Exploring CRAN claims of the "security" of CRAN mirrors
You can not select more than 25 topics Topics must start with a letter or number, can include dashes ('-') and can be up to 35 characters long.
 
 

1062 lines
47 KiB

[
{
"id" : "service",
"ip" : "cran.curtin.edu.au/13.236.186.97",
"port" : "443",
"severity" : "INFO",
"finding" : "HTTP"
}
, {
"id" : "SSLv2",
"ip" : "cran.curtin.edu.au/13.236.186.97",
"port" : "443",
"severity" : "OK",
"finding" : "not offered"
}
, {
"id" : "SSLv3",
"ip" : "cran.curtin.edu.au/13.236.186.97",
"port" : "443",
"severity" : "OK",
"finding" : "not offered"
}
, {
"id" : "TLS1",
"ip" : "cran.curtin.edu.au/13.236.186.97",
"port" : "443",
"severity" : "INFO",
"finding" : "offered"
}
, {
"id" : "TLS1_1",
"ip" : "cran.curtin.edu.au/13.236.186.97",
"port" : "443",
"severity" : "INFO",
"finding" : "offered"
}
, {
"id" : "TLS1_2",
"ip" : "cran.curtin.edu.au/13.236.186.97",
"port" : "443",
"severity" : "OK",
"finding" : "offered"
}
, {
"id" : "TLS1_3",
"ip" : "cran.curtin.edu.au/13.236.186.97",
"port" : "443",
"severity" : "INFO",
"finding" : "not offered and downgraded to a weaker protocol"
}
, {
"id" : "NPN",
"ip" : "cran.curtin.edu.au/13.236.186.97",
"port" : "443",
"severity" : "INFO",
"finding" : "not offered"
}
, {
"id" : "ALPN",
"ip" : "cran.curtin.edu.au/13.236.186.97",
"port" : "443",
"severity" : "INFO",
"finding" : "not offered"
}
, {
"id" : "cipherlist_NULL",
"ip" : "cran.curtin.edu.au/13.236.186.97",
"port" : "443",
"severity" : "OK",
"cwe" : "CWE-327",
"finding" : "not offered"
}
, {
"id" : "cipherlist_aNULL",
"ip" : "cran.curtin.edu.au/13.236.186.97",
"port" : "443",
"severity" : "OK",
"cwe" : "CWE-327",
"finding" : "not offered"
}
, {
"id" : "cipherlist_EXPORT",
"ip" : "cran.curtin.edu.au/13.236.186.97",
"port" : "443",
"severity" : "OK",
"cwe" : "CWE-327",
"finding" : "not offered"
}
, {
"id" : "cipherlist_LOW",
"ip" : "cran.curtin.edu.au/13.236.186.97",
"port" : "443",
"severity" : "OK",
"cwe" : "CWE-327",
"finding" : "not offered"
}
, {
"id" : "cipherlist_3DES_IDEA",
"ip" : "cran.curtin.edu.au/13.236.186.97",
"port" : "443",
"severity" : "HIGH",
"cwe" : "CWE-310",
"finding" : "offered"
}
, {
"id" : "cipherlist_AVERAGE",
"ip" : "cran.curtin.edu.au/13.236.186.97",
"port" : "443",
"severity" : "LOW",
"cwe" : "CWE-310",
"finding" : "offered"
}
, {
"id" : "cipherlist_STRONG",
"ip" : "cran.curtin.edu.au/13.236.186.97",
"port" : "443",
"severity" : "OK",
"finding" : "offered"
}
, {
"id" : "PFS",
"ip" : "cran.curtin.edu.au/13.236.186.97",
"port" : "443",
"severity" : "OK",
"finding" : "offered"
}
, {
"id" : "PFS_ciphers",
"ip" : "cran.curtin.edu.au/13.236.186.97",
"port" : "443",
"severity" : "INFO",
"finding" : "ECDHE-RSA-AES256-GCM-SHA384 ECDHE-RSA-AES256-SHA384 ECDHE-RSA-AES256-SHA DHE-RSA-AES256-GCM-SHA384 DHE-RSA-AES256-SHA256 DHE-RSA-AES256-SHA DHE-RSA-CAMELLIA256-SHA ECDHE-RSA-AES128-GCM-SHA256 ECDHE-RSA-AES128-SHA256 ECDHE-RSA-AES128-SHA DHE-RSA-AES128-GCM-SHA256 DHE-RSA-AES128-SHA256 DHE-RSA-AES128-SHA DHE-RSA-CAMELLIA128-SHA"
}
, {
"id" : "PFS_ECDHE_curves",
"ip" : "cran.curtin.edu.au/13.236.186.97",
"port" : "443",
"severity" : "OK",
"finding" : "secp256k1 prime256v1 secp384r1 secp521r1"
}
, {
"id" : "DH_groups",
"ip" : "cran.curtin.edu.au/13.236.186.97",
"port" : "443",
"severity" : "OK",
"finding" : "RFC3526/Oakley Group 14"
}
, {
"id" : "cipher_order",
"ip" : "cran.curtin.edu.au/13.236.186.97",
"port" : "443",
"severity" : "OK",
"finding" : "server"
}
, {
"id" : "protocol_negotiated",
"ip" : "cran.curtin.edu.au/13.236.186.97",
"port" : "443",
"severity" : "OK",
"finding" : "Default protocol TLS1.2"
}
, {
"id" : "cipher_negotiated",
"ip" : "cran.curtin.edu.au/13.236.186.97",
