.193","443","INFO","http://ocsp.usertrust.com","","" +"OCSP_stapling","mon-suivi-justice.beta.gouv.fr/148.253.96.193","443","LOW","not offered","","" +"cert_mustStapleExtension","mon-suivi-justice.beta.gouv.fr/148.253.96.193","443","INFO","--","","" +"DNS_CAArecord","mon-suivi-justice.beta.gouv.fr/148.253.96.193","443","LOW","--","","" +"certificate_transparency","mon-suivi-justice.beta.gouv.fr/148.253.96.193","443","OK","yes (certificate extension)","","" +"certs_countServer","mon-suivi-justice.beta.gouv.fr/148.253.96.193","443","INFO","2","","" +"certs_list_ordering_problem","mon-suivi-justice.beta.gouv.fr/148.253.96.193","443","INFO","no","","" +"cert_caIssuers","mon-suivi-justice.beta.gouv.fr/148.253.96.193","443","INFO","Gandi Standard SSL CA 2 (Gandi from FR)","","" +"intermediate_cert <#1>","mon-suivi-justice.beta.gouv.fr/148.253.96.193","443","INFO","-----BEGIN CERTIFICATE----- MIIF6TCCA9GgAwIBAgIQBeTcO5Q4qzuFl8umoZhQ4zANBgkqhkiG9w0BAQwFADCB iDELMAkGA1UEBhMCVVMxEzARBgNVBAgTCk5ldyBKZXJzZXkxFDASBgNVBAcTC0pl cnNleSBDaXR5MR4wHAYDVQQKExVUaGUgVVNFUlRSVVNUIE5ldHdvcmsxLjAsBgNV BAMTJVVTRVJUcnVzdCBSU0EgQ2VydGlmaWNhdGlvbiBBdXRob3JpdHkwHhcNMTQw OTEyMDAwMDAwWhcNMjQwOTExMjM1OTU5WjBfMQswCQYDVQQGEwJGUjEOMAwGA1UE CBMFUGFyaXMxDjAMBgNVBAcTBVBhcmlzMQ4wDAYDVQQKEwVHYW5kaTEgMB4GA1UE AxMXR2FuZGkgU3RhbmRhcmQgU1NMIENBIDIwggEiMA0GCSqGSIb3DQEBAQUAA4IB DwAwggEKAoIBAQCUBC2meZV0/9UAPPWu2JSxKXzAjwsLibmCg5duNyj1ohrP0pIL m6jTh5RzhBCf3DXLwi2SrCG5yzv8QMHBgyHwv/j2nPqcghDA0I5O5Q1MsJFckLSk QFEW2uSEEi0FXKEfFxkkUap66uEHG4aNAXLy59SDIzme4OFMH2sio7QQZrDtgpbX bmq08j+1QvzdirWrui0dOnWbMdw+naxb00ENbLAb9Tr1eeohovj0M1JLJC0epJmx bUi8uBL+cnB89/sCdfSN3tbawKAyGlLfOGsuRTg/PwSWAP2h9KK71RfWJ3wbWFmV XooS/ZyrgT5SKEhRhWvzkbKGPym1bgNi7tYFAgMBAAGjggF1MIIBcTAfBgNVHSME GDAWgBRTeb9aqitKz1SA4dibwJ3ysgNmyzAdBgNVHQ4EFgQUs5Cn2MmvTs1hPJ98 rV1/Qf1pMOowDgYDVR0PAQH/BAQDAgGGMBIGA1UdEwEB/wQIMAYBAf8CAQAwHQYD VR0lBBYwFAYIKwYBBQUHAwEGCCsGAQUFBwMCMCIGA1UdIAQbMBkwDQYLKwYBBAGy MQECAhowCAYGZ4EMAQIBMFAGA1UdHwRJMEcwRaBDoEGGP2h0dHA6Ly9jcmwudXNl cnRydXN0LmNvbS9VU0VSVHJ1c3RSU0FDZXJ0aWZpY2F0aW9uQXV0aG9yaXR5LmNy bDB2BggrBgEFBQcBAQRqMGgwPwYIKwYBBQUHMAKGM2h0dHA6Ly9jcnQudXNlcnRy dXN0LmNvbS9VU0VSVHJ1c3RSU0FBZGRUcnVzdENBLmNydDAlBggrBgEFBQcwAYYZ aHR0cDovL29jc3AudXNlcnRydXN0LmNvbTANBgkqhkiG9w0BAQwFAAOCAgEAWGf9 crJq13xhlhl+2UNG0SZ9yFP6ZrBrLafTqlb3OojQO3LJUP33WbKqaPWMcwO7lWUX zi8c3ZgTopHJ7qFAbjyY1lzzsiI8Le4bpOHeICQW8owRc5E69vrOJAKHypPstLbI FhfFcvwnQPYT/pOmnVHvPCvYd1ebjGU6NSU2t7WKY28HJ5OxYI2A25bUeo8tqxyI yW5+1mUfr13KFj8oRtygNeX56eXVlogMT8a3d2dIhCe2H7Bo26y/d7CQuKLJHDJd ArolQ4FCR7vY4Y8MDEZf7kYzawMUgtN+zY+vkNaOJH1AQrRqahfGlZfh8jjNp+20 J0CT33KpuMZmYzc4ZCIwojvxuch7yPspOqsactIGEk72gtQjbz7Dk+XYtsDe3CMW 1hMwt6CaDixVBgBwAc/qOR2A24j3pSC4W/0xJmmPLQphgzpHphNULB7j7UTKvGof KA5R2d4On3XNDgOVyvnFqSot/kGkoUeuDcL5OWYzSlvhhChZbH2UF3bkRYKtcCD9 0m9jqNf6oDP6N8v3smWe2lBvP+Sn845dWDKXcCMu5/3EFZucJ48y7RetWIExKREa m9T8bJUox04FB6b9HbwZ4ui3uRGKLXASUoWNjDNKD/yZkuBjcNqllEdjB+dYxzFf BT02Vf6Dsuimrdfp5gJ0iHRc2jTbkNJtUQoj1iM= -----END CERTIFICATE-----","","" +"intermediate_cert_fingerprintSHA256 <#1>","mon-suivi-justice.beta.gouv.fr/148.253.96.193","443","INFO","B9F2164323638DCE0B92218B43C41C1B2B2696389329DB19F5CF7AD49B5CB372","","" +"intermediate_cert_notBefore <#1>","mon-suivi-justice.beta.gouv.fr/148.253.96.193","443","INFO","2014-09-12 00:00","","" +"intermediate_cert_notAfter <#1>","mon-suivi-justice.beta.gouv.fr/148.253.96.193","443","OK","2024-09-11 23:59","","" +"intermediate_cert_expiration <#1>","mon-suivi-justice.beta.gouv.fr/148.253.96.193","443","OK","ok > 40 days","","" +"intermediate_cert_chain <#1>","mon-suivi-justice.beta.gouv.fr/148.253.96.193","443","INFO","Gandi Standard SSL CA 2 <-- USERTrust RSA Certification Authority","","" +"intermediate_cert_badOCSP","mon-suivi-justice.beta.gouv.fr/148.253.96.193","443","OK","intermediate certificate(s) is/are ok","","" +"HTTP_status_code","mon-suivi-justice.beta.gouv.fr/148.253.96.193","443","INFO","200 OK ('/')","","" +"HTTP_clock_skew","mon-suivi-justice.beta.gouv.fr/148.253.96.193","443","INFO","0 seconds from localtime","","" +"HSTS_time","mon-suivi-justice.beta.gouv.fr/148.253.96.193","443","OK","365 days (=31536000 seconds) > 15552000 seconds","","" +"HSTS_subdomains","mon-suivi-justice.beta.gouv.fr/148.253.96.193","443","INFO","only for this domain","","" +"HSTS_preload","mon-suivi-justice.beta.gouv.fr/148.253.96.193","443","INFO","domain is NOT marked for preloading","","" +"HPKP","mon-suivi-justice.beta.gouv.fr/148.253.96.193","443","INFO","No support for HTTP Public Key Pinning","","" +"banner_server","mon-suivi-justice.beta.gouv.fr/148.253.96.193","443","INFO","openresty","","" +"banner_application","mon-suivi-justice.beta.gouv.fr/148.253.96.193","443","INFO","No application banner found","","" +"cookie_count","mon-suivi-justice.beta.gouv.fr/148.253.96.193","443","INFO","1 at '/'","","" +"cookie_secure","mon-suivi-justice.beta.gouv.fr/148.253.96.193","443","INFO","0/1 at '/' marked as secure","","" +"cookie_httponly","mon-suivi-justice.beta.gouv.fr/148.253.96.193","443","OK","All (1) at '/' marked as HttpOnly","","" +"X-Frame-Options","mon-suivi-justice.beta.gouv.fr/148.253.96.193","443","OK","SAMEORIGIN","","" +"X-Content-Type-Options","mon-suivi-justice.beta.gouv.fr/148.253.96.193","443","OK","nosniff","","" +"X-XSS-Protection","mon-suivi-justice.beta.gouv.fr/148.253.96.193","443","INFO","1; mode=block","","" +"Referrer-Policy","mon-suivi-justice.beta.gouv.fr/148.253.96.193","443","INFO","strict-origin-when-cross-origin","","" +"Cache-Control","mon-suivi-justice.beta.gouv.fr/148.253.96.193","443","INFO","max-age=0, private, must-revalidate","","" +"banner_reverseproxy","mon-suivi-justice.beta.gouv.fr/148.253.96.193","443","INFO","--","","CWE-200" +"heartbleed","mon-suivi-justice.beta.gouv.fr/148.253.96.193","443","OK","not vulnerable, no heartbeat extension","CVE-2014-0160","CWE-119" +"CCS","mon-suivi-justice.beta.gouv.fr/148.253.96.193","443","OK","not vulnerable","CVE-2014-0224","CWE-310" +"ticketbleed","mon-suivi-justice.beta.gouv.fr/148.253.96.193","443","OK","not vulnerable","CVE-2016-9244","CWE-200" +"ROBOT","mon-suivi-justice.beta.gouv.fr/148.253.96.193","443","OK","not vulnerable, no RSA key transport cipher","CVE-2017-17382 CVE-2017-17427 CVE-2017-17428 CVE-2017-13098 CVE-2017-1000385 CVE-2017-13099 CVE-2016-6883 CVE-2012-5081 CVE-2017-6168","CWE-203" +"secure_renego","mon-suivi-justice.beta.gouv.fr/148.253.96.193","443","OK","supported","","CWE-310" +"secure_client_renego","mon-suivi-justice.beta.gouv.fr/148.253.96.193","443","OK","not vulnerable","CVE-2011-1473","CWE-310" +"CRIME_TLS","mon-suivi-justice.beta.gouv.fr/148.253.96.193","443","OK","not vulnerable","CVE-2012-4929","CWE-310" +"BREACH","mon-suivi-justice.beta.gouv.fr/148.253.96.193","443","MEDIUM","potentially VULNERABLE, gzip HTTP compression detected - only supplied '/' tested","CVE-2013-3587","CWE-310" +"POODLE_SSL","mon-suivi-justice.beta.gouv.fr/148.253.96.193","443","OK","not vulnerable, no SSLv3","CVE-2014-3566","CWE-310" +"fallback_SCSV","mon-suivi-justice.beta.gouv.fr/148.253.96.193","443","OK","no protocol below TLS 1.2 offered","","" +"SWEET32","mon-suivi-justice.beta.gouv.fr/148.253.96.193","443","OK","not vulnerable","CVE-2016-2183 CVE-2016-6329","CWE-327" +"FREAK","mon-suivi-justice.beta.gouv.fr/148.253.96.193","443","OK","not vulnerable","CVE-2015-0204","CWE-310" +"DROWN","mon-suivi-justice.beta.gouv.fr/148.253.96.193","443","OK","not vulnerable on this host and port","CVE-2016-0800 CVE-2016-0703","CWE-310" +"DROWN_hint","mon-suivi-justice.beta.gouv.fr/148.253.96.193","443","INFO","Make sure you don't use this certificate elsewhere with SSLv2 enabled services, see https://censys.io/ipv4?q=8320818C38BBD4B89EE828A19EE331D705BD17AFFDCA0681956D6EA1261D2F51","CVE-2016-0800 CVE-2016-0703","CWE-310" +"LOGJAM","mon-suivi-justice.beta.gouv.fr/148.253.96.193","443","OK","not vulnerable, no DH EXPORT ciphers,","CVE-2015-4000","CWE-310" +"LOGJAM-common_primes","mon-suivi-justice.beta.gouv.fr/148.253.96.193","443","OK","--","CVE-2015-4000","CWE-310" +"BEAST","mon-suivi-justice.beta.gouv.fr/148.253.96.193","443","OK","not vulnerable, no SSL3 or TLS1","CVE-2011-3389","CWE-20" +"LUCKY13","mon-suivi-justice.beta.gouv.fr/148.253.96.193","443","LOW","potentially vulnerable, uses TLS CBC ciphers","CVE-2013-0169","CWE-310" +"winshock","mon-suivi-justice.beta.gouv.fr/148.253.96.193","443","OK","not vulnerable","CVE-2014-6321","CWE-94" +"RC4","mon-suivi-justice.beta.gouv.fr/148.253.96.193","443","OK","not vulnerable","CVE-2013-2566 CVE-2015-2808","CWE-310" +"clientsimulation-android_442","mon-suivi-justice.beta.gouv.fr/148.253.96.193","443","INFO","TLSv1.2 ECDHE-RSA-AES256-GCM-SHA384","","" +"clientsimulation-android_500","mon-suivi-justice.beta.gouv.fr/148.253.96.193","443","INFO","TLSv1.2 ECDHE-RSA-AES128-GCM-SHA256","","" +"clientsimulation-android_60","mon-suivi-justice.beta.gouv.fr/148.253.96.193","443","INFO","TLSv1.2 ECDHE-RSA-AES128-GCM-SHA256","","" +"clientsimulation-android_70","mon-suivi-justice.beta.gouv.fr/148.253.96.193","443","INFO","TLSv1.2 ECDHE-RSA-AES256-GCM-SHA384","","" +"clientsimulation-android_81","mon-suivi-justice.beta.gouv.fr/148.253.96.193","443","INFO","TLSv1.2 ECDHE-RSA-AES256-GCM-SHA384","","" +"clientsimulation-android_90","mon-suivi-justice.beta.gouv.fr/148.253.96.193","443","INFO","TLSv1.3 TLS_AES_256_GCM_SHA384","","" +"clientsimulation-android_X","mon-suivi-justice.beta.gouv.fr/148.253.96.193","443","INFO","TLSv1.3 TLS_AES_256_GCM_SHA384","","" +"clientsimulation-chrome_74_win10","mon-suivi-justice.beta.gouv.fr/148.253.96.193","443","INFO","TLSv1.3 TLS_AES_256_GCM_SHA384","","" +"clientsimulation-chrome_79_win10","mon-suivi-justice.beta.gouv.fr/148.253.96.193","443","INFO","TLSv1.3 TLS_AES_256_GCM_SHA384","","" +"clientsimulation-firefox_66_win81","mon-suivi-justice.beta.gouv.fr/148.253.96.193","443","INFO","TLSv1.3 TLS_AES_256_GCM_SHA384","","" +"clientsimulation-firefox_71_win10","mon-suivi-justice.beta.gouv.fr/148.253.96.193","443","INFO","TLSv1.3 TLS_AES_256_GCM_SHA384","","" +"clientsimulation-ie_6_xp","mon-suivi-justice.beta.gouv.fr/148.253.96.193","443","INFO","No connection","","" +"clientsimulation-ie_8_win7","mon-suivi-justice.beta.gouv.fr/148.253.96.193","443","INFO","No connection","","" +"clientsimulation-ie_8_xp","mon-suivi-justice.beta.gouv.fr/148.253.96.193","443","INFO","No connection","","" +"clientsimulation-ie_11_win7","mon-suivi-justice.beta.gouv.fr/148.253.96.193","443","INFO","TLSv1.2 DHE-RSA-AES256-GCM-SHA384","","" +"clientsimulation-ie_11_win81","mon-suivi-justice.beta.gouv.fr/148.253.96.193","443","INFO","TLSv1.2 DHE-RSA-AES256-GCM-SHA384","","" +"clientsimulation-ie_11_winphone81","mon-suivi-justice.beta.gouv.fr/148.253.96.193","443","INFO","No connection","","" +"clientsimulation-ie_11_win10","mon-suivi-justice.beta.gouv.fr/148.253.96.193","443","INFO","TLSv1.2 ECDHE-RSA-AES256-GCM-SHA384","","" +"clientsimulation-edge_15_win10","mon-suivi-justice.beta.gouv.fr/148.253.96.193","443","INFO","TLSv1.2 ECDHE-RSA-AES256-GCM-SHA384","","" +"clientsimulation-edge_17_win10","mon-suivi-justice.beta.gouv.fr/148.253.96.193","443","INFO","TLSv1.2 ECDHE-RSA-AES256-GCM-SHA384","","" +"clientsimulation-opera_66_win10","mon-suivi-justice.beta.gouv.fr/148.253.96.193","443","INFO","TLSv1.3 TLS_AES_256_GCM_SHA384","","" +"clientsimulation-safari_9_ios9","mon-suivi-justice.beta.gouv.fr/148.253.96.193","443","INFO","TLSv1.2 ECDHE-RSA-AES256-GCM-SHA384","","" +"clientsimulation-safari_9_osx1011","mon-suivi-justice.beta.gouv.fr/148.253.96.193","443","INFO","TLSv1.2 ECDHE-RSA-AES256-GCM-SHA384","","" +"clientsimulation-safari_10_osx1012","mon-suivi-justice.beta.gouv.fr/148.253.96.193","443","INFO","TLSv1.2 ECDHE-RSA-AES256-GCM-SHA384","","" +"clientsimulation-safari_121_ios_122","mon-suivi-justice.beta.gouv.fr/148.253.96.193","443","INFO","TLSv1.3 TLS_AES_256_GCM_SHA384","","" +"clientsimulation-safari_130_osx_10146","mon-suivi-justice.beta.gouv.fr/148.253.96.193","443","INFO","TLSv1.3 TLS_AES_256_GCM_SHA384","","" +"clientsimulation-apple_ats_9_ios9","mon-suivi-justice.beta.gouv.fr/148.253.96.193","443","INFO","TLSv1.2 ECDHE-RSA-AES256-GCM-SHA384","","" +"clientsimulation-java_6u45","mon-suivi-justice.beta.gouv.fr/148.253.96.193","443","INFO","No connection","","" +"clientsimulation-java_7u25","mon-suivi-justice.beta.gouv.fr/148.253.96.193","443","INFO","No connection","","" +"clientsimulation-java_8u161","mon-suivi-justice.beta.gouv.fr/148.253.96.193","443","INFO","TLSv1.2 ECDHE-RSA-AES256-GCM-SHA384","","" +"clientsimulation-java1102","mon-suivi-justice.beta.gouv.fr/148.253.96.193","443","INFO","TLSv1.3 