From 85b648f0617d56bc9b63b47493d29643766dc24b Mon Sep 17 00:00:00 2001 From: github-actions <41898282+github-actions[bot]@users.noreply.github.com> Date: Sun, 1 Dec 2024 07:39:15 +0000 Subject: [PATCH] chore: report update --- report.json | 17766 ++++++++++++++++++-------------------------------- 1 file changed, 6510 insertions(+), 11256 deletions(-) diff --git a/report.json b/report.json index 2df10279d75..d6523c17fd7 100644 --- a/report.json +++ b/report.json @@ -415,7 +415,7 @@ "ip": "monsuivisocial.incubateur.anct.gouv.fr/148.253.96.193", "port": "443", "severity": "OK", - "finding": "87 >= 30 days" + "finding": "80 >= 30 days" }, { "id": "cert_notBefore", @@ -576,7 +576,7 @@ "ip": "monsuivisocial.incubateur.anct.gouv.fr/148.253.96.193", "port": "443", "severity": "INFO", - "finding": "1732410610" + "finding": "1733015933" }, { "id": "HSTS_time", @@ -646,7 +646,7 @@ "ip": "monsuivisocial.incubateur.anct.gouv.fr/148.253.96.193", "port": "443", "severity": "OK", - "finding": "base-uri 'none'; font-src 'self' https: data:; form-action 'self'; frame-ancestors 'self'; img-src 'self' data:; object-src 'none'; script-src-attr 'none'; style-src 'self' https: 'unsafe-inline'; script-src 'self' https: 'unsafe-inline' 'strict-dynamic' 'nonce-xNxktWv9nSJGXmRdWx/vBQ=='; upgrade-insecure-requests; connect-src 'self' https://api-adresse.data.gouv.fr https://geo.api.gouv.fr https://matomo.dev.incubateur.anct.gouv.fr https://matomo.incubateur.anct.gouv.fr https://sentry.incubateur.net https://conversations-widget.brevo.com/;" + "finding": "base-uri 'none'; font-src 'self' https: data:; form-action 'self'; frame-ancestors 'self'; img-src 'self' data:; object-src 'none'; script-src-attr 'none'; style-src 'self' https: 'unsafe-inline'; script-src 'self' https: 'unsafe-inline' 'strict-dynamic' 'nonce-ik/+awBUpILzYvjtMQHuhA=='; upgrade-insecure-requests; connect-src 'self' https://api-adresse.data.gouv.fr https://geo.api.gouv.fr https://matomo.dev.incubateur.anct.gouv.fr https://matomo.incubateur.anct.gouv.fr https://sentry.incubateur.net https://conversations-widget.brevo.com/;" }, { "id": "Permissions-Policy", @@ -1523,7 +1523,7 @@ "ip": "monsuivisocial.incubateur.anct.gouv.fr/80.247.12.255", "port": "443", "severity": "OK", - "finding": "87 >= 30 days" + "finding": "80 >= 30 days" }, { "id": "cert_notBefore", @@ -1684,7 +1684,7 @@ "ip": "monsuivisocial.incubateur.anct.gouv.fr/80.247.12.255", "port": "443", "severity": "INFO", - "finding": "1732410676" + "finding": "1733016039" }, { "id": "HSTS_time", @@ -1754,7 +1754,7 @@ "ip": "monsuivisocial.incubateur.anct.gouv.fr/80.247.12.255", "port": "443", "severity": "OK", - "finding": "base-uri 'none'; font-src 'self' https: data:; form-action 'self'; frame-ancestors 'self'; img-src 'self' data:; object-src 'none'; script-src-attr 'none'; style-src 'self' https: 'unsafe-inline'; script-src 'self' https: 'unsafe-inline' 'strict-dynamic' 'nonce-KtZOsibgPMFD1PL5KB3mCQ=='; upgrade-insecure-requests; connect-src 'self' https://api-adresse.data.gouv.fr https://geo.api.gouv.fr https://matomo.dev.incubateur.anct.gouv.fr https://matomo.incubateur.anct.gouv.fr https://sentry.incubateur.net https://conversations-widget.brevo.com/;" + "finding": "base-uri 'none'; font-src 'self' https: data:; form-action 'self'; frame-ancestors 'self'; img-src 'self' data:; object-src 'none'; script-src-attr 'none'; style-src 'self' https: 'unsafe-inline'; script-src 'self' https: 'unsafe-inline' 'strict-dynamic' 'nonce-bJlRk8v5AS+ffhtXpQ1PAA=='; upgrade-insecure-requests; connect-src 'self' https://api-adresse.data.gouv.fr https://geo.api.gouv.fr https://matomo.dev.incubateur.anct.gouv.fr https://matomo.incubateur.anct.gouv.fr https://sentry.incubateur.net https://conversations-widget.brevo.com/;" }, { "id": "Permissions-Policy", @@ -2631,7 +2631,7 @@ "ip": "monsuivisocial.incubateur.anct.gouv.fr/185.21.194.105", "port": "443", "severity": "OK", - "finding": "87 >= 30 days" + "finding": "80 >= 30 days" }, { "id": "cert_notBefore", @@ -2792,7 +2792,7 @@ "ip": "monsuivisocial.incubateur.anct.gouv.fr/185.21.194.105", "port": "443", "severity": "INFO", - "finding": "1732410746" + "finding": "1733016145" }, { "id": "HSTS_time", @@ -2862,7 +2862,7 @@ "ip": "monsuivisocial.incubateur.anct.gouv.fr/185.21.194.105", "port": "443", "severity": "OK", - "finding": "base-uri 'none'; font-src 'self' https: data:; form-action 'self'; frame-ancestors 'self'; img-src 'self' data:; object-src 'none'; script-src-attr 'none'; style-src 'self' https: 'unsafe-inline'; script-src 'self' https: 'unsafe-inline' 'strict-dynamic' 'nonce-/CcnzVso0gBe4t8vI5kP/Q=='; upgrade-insecure-requests; connect-src 'self' https://api-adresse.data.gouv.fr https://geo.api.gouv.fr https://matomo.dev.incubateur.anct.gouv.fr https://matomo.incubateur.anct.gouv.fr https://sentry.incubateur.net https://conversations-widget.brevo.com/;" + "finding": "base-uri 'none'; font-src 'self' https: data:; form-action 'self'; frame-ancestors 'self'; img-src 'self' data:; object-src 'none'; script-src-attr 'none'; style-src 'self' https: 'unsafe-inline'; script-src 'self' https: 'unsafe-inline' 'strict-dynamic' 'nonce-6PRBgfcOL+oLusCa7ZdeEw=='; upgrade-insecure-requests; connect-src 'self' https://api-adresse.data.gouv.fr