"port" : "443",
"severity" : "OK",
"finding" : "ECDHE-RSA-AES128-GCM-SHA256, 256 bit ECDH (P-256)"
}
, {
"id" : "cipherorder_TLSv1",
"ip" : "cran.curtin.edu.au/13.236.186.97",
"port" : "443",
"severity" : "INFO",
"finding" : "ECDHE-RSA-AES128-SHA ECDHE-RSA-AES256-SHA DHE-RSA-AES128-SHA DHE-RSA-AES256-SHA AES128-SHA AES256-SHA DHE-RSA-CAMELLIA256-SHA CAMELLIA256-SHA DHE-RSA-CAMELLIA128-SHA CAMELLIA128-SHA DES-CBC3-SHA"
}
, {
"id" : "cipherorder_TLSv1_1",
"ip" : "cran.curtin.edu.au/13.236.186.97",
"port" : "443",
"severity" : "INFO",
"finding" : "ECDHE-RSA-AES128-SHA ECDHE-RSA-AES256-SHA DHE-RSA-AES128-SHA DHE-RSA-AES256-SHA AES128-SHA AES256-SHA DHE-RSA-CAMELLIA256-SHA CAMELLIA256-SHA DHE-RSA-CAMELLIA128-SHA CAMELLIA128-SHA DES-CBC3-SHA"
}
, {
"id" : "cipherorder_TLSv1_2",
"ip" : "cran.curtin.edu.au/13.236.186.97",
"port" : "443",
"severity" : "INFO",
"finding" : "ECDHE-RSA-AES128-GCM-SHA256 ECDHE-RSA-AES256-GCM-SHA384 DHE-RSA-AES128-GCM-SHA256 DHE-RSA-AES256-GCM-SHA384 ECDHE-RSA-AES128-SHA256 ECDHE-RSA-AES128-SHA ECDHE-RSA-AES256-SHA384 ECDHE-RSA-AES256-SHA DHE-RSA-AES128-SHA256 DHE-RSA-AES128-SHA DHE-RSA-AES256-SHA256 DHE-RSA-AES256-SHA AES128-GCM-SHA256 AES256-GCM-SHA384 AES128-SHA256 AES256-SHA256 AES128-SHA AES256-SHA DHE-RSA-CAMELLIA256-SHA CAMELLIA256-SHA DHE-RSA-CAMELLIA128-SHA CAMELLIA128-SHA DES-CBC3-SHA"
}
, {
"id" : "TLS_extensions",
"ip" : "cran.curtin.edu.au/13.236.186.97",
"port" : "443",
"severity" : "INFO",
"finding" : "'server name/#0' 'renegotiation info/#65281' 'EC point formats/#11' 'session ticket/#35' 'heartbeat/#15'"
}
, {
"id" : "TLS_session_ticket",
"ip" : "cran.curtin.edu.au/13.236.186.97",
"port" : "443",
"severity" : "INFO",
"finding" : "valid for 300 seconds only (<daily)"
}
, {
"id" : "SSL_sessionID_support",
"ip" : "cran.curtin.edu.au/13.236.186.97",
"port" : "443",
"severity" : "INFO",
"finding" : "yes"
}
, {
"id" : "sessionresumption_ticket",
"ip" : "cran.curtin.edu.au/13.236.186.97",
"port" : "443",
"severity" : "INFO",
"finding" : "supported"
}
, {
"id" : "sessionresumption_ID",
"ip" : "cran.curtin.edu.au/13.236.186.97",
"port" : "443",
"severity" : "INFO",
"finding" : "supported"
}
, {
"id" : "TLS_timestamp",
"ip" : "cran.curtin.edu.au/13.236.186.97",
"port" : "443",
"severity" : "INFO",
"finding" : "random"
}
, {
"id" : "cert_numbers",
"ip" : "cran.curtin.edu.au/13.236.186.97",
"port" : "443",
"severity" : "INFO",
"finding" : "1"
}
, {
"id" : "cert_signatureAlgorithm",
"ip" : "cran.curtin.edu.au/13.236.186.97",
"port" : "443",
"severity" : "OK",
"finding" : "SHA256 with RSA"
}
, {
"id" : "cert_keySize",
"ip" : "cran.curtin.edu.au/13.236.186.97",
"port" : "443",
"severity" : "INFO",
"finding" : "2048 bits"
}
, {
"id" : "cert_keyUsage",
"ip" : "cran.curtin.edu.au/13.236.186.97",
"port" : "443",
"severity" : "INFO",
"finding" : "Digital Signature, Key Encipherment"
}
, {
"id" : "cert_extKeyUsage",
"ip" : "cran.curtin.edu.au/13.236.186.97",
"port" : "443",
"severity" : "INFO",
"finding" : "cert_ext_keyusage"
}
, {
"id" : "cert_serialNumber",
"ip" : "cran.curtin.edu.au/13.236.186.97",
"port" : "443",
"severity" : "INFO",
"finding" : "01802DB07C40AC14859E3AFBA61FEDE1"
}
, {
"id" : "cert_fingerprintSHA1",
"ip" : "cran.curtin.edu.au/13.236.186.97",
"port" : "443",
"severity" : "INFO",
"finding" : "0D208BA93866F1986A762AD88A15602F628E722E"
}
, {
"id" : "cert_fingerprintSHA256",
"ip" : "cran.curtin.edu.au/13.236.186.97",
"port" : "443",
"severity" : "INFO",
"finding" : "351AAABE780C6063FBC79224DEF7441B7AE747E5EA95710E7B9A238D3B4EA57F"
}
, {
"id" : "cert",
"ip" : "cran.curtin.edu.au/13.236.186.97",
"port" : "443",
"severity" : "INFO",