TLS_AES_256_GCM_SHA384","","" +"clientsimulation-java1201","mon-suivi-justice.beta.gouv.fr/148.253.96.193","443","INFO","TLSv1.3 TLS_AES_256_GCM_SHA384","","" +"clientsimulation-openssl_102e","mon-suivi-justice.beta.gouv.fr/148.253.96.193","443","INFO","TLSv1.2 ECDHE-RSA-AES256-GCM-SHA384","","" +"clientsimulation-openssl_110l","mon-suivi-justice.beta.gouv.fr/148.253.96.193","443","INFO","TLSv1.2 ECDHE-RSA-AES256-GCM-SHA384","","" +"clientsimulation-openssl_111d","mon-suivi-justice.beta.gouv.fr/148.253.96.193","443","INFO","TLSv1.3 TLS_AES_256_GCM_SHA384","","" +"clientsimulation-thunderbird_68_3_1","mon-suivi-justice.beta.gouv.fr/148.253.96.193","443","INFO","TLSv1.3 TLS_AES_256_GCM_SHA384","","" +"rating_spec","mon-suivi-justice.beta.gouv.fr/148.253.96.193","443","INFO","SSL Labs's 'SSL Server Rating Guide' (version 2009q from 2020-01-30)","","" +"rating_doc","mon-suivi-justice.beta.gouv.fr/148.253.96.193","443","INFO","https://github.com/ssllabs/research/wiki/SSL-Server-Rating-Guide","","" +"protocol_support_score","mon-suivi-justice.beta.gouv.fr/148.253.96.193","443","INFO","100","","" +"protocol_support_score_weighted","mon-suivi-justice.beta.gouv.fr/148.253.96.193","443","INFO","30","","" +"key_exchange_score","mon-suivi-justice.beta.gouv.fr/148.253.96.193","443","INFO","90","","" +"key_exchange_score_weighted","mon-suivi-justice.beta.gouv.fr/148.253.96.193","443","INFO","27","","" +"cipher_strength_score","mon-suivi-justice.beta.gouv.fr/148.253.96.193","443","INFO","60","","" +"cipher_strength_score_weighted","mon-suivi-justice.beta.gouv.fr/148.253.96.193","443","INFO","24","","" +"final_score","mon-suivi-justice.beta.gouv.fr/148.253.96.193","443","INFO","81","","" +"overall_grade","mon-suivi-justice.beta.gouv.fr/148.253.96.193","443","OK","A+","","" diff --git a/results/aHR0cHM6Ly9tb24tc3VpdmktanVzdGljZS5iZXRhLmdvdXYuZnI=/testssl.html b/results/aHR0cHM6Ly9tb24tc3VpdmktanVzdGljZS5iZXRhLmdvdXYuZnI=/testssl.html index ca174014508..0f14ba1c16d 100644 --- a/results/aHR0cHM6Ly9tb24tc3VpdmktanVzdGljZS5iZXRhLmdvdXYuZnI=/testssl.html +++ b/results/aHR0cHM6Ly9tb24tc3VpdmktanVzdGljZS5iZXRhLmdvdXYuZnI=/testssl.html @@ -21,16 +21,16 @@ ########################################################### Using "OpenSSL 1.0.2-chacha (1.0.2k-dev)" [~183 ciphers] - on fv-az198-963:/home/testssl/bin/openssl.Linux.x86_64 + on fv-az219-22:/home/testssl/bin/openssl.Linux.x86_64 (built: "Jan 18 17:12:17 2019", platform: "linux-x86_64") -Testing all IPv4 addresses (port 443): 148.253.96.193 185.21.194.105 +Testing all IPv4 addresses (port 443): 185.21.194.105 148.253.96.193 ----------------------------------------------------- - Start 2021-12-05 08:11:07 -->> 148.253.96.193:443 (mon-suivi-justice.beta.gouv.fr) <<-- + Start 2021-12-12 08:21:42 -->> 185.21.194.105:443 (mon-suivi-justice.beta.gouv.fr) <<-- - Further IP addresses: 185.21.194.105 - rDNS (148.253.96.193): ows-148-253-96-193.cloudgouv-eu-west-1.compute.outscale.com. + Further IP addresses: 148.253.96.193 + rDNS (185.21.194.105): ows-185-21-194-105.cloudgouv-eu-west-1.compute.outscale.com. Service detected: HTTP @@ -117,7 +117,7 @@ Trust (hostname) Ok via SAN and CN (SNI mandatory) Chain of trust Ok EV cert (experimental) no - Certificate Validity (UTC) 299 >= 60 days (2021-09-30 00:00 --> 2022-09-30 23:59) + Certificate Validity (UTC) 292 >= 60 days (2021-09-30 00:00 --> 2022-09-30 23:59) ETS/"eTLS", visibility info not present Certificate Revocation List http://crl.usertrust.com/GandiStandardSSLCA2.crl OCSP URI http://ocsp.usertrust.com @@ -226,13 +226,13 @@ Final Score 81 Overall Grade A+ - Done 2021-12-05 08:12:38 [ 93s] -->> 148.253.96.193:443 (mon-suivi-justice.beta.gouv.fr) <<-- + Done 2021-12-12 08:24:06 [ 147s] -->> 185.21.194.105:443 (mon-suivi-justice.beta.gouv.fr) <<-- ----------------------------------------------------- - Start 2021-12-05 08:12:39 -->> 185.21.194.105:443 (mon-suivi-justice.beta.gouv.fr) <<-- + Start 2021-12-12 08:24:07 -->> 148.253.96.193:443 (mon-suivi-justice.beta.gouv.fr) <<-- - Further IP addresses: 148.253.96.193 - rDNS (185.21.194.105): ows-185-21-194-105.cloudgouv-eu-west-1.compute.outscale.com. + Further IP addresses: 185.21.194.105 + rDNS (148.253.96.193): ows-148-253-96-193.cloudgouv-eu-west-1.compute.outscale.com. Service detected: HTTP @@ -319,7 +319,7 @@ Trust (hostname) Ok via SAN and CN (SNI mandatory) Chain of trust Ok EV cert (experimental) no - Certificate Validity (UTC) 299 >= 60 days (2021-09-30 00:00 --> 2022-09-30 23:59) + Certificate Validity (UTC) 292 >= 60 days (2021-09-30 00:00 --> 2022-09-30 23:59) ETS/"eTLS", visibility info not present Certificate Revocation List http://crl.usertrust.com/GandiStandardSSLCA2.crl OCSP URI http://ocsp.usertrust.com @@ -428,10 +428,10 @@ Final Score 81 Overall Grade A+ - Done 2021-12-05 08:14:08 [ 183s] -->> 185.21.194.105:443 (mon-suivi-justice.beta.gouv.fr) <<-- + Done 2021-12-12 08:26:35 [ 296s] -->> 148.253.96.193:443 (mon-suivi-justice.beta.gouv.fr) <<-- ----------------------------------------------------- -Done testing now all IP addresses (on port 443): 148.253.96.193 185.21.194.105 +Done testing now all IP addresses (on port 443): 185.21.194.105 148.253.96.193 diff --git a/results/aHR0cHM6Ly9tb24tc3VpdmktanVzdGljZS5iZXRhLmdvdXYuZnI=/testssl.json b/results/aHR0cHM6Ly9tb24tc3VpdmktanVzdGljZS5iZXRhLmdvdXYuZnI=/testssl.json index 6cc6274c2d0..73336e02d36 100644 --- a/results/aHR0cHM6Ly9tb24tc3VpdmktanVzdGljZS5iZXRhLmdvdXYuZnI=/testssl.json +++ b/results/aHR0cHM6Ly9tb24tc3VpdmktanVzdGljZS5iZXRhLmdvdXYuZnI=/testssl.json @@ -1,77 +1,77 @@ [ { "id" : "service", - "ip" : "mon-suivi-justice.beta.gouv.fr/148.253.96.193", + "ip" : "mon-suivi-justice.beta.gouv.fr/185.21.194.105", "port" : "443", "severity" : "INFO", "finding" : "HTTP" } , { "id" : "pre_128cipher", - "ip" : "mon-suivi-justice.beta.gouv.fr/148.253.96.193", + "ip" : "mon-suivi-justice.beta.gouv.fr/185.21.194.105", "port" : "443", "severity" : "INFO", "finding" : "No 128 cipher limit bug" } , { "id" : "SSLv2", - "ip" : "mon-suivi-justice.beta.gouv.fr/148.253.96.193", + "ip" : "mon-suivi-justice.beta.gouv.fr/185.21.194.105", "port" : "443", "severity" : "OK", "finding" : "not offered" } , { "id" : "SSLv3", - "ip" : "mon-suivi-justice.beta.gouv.fr/148.253.96.193", + "ip" : "mon-suivi-justice.beta.gouv.fr/185.21.194.105", "port" : "443", "severity" : "OK", "finding" : "not offered" } , { "id" : "TLS1", - "ip" : "mon-suivi-justice.beta.gouv.fr/148.253.96.193", + "ip" : "mon-suivi-justice.beta.gouv.fr/185.21.194.105", "port" : "443", "severity" : "INFO", "finding" : "not offered" } , { "id" : "TLS1_1", - "ip" : "mon-suivi-justice.beta.gouv.fr/148.253.96.193", + "ip" : "mon-suivi-justice.beta.gouv.fr/185.21.194.105", "port" : "443", "severity" : "INFO", "finding" : "not offered" } , { "id" : "TLS1_2", - "ip" : "mon-suivi-justice.beta.gouv.fr/148.253.96.193", + "ip" : "mon-suivi-justice.beta.gouv.fr/185.21.194.105", "port" : "443", "severity" : "OK", "finding" : "offered" } , { "id" : "TLS1_3", - "ip" : "mon-suivi-justice.beta.gouv.fr/148.253.96.193", + "ip" : "mon-suivi-justice.beta.gouv.fr/185.21.194.105", "port" : "443", "severity" : "OK", "finding" : "offered with final" } , { "id" : "ALPN_HTTP2", - "ip" : "mon-suivi-justice.beta.gouv.fr/148.253.96.193", + "ip" : "mon-suivi-justice.beta.gouv.fr/185.21.194.105", "port" : "443", "severity" : "OK", "finding" : "h2" } , { "id" : "ALPN", - "ip" : "mon-suivi-justice.beta.gouv.fr/148.253.96.193", + "ip" : "mon-suivi-justice.beta.gouv.fr/185.21.194.105", "port" : "443", "severity" : "INFO", "finding" : "http/1.1" } , { "id" : "cipherlist_NULL", - "ip" : "mon-suivi-justice.beta.gouv.fr/148.253.96.193", + "ip" : "mon-suivi-justice.beta.gouv.fr/185.21.194.105", "port" : "443", "severity" : "OK", "cwe" : "CWE-327", @@ -79,7 +79,7 @@ } , { "id" : "cipherlist_aNULL", - "ip" : "mon-suivi-justice.beta.gouv.fr/148.253.96.193", + "ip" : "mon-suivi-justice.beta.gouv.fr/185.21.194.105", "port" : "443", "severity" : "OK", "cwe" : "CWE-327", @@ -87,7 +87,7 @@ } , { "id" : "cipherlist_EXPORT", - "ip" : "mon-suivi-justice.beta.gouv.fr/148.253.96.193", + "ip" : "mon-suivi-justice.beta.gouv.fr/185.21.194.105", "port" : "443", "severity" : "OK", "cwe" : "CWE-327", @@ -95,7 +95,7 @@ } , { "id" : "cipherlist_LOW", - "ip" : "mon-suivi-justice.beta.gouv.fr/148.253.96.193", + "ip" : "mon-suivi-justice.beta.gouv.fr/185.21.194.105", "port" : "443", "severity" : "OK", "cwe" : "CWE-327", @@ -103,7 +103,7 @@ } , { "id" : "cipherlist_3DES_IDEA", - "ip" : "mon-suivi-justice.beta.gouv.fr/148.253.96.193", + "ip" : "mon-suivi-justice.beta.gouv.fr/185.21.194.105", "port" : "443", "severity" : "INFO", "cwe" : "CWE-310", @@ -111,7 +111,7 @@ } , { "id" : "cipherlist_AVERAGE", - "ip" : "mon-suivi-justice.beta.gouv.fr/148.253.96.193", + "ip" : "mon-suivi-justice.beta.gouv.fr/185.21.194.105", "port" : "443", "severity" : "LOW", "cwe" : "CWE-310", @@ -119,497 +119,497 @@ } , { "id" : "cipherlist_GOOD", - "ip" : "mon-suivi-justice.beta.gouv.fr/148.253.96.193", + "ip" : "mon-suivi-justice.beta.gouv.fr/185.21.194.105", "port" : "443", "severity" : "INFO", "finding" : "not offered" } , { "id" : "cipherlist_STRONG", - "ip" : "mon-suivi-justice.beta.gouv.fr/148.253.96.193", + "ip" : "mon-suivi-justice.beta.gouv.fr/185.21.194.105", "port" : "443", "severity" : "OK", "finding" : "offered" } , { "id" : "cipher_order", - "ip" : "mon-suivi-justice.beta.gouv.fr/148.253.96.193", + "ip" : "mon-suivi-justice.beta.gouv.fr/185.21.194.105", "port" : "443", "severity" : "OK", "finding" : "server" } , { "id" : "protocol_negotiated", - "ip" : "mon-suivi-justice.beta.gouv.fr/148.253.96.193", + "ip" : "mon-suivi-justice.beta.gouv.fr/185.21.194.105", "port" : "443", "severity" : "OK", "finding" : "Default protocol TLS1.3" } , { "id" : "cipher_negotiated", - "ip" : "mon-suivi-justice.beta.gouv.fr/148.253.96.193", + "ip" : "mon-suivi-justice.beta.gouv.fr/185.21.194.105", "port" : "443", "severity" : "OK", "finding" : "TLS_AES_256_GCM_SHA384, 253 bit ECDH (X25519)" } , { "id" : "cipherorder_TLSv1_2", - "ip" : "mon-suivi-justice.beta.gouv.fr/148.253.96.193", + "ip" : "mon-suivi-justice.beta.gouv.fr/185.21.194.105", "port" : "443", "severity" : "INFO", "finding" : "ECDHE-RSA-AES256-GCM-SHA384" } , { "id" : "FS", - "ip" : "mon-suivi-justice.beta.gouv.fr/148.253.96.193", + "ip" : "mon-suivi-justice.beta.gouv.fr/185.21.194.105", "port" : "443", "severity" : "OK", "finding" : "offered" } , { "id" : "FS_ciphers", - "ip" : "mon-suivi-justice.beta.gouv.fr/148.253.96.193", + "ip" : "mon-suivi-justice.beta.gouv.fr/185.21.194.105", "port" : "443", "severity" : "INFO", "finding" : "DHE-RSA-AES256-GCM-SHA384 ECDHE-RSA-AES128-GCM-SHA256 ECDHE-RSA-AES256-GCM-SHA384 ECDHE-RSA-AES256-SHA384" } , { "id" : "FS_ECDHE_curves", - "ip" : "mon-suivi-justice.beta.gouv.fr/148.253.96.193", + "ip" : "mon-suivi-justice.beta.gouv.fr/185.21.194.105", "port" : "443", "severity" : "OK", "finding" : "prime256v1 secp384r1 secp521r1" } , { "id" : "TLS_extensions", - "ip" : "mon-suivi-justice.beta.gouv.fr/148.253.96.193", + "ip" : "mon-suivi-justice.beta.gouv.fr/185.21.194.105", "port" : "443", "severity" : "INFO", "finding" : "'renegotiation info/#65281' 'server name/#0' 'EC point formats/#11' 'session ticket/#35' 'next protocol/#13172' 'supported versions/#43' 'key share/#51' 'supported_groups/#10' 'max fragment length/#1' 'application layer protocol negotiation/#16' 'encrypt-then-mac/#22' 'extended master secret/#23'" } , { "id" : "TLS_session_ticket", - "ip" : "mon-suivi-justice.beta.gouv.fr/148.253.96.193", + "ip" : "mon-suivi-justice.beta.gouv.fr/185.21.194.105", "port" : "443", "severity" : "INFO", "finding" : "valid for 300 seconds only (= 60 days" + "finding" : "292 >= 60 days" } , { "id" : "cert_notBefore", - "ip" : "mon-suivi-justice.beta.gouv.fr/148.253.96.193", + "ip" : "mon-suivi-justice.beta.gouv.fr/185.21.194.105", "port" : "443", "severity" : "INFO", "finding" : "2021-09-30 00:00" } , { "id" : "cert_notAfter", - "ip" : "mon-suivi-justice.beta.gouv.fr/148.253.96.193", + "ip" : "mon-suivi-justice.beta.gouv.fr/185.21.194.105", "port" : "443", "severity" : "OK", "finding" : "2022-09-30 23:59" } , { "id" : "cert_extlifeSpan", - "ip" : "mon-suivi-justice.beta.gouv.fr/148.253.96.193", + "ip" : "mon-suivi-justice.beta.gouv.fr/185.21.194.105", "port" : "443", "severity" : "OK", "finding" : "certificate has no extended life time according to browser forum" } , { "id" : "cert_eTLS", - "ip" : "mon-suivi-justice.beta.gouv.fr/148.253.96.193", + "ip" : "mon-suivi-justice.beta.gouv.fr/185.21.194.105", "port" : "443", "severity" : "INFO", "finding" : "not