https://geo.api.gouv.fr https://matomo.dev.incubateur.anct.gouv.fr https://matomo.incubateur.anct.gouv.fr https://sentry.incubateur.net https://conversations-widget.brevo.com/;" }, { "id": "Permissions-Policy", @@ -3739,7 +3739,7 @@ "ip": "monsuivisocial.incubateur.anct.gouv.fr/80.247.13.145", "port": "443", "severity": "OK", - "finding": "87 >= 30 days" + "finding": "80 >= 30 days" }, { "id": "cert_notBefore", @@ -3893,14 +3893,14 @@ "ip": "monsuivisocial.incubateur.anct.gouv.fr/80.247.13.145", "port": "443", "severity": "INFO", - "finding": "0 seconds from localtime" + "finding": "-1 seconds from localtime" }, { "id": "HTTP_headerTime", "ip": "monsuivisocial.incubateur.anct.gouv.fr/80.247.13.145", "port": "443", "severity": "INFO", - "finding": "1732410813" + "finding": "1733016252" }, { "id": "HSTS_time", @@ -3970,7 +3970,7 @@ "ip": "monsuivisocial.incubateur.anct.gouv.fr/80.247.13.145", "port": "443", "severity": "OK", - "finding": "base-uri 'none'; font-src 'self' https: data:; form-action 'self'; frame-ancestors 'self'; img-src 'self' data:; object-src 'none'; script-src-attr 'none'; style-src 'self' https: 'unsafe-inline'; script-src 'self' https: 'unsafe-inline' 'strict-dynamic' 'nonce-7QKTygtJF80Jytqclk70qQ=='; upgrade-insecure-requests; connect-src 'self' https://api-adresse.data.gouv.fr https://geo.api.gouv.fr https://matomo.dev.incubateur.anct.gouv.fr https://matomo.incubateur.anct.gouv.fr https://sentry.incubateur.net https://conversations-widget.brevo.com/;" + "finding": "base-uri 'none'; font-src 'self' https: data:; form-action 'self'; frame-ancestors 'self'; img-src 'self' data:; object-src 'none'; script-src-attr 'none'; style-src 'self' https: 'unsafe-inline'; script-src 'self' https: 'unsafe-inline' 'strict-dynamic' 'nonce-d4Zc7bfFncW0KrK0Ao7X9g=='; upgrade-insecure-requests; connect-src 'self' https://api-adresse.data.gouv.fr https://geo.api.gouv.fr https://matomo.dev.incubateur.anct.gouv.fr https://matomo.incubateur.anct.gouv.fr https://sentry.incubateur.net https://conversations-widget.brevo.com/;" }, { "id": "Permissions-Policy", @@ -4505,7 +4505,7 @@ "ip": "monsuivisocial.incubateur.anct.gouv.fr/80.247.13.145", "port": "443", "severity": "INFO", - "finding": "276" + "finding": "430" } ], "thirdparties": { @@ -4514,11 +4514,11 @@ "headers": { "access-control-allow-origin": "*", "content-encoding": "gzip", - "content-security-policy": "base-uri 'none'; font-src 'self' https: data:; form-action 'self'; frame-ancestors 'self'; img-src 'self' data:; object-src 'none'; script-src-attr 'none'; style-src 'self' https: 'unsafe-inline'; script-src 'self' https: 'unsafe-inline' 'strict-dynamic' 'nonce-R9iIX4R4QmK98vYMZk4DPA=='; upgrade-insecure-requests; connect-src 'self' https://api-adresse.data.gouv.fr https://geo.api.gouv.fr https://matomo.dev.incubateur.anct.gouv.fr https://matomo.incubateur.anct.gouv.fr https://sentry.incubateur.net https://conversations-widget.brevo.com/;", + "content-security-policy": "base-uri 'none'; font-src 'self' https: data:; form-action 'self'; frame-ancestors 'self'; img-src 'self' data:; object-src 'none'; script-src-attr 'none'; style-src 'self' https: 'unsafe-inline'; script-src 'self' https: 'unsafe-inline' 'strict-dynamic' 'nonce-IMIsew0ozygVWdsKqFn6aA=='; upgrade-insecure-requests; connect-src 'self' https://api-adresse.data.gouv.fr https://geo.api.gouv.fr https://matomo.dev.incubateur.anct.gouv.fr https://matomo.incubateur.anct.gouv.fr https://sentry.incubateur.net https://conversations-widget.brevo.com/;", "content-type": "text/html;charset=utf-8", "cross-origin-opener-policy": "same-origin", "cross-origin-resource-policy": "same-origin", - "date": "Sun, 24 Nov 2024 01:09:25 GMT", + "date": "Sun, 01 Dec 2024 01:17:38 GMT", "origin-agent-cluster": "?1", "permissions-policy": "camera=(), display-capture=(), fullscreen=(), geolocation=(), microphone=()", "referrer-policy": "no-referrer", @@ -4529,13 +4529,13 @@ "x-download-options": "noopen", "x-frame-options": "SAMEORIGIN", "x-permitted-cross-domain-policies": "none", - "x-request-id": "0861f070-37fc-494e-a135-f4b2a488cf40", + "x-request-id": "e21e7442-8360-4a57-82cb-2bdebf47d3ef", "x-xss-protection": "0" }, "endpoints": [ { "hostname": "monsuivisocial.incubateur.anct.gouv.fr", - "ip": "80.247.12.255", + "ip": "148.253.96.193", "geoip": { "continent": { "code": "EU", @@ -4598,6 +4598,24 @@ } }, "technologies": [ + { + "slug": "sentry", + "name": "Sentry", + "description": "Sentry is an open-source platform for workflow productivity, aggregating errors from across the stack in real time.", + "confidence": 100, + "version": null, + "icon": "Sentry.svg", + "website": "https://sentry.io/", + "cpe": null, + "categories": [ + { + "id": 13, + "slug": "issue-trackers", + "name": "Issue trackers" + } + ], + "rootPath": true + }, { "slug": "node-js", "name": "Node.js", @@ -4705,988 +4723,411 @@ ] }, "zap": null, - "nuclei": [ + "nuclei": [], + "lhr": [ { - "template": "dns/spf-record-detect.yaml", - "template-url": "https://templates.nuclei.sh/public/spf-record-detect", - "template-id": "spf-record-detect", - "template-path": "/home/runner/nuclei-templates/dns/spf-record-detect.yaml", - "info": { - "name": "SPF Record - Detection", - "author": [ - "rxerium" - ], - "tags": [ - "dns", - "spf" - ], - "description": "An SPF TXT record was detected\n", - "reference": [ - "https://www.mimecast.com/content/how-to-create-an-spf-txt-record" - ], - "severity": "info", - "metadata": { - "max-request": 1 + "requestedUrl": "https://monsuivisocial.incubateur.anct.gouv.fr/", + "finalUrl": "https://monsuivisocial.incubateur.anct.gouv.fr/", + "fetchTime": "2024-12-01T01:17:12.573Z", + "runWarnings": [], + "categories": { + "performance": { + "title": "Performance", + "supportedModes": [ + "navigation", + "timespan", + "snapshot" + ], + "id": "performance", + "score": 0.97 + }, + "accessibility": { + "title": "Accessibility", + "description": "These checks highlight opportunities to [improve the accessibility of your web app](https://developers.google.com/web/fundamentals/accessibility). Only a subset of accessibility issues can be automatically detected so manual testing is also encouraged.", + "manualDescription": "These items address areas which an automated testing tool cannot cover. Learn more in our guide on [conducting an accessibility review](https://developers.google.com/web/fundamentals/accessibility/how-to-review).", + "supportedModes": [ + "navigation", + "snapshot" + ], + "id": "accessibility", + "score": 1 + }, + "best-practices": { + "title": "Best Practices", + "supportedModes": [ + "navigation", + "timespan", + "snapshot" + ], + "id": "best-practices", + "score": 1 + }, + "seo": { + "title": "SEO", + "description": "These checks ensure that your page is following basic search engine optimization advice. There are many additional factors Lighthouse does not score here that may affect your search ranking, including performance on [Core Web Vitals](https://web.dev/learn-web-vitals/). [Learn more](https://support.google.com/webmasters/answer/35769).", + "manualDescription": "Run these additional validators on your site to check additional SEO best practices.", + "supportedModes": [ + "navigation", + "snapshot" + ], + "id": "seo", + "score": 1 + }, + "pwa": { + "title": "PWA", + "description": "These checks validate the aspects of a Progressive Web App. [Learn more](https://developers.google.com/web/progressive-web-apps/checklist).", + "manualDescription": "These checks are required by the baseline [PWA Checklist](https://developers.google.com/web/progressive-web-apps/checklist) but are not automatically checked by Lighthouse. They do not affect your score but it's important that you verify them manually.", + "supportedModes": [ + "navigation" + ], + "id": "pwa", + "score": 0.4 } }, - "type": "dns", - "host": "monsuivisocial.incubateur.anct.gouv.fr.", - "matched-at": "monsuivisocial.incubateur.anct.gouv.fr", - "extracted-results": [ - "v=spf1 include:_spf.tem.scaleway.com include:mx.ovh.com -all\"" - ], - "timestamp": "2024-11-24T01:15:13.328332162Z", - "matcher-status": true - }, - { - "template": "dns/txt-fingerprint.yaml", - "template-url": "https://templates.nuclei.sh/public/txt-fingerprint", - "template-id": "txt-fingerprint", - "template-path": "/home/runner/nuclei-templates/dns/txt-fingerprint.yaml", - "info": { - "name": "DNS TXT Record Detected", - "author": [ - "pdteam" - ], - "tags": [ - "dns", - "txt" - ], - "description": "A DNS TXT record was detected. The TXT record lets a domain admin leave notes on a DNS server.", - "reference": [ - "https://www.netspi.com/blog/technical/network-penetration-testing/analyzing-dns-txt-records-to-fingerprint-service-providers/" - ], - "severity": "info", - "metadata": { - "max-request": 1 + "audits": { + "metrics": { + "id": "metrics", + "title": "Metrics", + "description": "Collects all available metrics.", + "score": null, + "scoreDisplayMode": "informative", + "numericValue": 1970, + "numericUnit": "millisecond", + "details": { + "type": "debugdata", + "items": [ + { + "firstContentfulPaint": 1970, + "firstMeaningfulPaint": 1970, + "largestContentfulPaint": 1971, + "interactive": 1970, + "speedIndex": 2893, + "totalBlockingTime": 0, + "maxPotentialFID": 16, + "cumulativeLayoutShift": 0.04686485205756293, + "cumulativeLayoutShiftMainFrame": 0.04686485205756293, + "totalCumulativeLayoutShift": 0.04686485205756293, + "observedTimeOrigin": 0, + "observedTimeOriginTs": 444846978, + "observedNavigationStart": 0, + "observedNavigationStartTs": 444846978, + "observedFirstPaint": 1268, + "observedFirstPaintTs": 446115267, + "observedFirstContentfulPaint": 1268, + "observedFirstContentfulPaintTs": 446115267, + "observedFirstContentfulPaintAllFrames": 1268, + "observedFirstContentfulPaintAllFramesTs": 446115267, + "observedFirstMeaningfulPaint": 1268, + "observedFirstMeaningfulPaintTs": 446115267, + "observedLargestContentfulPaint": 1268, + "observedLargestContentfulPaintTs": 446115267, + "observedLargestContentfulPaintAllFrames": 1268, + "observedLargestContentfulPaintAllFramesTs": 446115267, + "observedTraceEnd": 5032, + "observedTraceEndTs": 449878519, + "observedLoad": 1939, + "observedLoadTs": 446786424, + "observedDomContentLoaded": 1404, + "observedDomContentLoadedTs": 446251257, + "observedCumulativeLayoutShift": 0.04686485205756293, + "observedCumulativeLayoutShiftMainFrame": 0.04686485205756293, + "observedTotalCumulativeLayoutShift": 0.04686485205756293, + "observedFirstVisualChange": 1268, + "observedFirstVisualChangeTs": 