"finding" : "-----BEGIN CERTIFICATE----- MIIH4jCCBsqgAwIBAgIQAYAtsHxArBSFnjr7ph/t4TANBgkqhkiG9w0BAQsFADB1 MQswCQYDVQQGEwJVUzEVMBMGA1UEChMMRGlnaUNlcnQgSW5jMRkwFwYDVQQLExB3 d3cuZGlnaWNlcnQuY29tMTQwMgYDVQQDEytEaWdpQ2VydCBTSEEyIEV4dGVuZGVk IFZhbGlkYXRpb24gU2VydmVyIENBMB4XDTE3MDYxNTAwMDAwMFoXDTE5MDgwMTEy MDAwMFowgfQxHTAbBgNVBA8MFFByaXZhdGUgT3JnYW5pemF0aW9uMRMwEQYLKwYB BAGCNzwCAQMTAkFVMRcwFQYDVQQFEw45OSAxNDMgODQyIDU2OTEUMBIGA1UECRML S2VudCBTdHJlZXQxDTALBgNVBBETBDYxMDIxCzAJBgNVBAYTAkFVMRowGAYDVQQI ExFXZXN0ZXJuIEF1c3RyYWxpYTEQMA4GA1UEBxMHQmVudGxleTEoMCYGA1UEChMf Q3VydGluIFVuaXZlcnNpdHkgb2YgVGVjaG5vbG9neTEbMBkGA1UEAxMSY3Jhbi5j dXJ0aW4uZWR1LmF1MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAsV3N NvPCw4h3e11pOMfk7ba6vt/FQX41eiSGhm3DToVJ8Ptarzx3HJMPEwOgucQ7DWej 2JleVOPfsZy5gfZj3L+DJnkmTu6ZX+TNYwT22PkWxOlaWMZWTuc5kA51tXoRSJx8 B67c8W8ilF1IjXbv6BHquMM5KOQMKa9vpRcu/0CNmk9lwhjzCI5AF4K4A42T/7Id ktnMC5whZWYWrrUEXzGyOkSqr1Ob+h90LuM/xfyWs0EzBjv4pFqKv/g73rMn68r0 vuI6+Ur1wpBNeGw3shTO8J4PiN/mM6PDDt2eobbwGbonC5ZPPywIZz/lAFxjPLs0 I/ZpgJE4eKBpIHwwuQIDAQABo4ID7DCCA+gwHwYDVR0jBBgwFoAUPdNQpdagre7z SmAKZdMh1Pj41g8wHQYDVR0OBBYEFI5b1S97h3cAngn+GuLn9jHnmutxMB0GA1Ud EQQWMBSCEmNyYW4uY3VydGluLmVkdS5hdTAOBgNVHQ8BAf8EBAMCBaAwHQYDVR0l BBYwFAYIKwYBBQUHAwEGCCsGAQUFBwMCMHUGA1UdHwRuMGwwNKAyoDCGLmh0dHA6 Ly9jcmwzLmRpZ2ljZXJ0LmNvbS9zaGEyLWV2LXNlcnZlci1nMi5jcmwwNKAyoDCG Lmh0dHA6Ly9jcmw0LmRpZ2ljZXJ0LmNvbS9zaGEyLWV2LXNlcnZlci1nMi5jcmww SwYDVR0gBEQwQjA3BglghkgBhv1sAgEwKjAoBggrBgEFBQcCARYcaHR0cHM6Ly93 d3cuZGlnaWNlcnQuY29tL0NQUzAHBgVngQwBATCBiAYIKwYBBQUHAQEEfDB6MCQG CCsGAQUFBzABhhhodHRwOi8vb2NzcC5kaWdpY2VydC5jb20wUgYIKwYBBQUHMAKG Rmh0dHA6Ly9jYWNlcnRzLmRpZ2ljZXJ0LmNvbS9EaWdpQ2VydFNIQTJFeHRlbmRl ZFZhbGlkYXRpb25TZXJ2ZXJDQS5jcnQwDAYDVR0TAQH/BAIwADCCAfkGCisGAQQB 1nkCBAIEggHpBIIB5QHjAHcApLkJkLQYWBSHuxOizGdwCjw1mAT5G9+443fNDsgN 3BAAAAFcqu8yqwAABAMASDBGAiEAg68zhbxd0zrbJMzDMdPPhjFbHVVmFLsbWp6v DnrLNJECIQC5LVFVzhnFY/0bf8MOXF3GviGaImxzTBmfsGI5qM5FlAB3AFYUBpov 18Ls0/XhvUSyPsdGdrm8mRFcwO+UmFXWidDdAAABXKrvM4EAAAQDAEgwRgIhAJ8k L25RBxt0z5Hnh/y907TwM2UHp7NqhUDVZxnDlw4WAiEA35S5Yp2jp9coFzUCu4tu e7IJ8oZfaxD4QSExSKNYM0MAdwDuS723dc5guuFCaR+r4Z5mow9+X7By2IMAxHuJ eqj9ywAAAVyq7zWnAAAEAwBIMEYCIQDF+1iU4Tb8BxnyVeZ6EDzjSLM+TaCvt4yq XyV00shmPAIhAJn44z2/zcnKKYB+g6TzjQtMP6Z3i0IIWFfyOlYjkh9lAHYAu9nf vB+KcbWTlCOXqpJ7RzhXlQqrUugakJZkNo4e0YUAAAFcqu80IgAABAMARzBFAiEA +LsII2y1K7EaSrsjhxWL0umFY0LqiwmxJxad2PImCMcCID7wRspm0p+6OVsVD4Wf QnG2lnS91HHmdpMEMgXsJf/3MA0GCSqGSIb3DQEBCwUAA4IBAQCCvR1Ws7S24yG/ 5090gj1BPyx8/fehqAiICti6SJyBAsWzwqtQpx6NSgl/WHvgVsfrYfv6YiiSqhkv aTh4Bi6IMcJOBM76eaQEHytZLCJf8LyMKsFWFb/uUoHy2tWwnkFNDQHltiJahizn mQgAgCL+mJe/eSitnza1qqRMZsz5xHL//SruZlOdNPQFL0Y+2REYfuyCXgHhQUpU OpxY+xCpptroBiZb5KVxhV6FlaG8kSaLU+7UVF1hwApTfAUpDTxsMOu1dV484Xx0 Jfyq5oAHF0vH36nyO42MnfEG0sryyJabrkIkgeRFdsvegBK4p7qV0gzlW63Z++dT z9nE6TSB -----END CERTIFICATE-----"
}
, {
"id" : "cert_commonName",
"ip" : "cran.curtin.edu.au/13.236.186.97",
"port" : "443",
"severity" : "OK",
"finding" : "cran.curtin.edu.au"
}
, {
"id" : "cert_commonName_wo_SNI",
"ip" : "cran.curtin.edu.au/13.236.186.97",
"port" : "443",
"severity" : "INFO",
"finding" : "cran.curtin.edu.au"
}
, {
"id" : "cert_subjectAltName",
"ip" : "cran.curtin.edu.au/13.236.186.97",
"port" : "443",
"severity" : "INFO",
"finding" : "cran.curtin.edu.au"
}
, {
"id" : "cert_caIssuers",
"ip" : "cran.curtin.edu.au/13.236.186.97",
"port" : "443",
"severity" : "INFO",
"finding" : "DigiCert SHA2 Extended Validation Server CA (DigiCert Inc from US)"
}
, {
"id" : "cert_trust",
"ip" : "cran.curtin.edu.au/13.236.186.97",
"port" : "443",
"severity" : "OK",
"finding" : "Ok via SAN and CN (same w/o SNI)"
}
, {
"id" : "cert_chain_of_trust",
"ip" : "cran.curtin.edu.au/13.236.186.97",
"port" : "443",
"severity" : "OK",
"finding" : "passed."