present" } , { "id" : "cert_crlDistributionPoints", - "ip" : "mon-suivi-justice.beta.gouv.fr/148.253.96.193", + "ip" : "mon-suivi-justice.beta.gouv.fr/185.21.194.105", "port" : "443", "severity" : "INFO", "finding" : "http://crl.usertrust.com/GandiStandardSSLCA2.crl" } , { "id" : "cert_ocspURL", - "ip" : "mon-suivi-justice.beta.gouv.fr/148.253.96.193", + "ip" : "mon-suivi-justice.beta.gouv.fr/185.21.194.105", "port" : "443", "severity" : "INFO", "finding" : "http://ocsp.usertrust.com" } , { "id" : "OCSP_stapling", - "ip" : "mon-suivi-justice.beta.gouv.fr/148.253.96.193", + "ip" : "mon-suivi-justice.beta.gouv.fr/185.21.194.105", "port" : "443", "severity" : "LOW", "finding" : "not offered" } , { "id" : "cert_mustStapleExtension", - "ip" : "mon-suivi-justice.beta.gouv.fr/148.253.96.193", + "ip" : "mon-suivi-justice.beta.gouv.fr/185.21.194.105", "port" : "443", "severity" : "INFO", "finding" : "--" } , { "id" : "DNS_CAArecord", - "ip" : "mon-suivi-justice.beta.gouv.fr/148.253.96.193", + "ip" : "mon-suivi-justice.beta.gouv.fr/185.21.194.105", "port" : "443", "severity" : "LOW", "finding" : "--" } , { "id" : "certificate_transparency", - "ip" : "mon-suivi-justice.beta.gouv.fr/148.253.96.193", + "ip" : "mon-suivi-justice.beta.gouv.fr/185.21.194.105", "port" : "443", "severity" : "OK", "finding" : "yes (certificate extension)" } , { "id" : "certs_countServer", - "ip" : "mon-suivi-justice.beta.gouv.fr/148.253.96.193", + "ip" : "mon-suivi-justice.beta.gouv.fr/185.21.194.105", "port" : "443", "severity" : "INFO", "finding" : "2" } , { "id" : "certs_list_ordering_problem", - "ip" : "mon-suivi-justice.beta.gouv.fr/148.253.96.193", + "ip" : "mon-suivi-justice.beta.gouv.fr/185.21.194.105", "port" : "443", "severity" : "INFO", "finding" : "no" } , { "id" : "cert_caIssuers", - "ip" : "mon-suivi-justice.beta.gouv.fr/148.253.96.193", + "ip" : "mon-suivi-justice.beta.gouv.fr/185.21.194.105", "port" : "443", "severity" : "INFO", "finding" : "Gandi Standard SSL CA 2 (Gandi from FR)" } , { "id" : "intermediate_cert <#1>", - "ip" : "mon-suivi-justice.beta.gouv.fr/148.253.96.193", + "ip" : "mon-suivi-justice.beta.gouv.fr/185.21.194.105", "port" : "443", "severity" : "INFO", "finding" : "-----BEGIN CERTIFICATE----- MIIF6TCCA9GgAwIBAgIQBeTcO5Q4qzuFl8umoZhQ4zANBgkqhkiG9w0BAQwFADCB iDELMAkGA1UEBhMCVVMxEzARBgNVBAgTCk5ldyBKZXJzZXkxFDASBgNVBAcTC0pl cnNleSBDaXR5MR4wHAYDVQQKExVUaGUgVVNFUlRSVVNUIE5ldHdvcmsxLjAsBgNV BAMTJVVTRVJUcnVzdCBSU0EgQ2VydGlmaWNhdGlvbiBBdXRob3JpdHkwHhcNMTQw OTEyMDAwMDAwWhcNMjQwOTExMjM1OTU5WjBfMQswCQYDVQQGEwJGUjEOMAwGA1UE CBMFUGFyaXMxDjAMBgNVBAcTBVBhcmlzMQ4wDAYDVQQKEwVHYW5kaTEgMB4GA1UE AxMXR2FuZGkgU3RhbmRhcmQgU1NMIENBIDIwggEiMA0GCSqGSIb3DQEBAQUAA4IB DwAwggEKAoIBAQCUBC2meZV0/9UAPPWu2JSxKXzAjwsLibmCg5duNyj1ohrP0pIL m6jTh5RzhBCf3DXLwi2SrCG5yzv8QMHBgyHwv/j2nPqcghDA0I5O5Q1MsJFckLSk QFEW2uSEEi0FXKEfFxkkUap66uEHG4aNAXLy59SDIzme4OFMH2sio7QQZrDtgpbX bmq08j+1QvzdirWrui0dOnWbMdw+naxb00ENbLAb9Tr1eeohovj0M1JLJC0epJmx bUi8uBL+cnB89/sCdfSN3tbawKAyGlLfOGsuRTg/PwSWAP2h9KK71RfWJ3wbWFmV XooS/ZyrgT5SKEhRhWvzkbKGPym1bgNi7tYFAgMBAAGjggF1MIIBcTAfBgNVHSME GDAWgBRTeb9aqitKz1SA4dibwJ3ysgNmyzAdBgNVHQ4EFgQUs5Cn2MmvTs1hPJ98 rV1/Qf1pMOowDgYDVR0PAQH/BAQDAgGGMBIGA1UdEwEB/wQIMAYBAf8CAQAwHQYD VR0lBBYwFAYIKwYBBQUHAwEGCCsGAQUFBwMCMCIGA1UdIAQbMBkwDQYLKwYBBAGy MQECAhowCAYGZ4EMAQIBMFAGA1UdHwRJMEcwRaBDoEGGP2h0dHA6Ly9jcmwudXNl cnRydXN0LmNvbS9VU0VSVHJ1c3RSU0FDZXJ0aWZpY2F0aW9uQXV0aG9yaXR5LmNy bDB2BggrBgEFBQcBAQRqMGgwPwYIKwYBBQUHMAKGM2h0dHA6Ly9jcnQudXNlcnRy dXN0LmNvbS9VU0VSVHJ1c3RSU0FBZGRUcnVzdENBLmNydDAlBggrBgEFBQcwAYYZ aHR0cDovL29jc3AudXNlcnRydXN0LmNvbTANBgkqhkiG9w0BAQwFAAOCAgEAWGf9 crJq13xhlhl+2UNG0SZ9yFP6ZrBrLafTqlb3OojQO3LJUP33WbKqaPWMcwO7lWUX zi8c3ZgTopHJ7qFAbjyY1lzzsiI8Le4bpOHeICQW8owRc5E69vrOJAKHypPstLbI FhfFcvwnQPYT/pOmnVHvPCvYd1ebjGU6NSU2t7WKY28HJ5OxYI2A25bUeo8tqxyI yW5+1mUfr13KFj8oRtygNeX56eXVlogMT8a3d2dIhCe2H7Bo26y/d7CQuKLJHDJd ArolQ4FCR7vY4Y8MDEZf7kYzawMUgtN+zY+vkNaOJH1AQrRqahfGlZfh8jjNp+20 J0CT33KpuMZmYzc4ZCIwojvxuch7yPspOqsactIGEk72gtQjbz7Dk+XYtsDe3CMW 1hMwt6CaDixVBgBwAc/qOR2A24j3pSC4W/0xJmmPLQphgzpHphNULB7j7UTKvGof KA5R2d4On3XNDgOVyvnFqSot/kGkoUeuDcL5OWYzSlvhhChZbH2UF3bkRYKtcCD9 0m9jqNf6oDP6N8v3smWe2lBvP+Sn845dWDKXcCMu5/3EFZucJ48y7RetWIExKREa m9T8bJUox04FB6b9HbwZ4ui3uRGKLXASUoWNjDNKD/yZkuBjcNqllEdjB+dYxzFf BT02Vf6Dsuimrdfp5gJ0iHRc2jTbkNJtUQoj1iM= -----END CERTIFICATE-----" } , { "id" : "intermediate_cert_fingerprintSHA256 <#1>", - "ip" : "mon-suivi-justice.beta.gouv.fr/148.253.96.193", + "ip" : "mon-suivi-justice.beta.gouv.fr/185.21.194.105", "port" : "443", "severity" : "INFO", "finding" : "B9F2164323638DCE0B92218B43C41C1B2B2696389329DB19F5CF7AD49B5CB372" } , { "id" : "intermediate_cert_notBefore <#1>", - "ip" : "mon-suivi-justice.beta.gouv.fr/148.253.96.193", + "ip" : "mon-suivi-justice.beta.gouv.fr/185.21.194.105", "port" : "443", "severity" : "INFO", "finding" : "2014-09-12 00:00" } , { "id" : "intermediate_cert_notAfter <#1>", - "ip" : "mon-suivi-justice.beta.gouv.fr/148.253.96.193", + "ip" : "mon-suivi-justice.beta.gouv.fr/185.21.194.105", "port" : "443", "severity" : "OK", "finding" : "2024-09-11 23:59" } , { "id" : "intermediate_cert_expiration <#1>", - "ip" : "mon-suivi-justice.beta.gouv.fr/148.253.96.193", + "ip" : "mon-suivi-justice.beta.gouv.fr/185.21.194.105", "port" : "443", "severity" : "OK", "finding" : "ok > 40 days" } , { "id" : "intermediate_cert_chain <#1>", - "ip" : "mon-suivi-justice.beta.gouv.fr/148.253.96.193", + "ip" : "mon-suivi-justice.beta.gouv.fr/185.21.194.105", "port" : "443", "severity" : "INFO", "finding" : "Gandi Standard SSL CA 2 <-- USERTrust RSA Certification Authority" } , { "id" : "intermediate_cert_badOCSP", - "ip" : "mon-suivi-justice.beta.gouv.fr/148.253.96.193", + "ip" : "mon-suivi-justice.beta.gouv.fr/185.21.194.105", "port" : "443", "severity" : "OK", "finding" : "intermediate certificate(s) is/are ok" } , { "id" : "HTTP_status_code", - "ip" : "mon-suivi-justice.beta.gouv.fr/148.253.96.193", + "ip" : "mon-suivi-justice.beta.gouv.fr/185.21.194.105", "port" : "443", "severity" : "INFO", "finding" : "200 OK ('/')" } , { "id" : "HTTP_clock_skew", - "ip" : "mon-suivi-justice.beta.gouv.fr/148.253.96.193", + "ip" : "mon-suivi-justice.beta.gouv.fr/185.21.194.105", "port" : "443", "severity" : "INFO", "finding" : "0 seconds from localtime" } , { "id" : "HSTS_time", - "ip" : "mon-suivi-justice.beta.gouv.fr/148.253.96.193", + "ip" : "mon-suivi-justice.beta.gouv.fr/185.21.194.105", "port" : "443", "severity" : "OK", "finding" : "365 days (=31536000 seconds) > 15552000 seconds" } , { "id" : "HSTS_subdomains", - "ip" : "mon-suivi-justice.beta.gouv.fr/148.253.96.193", + "ip" : "mon-suivi-justice.beta.gouv.fr/185.21.194.105", "port" : "443", "severity" : "INFO", "finding" : "only for this domain" } , { "id" : "HSTS_preload", - "ip" : "mon-suivi-justice.beta.gouv.fr/148.253.96.193", + "ip" : "mon-suivi-justice.beta.gouv.fr/185.21.194.105", "port" : "443", "severity" : "INFO", "finding" : "domain is NOT marked for preloading" } , { "id" : "HPKP", - "ip" : "mon-suivi-justice.beta.gouv.fr/148.253.96.193", + "ip" : "mon-suivi-justice.beta.gouv.fr/185.21.194.105", "port" : "443", "severity" : "INFO", "finding" : "No support for HTTP Public Key Pinning" } , { "id" : "banner_server", - "ip" : "mon-suivi-justice.beta.gouv.fr/148.253.96.193", + "ip" : "mon-suivi-justice.beta.gouv.fr/185.21.194.105", "port" : "443", "severity" : "INFO", "finding" : "openresty" } , { "id" : "banner_application", - "ip" : "mon-suivi-justice.beta.gouv.fr/148.253.96.193", + "ip" : "mon-suivi-justice.beta.gouv.fr/185.21.194.105", "port" : "443", "severity" : "INFO", "finding" : "No application banner found" } , { "id" : "cookie_count", - "ip" : "mon-suivi-justice.beta.gouv.fr/148.253.96.193", + "ip" : "mon-suivi-justice.beta.gouv.fr/185.21.194.105", "port" : "443", "severity" : "INFO", "finding" : "1 at '/'" } , { "id" : "cookie_secure", - "ip" : "mon-suivi-justice.beta.gouv.fr/148.253.96.193", + "ip" : "mon-suivi-justice.beta.gouv.fr/185.21.194.105", "port" : "443", "severity" : "INFO", "finding" : "0/1 at '/' marked as secure" } , { "id" : "cookie_httponly", - "ip" : "mon-suivi-justice.beta.gouv.fr/148.253.96.193", + "ip" : "mon-suivi-justice.beta.gouv.fr/185.21.194.105", "port" : "443", "severity" : "OK", "finding" : "All (1) at '/' marked as HttpOnly" } , { "id" : "X-Frame-Options", - "ip" : "mon-suivi-justice.beta.gouv.fr/148.253.96.193", + "ip" : "mon-suivi-justice.beta.gouv.fr/185.21.194.105", "port" : "443", "severity" : "OK", "finding" : "SAMEORIGIN" } , { "id" : "X-Content-Type-Options", - "ip" : "mon-suivi-justice.beta.gouv.fr/148.253.96.193", + "ip" : "mon-suivi-justice.beta.gouv.fr/185.21.194.105", "port" : "443", "severity" : "OK", "finding" : "nosniff" } , { "id" : "X-XSS-Protection", - "ip" : "mon-suivi-justice.beta.gouv.fr/148.253.96.193", + "ip" : "mon-suivi-justice.beta.gouv.fr/185.21.194.105", "port" : "443", "severity" : "INFO", "finding" : "1; mode=block" } , { "id" : "Referrer-Policy", - "ip" : "mon-suivi-justice.beta.gouv.fr/148.253.96.193", + "ip" : "mon-suivi-justice.beta.gouv.fr/185.21.194.105", "port" : "443", "severity" : "INFO", "finding" : "strict-origin-when-cross-origin" } , { "id" : "Cache-Control", - "ip" : "mon-suivi-justice.beta.gouv.fr/148.253.96.193", + "ip" : "mon-suivi-justice.beta.gouv.fr/185.21.194.105", "port" : "443", "severity" : "INFO", "finding" : "max-age=0, private, must-revalidate" } , { "id" : "banner_reverseproxy", - "ip" : "mon-suivi-justice.beta.gouv.fr/148.253.96.193", + "ip" : "mon-suivi-justice.beta.gouv.fr/185.21.194.105", "port" : "443", "severity" : "INFO", "cwe" : "CWE-200", @@ -617,7 +617,7 @@ } , { "id" : "heartbleed", - "ip" : "mon-suivi-justice.beta.gouv.fr/148.253.96.193", + "ip" : "mon-suivi-justice.beta.gouv.fr/185.21.194.105", "port" : "443", "severity" : "OK", "cve" : "CVE-2014-0160", @@ -626,7 +626,7 @@ } , { "id" : "CCS", - "ip" : "mon-suivi-justice.beta.gouv.fr/148.253.96.193", + "ip" : "mon-suivi-justice.beta.gouv.fr/185.21.194.105", "port" : "443", "severity" : "OK", "cve" : "CVE-2014-0224", @@ -635,7 +635,7 @@ } , { "id" : "ticketbleed", - "ip" : "mon-suivi-justice.beta.gouv.fr/148.253.96.193", + "ip" : "mon-suivi-justice.beta.gouv.fr/185.21.194.105", "port" : "443", "severity" : "OK", "cve" : "CVE-2016-9244", @@ -644,7 +644,7 @@ } , { "id" : "ROBOT", - "ip" : "mon-suivi-justice.beta.gouv.fr/148.253.96.193", + "ip" : "mon-suivi-justice.beta.gouv.fr/185.21.194.105", "port" : "443", "severity" : "OK", "cve" : "CVE-2017-17382 CVE-2017-17427 CVE-2017-17428 CVE-2017-13098 CVE-2017-1000385 CVE-2017-13099 CVE-2016-6883 CVE-2012-5081 CVE-2017-6168", @@ -653,7 +653,7 @@ } , { "id" : "secure_renego", - "ip" : "mon-suivi-justice.beta.gouv.fr/148.253.96.193", + "ip" : "mon-suivi-justice.beta.gouv.fr/185.21.194.105", "port" : "443", "severity" : "OK", "cwe" : "CWE-310", @@ -661,7 +661,7 @@ } , { "id" : "secure_client_renego", - "ip" : "mon-suivi-justice.beta.gouv.fr/148.253.96.193", + "ip" : "mon-suivi-justice.beta.gouv.fr/185.21.194.105", "port" : "443", "severity" : "OK", "cve" : "CVE-2011-1473", @@ -670,7 +670,7 @@ } , { "id" : "CRIME_TLS", - "ip" : "mon-suivi-justice.beta.gouv.fr/148.253.96.193", + "ip" : "mon-suivi-justice.beta.gouv.fr/185.21.194.105", "port" : "443", "severity" : "OK", "cve" : "CVE-2012-4929", @@ -679,7 +679,7 @@ } , { "id" : "BREACH", - "ip" : "mon-suivi-justice.beta.gouv.fr/148.253.96.193", + "ip" : "mon-suivi-justice.beta.gouv.fr/185.21.194.105", "port" : "443", "severity" : "MEDIUM", "cve" : "CVE-2013-3587", @@ -688,7 +688,7 @@ } , { "id" : "POODLE_SSL", - "ip" : "mon-suivi-justice.beta.gouv.fr/148.253.96.193", + "ip" : "mon-suivi-justice.beta.gouv.fr/185.21.194.105", "port" : "443", "severity" : "OK", "cve" : "CVE-2014-3566", @@ -697,14 +697,14 @@ } , { "id" : "fallback_SCSV", - "ip" : "mon-suivi-justice.beta.gouv.fr/148.253.96.193", + "ip" : "mon-suivi-justice.beta.gouv.fr/185.21.194.105", "port" : "443", "severity" : "OK", "finding" : "no protocol below TLS 1.2 offered" } , { "id" : "SWEET32", - "ip" : "mon-suivi-justice.beta.gouv.fr/148.253.96.193", + "ip" : "mon-suivi-justice.beta.gouv.fr/185.21.194.105", "port" : "443", "severity" : "OK", "cve" : "CVE-2016-2183 CVE-2016-6329", @@ -713,7 +713,7 @@ } , { "id" : "FREAK", - "ip" : "mon-suivi-justice.beta.gouv.fr/148.253.96.193", + "ip" : "mon-suivi-justice.beta.gouv.fr/185.21.194.105", "port" : "443", "severity" : "OK", "cve" : "CVE-2015-0204", @@ -722,7 +722,7 @@ } , { "id" : "DROWN", - "ip" : "mon-suivi-justice.beta.gouv.fr/148.253.96.193", + "ip" : "mon-suivi-justice.beta.gouv.fr/185.21.194.105", "port" : "443", "severity" : "OK", "cve" : "CVE-2016-0800 CVE-2016-0703", @@ -731,7 +731,7 @@ } , { "id" : "DROWN_hint", - "ip" : "mon-suivi-justice.beta.gouv.fr/148.253.96.193", + "ip" : "mon-suivi-justice.beta.gouv.fr/185.21.194.105", "port" : "443", "severity" : "INFO", "cve" : "CVE-2016-0800 CVE-2016-0703", @@ -740,7 +740,7 @@ } , { "id" : "LOGJAM", - "ip" : "mon-suivi-justice.beta.gouv.fr/148.253.96.193", + "ip" : "mon-suivi-justice.beta.gouv.fr/185.21.194.105", "port" : "443", "severity" : "OK", "cve" : "CVE-2015-4000", @@ -749,7 +749,7 @@ } , { "id" : "LOGJAM-common_primes", - "ip" : "mon-suivi-justice.beta.gouv.fr/148.253.96.193", + "ip" : "mon-suivi-justice.beta.gouv.fr/185.21.194.105", "port" : "443", "severity" : "OK", "cve" : "CVE-2015-4000", @@ -758,7 +758,7 @@ } , { "id" : "BEAST", - "ip" : "mon-suivi-justice.beta.gouv.fr/148.253.96.193", + "ip" : "mon-suivi-justice.beta.gouv.fr/185.21.194.105", "port" : "443", "severity" : "OK", "cve" : "CVE-2011-3389", @@ -767,7 +767,7 @@ } , { "id" : "LUCKY13", - "ip" : "mon-suivi-justice.beta.gouv.fr/148.253.96.193", + "ip" : "mon-suivi-justice.beta.gouv.fr/185.21.194.105", "port" : "443", "severity" : "LOW", "cve" : "CVE-2013-0169", @@ -776,7 +776,7 @@ } , { "id" : "winshock", - "ip" : "mon-suivi-justice.beta.gouv.fr/148.253.96.193", + "ip" : "mon-suivi-justice.beta.gouv.fr/185.21.194.105", "port" : "443", "severity" : "OK", "cve" : "CVE-2014-6321", @@ -785,7 +785,7 @@ } , { "id" : "RC4", - "ip" : "mon-suivi-justice.beta.gouv.fr/148.253.96.193", + "ip" : "mon-suivi-justice.beta.gouv.fr/185.21.194.105", "port" : "443", "severity" : "OK", "cve" : "CVE-2013-2566 CVE-2015-2808", @@ -794,399 +794,399 @@ } , { "id" : "clientsimulation-android_442", - "ip" : "mon-suivi-justice.beta.gouv.fr/148.253.96.193", + "ip" : "mon-suivi-justice.beta.gouv.fr/185.21.194.105", "port" : "443", "severity" : "INFO", "finding" : "TLSv1.2 ECDHE-RSA-AES256-GCM-SHA384" } , { "id" : "clientsimulation-android_500", - "ip" : "mon-suivi-justice.beta.gouv.fr/148.253.96.193", + "ip" : "mon-suivi-justice.beta.gouv.fr/185.21.194.105", "port" : "443", "severity" : "INFO", "finding" : "TLSv1.2 ECDHE-RSA-AES128-GCM-SHA256" } , { "id" : "clientsimulation-android_60", - "ip" : "mon-suivi-justice.beta.gouv.fr/148.253.96.193", + "ip" : "mon-suivi-justice.beta.gouv.fr/185.21.194.105", "port" : "443", "severity" : "INFO", "finding" : "TLSv1.2 ECDHE-RSA-AES128-GCM-SHA256" } , { "id" : "clientsimulation-android_70", - "ip" : "mon-suivi-justice.beta.gouv.fr/148.253.96.193", + "ip" : "mon-suivi-justice.beta.gouv.fr/185.21.194.105", "port" : "443", "severity" : "INFO", "finding" : "TLSv1.2 ECDHE-RSA-AES256-GCM-SHA384" } , { "id" : "clientsimulation-android_81", - "ip" : "mon-suivi-justice.beta.gouv.fr/148.253.96.193", + "ip" : "mon-suivi-justice.beta.gouv.fr/185.21.194.105", "port" : "443", "severity" : "INFO", "finding" : "TLSv1.2 ECDHE-RSA-AES256-GCM-SHA384" } , { "id" : "clientsimulation-android_90", - "ip" : "mon-suivi-justice.beta.gouv.fr/148.253.96.193", + "ip" : "mon-suivi-justice.beta.gouv.fr/185.21.194.105", "port" : "443", "severity" : "INFO", "finding" : "TLSv1.3 TLS_AES_256_GCM_SHA384" } , { "id" : "clientsimulation-android_X", - "ip" : "mon-suivi-justice.beta.gouv.fr/148.253.96.193", + "ip" : "mon-suivi-justice.beta.gouv.fr/185.21.194.105", "port" : "443", "severity" : "INFO", "finding" : "TLSv1.3 TLS_AES_256_GCM_SHA384" } , { "id" : "clientsimulation-chrome_74_win10", - "ip" : "mon-suivi-justice.beta.gouv.fr/148.253.96.193", + "ip" : "mon-suivi-justice.beta.gouv.fr/185.21.194.105", "port" : "443", "severity" : "INFO", "finding" : "TLSv1.3 TLS_AES_256_GCM_SHA384" } , { "id" : "clientsimulation-chrome_79_win10", - "ip" : "mon-suivi-justice.beta.gouv.fr/148.253.96.193", + "ip" : "mon-suivi-justice.beta.gouv.fr/185.21.194.105", "port" : "443", "severity" : "INFO", "finding" : "TLSv1.3 TLS_AES_256_GCM_SHA384" } , { "id" : "clientsimulation-firefox_66_win81", - "ip" : "mon-suivi-justice.beta.gouv.fr/148.253.96.193", + "ip" : "mon-suivi-justice.beta.gouv.fr/185.21.194.105", "port" : "443", "severity" : "INFO", "finding" : "TLSv1.3 TLS_AES_256_GCM_SHA384" } , { "id" : "clientsimulation-firefox_71_win10", - "ip" : "mon-suivi-justice.beta.gouv.fr/148.253.96.193", + "ip" : "mon-suivi-justice.beta.gouv.fr/185.21.194.105", "port" : "443", "severity" : "INFO", "finding" : "TLSv1.3 TLS_AES_256_GCM_SHA384" } , { "id" : "clientsimulation-ie_6_xp", - "ip" : "mon-suivi-justice.beta.gouv.fr/148.253.96.193", + "ip" : "mon-suivi-justice.beta.gouv.fr/185.21.194.105", "port" : "443", "severity" : "INFO", "finding" : "No connection" } , { "id" : "clientsimulation-ie_8_win7", - "ip" : "mon-suivi-justice.beta.gouv.fr/148.253.96.193", + "ip" : "mon-suivi-justice.beta.gouv.fr/185.21.194.105", "port" : "443", "severity" : "INFO", "finding" : "No connection" } , { "id" : "clientsimulation-ie_8_xp", - "ip" : "mon-suivi-justice.beta.gouv.fr/148.253.96.193", + "ip" : "mon-suivi-justice.beta.gouv.fr/185.21.194.105", "port" : "443", "severity" : "INFO", "finding" : "No connection" } , { "id" : "clientsimulation-ie_11_win7", - "ip" : "mon-suivi-justice.beta.gouv.fr/148.253.96.193", + "ip" : "mon-suivi-justice.beta.gouv.fr/185.21.194.105", "port" : "443", "severity" : "INFO", "finding" : "TLSv1.2 DHE-RSA-AES256-GCM-SHA384" } , { "id" : "clientsimulation-ie_11_win81", - "ip" : "mon-suivi-justice.beta.gouv.fr/148.253.96.193", + "ip" : "mon-suivi-justice.beta.gouv.fr/185.21.194.105", "port" : "443", "severity" : "INFO", "finding" : "TLSv1.2 DHE-RSA-AES256-GCM-SHA384" } , { "id" : "clientsimulation-ie_11_winphone81", - "ip" : "mon-suivi-justice.beta.gouv.fr/148.253.96.193", + "ip" : "mon-suivi-justice.beta.gouv.fr/185.21.194.105", "port" : "443", "severity" : "INFO", "finding" : "No connection" } , { "id" : "clientsimulation-ie_11_win10", - "ip" : "mon-suivi-justice.beta.gouv.fr/148.253.96.193", + "ip" : "mon-suivi-justice.beta.gouv.fr/185.21.194.105", "port" : "443", "severity" : "INFO", "finding" : "TLSv1.2 ECDHE-RSA-AES256-GCM-SHA384" } , { "id" : "clientsimulation-edge_15_win10", - "ip" : "mon-suivi-justice.beta.gouv.fr/148.253.96.193", + "ip" : "mon-suivi-justice.beta.gouv.fr/185.21.194.105", "port" : "443", "severity" : "INFO", "finding" : "TLSv1.2 ECDHE-RSA-AES256-GCM-SHA384" } , { "id" : "clientsimulation-edge_17_win10", - "ip" : "mon-suivi-justice.beta.gouv.fr/148.253.96.193", + "ip" : "mon-suivi-justice.beta.gouv.fr/185.21.194.105", "port" : "443", "severity" : "INFO", "finding" : "TLSv1.2 ECDHE-RSA-AES256-GCM-SHA384" } , { "id" : "clientsimulation-opera_66_win10", - "ip" : "mon-suivi-justice.beta.gouv.fr/148.253.96.193", + "ip" : "mon-suivi-justice.beta.gouv.fr/185.21.194.105", "port" : "443", "severity" : "INFO", "finding" : "TLSv1.3 TLS_AES_256_GCM_SHA384" } , { "id" : "clientsimulation-safari_9_ios9", - "ip" : "mon-suivi-justice.beta.gouv.fr/148.253.96.193", + "ip" : "mon-suivi-justice.beta.gouv.fr/185.21.194.105", "port" : "443", "severity" : "INFO", "finding" : "TLSv1.2 ECDHE-RSA-AES256-GCM-SHA384" } , { "id" : "clientsimulation-safari_9_osx1011", - "ip" : "mon-suivi-justice.beta.gouv.fr/148.253.96.193", + "ip" : "mon-suivi-justice.beta.gouv.fr/185.21.194.105", "port" : "443", "severity" : "INFO", "finding" : "TLSv1.2 ECDHE-RSA-AES256-GCM-SHA384" } , { "id" : "clientsimulation-safari_10_osx1012", - "ip" : "mon-suivi-justice.beta.gouv.fr/148.253.96.193", + "ip" : "mon-suivi-justice.beta.gouv.fr/185.21.194.105", "port" : "443", "severity" : "INFO", "finding" : "TLSv1.2 ECDHE-RSA-AES256-GCM-SHA384" } , { "id" : "clientsimulation-safari_121_ios_122", - "ip" : "mon-suivi-justice.beta.gouv.fr/148.253.96.193", + "ip" : "mon-suivi-justice.beta.gouv.fr/185.21.194.105", "port" : "443", "severity" : "INFO", "finding" : "TLSv1.3 TLS_AES_256_GCM_SHA384" } , { "id" : "clientsimulation-safari_130_osx_10146", - "ip" : "mon-suivi-justice.beta.gouv.fr/148.253.96.193", + "ip" : "mon-suivi-justice.beta.gouv.fr/185.21.194.105", "port" : "443", "severity" : "INFO", "finding" : "TLSv1.3 TLS_AES_256_GCM_SHA384" } , { "id" : "clientsimulation-apple_ats_9_ios9", - "ip" : "mon-suivi-justice.beta.gouv.fr/148.253.96.193", + "ip" : "mon-suivi-justice.beta.gouv.fr/185.21.194.105", "port" : "443", "severity" : "INFO", "finding" : "TLSv1.2 ECDHE-RSA-AES256-GCM-SHA384" } , { "id" : "clientsimulation-java_6u45", - "ip" : "mon-suivi-justice.beta.gouv.fr/148.253.96.193", + "ip" : "mon-suivi-justice.beta.gouv.fr/185.21.194.105", "port" : "443", "severity" : "INFO", "finding" : "No connection" } , { "id" : "clientsimulation-java_7u25", - "ip" : "mon-suivi-justice.beta.gouv.fr/148.253.96.193", + "ip" : "mon-suivi-justice.beta.gouv.fr/185.21.194.105", "port" : "443", "severity" : "INFO", "finding" : "No connection" } , { "id" : "clientsimulation-java_8u161", - "ip" : "mon-suivi-justice.beta.gouv.fr/148.253.96.193", + "ip" : "mon-suivi-justice.beta.gouv.fr/185.21.194.105", "port" : "443", "severity" : "INFO", "finding" : "TLSv1.2 ECDHE-RSA-AES256-GCM-SHA384" } , { "id" : "clientsimulation-java1102", - "ip" : "mon-suivi-justice.beta.gouv.fr/148.253.96.193", + "ip" : "mon-suivi-justice.beta.gouv.fr/185.21.194.105", "port" : "443", "severity" : "INFO", "finding" : "TLSv1.3 TLS_AES_256_GCM_SHA384" } , { "id" : "clientsimulation-java1201", - "ip" : "mon-suivi-justice.beta.gouv.fr/148.253.96.193", + "ip" : "mon-suivi-justice.beta.gouv.fr/185.21.194.105", "port" : "443", "severity" : "INFO", "finding" : "TLSv1.3 TLS_AES_256_GCM_SHA384" } , { "id" : "clientsimulation-openssl_102e", - "ip" : "mon-suivi-justice.beta.gouv.fr/148.253.96.193", + "ip" : "mon-suivi-justice.beta.gouv.fr/185.21.194.105", "port" : "443", "severity" : "INFO", "finding" : "TLSv1.2 ECDHE-RSA-AES256-GCM-SHA384" } , { "id" : "clientsimulation-openssl_110l", - "ip" : "mon-suivi-justice.beta.gouv.fr/148.253.96.193", + "ip" : "mon-suivi-justice.beta.gouv.fr/185.21.194.105", "port" : "443", "severity" : "INFO", "finding" : "TLSv1.2 ECDHE-RSA-AES256-GCM-SHA384" } , { "id" : "clientsimulation-openssl_111d", - "ip" : "mon-suivi-justice.beta.gouv.fr/148.253.96.193", + "ip" : "mon-suivi-justice.beta.gouv.fr/185.21.194.105", "port" : "443", "severity" : "INFO", "finding" : "TLSv1.3 TLS_AES_256_GCM_SHA384" } , { "id" : "clientsimulation-thunderbird_68_3_1", - "ip" : "mon-suivi-justice.beta.gouv.fr/148.253.96.193", + "ip" : "mon-suivi-justice.beta.gouv.fr/185.21.194.105", "port" : "443", "severity" : "INFO", "finding" : "TLSv1.3 TLS_AES_256_GCM_SHA384" } , { "id" : "rating_spec", - "ip" : "mon-suivi-justice.beta.gouv.fr/148.253.96.193", + "ip" : "mon-suivi-justice.beta.gouv.fr/185.21.194.105", "port" : "443", "severity" : "INFO", "finding" : "SSL Labs's 'SSL Server Rating Guide' (version 2009q from 2020-01-30)" } , { "id" : "rating_doc", - "ip" : "mon-suivi-justice.beta.gouv.fr/148.253.96.193", + "ip" : "mon-suivi-justice.beta.gouv.fr/185.21.194.105", "port" : "443", "severity" : "INFO", "finding" : "https://github.com/ssllabs/research/wiki/SSL-Server-Rating-Guide" } , { "id" : "protocol_support_score", - "ip" : "mon-suivi-justice.beta.gouv.fr/148.253.96.193", + "ip" : "mon-suivi-justice.beta.gouv.fr/185.21.194.105", "port" : "443", "severity" : "INFO", "finding" : "100" } , { "id" : "protocol_support_score_weighted", - "ip" : "mon-suivi-justice.beta.gouv.fr/148.253.96.193", + "ip" : "mon-suivi-justice.beta.gouv.fr/185.21.194.105", "port" : "443", "severity" : "INFO", "finding" : "30" } , { "id" : "key_exchange_score", - "ip" : "mon-suivi-justice.beta.gouv.fr/148.253.96.193", + "ip" : "mon-suivi-justice.beta.gouv.fr/185.21.194.105", "port" : "443", "severity" : "INFO", "finding" : "90" } , { "id" : "key_exchange_score_weighted", - "ip" : "mon-suivi-justice.beta.gouv.fr/148.253.96.193", + "ip" : "mon-suivi-justice.beta.gouv.fr/185.21.194.105", "port" : "443", "severity" : "INFO", "finding" : "27" } , { "id" : "cipher_strength_score", - "ip" : "mon-suivi-justice.beta.gouv.fr/148.253.96.193", + "ip" : "mon-suivi-justice.beta.gouv.fr/185.21.194.105", "port" : "443", "severity" : "INFO", "finding" : "60" } , { "id" : "cipher_strength_score_weighted", - "ip" : "mon-suivi-justice.beta.gouv.fr/148.253.96.193", + "ip" : "mon-suivi-justice.beta.gouv.fr/185.21.194.105", "port" : "443", "severity" : "INFO", "finding" : "24" } , { "id" : "final_score", - "ip" : "mon-suivi-justice.beta.gouv.fr/148.253.96.193", + "ip" : "mon-suivi-justice.beta.gouv.fr/185.21.194.105", "port" : "443", "severity" : "INFO", "finding" : "81" } , { "id" : "overall_grade", - "ip" : "mon-suivi-justice.beta.gouv.fr/148.253.96.193", + "ip" : "mon-suivi-justice.beta.gouv.fr/185.21.194.105", "port" : "443", "severity" : "OK", "finding" : "A+" } , { "id" : "service", - "ip" : "mon-suivi-justice.beta.gouv.fr/185.21.194.105", + "ip" : "mon-suivi-justice.beta.gouv.fr/148.253.96.193", "port" : "443", "severity" : "INFO", "finding" : "HTTP" } , { "id" : "pre_128cipher", - "ip" : "mon-suivi-justice.beta.gouv.fr/185.21.194.105", + "ip" : "mon-suivi-justice.beta.gouv.fr/148.253.96.193", "port" : "443", "severity" : "INFO", "finding" : "No 