446114978, + "observedLastVisualChange": 1951, + "observedLastVisualChangeTs": 446797978, + "observedSpeedIndex": 1330, + "observedSpeedIndexTs": 446177319 + }, + { + "lcpInvalidated": false + } + ] + } }, - "classification": { - "cve-id": null, - "cwe-id": [ - "cwe-200" - ] + "diagnostics": { + "id": "diagnostics", + "title": "Diagnostics", + "description": "Collection of useful page vitals.", + "score": null, + "scoreDisplayMode": "informative", + "details": { + "type": "debugdata", + "items": [ + { + "numRequests": 78, + "numScripts": 12, + "numStylesheets": 7, + "numFonts": 3, + "numTasks": 36, + "numTasksOver10ms": 0, + "numTasksOver25ms": 0, + "numTasksOver50ms": 0, + "numTasksOver100ms": 0, + "numTasksOver500ms": 0, + "rtt": 145.313, + "throughput": 50500919.912125684, + "maxRtt": 150.071, + "maxServerLatency": 169.534, + "totalByteWeight": 10458277, + "totalTaskTime": 3.5649999999999995, + "mainDocumentTransferSize": 209237 + } + ] + } } - }, - "type": "dns", - "host": "monsuivisocial.incubateur.anct.gouv.fr.", - "matched-at": "monsuivisocial.incubateur.anct.gouv.fr", - "extracted-results": [ - "\"v=spf1 include:_spf.tem.scaleway.com include:mx.ovh.com -all\"" - ], - "timestamp": "2024-11-24T01:15:13.32847052Z", - "matcher-status": true - }, + } + } + ], + "screenshot": true, + "stats": { + "grade": "F", + "url": "https://monsuivisocial.incubateur.anct.gouv.fr", + "uri": "stats" + }, + "github_repository": null, + "budget_page": null, + "declaration-a11y": { + "mention": "Accessibilité : non conforme", + "declarationUrl": "https://monsuivisocial.incubateur.anct.gouv.fr/declaration-accessibilite" + }, + "declaration-rgpd": null, + "betagouv": null, + "ecoindex": [ { - "template": "dns/mx-fingerprint.yaml", - "template-url": "https://templates.nuclei.sh/public/mx-fingerprint", - "template-id": "mx-fingerprint", - "template-path": "/home/runner/nuclei-templates/dns/mx-fingerprint.yaml", - "info": { - "name": "MX Record Detection", - "author": [ - "pdteam" - ], - "tags": [ - "dns", - "mx" - ], - "description": "An MX record was detected. MX records direct emails to a mail exchange server.", - "reference": [ - "https://www.cloudflare.com/learning/dns/dns-records/dns-mx-record/", - "https://mxtoolbox.com/" - ], - "severity": "info", - "metadata": { - "max-request": 1 - }, - "classification": { - "cve-id": null, - "cwe-id": [ - "cwe-200" - ] + "width": 1920, + "height": 1080, + "url": "https://monsuivisocial.incubateur.anct.gouv.fr", + "size": 13589.127, + "nodes": 303, + "requests": 64, + "grade": "C", + "score": 58, + "ges": 1.84, + "water": 2.76, + "ecoindex_version": "5.4.2", + "date": "2024-12-01 01:13:52.277200", + "page_type": null + } + ], + "sonarcloud": null, + "dsfr": null, + "summary": { + "404": "A+", + "uptime": 100, + "uptimeGrade": "A", + "nmapGrade": "A", + "nmapOpenPortsCount": 2, + "nmapOpenPortsGrade": "A", + "testsslExpireSoon": false, + "testsslExpireDate": "2025-02-19T13:21:00.000Z", + "testsslGrade": "A+", + "cookiesGrade": "A", + "cookiesCount": 0, + "trackersGrade": "A", + "trackersCount": 0, + "lighthouse_performance": 0.97, + "lighthouse_performanceGrade": "A", + "lighthouse_accessibility": 1, + "lighthouse_accessibilityGrade": "A", + "lighthouse_best-practices": 1, + "lighthouse_best-practicesGrade": "A", + "lighthouse_seo": 1, + "lighthouse_seoGrade": "A", + "lighthouse_pwa": 0.4, + "lighthouse_pwaGrade": "D", + "statsGrade": "F", + "declaration-a11y": "C", + "ecoindexGrade": "C" + } + }, + { + "404": [], + "url": "https://www.conseiller-numerique.gouv.fr", + "repositories": [ + "anct-cnum/site-vitrine" + ], + "http": null, + "updownio": { + "token": "h8gt", + "url": "https://www.conseiller-numerique.gouv.fr", + "alias": "", + "last_status": 200, + "uptime": 100, + "down": false, + "down_since": null, + "up_since": "2023-01-17T22:00:24Z", + "error": null, + "period": 1800, + "apdex_t": 0.5, + "string_match": "", + "enabled": false, + "published": false, + "disabled_locations": [], + "recipients": [ + "email:3715942461" + ], + "last_check_at": "2023-03-01T03:17:00Z", + "next_check_at": null, + "created_at": "2022-10-17T12:57:05Z", + "mute_until": null, + "favicon_url": "https://www.conseiller-numerique.gouv.fr/favicon.ico", + "custom_headers": {}, + "http_verb": "GET/HEAD", + "http_body": "", + "ssl": { + "tested_at": "2023-02-28T23:47:45Z", + "expires_at": "2023-05-19T13:27:15Z", + "valid": true, + "error": null + }, + "metrics": {}, + "uptimeGrade": "A" + }, + "nmap": { + "host": "www.conseiller-numerique.gouv.fr", + "protocol": "tcp", + "closed_ports": "996", + "open_ports": [ + { + "service": { + "name": "http", + "product": "Cloudflare http proxy", + "id": "80", + "vulnerabilities": [] } }, - "type": "dns", - "host": "monsuivisocial.incubateur.anct.gouv.fr.", - "matched-at": "monsuivisocial.incubateur.anct.gouv.fr", - "extracted-results": [ - "5 mx1.mail.ovh.net.", - "1 mx0.mail.ovh.net.", - "50 mx2.mail.ovh.net.", - "100 mx3.mail.ovh.net." - ], - "timestamp": "2024-11-24T01:15:14.221238388Z", - "matcher-status": true - }, - { - "template": "dns/caa-fingerprint.yaml", - "template-url": "https://templates.nuclei.sh/public/caa-fingerprint", - "template-id": "caa-fingerprint", - "template-path": "/home/runner/nuclei-templates/dns/caa-fingerprint.yaml", - "info": { - "name": "CAA