}
, {
"id" : "cert_certificatePolicies_EV",
"ip" : "cran.curtin.edu.au/13.236.186.97",
"port" : "443",
"severity" : "OK",
"finding" : "yes"
}
, {
"id" : "cert_eTLS",
"ip" : "cran.curtin.edu.au/13.236.186.97",
"port" : "443",
"severity" : "INFO",
"finding" : "not present"
}
, {
"id" : "cert_expiration_status",
"ip" : "cran.curtin.edu.au/13.236.186.97",
"port" : "443",
"severity" : "OK",
"finding" : "150 >= 60 days"
}
, {
"id" : "cert_notBefore",
"ip" : "cran.curtin.edu.au/13.236.186.97",
"port" : "443",
"severity" : "INFO",
"finding" : "2017-06-14 20:00"
}
, {
"id" : "cert_notAfter",
"ip" : "cran.curtin.edu.au/13.236.186.97",
"port" : "443",
"severity" : "OK",
"finding" : "2019-08-01 08:00"
}
, {
"id" : "certs_countServer",
"ip" : "cran.curtin.edu.au/13.236.186.97",
"port" : "443",
"severity" : "INFO",
"finding" : "2"
}
, {
"id" : "certs_list_ordering_problem",
"ip" : "cran.curtin.edu.au/13.236.186.97",
"port" : "443",
"severity" : "INFO",
"finding" : "no"
}
, {
"id" : "cert_crlDistributionPoints",
"ip" : "cran.curtin.edu.au/13.236.186.97",
"port" : "443",
"severity" : "INFO",
"finding" : "http://crl3.digicert.com/sha2-ev-server-g2.crl http://crl4.digicert.com/sha2-ev-server-g2.crl"
}
, {
"id" : "cert_ocspURL",
"ip" : "cran.curtin.edu.au/13.236.186.97",
"port" : "443",
"severity" : "INFO",
"finding" : "http://ocsp.digicert.com"
}
, {
"id" : "OCSP_stapling",
"ip" : "cran.curtin.edu.au/13.236.186.97",
"port" : "443",
"severity" : "LOW",
"finding" : "not offered"
}
, {
"id" : "cert_mustStapleExtension",
"ip" : "cran.curtin.edu.au/13.236.186.97",
"port" : "443",
"severity" : "INFO",
"finding" : "--"
}
, {
"id" : "DNS_CAArecord",
"ip" : "cran.curtin.edu.au/13.236.186.97",
"port" : "443",
"severity" : "LOW",
"finding" : "--"
}
, {
"id" : "certificate_transparency",
"ip" : "cran.curtin.edu.au/13.236.186.97",
"port" : "443",
"severity" : "OK",
"finding" : "yes (certificate extension)"
}
, {
"id" : "HTTP_status_code",
"ip" : "cran.curtin.edu.au/13.236.186.97",
"port" : "443",
"severity" : "INFO",
"finding" : "200 OK ('/')"
}
, {
"id" : "HTTP_clock_skew",
"ip" : "cran.curtin.edu.au/13.236.186.97",
"port" : "443",
"severity" : "INFO",
"finding" : "-1 seconds from localtime"
}
, {
"id" : "HSTS",
"ip" : "cran.curtin.edu.au/13.236.186.97",
"port" : "443",
"severity" : "LOW",
"finding" : "not offered"
}
, {
"id" : "HPKP",
"ip" : "cran.curtin.edu.au/13.236.186.97",
"port" : "443",
"severity" : "INFO",
"finding" : "No support for HTTP Public Key Pinning"
}
, {
"id" : "banner_server",
"ip" : "cran.curtin.edu.au/13.236.186.97",
"port" : "443",
"severity" : "INFO",
"finding" : "Apache/2.4.6 (Red Hat Enterprise Linux) OpenSSL/1.0.2k-fips"
}
, {
"id" : "banner_application",
"ip" : "cran.curtin.edu.au/13.236.186.97",
"port" : "443",
"severity" : "INFO",
"finding" : "No application banner found"
}
, {
"id" : "cookie_count",
"ip" : "cran.curtin.edu.au/13.236.186.97",
"port" : "443",
"severity" : "INFO",
"finding" : "0 at '/'"
}
, {
"id" : "security_headers",
"ip" : "cran.curtin.edu.au/13.236.186.97",
"port" : "443",
"severity" : "MEDIUM",
"finding" : "--"
}
, {
"id" : "banner_reverseproxy",
"ip" : "cran.curtin.edu.au/13.236.186.97",
"port" : "443",
"severity" : "INFO",
"cwe" : "CWE-200",
"finding" : "--"
}
, {
"id" : "heartbleed",
"ip" : "cran.curtin.edu.au/13.236.186.97",
"port" : "443",
"severity" : "OK",
"cve" : "CVE-2014-0160",
"cwe" : "CWE-119",
"finding" : "not vulnerable , timed out"
}
, {
"id" : "CCS",
"ip" : "cran.curtin.edu.au/13.236.186.97",
"port" : "443",
"severity" : "OK",