128 cipher limit bug" } , { "id" : "SSLv2", - "ip" : "mon-suivi-justice.beta.gouv.fr/185.21.194.105", + "ip" : "mon-suivi-justice.beta.gouv.fr/148.253.96.193", "port" : "443", "severity" : "OK", "finding" : "not offered" } , { "id" : "SSLv3", - "ip" : "mon-suivi-justice.beta.gouv.fr/185.21.194.105", + "ip" : "mon-suivi-justice.beta.gouv.fr/148.253.96.193", "port" : "443", "severity" : "OK", "finding" : "not offered" } , { "id" : "TLS1", - "ip" : "mon-suivi-justice.beta.gouv.fr/185.21.194.105", + "ip" : "mon-suivi-justice.beta.gouv.fr/148.253.96.193", "port" : "443", "severity" : "INFO", "finding" : "not offered" } , { "id" : "TLS1_1", - "ip" : "mon-suivi-justice.beta.gouv.fr/185.21.194.105", + "ip" : "mon-suivi-justice.beta.gouv.fr/148.253.96.193", "port" : "443", "severity" : "INFO", "finding" : "not offered" } , { "id" : "TLS1_2", - "ip" : "mon-suivi-justice.beta.gouv.fr/185.21.194.105", + "ip" : "mon-suivi-justice.beta.gouv.fr/148.253.96.193", "port" : "443", "severity" : "OK", "finding" : "offered" } , { "id" : "TLS1_3", - "ip" : "mon-suivi-justice.beta.gouv.fr/185.21.194.105", + "ip" : "mon-suivi-justice.beta.gouv.fr/148.253.96.193", "port" : "443", "severity" : "OK", "finding" : "offered with final" } , { "id" : "ALPN_HTTP2", - "ip" : "mon-suivi-justice.beta.gouv.fr/185.21.194.105", + "ip" : "mon-suivi-justice.beta.gouv.fr/148.253.96.193", "port" : "443", "severity" : "OK", "finding" : "h2" } , { "id" : "ALPN", - "ip" : "mon-suivi-justice.beta.gouv.fr/185.21.194.105", + "ip" : "mon-suivi-justice.beta.gouv.fr/148.253.96.193", "port" : "443", "severity" : "INFO", "finding" : "http/1.1" } , { "id" : "cipherlist_NULL", - "ip" : "mon-suivi-justice.beta.gouv.fr/185.21.194.105", + "ip" : "mon-suivi-justice.beta.gouv.fr/148.253.96.193", "port" : "443", "severity" : "OK", "cwe" : "CWE-327", @@ -1194,7 +1194,7 @@ } , { "id" : "cipherlist_aNULL", - "ip" : "mon-suivi-justice.beta.gouv.fr/185.21.194.105", + "ip" : "mon-suivi-justice.beta.gouv.fr/148.253.96.193", "port" : "443", "severity" : "OK", "cwe" : "CWE-327", @@ -1202,7 +1202,7 @@ } , { "id" : "cipherlist_EXPORT", - "ip" : "mon-suivi-justice.beta.gouv.fr/185.21.194.105", + "ip" : "mon-suivi-justice.beta.gouv.fr/148.253.96.193", "port" : "443", "severity" : "OK", "cwe" : "CWE-327", @@ -1210,7 +1210,7 @@ } , { "id" : "cipherlist_LOW", - "ip" : "mon-suivi-justice.beta.gouv.fr/185.21.194.105", + "ip" : "mon-suivi-justice.beta.gouv.fr/148.253.96.193", "port" : "443", "severity" : "OK", "cwe" : "CWE-327", @@ -1218,7 +1218,7 @@ } , { "id" : "cipherlist_3DES_IDEA", - "ip" : "mon-suivi-justice.beta.gouv.fr/185.21.194.105", + "ip" : "mon-suivi-justice.beta.gouv.fr/148.253.96.193", "port" : "443", "severity" : "INFO", "cwe" : "CWE-310", @@ -1226,7 +1226,7 @@ } , { "id" : "cipherlist_AVERAGE", - "ip" : "mon-suivi-justice.beta.gouv.fr/185.21.194.105", + "ip" : "mon-suivi-justice.beta.gouv.fr/148.253.96.193", "port" : "443", "severity" : "LOW", "cwe" : "CWE-310", @@ -1234,497 +1234,497 @@ } , { "id" : "cipherlist_GOOD", - "ip" : "mon-suivi-justice.beta.gouv.fr/185.21.194.105", + "ip" : "mon-suivi-justice.beta.gouv.fr/148.253.96.193", "port" : "443", "severity" : "INFO", "finding" : "not offered" } , { "id" : "cipherlist_STRONG", - "ip" : "mon-suivi-justice.beta.gouv.fr/185.21.194.105", + "ip" : "mon-suivi-justice.beta.gouv.fr/148.253.96.193", "port" : "443", "severity" : "OK", "finding" : "offered" } , { "id" : "cipher_order", - "ip" : "mon-suivi-justice.beta.gouv.fr/185.21.194.105", + "ip" : "mon-suivi-justice.beta.gouv.fr/148.253.96.193", "port" : "443", "severity" : "OK", "finding" : "server" } , { "id" : "protocol_negotiated", - "ip" : "mon-suivi-justice.beta.gouv.fr/185.21.194.105", + "ip" : "mon-suivi-justice.beta.gouv.fr/148.253.96.193", "port" : "443", "severity" : "OK", "finding" : "Default protocol TLS1.3" } , { "id" : "cipher_negotiated", - "ip" : "mon-suivi-justice.beta.gouv.fr/185.21.194.105", + "ip" : "mon-suivi-justice.beta.gouv.fr/148.253.96.193", "port" : "443", "severity" : "OK", "finding" : "TLS_AES_256_GCM_SHA384, 253 bit ECDH (X25519)" } , { "id" : "cipherorder_TLSv1_2", - "ip" : "mon-suivi-justice.beta.gouv.fr/185.21.194.105", + "ip" : "mon-suivi-justice.beta.gouv.fr/148.253.96.193", "port" : "443", "severity" : "INFO", "finding" : "ECDHE-RSA-AES256-GCM-SHA384" } , { "id" : "FS", - "ip" : "mon-suivi-justice.beta.gouv.fr/185.21.194.105", + "ip" : "mon-suivi-justice.beta.gouv.fr/148.253.96.193", "port" : "443", "severity" : "OK", "finding" : "offered" } , { "id" : "FS_ciphers", - "ip" : "mon-suivi-justice.beta.gouv.fr/185.21.194.105", + "ip" : "mon-suivi-justice.beta.gouv.fr/148.253.96.193", "port" : "443", "severity" : "INFO", "finding" : "DHE-RSA-AES256-GCM-SHA384 ECDHE-RSA-AES128-GCM-SHA256 ECDHE-RSA-AES256-GCM-SHA384 ECDHE-RSA-AES256-SHA384" } , { "id" : "FS_ECDHE_curves", - "ip" : "mon-suivi-justice.beta.gouv.fr/185.21.194.105", + "ip" : "mon-suivi-justice.beta.gouv.fr/148.253.96.193", "port" : "443", "severity" : "OK", "finding" : "prime256v1 secp384r1 secp521r1" } , { "id" : "TLS_extensions", - "ip" : "mon-suivi-justice.beta.gouv.fr/185.21.194.105", + "ip" : "mon-suivi-justice.beta.gouv.fr/148.253.96.193", "port" : "443", "severity" : "INFO", "finding" : "'renegotiation info/#65281' 'server name/#0' 'EC point formats/#11' 'session ticket/#35' 'next protocol/#13172' 'supported versions/#43' 'key share/#51' 'supported_groups/#10' 'max fragment length/#1' 'application layer protocol negotiation/#16' 'encrypt-then-mac/#22' 'extended master secret/#23'" } , { "id" : "TLS_session_ticket", - "ip" : "mon-suivi-justice.beta.gouv.fr/185.21.194.105", + "ip" : "mon-suivi-justice.beta.gouv.fr/148.253.96.193", "port" : "443", "severity" : "INFO", "finding" : "valid for 300 seconds only (= 60 days" + "finding" : "292 >= 60 days" } , { "id" : "cert_notBefore", - "ip" : "mon-suivi-justice.beta.gouv.fr/185.21.194.105", + "ip" : "mon-suivi-justice.beta.gouv.fr/148.253.96.193", "port" : "443", "severity" : "INFO", "finding" : "2021-09-30 00:00" } , { "id" : "cert_notAfter", - "ip" : "mon-suivi-justice.beta.gouv.fr/185.21.194.105", + "ip" : "mon-suivi-justice.beta.gouv.fr/148.253.96.193", "port" : "443", "severity" : "OK", "finding" : "2022-09-30 23:59" } , { "id" : "cert_extlifeSpan", - "ip" : "mon-suivi-justice.beta.gouv.fr/185.21.194.105", + "ip" : "mon-suivi-justice.beta.gouv.fr/148.253.96.193", "port" : "443", "severity" : "OK", "finding" : "certificate has no extended life time according to browser forum" } , { "id" : "cert_eTLS", - "ip" : "mon-suivi-justice.beta.gouv.fr/185.21.194.105", + "ip" : "mon-suivi-justice.beta.gouv.fr/148.253.96.193", "port" : "443", "severity" : "INFO", "finding" : "not present" } , { "id" : "cert_crlDistributionPoints", - "ip" : "mon-suivi-justice.beta.gouv.fr/185.21.194.105", + "ip" : "mon-suivi-justice.beta.gouv.fr/148.253.96.193", "port" : "443", "severity" : "INFO", "finding" : "http://crl.usertrust.com/GandiStandardSSLCA2.crl" } , { "id" : "cert_ocspURL", - "ip" : "mon-suivi-justice.beta.gouv.fr/185.21.194.105", + "ip" : "mon-suivi-justice.beta.gouv.fr/148.253.96.193", "port" : "443", "severity" : "INFO", "finding" : "http://ocsp.usertrust.com" } , { "id" : "OCSP_stapling", - "ip" : "mon-suivi-justice.beta.gouv.fr/185.21.194.105", + "ip" : "mon-suivi-justice.beta.gouv.fr/148.253.96.193", "port" : "443", "severity" : "LOW", "finding" : "not offered" } , { "id" : "cert_mustStapleExtension", - "ip" : "mon-suivi-justice.beta.gouv.fr/185.21.194.105", + "ip" : "mon-suivi-justice.beta.gouv.fr/148.253.96.193", "port" : "443", "severity" : "INFO", "finding" : "--" } , { "id" : "DNS_CAArecord", - "ip" : "mon-suivi-justice.beta.gouv.fr/185.21.194.105", + "ip" : "mon-suivi-justice.beta.gouv.fr/148.253.96.193", "port" : "443", "severity" : "LOW", "finding" : "--" } , { "id" : "certificate_transparency", - "ip" : "mon-suivi-justice.beta.gouv.fr/185.21.194.105", + "ip" : "mon-suivi-justice.beta.gouv.fr/148.253.96.193", "port" : "443", "severity" : "OK", "finding" : "yes (certificate extension)" } , { "id" : "certs_countServer", - "ip" : "mon-suivi-justice.beta.gouv.fr/185.21.194.105", + "ip" : "mon-suivi-justice.beta.gouv.fr/148.253.96.193", "port" : "443", "severity" : "INFO", "finding" : "2" } , { "id" : "certs_list_ordering_problem", - "ip" : "mon-suivi-justice.beta.gouv.fr/185.21.194.105", + "ip" : "mon-suivi-justice.beta.gouv.fr/148.253.96.193", "port" : "443", "severity" : "INFO", "finding" : "no" } , { "id" : "cert_caIssuers", - "ip" : "mon-suivi-justice.beta.gouv.fr/185.21.194.105", + "ip" : "mon-suivi-justice.beta.gouv.fr/148.253.96.193", "port" : "443", "severity" : "INFO", "finding" : "Gandi Standard SSL CA 2 (Gandi from FR)" } , { "id" : "intermediate_cert <#1>", - "ip" : "mon-suivi-justice.beta.gouv.fr/185.21.194.105", + "ip" : "mon-suivi-justice.beta.gouv.fr/148.253.96.193", "port" : "443", "severity" : "INFO", "finding" : "-----BEGIN CERTIFICATE----- MIIF6TCCA9GgAwIBAgIQBeTcO5Q4qzuFl8umoZhQ4zANBgkqhkiG9w0BAQwFADCB iDELMAkGA1UEBhMCVVMxEzARBgNVBAgTCk5ldyBKZXJzZXkxFDASBgNVBAcTC0pl cnNleSBDaXR5MR4wHAYDVQQKExVUaGUgVVNFUlRSVVNUIE5ldHdvcmsxLjAsBgNV BAMTJVVTRVJUcnVzdCBSU0EgQ2VydGlmaWNhdGlvbiBBdXRob3JpdHkwHhcNMTQw OTEyMDAwMDAwWhcNMjQwOTExMjM1OTU5WjBfMQswCQYDVQQGEwJGUjEOMAwGA1UE CBMFUGFyaXMxDjAMBgNVBAcTBVBhcmlzMQ4wDAYDVQQKEwVHYW5kaTEgMB4GA1UE AxMXR2FuZGkgU3RhbmRhcmQgU1NMIENBIDIwggEiMA0GCSqGSIb3DQEBAQUAA4IB DwAwggEKAoIBAQCUBC2meZV0/9UAPPWu2JSxKXzAjwsLibmCg5duNyj1ohrP0pIL m6jTh5RzhBCf3DXLwi2SrCG5yzv8QMHBgyHwv/j2nPqcghDA0I5O5Q1MsJFckLSk QFEW2uSEEi0FXKEfFxkkUap66uEHG4aNAXLy59SDIzme4OFMH2sio7QQZrDtgpbX bmq08j+1QvzdirWrui0dOnWbMdw+naxb00ENbLAb9Tr1eeohovj0M1JLJC0epJmx bUi8uBL+cnB89/sCdfSN3tbawKAyGlLfOGsuRTg/PwSWAP2h9KK71RfWJ3wbWFmV XooS/ZyrgT5SKEhRhWvzkbKGPym1bgNi7tYFAgMBAAGjggF1MIIBcTAfBgNVHSME GDAWgBRTeb9aqitKz1SA4dibwJ3ysgNmyzAdBgNVHQ4EFgQUs5Cn2MmvTs1hPJ98 rV1/Qf1pMOowDgYDVR0PAQH/BAQDAgGGMBIGA1UdEwEB/wQIMAYBAf8CAQAwHQYD VR0lBBYwFAYIKwYBBQUHAwEGCCsGAQUFBwMCMCIGA1UdIAQbMBkwDQYLKwYBBAGy MQECAhowCAYGZ4EMAQIBMFAGA1UdHwRJMEcwRaBDoEGGP2h0dHA6Ly9jcmwudXNl cnRydXN0LmNvbS9VU0VSVHJ1c3RSU0FDZXJ0aWZpY2F0aW9uQXV0aG9yaXR5LmNy bDB2BggrBgEFBQcBAQRqMGgwPwYIKwYBBQUHMAKGM2h0dHA6Ly9jcnQudXNlcnRy dXN0LmNvbS9VU0VSVHJ1c3RSU0FBZGRUcnVzdENBLmNydDAlBggrBgEFBQcwAYYZ aHR0cDovL29jc3AudXNlcnRydXN0LmNvbTANBgkqhkiG9w0BAQwFAAOCAgEAWGf9 crJq13xhlhl+2UNG0SZ9yFP6ZrBrLafTqlb3OojQO3LJUP33WbKqaPWMcwO7lWUX zi8c3ZgTopHJ7qFAbjyY1lzzsiI8Le4bpOHeICQW8owRc5E69vrOJAKHypPstLbI FhfFcvwnQPYT/pOmnVHvPCvYd1ebjGU6NSU2t7WKY28HJ5OxYI2A25bUeo8tqxyI yW5+1mUfr13KFj8oRtygNeX56eXVlogMT8a3d2dIhCe2H7Bo26y/d7CQuKLJHDJd ArolQ4FCR7vY4Y8MDEZf7kYzawMUgtN+zY+vkNaOJH1AQrRqahfGlZfh8jjNp+20 J0CT33KpuMZmYzc4ZCIwojvxuch7yPspOqsactIGEk72gtQjbz7Dk+XYtsDe3CMW 1hMwt6CaDixVBgBwAc/qOR2A24j3pSC4W/0xJmmPLQphgzpHphNULB7j7UTKvGof KA5R2d4On3XNDgOVyvnFqSot/kGkoUeuDcL5OWYzSlvhhChZbH2UF3bkRYKtcCD9 0m9jqNf6oDP6N8v3smWe2lBvP+Sn845dWDKXcCMu5/3EFZucJ48y7RetWIExKREa m9T8bJUox04FB6b9HbwZ4ui3uRGKLXASUoWNjDNKD/yZkuBjcNqllEdjB+dYxzFf BT02Vf6Dsuimrdfp5gJ0iHRc2jTbkNJtUQoj1iM= -----END CERTIFICATE-----" } , { "id" : "intermediate_cert_fingerprintSHA256 <#1>", - "ip" : "mon-suivi-justice.beta.gouv.fr/185.21.194.105", + "ip" : "mon-suivi-justice.beta.gouv.fr/148.253.96.193", "port" : "443", "severity" : "INFO", "finding" : "B9F2164323638DCE0B92218B43C41C1B2B2696389329DB19F5CF7AD49B5CB372" } , { "id" : "intermediate_cert_notBefore <#1>", - "ip" : "mon-suivi-justice.beta.gouv.fr/185.21.194.105", + "ip" : "mon-suivi-justice.beta.gouv.fr/148.253.96.193", "port" : "443", "severity" : "INFO", "finding" : "2014-09-12 00:00" } , { "id" : "intermediate_cert_notAfter <#1>", - "ip" : "mon-suivi-justice.beta.gouv.fr/185.21.194.105", + "ip" : "mon-suivi-justice.beta.gouv.fr/148.253.96.193", "port" : "443", "severity" : "OK", "finding" : "2024-09-11 23:59" } , { "id" : "intermediate_cert_expiration <#1>", - "ip" : "mon-suivi-justice.beta.gouv.fr/185.21.194.105", + "ip" : "mon-suivi-justice.beta.gouv.fr/148.253.96.193", "port" : "443", "severity" : "OK", "finding" : "ok > 40 days" } , { "id" : "intermediate_cert_chain <#1>", - "ip" : "mon-suivi-justice.beta.gouv.fr/185.21.194.105", + "ip" : "mon-suivi-justice.beta.gouv.fr/148.253.96.193", "port" : "443", "severity" : "INFO", "finding" : "Gandi Standard SSL CA 2 <-- USERTrust RSA Certification Authority" } , { "id" : "intermediate_cert_badOCSP", - "ip" : "mon-suivi-justice.beta.gouv.fr/185.21.194.105", + "ip" : "mon-suivi-justice.beta.gouv.fr/148.253.96.193", "port" : "443", "severity" : "OK", "finding" : "intermediate