Record", - "author": [ - "pdteam" - ], - "tags": [ - "dns", - "caa" - ], - "description": "A CAA record was discovered. A CAA record is used to specify which certificate authorities (CAs) are allowed to issue certificates for a domain.", - "reference": [ - "https://support.dnsimple.com/articles/caa-record/#whats-a-caa-record" - ], - "severity": "info", - "metadata": { - "max-request": 1 - }, - "classification": { - "cve-id": null, - "cwe-id": [ - "cwe-200" - ] + { + "service": { + "name": "http", + "product": "Cloudflare http proxy", + "id": "443", + "vulnerabilities": [] } }, - "type": "dns", - "host": "monsuivisocial.incubateur.anct.gouv.fr.", - "matched-at": "monsuivisocial.incubateur.anct.gouv.fr", - "timestamp": "2024-11-24T01:15:14.262680395Z", - "matcher-status": true - }, - { - "template": "dns/dmarc-detect.yaml", - "template-url": "https://templates.nuclei.sh/public/dmarc-detect", - "template-id": "dmarc-detect", - "template-path": "/home/runner/nuclei-templates/dns/dmarc-detect.yaml", - "info": { - "name": "DNS DMARC - Detect", - "author": [ - "juliosmelo" - ], - "tags": [ - "dns", - "dmarc" - ], - "description": "DNS DMARC information was detected.\n", - "reference": [ - "https://dmarc.org/", - "https://dmarc.org/wiki/faq#why_is_dmarc_important.3f" - ], - "severity": "info", - "metadata": { - "max-request": 1 - }, - "classification": { - "cve-id": null, - "cwe-id": [ - "cwe-200" - ], - "cvss-metrics": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:N" + { + "service": { + "name": "http", + "product": "Cloudflare http proxy", + "id": "8080", + "vulnerabilities": [] } }, - "type": "dns", - "host": "monsuivisocial.incubateur.anct.gouv.fr.", - "matched-at": "_dmarc.monsuivisocial.incubateur.anct.gouv.fr", - "extracted-results": [ - "\"v=DMARC1; p=none; rua=mailto:956cd955-1a5c-4850-8391-cf26410acf51@dmarc.scw-tem.cloud; ruf=mailto:956cd955-1a5c-4850-8391-cf26410acf51@dmarc.scw-tem.cloud\"" - ], - "timestamp": "2024-11-24T01:15:14.416323837Z", - "matcher-status": true + { + "service": { + "name": "http", + "product": "Cloudflare http proxy", + "id": "8443", + "vulnerabilities": [] + } + } + ], + "grade": "B" + }, + "dependabot": null, + "codescan": null, + "testssl": [ + { + "id": "service", + "ip": "www.conseiller-numerique.gouv.fr/104.21.71.120", + "port": "443", + "severity": "INFO", + "finding": "HTTP" }, { - "template": "http/misconfiguration/http-missing-security-headers.yaml", - "template-url": "https://templates.nuclei.sh/public/http-missing-security-headers", - "template-id": "http-missing-security-headers", - "template-path": "/home/runner/nuclei-templates/http/misconfiguration/http-missing-security-headers.yaml", - "info": { - "name": "HTTP Missing Security Headers", - "author": [ - "socketz", - "geeknik", - "g4l1t0", - "convisoappsec", - "kurohost", - "dawid-czarnecki", - "forgedhallpass", - "jub0bs", - "userdehghani" - ], - "tags": [ - "misconfig", - "headers", - "generic" - ], - "description": "This template searches for missing HTTP security headers. The impact of these missing headers can vary.\n", - "severity": "info", - "metadata": { - "max-request": 1 - } - }, - "matcher-name": "cross-origin-embedder-policy", - "type": "http", - "host": "https://monsuivisocial.incubateur.anct.gouv.fr", - "matched-at": "https://monsuivisocial.incubateur.anct.gouv.fr", - "ip": "148.253.96.193", - "timestamp": "2024-11-24T01:16:43.747411565Z", - "curl-command": "curl -X 'GET' -H 'Accept: */*' -H 'Accept-Language: en' -H 'User-Agent: Nuclei - Open-source project (github.com/projectdiscovery/nuclei)' 'https://monsuivisocial.incubateur.anct.gouv.fr'", - "matcher-status": true + "id": "pre_128cipher", + "ip": "www.conseiller-numerique.gouv.fr/104.21.71.120", + "port": "443", + "severity": "INFO", + "finding": "No 128 cipher limit bug" }, { - "template": "http/misconfiguration/http-missing-security-headers.yaml", - "template-url": "https://templates.nuclei.sh/public/http-missing-security-headers", - "template-id": "http-missing-security-headers", - "template-path": "/home/runner/nuclei-templates/http/misconfiguration/http-missing-security-headers.yaml", - "info": { - "name": "HTTP Missing Security Headers", - "author": [ - "socketz", - "geeknik", - "g4l1t0", - "convisoappsec", - "kurohost", - "dawid-czarnecki", - "forgedhallpass", - "jub0bs", - "userdehghani" - ], - "tags": [ - "misconfig", - "headers", - "generic" - ], - "description": "This template searches for missing HTTP security headers. The impact of these missing headers can vary.