"cve" : "CVE-2014-0224",
"cwe" : "CWE-310",
"finding" : "not vulnerable"
}
, {
"id" : "ticketbleed",
"ip" : "cran.curtin.edu.au/13.236.186.97",
"port" : "443",
"severity" : "OK",
"cve" : "CVE-2016-9244",
"cwe" : "CWE-200",
"finding" : "not vulnerable"
}
, {
"id" : "ROBOT",
"ip" : "cran.curtin.edu.au/13.236.186.97",
"port" : "443",
"severity" : "OK",
"cve" : "CVE-2017-17382 CVE-2017-17427 CVE-2017-17428 CVE-2017-13098 CVE-2017-1000385 CVE-2017-13099 CVE-2016-6883 CVE-2012-5081 CVE-2017-6168",
"cwe" : "CWE-203",
"finding" : "not vulnerable"
}
, {
"id" : "secure_renego",
"ip" : "cran.curtin.edu.au/13.236.186.97",
"port" : "443",
"severity" : "OK",
"cve" : "CVE-2009-3555",
"cwe" : "CWE-310",
"finding" : "not vulnerable"
}
, {
"id" : "secure_client_renego",
"ip" : "cran.curtin.edu.au/13.236.186.97",
"port" : "443",
"severity" : "OK",
"cve" : "CVE-2009-3555",
"cwe" : "CWE-310",
"finding" : "not vulnerable"
}
, {
"id" : "CRIME_TLS",
"ip" : "cran.curtin.edu.au/13.236.186.97",
"port" : "443",
"severity" : "OK",
"cve" : "CVE-2012-4929",
"cwe" : "CWE-310",
"finding" : "not vulnerable"
}
, {
"id" : "BREACH",
"ip" : "cran.curtin.edu.au/13.236.186.97",
"port" : "443",
"severity" : "OK",
"cve" : "CVE-2013-3587",
"cwe" : "CWE-310",
"finding" : "not vulnerable, no HTTP compression - only supplied '/' tested"
}
, {
"id" : "POODLE_SSL",
"ip" : "cran.curtin.edu.au/13.236.186.97",
"port" : "443",
"severity" : "OK",
"cve" : "CVE-2014-3566",
"cwe" : "CWE-310",
"finding" : "not vulnerable"
}
, {
"id" : "fallback_SCSV",
"ip" : "cran.curtin.edu.au/13.236.186.97",
"port" : "443",
"severity" : "OK",
"finding" : "supported"
}
, {
"id" : "SWEET32",
"ip" : "cran.curtin.edu.au/13.236.186.97",
"port" : "443",
"severity" : "LOW",
"cve" : "CVE-2016-2183 CVE-2016-6329",
"cwe" : "CWE-327",
"finding" : "uses 64 bit block ciphers"
}
, {
"id" : "FREAK",
"ip" : "cran.curtin.edu.au/13.236.186.97",
"port" : "443",
"severity" : "OK",
"cve" : "CVE-2015-0204",
"cwe" : "CWE-310",
"finding" : "not vulnerable"
}
, {
"id" : "DROWN",
"ip" : "cran.curtin.edu.au/13.236.186.97",
"port" : "443",
"severity" : "OK",
"cve" : "CVE-2016-0800 CVE-2016-0703",
"cwe" : "CWE-310",
"finding" : "not vulnerable to DROWN on this host and port"
}
, {
"id" : "DROWN",
"ip" : "cran.curtin.edu.au/13.236.186.97",
"port" : "443",
"severity" : "INFO",
"cve" : "CVE-2016-0800 CVE-2016-0703",
"cwe" : "CWE-310",
"finding" : "Make sure you don't use this certificate elsewhere with SSLv2 enabled services, see https://censys.io/ipv4?q=351AAABE780C6063FBC79224DEF7441B7AE747E5EA95710E7B9A238D3B4EA57F"
}
, {
"id" : "LOGJAM-common_primes",
"ip" : "cran.curtin.edu.au/13.236.186.97",
"port" : "443",
"severity" : "INFO",
"cve" : "CVE-2015-4000",
"cwe" : "CWE-310",
"finding" : "RFC3526/Oakley Group 14"
}
, {
"id" : "LOGJAM",
"ip" : "cran.curtin.edu.au/13.236.186.97",
"port" : "443",
"severity" : "OK",
"cve" : "CVE-2015-4000",
"cwe" : "CWE-310",
"finding" : "not vulnerable, no DH EXPORT ciphers,"
}
, {
"id" : "BEAST_CBC_TLS1",
"ip" : "cran.curtin.edu.au/13.236.186.97",
"port" : "443",
"severity" : "MEDIUM",
"cve" : "CVE-2011-3389",
"cwe" : "CWE-20",
"finding" : "ECDHE-RSA-AES128-SHA ECDHE-RSA-AES256-SHA DHE-RSA-AES128-SHA DHE-RSA-AES256-SHA AES128-SHA AES256-SHA DHE-RSA-CAMELLIA256-SHA CAMELLIA256-SHA DHE-RSA-CAMELLIA128-SHA CAMELLIA128-SHA DES-CBC3-SHA"
}
, {
"id" : "BEAST",
"ip" : "cran.curtin.edu.au/13.236.186.97",
"port" : "443",
"severity" : "LOW",
"cve" : "CVE-2011-3389",
"cwe" : "CWE-20",
"finding" : "VULNERABLE -- but also supports higher protocols TLSv1.1 TLSv1.2 (likely mitigated)"