certificate(s) is/are ok" } , { "id" : "HTTP_status_code", - "ip" : "mon-suivi-justice.beta.gouv.fr/185.21.194.105", + "ip" : "mon-suivi-justice.beta.gouv.fr/148.253.96.193", "port" : "443", "severity" : "INFO", "finding" : "200 OK ('/')" } , { "id" : "HTTP_clock_skew", - "ip" : "mon-suivi-justice.beta.gouv.fr/185.21.194.105", + "ip" : "mon-suivi-justice.beta.gouv.fr/148.253.96.193", "port" : "443", "severity" : "INFO", "finding" : "0 seconds from localtime" } , { "id" : "HSTS_time", - "ip" : "mon-suivi-justice.beta.gouv.fr/185.21.194.105", + "ip" : "mon-suivi-justice.beta.gouv.fr/148.253.96.193", "port" : "443", "severity" : "OK", "finding" : "365 days (=31536000 seconds) > 15552000 seconds" } , { "id" : "HSTS_subdomains", - "ip" : "mon-suivi-justice.beta.gouv.fr/185.21.194.105", + "ip" : "mon-suivi-justice.beta.gouv.fr/148.253.96.193", "port" : "443", "severity" : "INFO", "finding" : "only for this domain" } , { "id" : "HSTS_preload", - "ip" : "mon-suivi-justice.beta.gouv.fr/185.21.194.105", + "ip" : "mon-suivi-justice.beta.gouv.fr/148.253.96.193", "port" : "443", "severity" : "INFO", "finding" : "domain is NOT marked for preloading" } , { "id" : "HPKP", - "ip" : "mon-suivi-justice.beta.gouv.fr/185.21.194.105", + "ip" : "mon-suivi-justice.beta.gouv.fr/148.253.96.193", "port" : "443", "severity" : "INFO", "finding" : "No support for HTTP Public Key Pinning" } , { "id" : "banner_server", - "ip" : "mon-suivi-justice.beta.gouv.fr/185.21.194.105", + "ip" : "mon-suivi-justice.beta.gouv.fr/148.253.96.193", "port" : "443", "severity" : "INFO", "finding" : "openresty" } , { "id" : "banner_application", - "ip" : "mon-suivi-justice.beta.gouv.fr/185.21.194.105", + "ip" : "mon-suivi-justice.beta.gouv.fr/148.253.96.193", "port" : "443", "severity" : "INFO", "finding" : "No application banner found" } , { "id" : "cookie_count", - "ip" : "mon-suivi-justice.beta.gouv.fr/185.21.194.105", + "ip" : "mon-suivi-justice.beta.gouv.fr/148.253.96.193", "port" : "443", "severity" : "INFO", "finding" : "1 at '/'" } , { "id" : "cookie_secure", - "ip" : "mon-suivi-justice.beta.gouv.fr/185.21.194.105", + "ip" : "mon-suivi-justice.beta.gouv.fr/148.253.96.193", "port" : "443", "severity" : "INFO", "finding" : "0/1 at '/' marked as secure" } , { "id" : "cookie_httponly", - "ip" : "mon-suivi-justice.beta.gouv.fr/185.21.194.105", + "ip" : "mon-suivi-justice.beta.gouv.fr/148.253.96.193", "port" : "443", "severity" : "OK", "finding" : "All (1) at '/' marked as HttpOnly" } , { "id" : "X-Frame-Options", - "ip" : "mon-suivi-justice.beta.gouv.fr/185.21.194.105", + "ip" : "mon-suivi-justice.beta.gouv.fr/148.253.96.193", "port" : "443", "severity" : "OK", "finding" : "SAMEORIGIN" } , { "id" : "X-Content-Type-Options", - "ip" : "mon-suivi-justice.beta.gouv.fr/185.21.194.105", + "ip" : "mon-suivi-justice.beta.gouv.fr/148.253.96.193", "port" : "443", "severity" : "OK", "finding" : "nosniff" } , { "id" : "X-XSS-Protection", - "ip" : "mon-suivi-justice.beta.gouv.fr/185.21.194.105", + "ip" : "mon-suivi-justice.beta.gouv.fr/148.253.96.193", "port" : "443", "severity" : "INFO", "finding" : "1; mode=block" } , { "id" : "Referrer-Policy", - "ip" : "mon-suivi-justice.beta.gouv.fr/185.21.194.105", + "ip" : "mon-suivi-justice.beta.gouv.fr/148.253.96.193", "port" : "443", "severity" : "INFO", "finding" : "strict-origin-when-cross-origin" } , { "id" : "Cache-Control", - "ip" : "mon-suivi-justice.beta.gouv.fr/185.21.194.105", + "ip" : "mon-suivi-justice.beta.gouv.fr/148.253.96.193", "port" : "443", "severity" : "INFO", "finding" : "max-age=0, private, must-revalidate" } , { "id" : "banner_reverseproxy", - "ip" : "mon-suivi-justice.beta.gouv.fr/185.21.194.105", + "ip" : "mon-suivi-justice.beta.gouv.fr/148.253.96.193", "port" : "443", "severity" : "INFO", "cwe" : "CWE-200", @@ -1732,7 +1732,7 @@ } , { "id" : "heartbleed", - "ip" : "mon-suivi-justice.beta.gouv.fr/185.21.194.105", + "ip" : "mon-suivi-justice.beta.gouv.fr/148.253.96.193", "port" : "443", "severity" : "OK", "cve" : "CVE-2014-0160", @@ -1741,7 +1741,7 @@ } , { "id" : "CCS", - "ip" : "mon-suivi-justice.beta.gouv.fr/185.21.194.105", + "ip" : "mon-suivi-justice.beta.gouv.fr/148.253.96.193", "port" : "443", "severity" : "OK", "cve" : "CVE-2014-0224", @@ -1750,7 +1750,7 @@ } , { "id" : "ticketbleed", - "ip" : "mon-suivi-justice.beta.gouv.fr/185.21.194.105", + "ip" : "mon-suivi-justice.beta.gouv.fr/148.253.96.193", "port" : "443", "severity" : "OK", "cve" : "CVE-2016-9244", @@ -1759,7 +1759,7 @@ } , { "id" : "ROBOT", - "ip" : "mon-suivi-justice.beta.gouv.fr/185.21.194.105", + "ip" : "mon-suivi-justice.beta.gouv.fr/148.253.96.193", "port" : "443", "severity" : "OK", "cve" : "CVE-2017-17382 CVE-2017-17427 CVE-2017-17428 CVE-2017-13098 CVE-2017-1000385 CVE-2017-13099 CVE-2016-6883 CVE-2012-5081 CVE-2017-6168", @@ -1768,7 +1768,7 @@ } , { "id" : "secure_renego", - "ip" : "mon-suivi-justice.beta.gouv.fr/185.21.194.105", + "ip" : "mon-suivi-justice.beta.gouv.fr/148.253.96.193", "port" : "443", "severity" : "OK", "cwe" : "CWE-310", @@ -1776,7 +1776,7 @@ } , { "id" : "secure_client_renego", - "ip" : "mon-suivi-justice.beta.gouv.fr/185.21.194.105", + "ip" : "mon-suivi-justice.beta.gouv.fr/148.253.96.193", "port" : "443", "severity" : "OK", "cve" : "CVE-2011-1473", @@ -1785,7 +1785,7 @@ } , { "id" : "CRIME_TLS", - "ip" : "mon-suivi-justice.beta.gouv.fr/185.21.194.105", + "ip" : "mon-suivi-justice.beta.gouv.fr/148.253.96.193", "port" : "443", "severity" : "OK", "cve" : "CVE-2012-4929", @@ -1794,7 +1794,7 @@ } , { "id" : "BREACH", - "ip" : "mon-suivi-justice.beta.gouv.fr/185.21.194.105", + "ip" : "mon-suivi-justice.beta.gouv.fr/148.253.96.193", "port" : "443", "severity" : "MEDIUM", "cve" : "CVE-2013-3587", @@ -1803,7 +1803,7 @@ } , { "id" : "POODLE_SSL", - "ip" : "mon-suivi-justice.beta.gouv.fr/185.21.194.105", + "ip" : "mon-suivi-justice.beta.gouv.fr/148.253.96.193", "port" : "443", "severity" : "OK", "cve" : "CVE-2014-3566", @@ -1812,14 +1812,14 @@ } , { "id" : "fallback_SCSV", - "ip" : "mon-suivi-justice.beta.gouv.fr/185.21.194.105", + "ip" : "mon-suivi-justice.beta.gouv.fr/148.253.96.193", "port" : "443", "severity" : "OK", "finding" : "no protocol below TLS 1.2 offered" } , { "id" : "SWEET32", - "ip" : "mon-suivi-justice.beta.gouv.fr/185.21.194.105", + "ip" : "mon-suivi-justice.beta.gouv.fr/148.253.96.193", "port" : "443", "severity" : "OK", "cve" : "CVE-2016-2183 CVE-2016-6329", @@ -1828,7 +1828,7 @@ } , { "id" : "FREAK", - "ip" : "mon-suivi-justice.beta.gouv.fr/185.21.194.105", + "ip" : "mon-suivi-justice.beta.gouv.fr/148.253.96.193", "port" : "443", "severity" : "OK", "cve" : "CVE-2015-0204", @@ -1837,7 +1837,7 @@ } , { "id" : "DROWN", - "ip" : "mon-suivi-justice.beta.gouv.fr/185.21.194.105", + "ip" : "mon-suivi-justice.beta.gouv.fr/148.253.96.193", "port" : "443", "severity" : "OK", "cve" : "CVE-2016-0800 CVE-2016-0703", @@ -1846,7 +1846,7 @@ } , { "id" : "DROWN_hint", - "ip" : "mon-suivi-justice.beta.gouv.fr/185.21.194.105", + "ip" : "mon-suivi-justice.beta.gouv.fr/148.253.96.193", "port" : "443", "severity" : "INFO", "cve" : "CVE-2016-0800 CVE-2016-0703", @@ -1855,7 +1855,7 @@ } , { "id" : "LOGJAM", - "ip" : "mon-suivi-justice.beta.gouv.fr/185.21.194.105", + "ip" : "mon-suivi-justice.beta.gouv.fr/148.253.96.193", "port" : "443", "severity" : "OK", "cve" : "CVE-2015-4000", @@ -1864,7 +1864,7 @@ } , { "id" : "LOGJAM-common_primes", - "ip" : "mon-suivi-justice.beta.gouv.fr/185.21.194.105", + "ip" : "mon-suivi-justice.beta.gouv.fr/148.253.96.193", "port" : "443", "severity" : "OK", "cve" : "CVE-2015-4000", @@ -1873,7 +1873,7 @@ } , { "id" : "BEAST", - "ip" : "mon-suivi-justice.beta.gouv.fr/185.21.194.105", + "ip" : "mon-suivi-justice.beta.gouv.fr/148.253.96.193", "port" : "443", "severity" : "OK", "cve" : "CVE-2011-3389", @@ -1882,7 +1882,7 @@ } , { "id" : "LUCKY13", - "ip" : "mon-suivi-justice.beta.gouv.fr/185.21.194.105", + "ip" : "mon-suivi-justice.beta.gouv.fr/148.253.96.193", "port" : "443", "severity" : "LOW", "cve" : "CVE-2013-0169", @@ -1891,7 +1891,7 @@ } , { "id" : "winshock", - "ip" : "mon-suivi-justice.beta.gouv.fr/185.21.194.105", + "ip" : "mon-suivi-justice.beta.gouv.fr/148.253.96.193", "port" : "443", "severity" : "OK", "cve" : "CVE-2014-6321", @@ -1900,7 +1900,7 @@ } , { "id" : "RC4", - "ip" : "mon-suivi-justice.beta.gouv.fr/185.21.194.105", + "ip" : "mon-suivi-justice.beta.gouv.fr/148.253.96.193", "port" : "443", "severity" : "OK", "cve" : "CVE-2013-2566 CVE-2015-2808", @@ -1909,331 +1909,331 @@ } , { "id" : "clientsimulation-android_442", - "ip" : "mon-suivi-justice.beta.gouv.fr/185.21.194.105", + "ip" : "mon-suivi-justice.beta.gouv.fr/148.253.96.193", "port" : "443", "severity" : "INFO", "finding" : "TLSv1.2 ECDHE-RSA-AES256-GCM-SHA384" } , { "id" : "clientsimulation-android_500", - "ip" : "mon-suivi-justice.beta.gouv.fr/185.21.194.105", + "ip" : "mon-suivi-justice.beta.gouv.fr/148.253.96.193", "port" : "443", "severity" : "INFO", "finding" : "TLSv1.2 ECDHE-RSA-AES128-GCM-SHA256" } , { "id" : "clientsimulation-android_60", - "ip" : "mon-suivi-justice.beta.gouv.fr/185.21.194.105", + "ip" : "mon-suivi-justice.beta.gouv.fr/148.253.96.193", "port" : "443", "severity" : "INFO", "finding" : "TLSv1.2 ECDHE-RSA-AES128-GCM-SHA256" } , { "id" : "clientsimulation-android_70", - "ip" : "mon-suivi-justice.beta.gouv.fr/185.21.194.105", + "ip" : "mon-suivi-justice.beta.gouv.fr/148.253.96.193", "port" : "443", "severity" : "INFO", "finding" : "TLSv1.2 ECDHE-RSA-AES256-GCM-SHA384" } , { "id" : "clientsimulation-android_81", - "ip" : "mon-suivi-justice.beta.gouv.fr/185.21.194.105", + "ip" : "mon-suivi-justice.beta.gouv.fr/148.253.96.193", "port" : "443", "severity" : "INFO", "finding" : "TLSv1.2 ECDHE-RSA-AES256-GCM-SHA384" } , { "id" : "clientsimulation-android_90", - "ip" : "mon-suivi-justice.beta.gouv.fr/185.21.194.105", + "ip" : "mon-suivi-justice.beta.gouv.fr/148.253.96.193", "port" : "443", "severity" : "INFO", "finding" : "TLSv1.3 TLS_AES_256_GCM_SHA384" } , { "id" : "clientsimulation-android_X", - "ip" : "mon-suivi-justice.beta.gouv.fr/185.21.194.105", + "ip" : "mon-suivi-justice.beta.gouv.fr/148.253.96.193", "port" : "443", "severity" : "INFO", "finding" : "TLSv1.3 TLS_AES_256_GCM_SHA384" } , { "id" : "clientsimulation-chrome_74_win10", - "ip" : "mon-suivi-justice.beta.gouv.fr/185.21.194.105", + "ip" : "mon-suivi-justice.beta.gouv.fr/148.253.96.193", "port" : "443", "severity" : "INFO", "finding" : "TLSv1.3 TLS_AES_256_GCM_SHA384" } , { "id" : "clientsimulation-chrome_79_win10", - "ip" : "mon-suivi-justice.beta.gouv.fr/185.21.194.105", + "ip" : "mon-suivi-justice.beta.gouv.fr/148.253.96.193", "port" : "443", "severity" : "INFO", "finding" : "TLSv1.3 TLS_AES_256_GCM_SHA384" } , { "id" : "clientsimulation-firefox_66_win81", - "ip" : "mon-suivi-justice.beta.gouv.fr/185.21.194.105", + "ip" : "mon-suivi-justice.beta.gouv.fr/148.253.96.193", "port" : "443", "severity" : "INFO", "finding" : "TLSv1.3 TLS_AES_256_GCM_SHA384" } , { "id" : "clientsimulation-firefox_71_win10", - "ip" : "mon-suivi-justice.beta.gouv.fr/185.21.194.105", + "ip" : "mon-suivi-justice.beta.gouv.fr/148.253.96.193", "port" : "443", "severity" : "INFO", "finding" : "TLSv1.3 TLS_AES_256_GCM_SHA384" } , { "id" : "clientsimulation-ie_6_xp", - "ip" : "mon-suivi-justice.beta.gouv.fr/185.21.194.105", + "ip" : "mon-suivi-justice.beta.gouv.fr/148.253.96.193", "port" : "443", "severity" : "INFO", "finding" : "No connection" } , { "id" : "clientsimulation-ie_8_win7", - "ip" : "mon-suivi-justice.beta.gouv.fr/185.21.194.105", + "ip" : "mon-suivi-justice.beta.gouv.fr/148.253.96.193", "port" : "443", "severity" : "INFO", "finding" : "No connection" } , { "id" : "clientsimulation-ie_8_xp", - "ip" : "mon-suivi-justice.beta.gouv.fr/185.21.194.105", + "ip" : "mon-suivi-justice.beta.gouv.fr/148.253.96.193", "port" : "443", "severity" : "INFO", "finding" : "No connection" } , { "id" : "clientsimulation-ie_11_win7", - "ip" : "mon-suivi-justice.beta.gouv.fr/185.21.194.105", + "ip" : "mon-suivi-justice.beta.gouv.fr/148.253.96.193", "port" : "443", "severity" : "INFO", "finding" : "TLSv1.2 DHE-RSA-AES256-GCM-SHA384" } , { "id" : "clientsimulation-ie_11_win81", - "ip" : "mon-suivi-justice.beta.gouv.fr/185.21.194.105", + "ip" : "mon-suivi-justice.beta.gouv.fr/148.253.96.193", "port" : "443", "severity" : "INFO", "finding" : "TLSv1.2 DHE-RSA-AES256-GCM-SHA384" } , { "id" : "clientsimulation-ie_11_winphone81", - "ip" : "mon-suivi-justice.beta.gouv.fr/185.21.194.105", + "ip" : "mon-suivi-justice.beta.gouv.fr/148.253.96.193", "port" : "443", "severity" : "INFO", "finding" : "No