\n", - "severity": "info", - "metadata": { - "max-request": 1 - } - }, - "matcher-name": "cross-origin-opener-policy", - "type": "http", - "host": "https://monsuivisocial.incubateur.anct.gouv.fr", - "matched-at": "https://monsuivisocial.incubateur.anct.gouv.fr", - "ip": "148.253.96.193", - "timestamp": "2024-11-24T01:16:43.747459505Z", - "curl-command": "curl -X 'GET' -H 'Accept: */*' -H 'Accept-Language: en' -H 'User-Agent: Nuclei - Open-source project (github.com/projectdiscovery/nuclei)' 'https://monsuivisocial.incubateur.anct.gouv.fr'", - "matcher-status": true + "id": "SSLv2", + "ip": "www.conseiller-numerique.gouv.fr/104.21.71.120", + "port": "443", + "severity": "OK", + "finding": "not offered" }, { - "template": "http/misconfiguration/http-missing-security-headers.yaml", - "template-url": "https://templates.nuclei.sh/public/http-missing-security-headers", - "template-id": "http-missing-security-headers", - "template-path": "/home/runner/nuclei-templates/http/misconfiguration/http-missing-security-headers.yaml", - "info": { - "name": "HTTP Missing Security Headers", - "author": [ - "socketz", - "geeknik", - "g4l1t0", - "convisoappsec", - "kurohost", - "dawid-czarnecki", - "forgedhallpass", - "jub0bs", - "userdehghani" - ], - "tags": [ - "misconfig", - "headers", - "generic" - ], - "description": "This template searches for missing HTTP security headers. The impact of these missing headers can vary.\n", - "severity": "info", - "metadata": { - "max-request": 1 - } - }, - "matcher-name": "cross-origin-resource-policy", - "type": "http", - "host": "https://monsuivisocial.incubateur.anct.gouv.fr", - "matched-at": "https://monsuivisocial.incubateur.anct.gouv.fr", - "ip": "148.253.96.193", - "timestamp": "2024-11-24T01:16:43.747475645Z", - "curl-command": "curl -X 'GET' -H 'Accept: */*' -H 'Accept-Language: en' -H 'User-Agent: Nuclei - Open-source project (github.com/projectdiscovery/nuclei)' 'https://monsuivisocial.incubateur.anct.gouv.fr'", - "matcher-status": true + "id": "SSLv3", + "ip": "www.conseiller-numerique.gouv.fr/104.21.71.120", + "port": "443", + "severity": "OK", + "finding": "not offered" }, { - "template": "http/misconfiguration/http-missing-security-headers.yaml", - "template-url": "https://templates.nuclei.sh/public/http-missing-security-headers", - "template-id": "http-missing-security-headers", - "template-path": "/home/runner/nuclei-templates/http/misconfiguration/http-missing-security-headers.yaml", - "info": { - "name": "HTTP Missing Security Headers", - "author": [ - "socketz", - "geeknik", - "g4l1t0", - "convisoappsec", - "kurohost", - "dawid-czarnecki", - "forgedhallpass", - "jub0bs", - "userdehghani" - ], - "tags": [ - "misconfig", - "headers", - "generic" - ], - "description": "This template searches for missing HTTP security headers. The impact of these missing headers can vary.\n", - "severity": "info", - "metadata": { - "max-request": 1 - } - }, - "matcher-name": "content-security-policy", - "type": "http", - "host": "https://monsuivisocial.incubateur.anct.gouv.fr", - "matched-at": "https://monsuivisocial.incubateur.anct.gouv.fr", - "ip": "148.253.96.193", - "timestamp": "2024-11-24T01:16:43.747491063Z", - "curl-command": "curl -X 'GET' -H 'Accept: */*' -H 'Accept-Language: en' -H 'User-Agent: Nuclei - Open-source project (github.com/projectdiscovery/nuclei)' 'https://monsuivisocial.incubateur.anct.gouv.fr'", - "matcher-status": true + "id": "TLS1", + "ip": "www.conseiller-numerique.gouv.fr/104.21.71.120", + "port": "443", + "severity": "LOW", + "finding": "offered (deprecated)" }, { - "template": "http/misconfiguration/http-missing-security-headers.yaml", - "template-url": "https://templates.nuclei.sh/public/http-missing-security-headers", - "template-id": "http-missing-security-headers", - "template-path": "/home/runner/nuclei-templates/http/misconfiguration/http-missing-security-headers.yaml", - "info": { - "name": "HTTP Missing Security Headers", - "author": [ - "socketz", - "geeknik", - "g4l1t0", - "convisoappsec", - "kurohost", - "dawid-czarnecki", - "forgedhallpass", - "jub0bs", - "userdehghani" - ], - "tags": [ - "misconfig", - "headers", - "generic" - ], - "description": "This template searches for missing HTTP security headers. The impact of these missing headers can vary.\n", - "severity": "info", - "metadata": { - "max-request": 1 - } - }, - "matcher-name": "permissions-policy", - "type": "http", - "host": "https://monsuivisocial.incubateur.anct.gouv.fr", - "matched-at": "https://monsuivisocial.incubateur.anct.gouv.fr", - "ip": "148.253.96.193", - "timestamp": "2024-11-24T01:16:43.747513235Z", - "curl-command": "curl -X 'GET' -H 'Accept: */*' -H 'Accept-Language: en' -H 'User-Agent: Nuclei - Open-source project (github.com/projectdiscovery/nuclei)' 'https://monsuivisocial.incubateur.anct.gouv.fr'", - "matcher-status": true + "id": "TLS1_1", + "ip": "www.conseiller-numerique.gouv.fr/104.21.71.120", + "port": "443", + "severity": "LOW", + "finding": "offered (deprecated)" }, { - "template": "http/misconfiguration/http-missing-security-headers.yaml", - "template-url": "https://templates.nuclei.sh/public/http-missing-security-headers", - "template-id": "http-missing-security-headers", - "template-path": "/home/runner/nuclei-templates/http/misconfiguration/http-missing-security-headers.yaml", - "info": { - "name": "HTTP Missing Security Headers", - "author": [ - "socketz", - "geeknik", - "g4l1t0", - "convisoappsec", - "kurohost", - "dawid-czarnecki", - "forgedhallpass", - "jub0bs", - "userdehghani" - ], - "tags": [ - "misconfig", - "headers", - "generic" - ], - "description": "This template searches for missing HTTP security headers. The impact of these missing headers can vary.