}
, {
"id" : "LUCKY13",
"ip" : "cran.curtin.edu.au/13.236.186.97",
"port" : "443",
"severity" : "LOW",
"cve" : "CVE-2013-0169",
"cwe" : "CWE-310",
"finding" : "potentially vulnerable, uses TLS CBC ciphers"
}
, {
"id" : "RC4",
"ip" : "cran.curtin.edu.au/13.236.186.97",
"port" : "443",
"severity" : "OK",
"cve" : "CVE-2013-2566 CVE-2015-2808",
"cwe" : "CWE-310",
"finding" : "not vulnerable"
}
, {
"id" : "cipher_xc030",
"ip" : "cran.curtin.edu.au/13.236.186.97",
"port" : "443",
"severity" : "INFO",
"finding" : "xc030 ECDHE-RSA-AES256-GCM-SHA384 ECDH 256 AESGCM 256 TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384"
}
, {
"id" : "cipher_xc028",
"ip" : "cran.curtin.edu.au/13.236.186.97",
"port" : "443",
"severity" : "INFO",
"finding" : "xc028 ECDHE-RSA-AES256-SHA384 ECDH 256 AES 256 TLS_ECDHE_RSA_WITH_AES_256_CBC_SHA384"
}
, {
"id" : "cipher_xc014",
"ip" : "cran.curtin.edu.au/13.236.186.97",
"port" : "443",
"severity" : "INFO",
"finding" : "xc014 ECDHE-RSA-AES256-SHA ECDH 256 AES 256 TLS_ECDHE_RSA_WITH_AES_256_CBC_SHA"
}
, {
"id" : "cipher_x9f",
"ip" : "cran.curtin.edu.au/13.236.186.97",
"port" : "443",
"severity" : "INFO",
"finding" : "x9f DHE-RSA-AES256-GCM-SHA384 DH 2048 AESGCM 256 TLS_DHE_RSA_WITH_AES_256_GCM_SHA384"
}
, {
"id" : "cipher_x6b",
"ip" : "cran.curtin.edu.au/13.236.186.97",
"port" : "443",
"severity" : "INFO",
"finding" : "x6b DHE-RSA-AES256-SHA256 DH 2048 AES 256 TLS_DHE_RSA_WITH_AES_256_CBC_SHA256"
}
, {
"id" : "cipher_x39",
"ip" : "cran.curtin.edu.au/13.236.186.97",
"port" : "443",
"severity" : "INFO",
"finding" : "x39 DHE-RSA-AES256-SHA DH 2048 AES 256 TLS_DHE_RSA_WITH_AES_256_CBC_SHA"
}
, {
"id" : "cipher_x88",
"ip" : "cran.curtin.edu.au/13.236.186.97",
"port" : "443",
"severity" : "INFO",
"finding" : "x88 DHE-RSA-CAMELLIA256-SHA DH 2048 Camellia 256 TLS_DHE_RSA_WITH_CAMELLIA_256_CBC_SHA"
}
, {
"id" : "cipher_x9d",
"ip" : "cran.curtin.edu.au/13.236.186.97",
"port" : "443",
"severity" : "INFO",
"finding" : "x9d AES256-GCM-SHA384 RSA AESGCM 256 TLS_RSA_WITH_AES_256_GCM_SHA384"
}
, {
"id" : "cipher_x3d",
"ip" : "cran.curtin.edu.au/13.236.186.97",
"port" : "443",
"severity" : "INFO",
"finding" : "x3d AES256-SHA256 RSA AES 256 TLS_RSA_WITH_AES_256_CBC_SHA256"
}
, {
"id" : "cipher_x35",
"ip" : "cran.curtin.edu.au/13.236.186.97",
"port" : "443",
"severity" : "INFO",
"finding" : "x35 AES256-SHA RSA AES 256 TLS_RSA_WITH_AES_256_CBC_SHA"
}
, {
"id" : "cipher_x84",
"ip" : "cran.curtin.edu.au/13.236.186.97",
"port" : "443",
"severity" : "INFO",
"finding" : "x84 CAMELLIA256-SHA RSA Camellia 256 TLS_RSA_WITH_CAMELLIA_256_CBC_SHA"
}
, {
"id" : "cipher_xc02f",
"ip" : "cran.curtin.edu.au/13.236.186.97",
"port" : "443",
"severity" : "INFO",
"finding" : "xc02f ECDHE-RSA-AES128-GCM-SHA256 ECDH 256 AESGCM 128 TLS_ECDHE_RSA_WITH_AES_128_GCM_SHA256"
}
, {
"id" : "cipher_xc027",
"ip" : "cran.curtin.edu.au/13.236.186.97",
"port" : "443",
"severity" : "INFO",
"finding" : "xc027 ECDHE-RSA-AES128-SHA256 ECDH 256 AES 128 TLS_ECDHE_RSA_WITH_AES_128_CBC_SHA256"
}
, {
"id" : "cipher_xc013",
"ip" : "cran.curtin.edu.au/13.236.186.97",
"port" : "443",
"severity" : "INFO",
"finding" : "xc013 ECDHE-RSA-AES128-SHA ECDH 256 AES 128 TLS_ECDHE_RSA_WITH_AES_128_CBC_SHA"
}
, {
"id" : "cipher_x9e",
"ip" : "cran.curtin.edu.au/13.236.186.97",
"port" : "443",
"severity" : "INFO",
"finding" : "x9e DHE-RSA-AES128-GCM-SHA256 DH 2048 AESGCM 128 TLS_DHE_RSA_WITH_AES_128_GCM_SHA256"
}
, {
"id" : "cipher_x67",
"ip" : "cran.curtin.edu.au/13.236.186.97",
"port" : "443",
"severity" : "INFO",