connection" } , { "id" : "clientsimulation-ie_11_win10", - "ip" : "mon-suivi-justice.beta.gouv.fr/185.21.194.105", + "ip" : "mon-suivi-justice.beta.gouv.fr/148.253.96.193", "port" : "443", "severity" : "INFO", "finding" : "TLSv1.2 ECDHE-RSA-AES256-GCM-SHA384" } , { "id" : "clientsimulation-edge_15_win10", - "ip" : "mon-suivi-justice.beta.gouv.fr/185.21.194.105", + "ip" : "mon-suivi-justice.beta.gouv.fr/148.253.96.193", "port" : "443", "severity" : "INFO", "finding" : "TLSv1.2 ECDHE-RSA-AES256-GCM-SHA384" } , { "id" : "clientsimulation-edge_17_win10", - "ip" : "mon-suivi-justice.beta.gouv.fr/185.21.194.105", + "ip" : "mon-suivi-justice.beta.gouv.fr/148.253.96.193", "port" : "443", "severity" : "INFO", "finding" : "TLSv1.2 ECDHE-RSA-AES256-GCM-SHA384" } , { "id" : "clientsimulation-opera_66_win10", - "ip" : "mon-suivi-justice.beta.gouv.fr/185.21.194.105", + "ip" : "mon-suivi-justice.beta.gouv.fr/148.253.96.193", "port" : "443", "severity" : "INFO", "finding" : "TLSv1.3 TLS_AES_256_GCM_SHA384" } , { "id" : "clientsimulation-safari_9_ios9", - "ip" : "mon-suivi-justice.beta.gouv.fr/185.21.194.105", + "ip" : "mon-suivi-justice.beta.gouv.fr/148.253.96.193", "port" : "443", "severity" : "INFO", "finding" : "TLSv1.2 ECDHE-RSA-AES256-GCM-SHA384" } , { "id" : "clientsimulation-safari_9_osx1011", - "ip" : "mon-suivi-justice.beta.gouv.fr/185.21.194.105", + "ip" : "mon-suivi-justice.beta.gouv.fr/148.253.96.193", "port" : "443", "severity" : "INFO", "finding" : "TLSv1.2 ECDHE-RSA-AES256-GCM-SHA384" } , { "id" : "clientsimulation-safari_10_osx1012", - "ip" : "mon-suivi-justice.beta.gouv.fr/185.21.194.105", + "ip" : "mon-suivi-justice.beta.gouv.fr/148.253.96.193", "port" : "443", "severity" : "INFO", "finding" : "TLSv1.2 ECDHE-RSA-AES256-GCM-SHA384" } , { "id" : "clientsimulation-safari_121_ios_122", - "ip" : "mon-suivi-justice.beta.gouv.fr/185.21.194.105", + "ip" : "mon-suivi-justice.beta.gouv.fr/148.253.96.193", "port" : "443", "severity" : "INFO", "finding" : "TLSv1.3 TLS_AES_256_GCM_SHA384" } , { "id" : "clientsimulation-safari_130_osx_10146", - "ip" : "mon-suivi-justice.beta.gouv.fr/185.21.194.105", + "ip" : "mon-suivi-justice.beta.gouv.fr/148.253.96.193", "port" : "443", "severity" : "INFO", "finding" : "TLSv1.3 TLS_AES_256_GCM_SHA384" } , { "id" : "clientsimulation-apple_ats_9_ios9", - "ip" : "mon-suivi-justice.beta.gouv.fr/185.21.194.105", + "ip" : "mon-suivi-justice.beta.gouv.fr/148.253.96.193", "port" : "443", "severity" : "INFO", "finding" : "TLSv1.2 ECDHE-RSA-AES256-GCM-SHA384" } , { "id" : "clientsimulation-java_6u45", - "ip" : "mon-suivi-justice.beta.gouv.fr/185.21.194.105", + "ip" : "mon-suivi-justice.beta.gouv.fr/148.253.96.193", "port" : "443", "severity" : "INFO", "finding" : "No connection" } , { "id" : "clientsimulation-java_7u25", - "ip" : "mon-suivi-justice.beta.gouv.fr/185.21.194.105", + "ip" : "mon-suivi-justice.beta.gouv.fr/148.253.96.193", "port" : "443", "severity" : "INFO", "finding" : "No connection" } , { "id" : "clientsimulation-java_8u161", - "ip" : "mon-suivi-justice.beta.gouv.fr/185.21.194.105", + "ip" : "mon-suivi-justice.beta.gouv.fr/148.253.96.193", "port" : "443", "severity" : "INFO", "finding" : "TLSv1.2 ECDHE-RSA-AES256-GCM-SHA384" } , { "id" : "clientsimulation-java1102", - "ip" : "mon-suivi-justice.beta.gouv.fr/185.21.194.105", + "ip" : "mon-suivi-justice.beta.gouv.fr/148.253.96.193", "port" : "443", "severity" : "INFO", "finding" : "TLSv1.3 TLS_AES_256_GCM_SHA384" } , { "id" : "clientsimulation-java1201", - "ip" : "mon-suivi-justice.beta.gouv.fr/185.21.194.105", + "ip" : "mon-suivi-justice.beta.gouv.fr/148.253.96.193", "port" : "443", "severity" : "INFO", "finding" : "TLSv1.3 TLS_AES_256_GCM_SHA384" } , { "id" : "clientsimulation-openssl_102e", - "ip" : "mon-suivi-justice.beta.gouv.fr/185.21.194.105", + "ip" : "mon-suivi-justice.beta.gouv.fr/148.253.96.193", "port" : "443", "severity" : "INFO", "finding" : "TLSv1.2 ECDHE-RSA-AES256-GCM-SHA384" } , { "id" : "clientsimulation-openssl_110l", - "ip" : "mon-suivi-justice.beta.gouv.fr/185.21.194.105", + "ip" : "mon-suivi-justice.beta.gouv.fr/148.253.96.193", "port" : "443", "severity" : "INFO", "finding" : "TLSv1.2 ECDHE-RSA-AES256-GCM-SHA384" } , { "id" : "clientsimulation-openssl_111d", - "ip" : "mon-suivi-justice.beta.gouv.fr/185.21.194.105", + "ip" : "mon-suivi-justice.beta.gouv.fr/148.253.96.193", "port" : "443", "severity" : "INFO", "finding" : "TLSv1.3 TLS_AES_256_GCM_SHA384" } , { "id" : "clientsimulation-thunderbird_68_3_1", - "ip" : "mon-suivi-justice.beta.gouv.fr/185.21.194.105", + "ip" : "mon-suivi-justice.beta.gouv.fr/148.253.96.193", "port" : "443", "severity" : "INFO", "finding" : "TLSv1.3 TLS_AES_256_GCM_SHA384" } , { "id" : "rating_spec", - "ip" : "mon-suivi-justice.beta.gouv.fr/185.21.194.105", + "ip" : "mon-suivi-justice.beta.gouv.fr/148.253.96.193", "port" : "443", "severity" : "INFO", "finding" : "SSL Labs's 'SSL Server Rating Guide' (version 2009q from 2020-01-30)" } , { "id" : "rating_doc", - "ip" : "mon-suivi-justice.beta.gouv.fr/185.21.194.105", + "ip" : "mon-suivi-justice.beta.gouv.fr/148.253.96.193", "port" : "443", "severity" : "INFO", "finding" : "https://github.com/ssllabs/research/wiki/SSL-Server-Rating-Guide" } , { "id" : "protocol_support_score", - "ip" : "mon-suivi-justice.beta.gouv.fr/185.21.194.105", + "ip" : "mon-suivi-justice.beta.gouv.fr/148.253.96.193", "port" : "443", "severity" : "INFO", "finding" : "100" } , { "id" : "protocol_support_score_weighted", - "ip" : "mon-suivi-justice.beta.gouv.fr/185.21.194.105", + "ip" : "mon-suivi-justice.beta.gouv.fr/148.253.96.193", "port" : "443", "severity" : "INFO", "finding" : "30" } , { "id" : "key_exchange_score", - "ip" : "mon-suivi-justice.beta.gouv.fr/185.21.194.105", + "ip" : "mon-suivi-justice.beta.gouv.fr/148.253.96.193", "port" : "443", "severity" : "INFO", "finding" : "90" } , { "id" : "key_exchange_score_weighted", - "ip" : "mon-suivi-justice.beta.gouv.fr/185.21.194.105", + "ip" : "mon-suivi-justice.beta.gouv.fr/148.253.96.193", "port" : "443", "severity" : "INFO", "finding" : "27" } , { "id" : "cipher_strength_score", - "ip" : "mon-suivi-justice.beta.gouv.fr/185.21.194.105", + "ip" : "mon-suivi-justice.beta.gouv.fr/148.253.96.193", "port" : "443", "severity" : "INFO", "finding" : "60" } , { "id" : "cipher_strength_score_weighted", - "ip" : "mon-suivi-justice.beta.gouv.fr/185.21.194.105", + "ip" : "mon-suivi-justice.beta.gouv.fr/148.253.96.193", "port" : "443", "severity" : "INFO", "finding" : "24" } , { "id" : "final_score", - "ip" : "mon-suivi-justice.beta.gouv.fr/185.21.194.105", + "ip" : "mon-suivi-justice.beta.gouv.fr/148.253.96.193", "port" : "443", "severity" : "INFO", "finding" : "81" } , { "id" : "overall_grade", - "ip" : "mon-suivi-justice.beta.gouv.fr/185.21.194.105", + "ip" : "mon-suivi-justice.beta.gouv.fr/148.253.96.193", "port" : "443", "severity" : "OK", "finding" : "A+" } , { "id" : "scanTime", - "ip" : "mon-suivi-justice.beta.gouv.fr/185.21.194.105", + "ip" : "mon-suivi-justice.beta.gouv.fr/148.253.96.193", "port" : "443", "severity" : "INFO", - "finding" : "183" + "finding" : "296" } ] diff --git a/results/aHR0cHM6Ly9tb24tc3VpdmktanVzdGljZS5iZXRhLmdvdXYuZnI=/thirdparties.json b/results/aHR0cHM6Ly9tb24tc3VpdmktanVzdGljZS5iZXRhLmdvdXYuZnI=/thirdparties.json index f2b9652028d..aab1f3ea473 100644 --- a/results/aHR0cHM6Ly9tb24tc3VpdmktanVzdGljZS5iZXRhLmdvdXYuZnI=/thirdparties.json +++ b/results/aHR0cHM6Ly9tb24tc3VpdmktanVzdGljZS5iZXRhLmdvdXYuZnI=/thirdparties.json @@ -3,7 +3,7 @@ "cookies": [ { "name": "_mon_suivi_justice_session", - "value": "KoOSk38nGhuUUgAUAQ1PxO9MBFFKQa5%2FoJBOWGmVqyldadMHRBkk6ok8HN4%2F4EV%2FHk0vWgOFRknAmjs5EI7mS5VwZ2oL%2FwRop5kCaxISmXuAiRgt3OnBeJSGlOomTwrqwUDRdTxwPmm5%2BthQvPX1nyJ6x88r2gGQUX9Xz8svelOWg%2Fg3L7MvjYjl5mwA1dVXha0CDjJXwy88zJrkhYN0uSHBswERtuxTO5mtM%2FU7NdQJFyDPyl8LCfWREPnrp%2B3Rj3r2oSMTorQP5NxVZ0uPWvb2H52TvqxDU46vaz7JtHmgfw%3D%3D--TPuFzvrKVWwbafpN--pGQZ%2BXPInJ3bqAqC4uwjFQ%3D%3D", + "value": "hgddTxnHG89TfEktcK0gVtgxp1CTSEdMLFUNtQVt92xSwpM88QZ7QRgKqJTmmHuTl%2BvSZGPDR3fn7JJgu6Glr8geFMj0I9z2Gy7skcO7UZxd7KpzKe7qEuVd3qDaHVPa2oPng%2BO7pIkGvdPxqvdlhQ6qXE%2Bx%2FrLrCkyrneDwC5fPgj9%2FxI48NqvinK37O7mc0w7rbbsNYAAJO7ISkT84r7CDTC7VNh4KOW6WmukB2h1h1m1nJLANAyyyLxR%2BF%2Bca6vNZHfb9P9NpG%2BBTnyOcOnbF5JiuAZDyJcQlmHxh1KAfXQ%3D%3D--xdX5kFCKJbNo5Vmq--2G1zMcp1GWmAG6WzWN%2BtFQ%3D%3D", "domain": "mon-suivi-justice.beta.gouv.fr", "path": "/", "expires": -1, @@ -19,9 +19,9 @@ ], "headers": { "server": "openresty", - "date": "Sun, 05 Dec 2021 08:10:53 GMT", + "date": "Sun, 12 Dec 2021 08:21:25 GMT", "content-type": "text/html; charset=utf-8", - "x-request-id": "f6d03e06-b13a-4151-b8c0-fc9caeaa37aa\nf6d03e06-b13a-4151-b8c0-fc9caeaa37aa", + "x-request-id": "6e0f37f0-325a-411e-aecd-c65e0a0ba425\n6e0f37f0-325a-411e-aecd-c65e0a0ba425", "strict-transport-security": "max-age=31536000", "x-frame-options": "SAMEORIGIN", "x-xss-protection": "1; mode=block", @@ -29,17 +29,17 @@ "x-download-options": "noopen", "x-permitted-cross-domain-policies": "none", "referrer-policy": "strict-origin-when-cross-origin", - "link": "; rel=preload; as=style; nopush,; rel=preload; as=script; nopush", - "etag": "W/\"8334ccc6afb237421e8d3783faf4f36f\"", + "link": "; rel=preload; as=style; nopush,; rel=preload; as=script; nopush", + "etag": "W/\"7342de350167478eb7fabfc0baf53f0b\"", "cache-control": "max-age=0, private, must-revalidate", - "set-cookie": "_mon_suivi_justice_session=KoOSk38nGhuUUgAUAQ1PxO9MBFFKQa5%2FoJBOWGmVqyldadMHRBkk6ok8HN4%2F4EV%2FHk0vWgOFRknAmjs5EI7mS5VwZ2oL%2FwRop5kCaxISmXuAiRgt3OnBeJSGlOomTwrqwUDRdTxwPmm5%2BthQvPX1nyJ6x88r2gGQUX9Xz8svelOWg%2Fg3L7MvjYjl5mwA1dVXha0CDjJXwy88zJrkhYN0uSHBswERtuxTO5mtM%2FU7NdQJFyDPyl8LCfWREPnrp%2B3Rj3r2oSMTorQP5NxVZ0uPWvb2H52TvqxDU46vaz7JtHmgfw%3D%3D--TPuFzvrKVWwbafpN--pGQZ%2BXPInJ3bqAqC4uwjFQ%3D%3D; path=/; HttpOnly; SameSite=Lax", - "x-runtime": "0.007837", + "set-cookie": "_mon_suivi_justice_session=hgddTxnHG89TfEktcK0gVtgxp1CTSEdMLFUNtQVt92xSwpM88QZ7QRgKqJTmmHuTl%2BvSZGPDR3fn7JJgu6Glr8geFMj0I9z2Gy7skcO7UZxd7KpzKe7qEuVd3qDaHVPa2oPng%2BO7pIkGvdPxqvdlhQ6qXE%2Bx%2FrLrCkyrneDwC5fPgj9%2FxI48NqvinK37O7mc0w7rbbsNYAAJO7ISkT84r7CDTC7VNh4KOW6WmukB2h1h1m1nJLANAyyyLxR%2BF%2Bca6vNZHfb9P9NpG%2BBTnyOcOnbF5JiuAZDyJcQlmHxh1KAfXQ%3D%3D--xdX5kFCKJbNo5Vmq--2G1zMcp1GWmAG6WzWN%2BtFQ%3D%3D; path=/; HttpOnly; SameSite=Lax", + "x-runtime": "0.006357", "content-encoding": "gzip" }, "endpoints": [ { "hostname": "mon-suivi-justice.beta.gouv.fr", - "ip": "148.253.96.193", + "ip": "185.21.194.105", "geoip": { "continent": { "code": "EU", diff --git a/results/aHR0cHM6Ly9tb24tc3VpdmktanVzdGljZS5iZXRhLmdvdXYuZnI=/updownio.json b/results/aHR0cHM6Ly9tb24tc3VpdmktanVzdGljZS5iZXRhLmdvdXYuZnI=/updownio.json index 43a816853c1..f04ad40edfe 100644 --- a/results/aHR0cHM6Ly9tb24tc3VpdmktanVzdGljZS5iZXRhLmdvdXYuZnI=/updownio.json +++ b/results/aHR0cHM6Ly9tb24tc3VpdmktanVzdGljZS5iZXRhLmdvdXYuZnI=/updownio.json @@ -1 +1 @@ -{"token":"eqsp","url":"https://mon-suivi-justice.beta.gouv.fr","alias":"","last_status":200,"uptime":100,"down":false,"down_since":null,"error":null,"period":3600,"apdex_t":0.5,"string_match":"","enabled":true,"published":false,"disabled_locations":[],"last_check_at":"2021-12-05T07:39:01Z","next_check_at":"2021-12-05T08:38:47Z","mute_until":null,"favicon_url":null,"custom_headers":{},"http_verb":"GET/HEAD","http_body":"","ssl":{"tested_at":"2021-12-05T00:41:10Z","expires_at":"2022-09-30T23:59:59Z","valid":true,"error":null},"metrics":{"apdex":1,"timings":{"redirect":0,"namelookup":437,"connection":203,"handshake":212,"response":231,"total":1082}},"uptimeGrade":"A","apdexGrade":"A"} \ No newline at end of file +{"token":"eqsp","url":"https://mon-suivi-justice.beta.gouv.fr","alias":"","last_status":200,"uptime":100,"down":false,"down_since":null,"error":null,"period":3600,"apdex_t":0.5,"string_match":"","enabled":true,"published":false,"disabled_locations":[],"last_check_at":"2021-12-12T07:51:55Z","next_check_at":"2021-12-12T08:51:50Z","mute_until":null,"favicon_url":null,"custom_headers":{},"http_verb":"GET/HEAD","http_body":"","ssl":{"tested_at":"2021-12-12T00:54:22Z","expires_at":"2022-09-30T23:59:59Z","valid":true,"error":null},"metrics":{"apdex":1,"timings":{"redirect":0,"namelookup":386,"connection":154,"handshake":163,"response":184,"total":887}},"uptimeGrade":"A","apdexGrade":"A"} \ No newline at end of file diff --git a/results/aHR0cHM6Ly9tb24tc3VpdmktanVzdGljZS5iZXRhLmdvdXYuZnI=/zap.html b/results/aHR0cHM6Ly9tb24tc3VpdmktanVzdGljZS5iZXRhLmdvdXYuZnI=/zap.html index 840ae5acf29..750b2b10c8b 100644 --- a/results/aHR0cHM6Ly9tb24tc3VpdmktanVzdGljZS5iZXRhLmdvdXYuZnI=/zap.html +++ b/results/aHR0cHM6Ly9tb24tc3VpdmktanVzdGljZS5iZXRhLmdvdXYuZnI=/zap.html @@ -127,7 +127,7 @@