\n", - "severity": "info", - "metadata": { - "max-request": 1 - } - }, - "matcher-name": "clear-site-data", - "type": "http", - "host": "https://monsuivisocial.incubateur.anct.gouv.fr", - "matched-at": "https://monsuivisocial.incubateur.anct.gouv.fr", - "ip": "148.253.96.193", - "timestamp": "2024-11-24T01:16:43.747527451Z", - "curl-command": "curl -X 'GET' -H 'Accept: */*' -H 'Accept-Language: en' -H 'User-Agent: Nuclei - Open-source project (github.com/projectdiscovery/nuclei)' 'https://monsuivisocial.incubateur.anct.gouv.fr'", - "matcher-status": true + "id": "TLS1_2", + "ip": "www.conseiller-numerique.gouv.fr/104.21.71.120", + "port": "443", + "severity": "OK", + "finding": "offered" }, { - "template": "http/miscellaneous/security-txt.yaml", - "template-url": "https://templates.nuclei.sh/public/security-txt", - "template-id": "security-txt", - "template-path": "/home/runner/nuclei-templates/http/miscellaneous/security-txt.yaml", - "info": { - "name": "security.txt File", - "author": [ - "bad5ect0r", - "noraj" - ], - "tags": [ - "miscellaneous", - "misc", - "generic" - ], - "description": "File similar to robots.txt but intended to be read by humans wishing to contact a website’s owner about security issues. Often defines a security policy and contact details.\n", - "reference": [ - "https://securitytxt.org/", - "https://community.turgensec.com/security-txt-progress-in-ethical-security-research/" - ], - "severity": "info", - "metadata": { - "max-request": 2, - "shodan-query": "http.securitytxt:contact http.status:200", - "verified": true - } - }, - "type": "http", - "host": "https://monsuivisocial.incubateur.anct.gouv.fr", - "matched-at": "https://monsuivisocial.incubateur.anct.gouv.fr/.well-known/security.txt", - "extracted-results": [ - " mailto:support-incubateur@anct.gouv.fr" - ], - "ip": "148.253.96.193", - "timestamp": "2024-11-24T01:16:58.051888718Z", - "curl-command": "curl -X 'GET' -H 'Accept: */*' -H 'Accept-Language: en' -H 'User-Agent: Nuclei - Open-source project (github.com/projectdiscovery/nuclei)' 'https://monsuivisocial.incubateur.anct.gouv.fr/.well-known/security.txt'", - "matcher-status": true + "id": "TLS1_3", + "ip": "www.conseiller-numerique.gouv.fr/104.21.71.120", + "port": "443", + "severity": "OK", + "finding": "offered with final" }, { - "template": "ssl/detect-ssl-issuer.yaml", - "template-url": "https://templates.nuclei.sh/public/ssl-issuer", - "template-id": "ssl-issuer", - "template-path": "/home/runner/nuclei-templates/ssl/detect-ssl-issuer.yaml", - "info": { - "name": "Detect SSL Certificate Issuer", - "author": [ - "lingtren" - ], - "tags": [ - "ssl", - "tls" - ], - "description": "Extract the issuer's organization from the target's certificate. Issuers are entities which sign and distribute certificates.\n", - "severity": "info", - "metadata": { - "max-request": 1 - } - }, - "type": "ssl", - "host": "monsuivisocial.incubateur.anct.gouv.fr", - "matched-at": "monsuivisocial.incubateur.anct.gouv.fr:443", - "extracted-results": [ - "Let's Encrypt" - ], - "ip": "148.253.96.193", - "timestamp": "2024-11-24T01:23:05.23628308Z", - "matcher-status": true + "id": "ALPN_HTTP2", + "ip": "www.conseiller-numerique.gouv.fr/104.21.71.120", + "port": "443", + "severity": "OK", + "finding": "h2" }, { - "template": "ssl/ssl-dns-names.yaml", - "template-url": "https://templates.nuclei.sh/public/ssl-dns-names", - "template-id": "ssl-dns-names", - "template-path": "/home/runner/nuclei-templates/ssl/ssl-dns-names.yaml", - "info": { - "name": "SSL DNS Names", - "author": [ - "pdteam" - ], - "tags": [ - "ssl", - "tls" - ], - "description": "Extract the Subject Alternative Name (SAN) from the target's certificate. SAN facilitates the usage of additional hostnames with the same certificate.\n", - "severity": "info", - "metadata": { - "max-request": 1 - } - }, - "type": "ssl", - "host": "monsuivisocial.incubateur.anct.gouv.fr", - "matched-at": "monsuivisocial.incubateur.anct.gouv.fr:443", - "extracted-results": [ - "monsuivisocial.incubateur.anct.gouv.fr" - ], - "ip": "148.253.96.193", - "timestamp": "2024-11-24T01:23:05.236383307Z", - "matcher-status": true + "id": "ALPN", + "ip": "www.conseiller-numerique.gouv.fr/104.21.71.120", + "port": "443", + "severity": "INFO", + "finding": "http/1.1" }, { - "template": "ssl/tls-version.yaml", - "template-url": "https://templates.nuclei.sh/public/tls-version", - "template-id": "tls-version", - "template-path": "/home/runner/nuclei-templates/ssl/tls-version.yaml", - "info": { - "name": "TLS Version - Detect", - "author": [ - "pdteam", - "pussycat0x" - ], - "tags": [ - "ssl", - "tls" - ], - "description": "TLS version detection is a security process used to determine the version of the Transport Layer Security (TLS) protocol used by a computer or server.\nIt is important to detect the TLS version in order to ensure secure communication between two computers or servers.\n", - "severity": "info", - "metadata": { - "max-request": 4 - } - }, - "type": "ssl", - "host": "monsuivisocial.incubateur.anct.gouv.fr", - "matched-at": "monsuivisocial.incubateur.anct.gouv.fr:443", - "extracted-results": [ - "tls12" - ], - "ip": "148.253.96.193", - "timestamp": "2024-11-24T01:23:07.172540142Z", - "matcher-status": true + "id": "cipherlist_NULL", + "ip": "www.conseiller-numerique.gouv.fr/104.21.71.120", + "port": "443", + "severity": "OK", + "cwe": "CWE-327", + "finding": "not offered" }, { - "template": "ssl/tls-version.yaml", - "template-url": "https://templates.nuclei.sh/public/tls-version", - "template-id": "tls-version", - "template-path": "/home/runner/nuclei-templates/ssl/tls-version.yaml", - "info": { - "name": "TLS Version - Detect", - "author": [ - "pdteam", - "pussycat0x" - ], - "tags": [ - "ssl", - "tls" - ], - "description": "TLS version detection is a security process used to determine the version of the Transport Layer Security (TLS) protocol used by a computer or server.