"finding" : "x67 DHE-RSA-AES128-SHA256 DH 2048 AES 128 TLS_DHE_RSA_WITH_AES_128_CBC_SHA256"
}
, {
"id" : "cipher_x33",
"ip" : "cran.curtin.edu.au/13.236.186.97",
"port" : "443",
"severity" : "INFO",
"finding" : "x33 DHE-RSA-AES128-SHA DH 2048 AES 128 TLS_DHE_RSA_WITH_AES_128_CBC_SHA"
}
, {
"id" : "cipher_x45",
"ip" : "cran.curtin.edu.au/13.236.186.97",
"port" : "443",
"severity" : "INFO",
"finding" : "x45 DHE-RSA-CAMELLIA128-SHA DH 2048 Camellia 128 TLS_DHE_RSA_WITH_CAMELLIA_128_CBC_SHA"
}
, {
"id" : "cipher_x9c",
"ip" : "cran.curtin.edu.au/13.236.186.97",
"port" : "443",
"severity" : "INFO",
"finding" : "x9c AES128-GCM-SHA256 RSA AESGCM 128 TLS_RSA_WITH_AES_128_GCM_SHA256"
}
, {
"id" : "cipher_x3c",
"ip" : "cran.curtin.edu.au/13.236.186.97",
"port" : "443",
"severity" : "INFO",
"finding" : "x3c AES128-SHA256 RSA AES 128 TLS_RSA_WITH_AES_128_CBC_SHA256"
}
, {
"id" : "cipher_x2f",
"ip" : "cran.curtin.edu.au/13.236.186.97",
"port" : "443",
"severity" : "INFO",
"finding" : "x2f AES128-SHA RSA AES 128 TLS_RSA_WITH_AES_128_CBC_SHA"
}
, {
"id" : "cipher_x41",
"ip" : "cran.curtin.edu.au/13.236.186.97",
"port" : "443",
"severity" : "INFO",
"finding" : "x41 CAMELLIA128-SHA RSA Camellia 128 TLS_RSA_WITH_CAMELLIA_128_CBC_SHA"
}
, {
"id" : "cipher_x0a",
"ip" : "cran.curtin.edu.au/13.236.186.97",
"port" : "443",
"severity" : "INFO",
"finding" : "x0a DES-CBC3-SHA RSA 3DES 168 TLS_RSA_WITH_3DES_EDE_CBC_SHA"
}
, {
"id" : "clientsimulation-android_422",
"ip" : "cran.curtin.edu.au/13.236.186.97",
"port" : "443",
"severity" : "INFO",
"finding" : "TLSv1.0 ECDHE-RSA-AES128-SHA"
}
, {
"id" : "clientsimulation-android_442",
"ip" : "cran.curtin.edu.au/13.236.186.97",
"port" : "443",
"severity" : "INFO",
"finding" : "TLSv1.2 ECDHE-RSA-AES128-GCM-SHA256"
}
, {
"id" : "clientsimulation-android_500",
"ip" : "cran.curtin.edu.au/13.236.186.97",
"port" : "443",
"severity" : "INFO",
"finding" : "TLSv1.2 ECDHE-RSA-AES128-GCM-SHA256"
}
, {
"id" : "clientsimulation-android_60",
"ip" : "cran.curtin.edu.au/13.236.186.97",
"port" : "443",
"severity" : "INFO",
"finding" : "TLSv1.2 ECDHE-RSA-AES128-GCM-SHA256"
}
, {
"id" : "clientsimulation-android_70",
"ip" : "cran.curtin.edu.au/13.236.186.97",
"port" : "443",
"severity" : "INFO",
"finding" : "TLSv1.2 ECDHE-RSA-AES128-GCM-SHA256"
}
, {
"id" : "clientsimulation-chrome_65_win7",
"ip" : "cran.curtin.edu.au/13.236.186.97",
"port" : "443",
"severity" : "INFO",
"finding" : "TLSv1.2 ECDHE-RSA-AES128-GCM-SHA256"
}
, {
"id" : "clientsimulation-chrome_70_win10",
"ip" : "cran.curtin.edu.au/13.236.186.97",
"port" : "443",
"severity" : "INFO",
"finding" : "TLSv1.2 ECDHE-RSA-AES128-GCM-SHA256"
}
, {
"id" : "clientsimulation-firefox_59_win7",
"ip" : "cran.curtin.edu.au/13.236.186.97",
"port" : "443",
"severity" : "INFO",
"finding" : "TLSv1.2 ECDHE-RSA-AES128-GCM-SHA256"
}
, {
"id" : "clientsimulation-firefox_62_win7",
"ip" : "cran.curtin.edu.au/13.236.186.97",
"port" : "443",
"severity" : "INFO",
"finding" : "TLSv1.2 ECDHE-RSA-AES128-GCM-SHA256"
}
, {
"id" : "clientsimulation-ie_6_xp",
"ip" : "cran.curtin.edu.au/13.236.186.97",
"port" : "443",
"severity" : "INFO",
"finding" : "No connection"
}
, {
"id" : "clientsimulation-ie_7_vista",
"ip" : "cran.curtin.edu.au/13.236.186.97",
"port" : "443",
"severity" : "INFO",
"finding" : "TLSv1.0 ECDHE-RSA-AES128-SHA"
}
, {
"id" : "clientsimulation-ie_8_win7",
"ip" : "cran.curtin.edu.au/13.236.186.97",
"port" : "443",
"severity" : "INFO",
"finding" : "TLSv1.0 ECDHE-RSA-AES128-SHA"
}
, {
"id" : "clientsimulation-ie_8_xp",