- Generated on Sun, 5 Dec 2021 08:09:58 + Generated on Sun, 12 Dec 2021 08:20:32

@@ -1441,7 +1441,7 @@

Alert Detail

URL - https://mon-suivi-justice.beta.gouv.fr/packs/js/application-180309a91a44e80b0c30.js + https://mon-suivi-justice.beta.gouv.fr/packs/js/application-b894d8a5125e6f3181a6.js Alert Detail URL - https://mon-suivi-justice.beta.gouv.fr/packs/js/application_static-d9aa363832b204d25416.js + https://mon-suivi-justice.beta.gouv.fr/packs/js/application_static-5b38cfa0d7756a8acd75.js Alert Detail URL - https://mon-suivi-justice.beta.gouv.fr/packs/js/application_static-d9aa363832b204d25416.js + https://mon-suivi-justice.beta.gouv.fr/packs/js/application_static-5b38cfa0d7756a8acd75.js Alert Detail URL - https://mon-suivi-justice.beta.gouv.fr/sursis_probatoire + https://mon-suivi-justice.beta.gouv.fr/suivi_socio_judiciaire Alert Detail Evidence - 61321360 + 42320556 @@ -7232,7 +7232,7 @@

Alert Detail

URL - https://mon-suivi-justice.beta.gouv.fr/assets/static/chevron-ed98f6af34750bc66b79cb8170795a4f10951f8c9c34a2fd8495dbf8694d02bf.svg + https://mon-suivi-justice.beta.gouv.fr/assets/static/2021_09_SPIP92_LIVRET_PLATEAU_TECHNIQUE-bd06fe1a31aa9d18e8052daea97090f198b3f057b74a15bd6cf844c8083393d7.pdf Alert Detail URL - https://mon-suivi-justice.beta.gouv.fr/assets/static/docs-fe3e31682d3fcf60f33fbf287e16387cda0839cd558c8fd0b5b4f279af6860d5.svg + https://mon-suivi-justice.beta.gouv.fr/assets/static/chevron-ed98f6af34750bc66b79cb8170795a4f10951f8c9c34a2fd8495dbf8694d02bf.svg Alert Detail URL - https://mon-suivi-justice.beta.gouv.fr/assets/static/home_picto_comprendre-fa7b5f170f27d33e6db620cb7e37fcff0832c0a7f47306bdf692763edf371f55.svg + https://mon-suivi-justice.beta.gouv.fr/assets/static/docs-fe3e31682d3fcf60f33fbf287e16387cda0839cd558c8fd0b5b4f279af6860d5.svg Alert Detail URL - https://mon-suivi-justice.beta.gouv.fr/assets/static/home_picto_investir-ae034f2720b5711a99251ddd9dfea902a0a80e73f05cb36fa0cdc6c3ab6b2b38.svg + https://mon-suivi-justice.beta.gouv.fr/assets/static/home_picto_comprendre-fa7b5f170f27d33e6db620cb7e37fcff0832c0a7f47306bdf692763edf371f55.svg Alert Detail URL - https://mon-suivi-justice.beta.gouv.fr/assets/static/home_picto_preparer-4a62fb4cfad8ddffa843889bee4d96b82f013988c00cf22a5907ddbf627a9385.svg + https://mon-suivi-justice.beta.gouv.fr/assets/static/home_picto_investir-ae034f2720b5711a99251ddd9dfea902a0a80e73f05cb36fa0cdc6c3ab6b2b38.svg Alert Detail URL - https://mon-suivi-justice.beta.gouv.fr/assets/static/logo_msj-a6b039ab31e23b92141410f0b90e4ebd5c2c6d498a62d2c21e5c7d269d6a6939.svg + https://mon-suivi-justice.beta.gouv.fr/assets/static/home_picto_preparer-4a62fb4cfad8ddffa843889bee4d96b82f013988c00cf22a5907ddbf627a9385.svg Alert Detail URL - https://mon-suivi-justice.beta.gouv.fr/assets/static/target-087b44892487a7ccd797f35ab9602e2e91902a2f4e2a2d497fe453a2f741e551.svg + https://mon-suivi-justice.beta.gouv.fr/assets/static/logo_msj-a6b039ab31e23b92141410f0b90e4ebd5c2c6d498a62d2c21e5c7d269d6a6939.svg Alert Detail URL - https://mon-suivi-justice.beta.gouv.fr/assets/static/text_message-7d019b0e5a24f64b7b243506d4a4c581a62254e83105056452d707aa04b41adc.svg + https://mon-suivi-justice.beta.gouv.fr/assets/static/target-087b44892487a7ccd797f35ab9602e2e91902a2f4e2a2d497fe453a2f741e551.svg Alert Detail URL - https://mon-suivi-justice.beta.gouv.fr/packs/js/application_static-d9aa363832b204d25416.js + https://mon-suivi-justice.beta.gouv.fr/assets/static/text_message-7d019b0e5a24f64b7b243506d4a4c581a62254e83105056452d707aa04b41adc.svg Alert Detail URL - https://mon-suivi-justice.beta.gouv.fr/packs/js/static/preparer-18064f8e36e66e0eba15.js + https://mon-suivi-justice.beta.gouv.fr/packs/js/application_static-5b38cfa0d7756a8acd75.js Alert Detail Evidence - 2BwqJumYcSibpEMO4r2IsqYdcgLwjs2UIah5AtDO6lWQHCzF2Ucy13ZwmdnRObGVK5m + ISJksVbhdhA6y1OQYXoZ5PZJ1o6ocIx9dPVZCizBhz @@ -7623,7 +7623,7 @@

Alert Detail

Evidence - 2FjUCVRL6eat1B4f23n0OasDvjlLng6uRF + 2FrPP5lqet1v8uoOpWxjGlKPZTJmVvMqrkm1B3UlHu @@ -7649,7 +7649,7 @@

Alert Detail

Evidence - 2BuczoCKqwZHPZD0MlzAL5sSZK6htQF2W8fYNxNhSTnNc9lJVFlCIoqwO24zH5lRUwzRmjMwl2xoN9IiOmmqNCPN + zlSrSnSweRVw4JeLBO0HhhbxKaO83sOo390NXKYqddHITSgIGMyNLaaMcBn @@ -7701,7 +7701,7 @@

Alert Detail

Evidence - MY0ZJv45BI1q5nRcbizimk0nETitHw + 7a6cXV1z4fsj89748inFVFFLoEuEZua8oqbSEge1EHrQS57fPJyQA9dRDAGGbimdZfznpsEwMQ7YTHW1a5sRQteWf3iC2SiIS8e3DH3D7j2vOYSH7j6luzAcgmdElJTSXzOmnCAd2jci1r2S71r7n1dAijB9tKknWb6xdfmNgjZvzJcUD3Z @@ -7727,7 +7727,7 @@

Alert Detail

Evidence - 2BMmjMEqgXRXBzzhnve4cJAcE1uq2XbKPcKm + 2FC3e4IFRpRIsAe0oOjwBHvXw2I9quoWs88wDS1dK0ZLibISStzg0BnO1VKkwL2v4sfDDSLrJbnOBydCdA1 @@ -7753,7 +7753,7 @@

Alert Detail

Evidence - 2BuSmRMPjCIoerRaWOJ76hp8uJZkSCG0 + 2FvBhfgxKqwIdvpBLuMdrZfcYu6Xntj2NzC5n9r1XcQKNZ @@ -7779,7 +7779,7 @@

Alert Detail

Evidence - 2FCgftclWPej8G3IHH0yFgQAK32QLYT8BNc8sD0SFM2j81Nvp44v37Xwhi4ZOdI6TfP + 2Flek59FS1Hq4nRZ8yZo770JiRvCIjXUen9hu68YNdK9Z0jN4QYhraO84KtpwXb93jbG @@ -7805,7 +7805,7 @@

Alert Detail

Evidence - EyDlbzWZQKFDLaaZ1pLappvE8QB2GfMTc0ClCHHHAF0iyg6ZhoSHmQTeKwfY3eAJ5omFCD81ObZximdaPazclHSHtOZqbEg0XTxbVYCqZJDP8U5z4aOLQPGm + 2F0SSB6pPrz7VkRmLkZHOoNJylKfI7JsZePpfXdZXbK509ZmRc7 @@ -7831,7 +7831,7 @@

Alert Detail

Evidence - 2BhgXaQzDrea5DmaSEACcO0wHb5OdyufWvxRJn2H1XtV4ObL3ukltE9zLZPd + 2FmROw7Se2nw4lv0eiPQozsixbPijbji @@ -7857,7 +7857,7 @@

Alert Detail

Evidence - 2F0YFfnYsbrkIOkSbVtzVUKOkW6eyOSwk9d9vyfRKQYRmXHQOIM + 2FmbeEBRDBSKQrw6bUklHbcqBfxOA9a @@ -7883,7 +7883,7 @@

Alert Detail

Evidence - 2Bim3I5VObZnKtdJJAm3AKKemh8qevdIre38akHHkiasJTijPiN6VOsOd9wuZj8RJAapSOVgpedIFqit + 2FqRd6Zei7TznnDe9l7EMs6TeYMGVmI @@ -7942,7 +7942,7 @@

Alert Detail

URL - https://mon-suivi-justice.beta.gouv.fr/packs/js/application-180309a91a44e80b0c30.js + https://mon-suivi-justice.beta.gouv.fr/packs/js/application-b894d8a5125e6f3181a6.js Alert Detail URL - https://mon-suivi-justice.beta.gouv.fr/packs/js/application_static-d9aa363832b204d25416.js + https://mon-suivi-justice.beta.gouv.fr/packs/js/application_static-5b38cfa0d7756a8acd75.js Alert Detail URL - https://mon-suivi-justice.beta.gouv.fr/packs/js/application_static-d9aa363832b204d25416.js + https://mon-suivi-justice.beta.gouv.fr/packs/js/application_static-5b38cfa0d7756a8acd75.js Alert Detail URL - https://mon-suivi-justice.beta.gouv.fr/assets/application_static-fcd2b9c527b6af00353d0a724635225239c7aa56865e558e37c4693eb6cedd41.css + https://mon-suivi-justice.beta.gouv.fr/assets/static/logo_msj-a6b039ab31e23b92141410f0b90e4ebd5c2c6d498a62d2c21e5c7d269d6a6939.svg Alert Detail URL - https://mon-suivi-justice.beta.gouv.fr/packs/js/application_static-d9aa363832b204d25416.js + https://mon-suivi-justice.beta.gouv.fr/packs/js/application_static-5b38cfa0d7756a8acd75.js http://projects.webappsec.org/w/page/13246936/Information%20Leakage

", "cweid": "200", "wascid": "13", - "sourceid": "45" + "sourceid": "48" }, { "pluginid": "10021", @@ -1894,6 +1894,13 @@ "attack": "", "evidence": "" }, + { + "uri": "https://mon-suivi-justice.beta.gouv.fr/assets/static/2021_09_SPIP92_LIVRET_PLATEAU_TECHNIQUE-bd06fe1a31aa9d18e8052daea97090f198b3f057b74a15bd6cf844c8083393d7.pdf", + "method": "GET", + "param": "X-Content-Type-Options", + "attack": "", + "evidence": "" + }, { "uri": "https://mon-suivi-justice.beta.gouv.fr/assets/static/chevron-ed98f6af34750bc66b79cb8170795a4f10951f8c9c34a2fd8495dbf8694d02bf.svg", "method": "GET", @@ -1951,14 +1958,7 @@ "evidence": "" }, { - "uri": "https://mon-suivi-justice.beta.gouv.fr/packs/js/application_static-d9aa363832b204d25416.js", - "method": "GET", - "param": "X-Content-Type-Options", - "attack": "", - "evidence": "" - }, - { - "uri": "https://mon-suivi-justice.beta.gouv.fr/packs/js/static/preparer-18064f8e36e66e0eba15.js", + "uri": "https://mon-suivi-justice.beta.gouv.fr/packs/js/application_static-5b38cfa0d7756a8acd75.js", "method": "GET", "param": "X-Content-Type-Options", "attack": "", @@ -1978,7 +1978,7 @@ "reference": "

http://msdn.microsoft.com/en-us/library/ie/gg622941%28v=vs.85%29.aspx

https://owasp.org/www-community/Security_Headers

", "cweid": "693", "wascid": "15", - "sourceid": "45" + "sourceid": "48" }, { "pluginid": "10094", @@ -1995,21 +1995,21 @@ "method": "GET", "param": "", "attack": "", - "evidence": "2BwqJumYcSibpEMO4r2IsqYdcgLwjs2UIah5AtDO6lWQHCzF2Ucy13ZwmdnRObGVK5m" + "evidence": "ISJksVbhdhA6y1OQYXoZ5PZJ1o6ocIx9dPVZCizBhz" }, { "uri": "https://mon-suivi-justice.beta.gouv.fr", "method": "GET", "param": "", "attack": "", - "evidence": "2FjUCVRL6eat1B4f23n0OasDvjlLng6uRF" + "evidence": "2FrPP5lqet1v8uoOpWxjGlKPZTJmVvMqrkm1B3UlHu" }, { "uri": "https://mon-suivi-justice.beta.gouv.fr/", "method": "GET", "param": "", "attack": "", - "evidence": "2BuczoCKqwZHPZD0MlzAL5sSZK6htQF2W8fYNxNhSTnNc9lJVFlCIoqwO24zH5lRUwzRmjMwl2xoN9IiOmmqNCPN" + "evidence": "zlSrSnSweRVw4JeLBO0HhhbxKaO83sOo390NXKYqddHITSgIGMyNLaaMcBn" }, { "uri": "https://mon-suivi-justice.beta.gouv.fr/assets/application_static-fcd2b9c527b6af00353d0a724635225239c7aa56865e558e37c4693eb6cedd41.css", @@ -2023,65 +2023,65 @@ "method": "GET", "param": "", "attack": "", - "evidence": "MY0ZJv45BI1q5nRcbizimk0nETitHw" + "evidence": "7a6cXV1z4fsj89748inFVFFLoEuEZua8oqbSEge1EHrQS57fPJyQA9dRDAGGbimdZfznpsEwMQ7YTHW1a5sRQteWf3iC2SiIS8e3DH3D7j2vOYSH7j6luzAcgmdElJTSXzOmnCAd2jci1r2S71r7n1dAijB9tKknWb6xdfmNgjZvzJcUD3Z" }, { "uri": "https://mon-suivi-justice.beta.gouv.fr/donnees_personnelles", "method": "GET", "param": "", "attack": "", - "evidence": "2BMmjMEqgXRXBzzhnve4cJAcE1uq2XbKPcKm" + "evidence": "2FC3e4IFRpRIsAe0oOjwBHvXw2I9quoWs88wDS1dK0ZLibISStzg0BnO1VKkwL2v4sfDDSLrJbnOBydCdA1" }, { "uri": "https://mon-suivi-justice.beta.gouv.fr/home", "method": "GET", "param": "", "attack": "", - "evidence": "2BuSmRMPjCIoerRaWOJ76hp8uJZkSCG0" + "evidence": "2FvBhfgxKqwIdvpBLuMdrZfcYu6Xntj2NzC5n9r1XcQKNZ" }, { "uri": "https://mon-suivi-justice.beta.gouv.fr/ma_reinsertion", "method": "GET", "param": "", "attack": "", - "evidence": "2FCgftclWPej8G3IHH0yFgQAK32QLYT8BNc8sD0SFM2j81Nvp44v37Xwhi4ZOdI6TfP" + "evidence": "2Flek59FS1Hq4nRZ8yZo770JiRvCIjXUen9hu68YNdK9Z0jN4QYhraO84KtpwXb93jbG" }, { "uri": "https://mon-suivi-justice.beta.gouv.fr/preparer_mon_rdv", "method": "GET", "param": "", "attack": "", - "evidence": "EyDlbzWZQKFDLaaZ1pLappvE8QB2GfMTc0ClCHHHAF0iyg6ZhoSHmQTeKwfY3eAJ5omFCD81ObZximdaPazclHSHtOZqbEg0XTxbVYCqZJDP8U5z4aOLQPGm" + "evidence": "2F0SSB6pPrz7VkRmLkZHOoNJylKfI7JsZePpfXdZXbK509ZmRc7" }, { "uri": "https://mon-suivi-justice.beta.gouv.fr/preparer_sap_nanterre", "method": "GET", "param": "", "attack": "", - "evidence": "2BhgXaQzDrea5DmaSEACcO0wHb5OdyufWvxRJn2H1XtV4ObL3ukltE9zLZPd" + "evidence": "2FmROw7Se2nw4lv0eiPQozsixbPijbji" }, { "uri": "https://mon-suivi-justice.beta.gouv.fr/preparer_spip92", "method": "GET", "param": "", "attack": "", - "evidence": "2F0YFfnYsbrkIOkSbVtzVUKOkW6eyOSwk9d9vyfRKQYRmXHQOIM" + "evidence": "2FmbeEBRDBSKQrw6bUklHbcqBfxOA9a" }, { "uri": "https://mon-suivi-justice.beta.gouv.fr/regles_essentielles", "method": "GET", "param": "", "attack": "", - "evidence": "2Bim3I5VObZnKtdJJAm3AKKemh8qevdIre38akHHkiasJTijPiN6VOsOd9wuZj8RJAapSOVgpedIFqit" + "evidence": "2FqRd6Zei7TznnDe9l7EMs6TeYMGVmI" } ], "count": "12", "solution": "

Manually confirm that the Base64 data does not leak sensitive information, and that the data cannot be aggregated/used to exploit other vulnerabilities.

", - "otherinfo": "

\uFFFD\\x001c*&\uFFFDq(\uFFFD\uFFFDC\\x000e\u2F48\uFFFD\uFFFD\\x001dr\\x0002\uFFFD\uFFFD\u0354!\uFFFDy\\x0002\uFFFD\uFFFD\uFFFDU\uFFFD\\x001c,\uFFFD\uFFFDG2\uFFFDvp\uFFFD\uFFFD\uFFFD9\uFFFD\uFFFD+\uFFFD

", + "otherinfo": "

!\"d\uFFFDV\uFFFDv\\x0010:\uFFFDS\uFFFDaz\\x0019\uFFFD\uFFFDI\u058E\uFFFDp\uFFFD}t\uFFFDY

,\uFFFD\uFFFD

", "reference": "

http://projects.webappsec.org/w/page/13246936/Information%20Leakage

", "cweid": "200", "wascid": "13", - "sourceid": "1" + "sourceid": "7" }, { "pluginid": "10027", @@ -2094,14 +2094,14 @@ "desc": "

The response appears to contain suspicious comments which may help an attacker. Note: Matches made within script blocks or files are against the entire content not only comments.

", "instances":[ { - "uri": "https://mon-suivi-justice.beta.gouv.fr/packs/js/application-180309a91a44e80b0c30.js", + "uri": "https://mon-suivi-justice.beta.gouv.fr/packs/js/application-b894d8a5125e6f3181a6.js", "method": "GET", "param": "", "attack": "", "evidence": "query" }, { - "uri": "https://mon-suivi-justice.beta.gouv.fr/packs/js/application_static-d9aa363832b204d25416.js", + "uri": "https://mon-suivi-justice.beta.gouv.fr/packs/js/application_static-5b38cfa0d7756a8acd75.js", "method": "GET", "param": "", "attack": "", @@ -2114,7 +2114,7 @@ "reference": "", "cweid": "200", "wascid": "13", - "sourceid": "103" + "sourceid": "102" }, { "pluginid": "10109", @@ -2169,7 +2169,7 @@ "evidence": "Pr\u00E9parer mon rendez-vous" }, { - "uri": "https://mon-suivi-justice.beta.gouv.fr/packs/js/application_static-d9aa363832b204d25416.js", + "uri": "https://mon-suivi-justice.beta.gouv.fr/packs/js/application_static-5b38cfa0d7756a8acd75.js", "method": "GET", "param": "", "attack": "", @@ -2291,14 +2291,14 @@ "desc": "

The response contents are storable by caching components such as proxy servers, and may be retrieved directly from the cache, rather than from the origin server by the caching servers, in response to similar requests from other users. If the response data is sensitive, personal or user-specific, this may result in sensitive information being leaked. In some cases, this may even result in a user gaining complete control of the session of another user, depending on the configuration of the caching components in use in their environment. This is primarily an issue where \"shared\" caching servers such as \"proxy\" caches are configured on the local network. This configuration is typically found in corporate or educational environments, for instance.

", "instances":[ { - "uri": "https://mon-suivi-justice.beta.gouv.fr/assets/application_static-fcd2b9c527b6af00353d0a724635225239c7aa56865e558e37c4693eb6cedd41.css", + "uri": "https://mon-suivi-justice.beta.gouv.fr/assets/static/logo_msj-a6b039ab31e23b92141410f0b90e4ebd5c2c6d498a62d2c21e5c7d269d6a6939.svg", "method": "GET", "param": "", "attack": "", "evidence": "" }, { - "uri": "https://mon-suivi-justice.beta.gouv.fr/packs/js/application_static-d9aa363832b204d25416.js", + "uri": "https://mon-suivi-justice.beta.gouv.fr/packs/js/application_static-5b38cfa0d7756a8acd75.js", "method": "GET", "param": "", "attack": "", @@ -2393,7 +2393,7 @@ "reference": "

http://websecuritytool.codeplex.com/wikipage?title=Checks#user-controlled-html-attribute

", "cweid": "20", "wascid": "20", - "sourceid": "105" + "sourceid": "104" } ] }