"ip" : "cran.curtin.edu.au/13.236.186.97",
"port" : "443",
"severity" : "INFO",
"finding" : "TLSv1.0 DES-CBC3-SHA"
}
, {
"id" : "clientsimulation-ie_11_win7",
"ip" : "cran.curtin.edu.au/13.236.186.97",
"port" : "443",
"severity" : "INFO",
"finding" : "TLSv1.2 DHE-RSA-AES128-GCM-SHA256"
}
, {
"id" : "clientsimulation-ie_11_win81",
"ip" : "cran.curtin.edu.au/13.236.186.97",
"port" : "443",
"severity" : "INFO",
"finding" : "TLSv1.2 DHE-RSA-AES128-GCM-SHA256"
}
, {
"id" : "clientsimulation-ie_11_winphone81",
"ip" : "cran.curtin.edu.au/13.236.186.97",
"port" : "443",
"severity" : "INFO",
"finding" : "TLSv1.2 ECDHE-RSA-AES128-SHA256"
}
, {
"id" : "clientsimulation-ie_11_win10",
"ip" : "cran.curtin.edu.au/13.236.186.97",
"port" : "443",
"severity" : "INFO",
"finding" : "TLSv1.2 ECDHE-RSA-AES128-GCM-SHA256"
}
, {
"id" : "clientsimulation-edge_13_win10",
"ip" : "cran.curtin.edu.au/13.236.186.97",
"port" : "443",
"severity" : "INFO",
"finding" : "TLSv1.2 ECDHE-RSA-AES128-GCM-SHA256"
}
, {
"id" : "clientsimulation-edge_13_winphone10",
"ip" : "cran.curtin.edu.au/13.236.186.97",
"port" : "443",
"severity" : "INFO",
"finding" : "TLSv1.2 ECDHE-RSA-AES128-GCM-SHA256"
}
, {
"id" : "clientsimulation-edge_15_win10",
"ip" : "cran.curtin.edu.au/13.236.186.97",
"port" : "443",
"severity" : "INFO",
"finding" : "TLSv1.2 ECDHE-RSA-AES128-GCM-SHA256"
}
, {
"id" : "clientsimulation-opera_17_win7",
"ip" : "cran.curtin.edu.au/13.236.186.97",
"port" : "443",
"severity" : "INFO",
"finding" : "TLSv1.2 ECDHE-RSA-AES128-SHA256"
}
, {
"id" : "clientsimulation-safari_9_ios9",
"ip" : "cran.curtin.edu.au/13.236.186.97",
"port" : "443",
"severity" : "INFO",
"finding" : "TLSv1.2 ECDHE-RSA-AES128-GCM-SHA256"
}
, {
"id" : "clientsimulation-safari_9_osx1011",
"ip" : "cran.curtin.edu.au/13.236.186.97",
"port" : "443",
"severity" : "INFO",
"finding" : "TLSv1.2 ECDHE-RSA-AES128-GCM-SHA256"
}
, {
"id" : "clientsimulation-safari_10_osx1012",
"ip" : "cran.curtin.edu.au/13.236.186.97",
"port" : "443",
"severity" : "INFO",
"finding" : "TLSv1.2 ECDHE-RSA-AES128-GCM-SHA256"
}
, {
"id" : "clientsimulation-apple_ats_9_ios9",
"ip" : "cran.curtin.edu.au/13.236.186.97",
"port" : "443",
"severity" : "INFO",
"finding" : "TLSv1.2 ECDHE-RSA-AES128-GCM-SHA256"
}
, {
"id" : "clientsimulation-tor_1709_win7",
"ip" : "cran.curtin.edu.au/13.236.186.97",
"port" : "443",
"severity" : "INFO",
"finding" : "TLSv1.0 ECDHE-RSA-AES128-SHA"
}
, {
"id" : "clientsimulation-java_6u45",
"ip" : "cran.curtin.edu.au/13.236.186.97",
"port" : "443",
"severity" : "INFO",
"finding" : "No connection"
}
, {
"id" : "clientsimulation-java_7u25",
"ip" : "cran.curtin.edu.au/13.236.186.97",
"port" : "443",
"severity" : "INFO",
"finding" : "TLSv1.0 ECDHE-RSA-AES128-SHA"
}
, {
"id" : "clientsimulation-java_8u161",
"ip" : "cran.curtin.edu.au/13.236.186.97",
"port" : "443",
"severity" : "INFO",
"finding" : "TLSv1.2 ECDHE-RSA-AES128-GCM-SHA256"
}
, {
"id" : "clientsimulation-java_904",
"ip" : "cran.curtin.edu.au/13.236.186.97",
"port" : "443",
"severity" : "INFO",
"finding" : "TLSv1.2 ECDHE-RSA-AES128-GCM-SHA256"
}
, {
"id" : "clientsimulation-openssl_101l",
"ip" : "cran.curtin.edu.au/13.236.186.97",
"port" : "443",
"severity" : "INFO",
"finding" : "TLSv1.2 ECDHE-RSA-AES128-GCM-SHA256"
}
, {
"id" : "clientsimulation-openssl_102e",
"ip" : "cran.curtin.edu.au/13.236.186.97",
"port" : "443",
"severity" : "INFO",
"finding" : "TLSv1.2 ECDHE-RSA-AES128-GCM-SHA256"
}
, {
"id" : "scanTime",
"ip" : "cran.curtin.edu.au/13.236.186.97",
"port" : "443",
"severity" : "INFO",
"finding" : "349"
}
]