\nIt is important to detect the TLS version in order to ensure secure communication between two computers or servers.\n", - "severity": "info", - "metadata": { - "max-request": 4 - } - }, - "type": "ssl", - "host": "monsuivisocial.incubateur.anct.gouv.fr", - "matched-at": "monsuivisocial.incubateur.anct.gouv.fr:443", - "extracted-results": [ - "tls13" - ], - "ip": "148.253.96.193", - "timestamp": "2024-11-24T01:23:07.389373807Z", - "matcher-status": true - } - ], - "lhr": [ + "id": "cipherlist_aNULL", + "ip": "www.conseiller-numerique.gouv.fr/104.21.71.120", + "port": "443", + "severity": "OK", + "cwe": "CWE-327", + "finding": "not offered" + }, { - "requestedUrl": "https://monsuivisocial.incubateur.anct.gouv.fr/", - "finalUrl": "https://monsuivisocial.incubateur.anct.gouv.fr/", - "fetchTime": "2024-11-24T01:08:51.913Z", - "runWarnings": [], - "categories": { - "performance": { - "title": "Performance", - "supportedModes": [ - "navigation", - "timespan", - "snapshot" - ], - "id": "performance", - "score": 0.97 - }, - "accessibility": { - "title": "Accessibility", - "description": "These checks highlight opportunities to [improve the accessibility of your web app](https://developers.google.com/web/fundamentals/accessibility). Only a subset of accessibility issues can be automatically detected so manual testing is also encouraged.", - "manualDescription": "These items address areas which an automated testing tool cannot cover. Learn more in our guide on [conducting an accessibility review](https://developers.google.com/web/fundamentals/accessibility/how-to-review).", - "supportedModes": [ - "navigation", - "snapshot" - ], - "id": "accessibility", - "score": 1 - }, - "best-practices": { - "title": "Best Practices", - "supportedModes": [ - "navigation", - "timespan", - "snapshot" - ], - "id": "best-practices", - "score": 1 - }, - "seo": { - "title": "SEO", - "description": "These checks ensure that your page is following basic search engine optimization advice. There are many additional factors Lighthouse does not score here that may affect your search ranking, including performance on [Core Web Vitals](https://web.dev/learn-web-vitals/). [Learn more](https://support.google.com/webmasters/answer/35769).", - "manualDescription": "Run these additional validators on your site to check additional SEO best practices.", - "supportedModes": [ - "navigation", - "snapshot" - ], - "id": "seo", - "score": 1 - }, - "pwa": { - "title": "PWA", - "description": "These checks validate the aspects of a Progressive Web App. [Learn more](https://developers.google.com/web/progressive-web-apps/checklist).", - "manualDescription": "These checks are required by the baseline [PWA Checklist](https://developers.google.com/web/progressive-web-apps/checklist) but are not automatically checked by Lighthouse. They do not affect your score but it's important that you verify them manually.", - "supportedModes": [ - "navigation" - ], - "id": "pwa", - "score": 0.4 - } - }, - "audits": { - "metrics": { - "id": "metrics", - "title": "Metrics", - "description": "Collects all available metrics.", - "score": null, - "scoreDisplayMode": "informative", - "numericValue": 1957, - "numericUnit": "millisecond", - "details": { - "type": "debugdata", - "items": [ - { - "firstContentfulPaint": 1957, - "firstMeaningfulPaint": 1957, - "largestContentfulPaint": 1958, - "interactive": 1957, - "speedIndex": 3071, - "totalBlockingTime": 0, - "maxPotentialFID": 16, - "cumulativeLayoutShift": 0.04199506293402778, - "cumulativeLayoutShiftMainFrame": 0.04199506293402778, - "totalCumulativeLayoutShift": 0.04378341759575738, - "observedTimeOrigin": 0, - "observedTimeOriginTs": 446439344, - "observedNavigationStart": 0, - "observedNavigationStartTs": 446439344, - "observedFirstPaint": 1098, - "observedFirstPaintTs": 447537409, - "observedFirstContentfulPaint": 1098, - "observedFirstContentfulPaintTs": 447537409, - "observedFirstContentfulPaintAllFrames": 1098, - "observedFirstContentfulPaintAllFramesTs": 447537409, - "observedFirstMeaningfulPaint": 1098, - "observedFirstMeaningfulPaintTs": 447537409, - "observedLargestContentfulPaint": 1098, - "observedLargestContentfulPaintTs": 447537409, - "observedLargestContentfulPaintAllFrames": 1098, - "observedLargestContentfulPaintAllFramesTs": 447537409, - "observedTraceEnd": 13080, - "observedTraceEndTs": 459519014, - "observedLoad": 5649, - "observedLoadTs": 452088724, - "observedDomContentLoaded": 1390, - "observedDomContentLoadedTs": 447828922, - "observedCumulativeLayoutShift": 0.04199506293402778, - "observedCumulativeLayoutShiftMainFrame": 0.04199506293402778, - "observedTotalCumulativeLayoutShift": 0.04378341759575738, - "observedFirstVisualChange": 1109, - "observedFirstVisualChangeTs": 447548344, - "observedLastVisualChange": 5675, - "observedLastVisualChangeTs": 452114344, - "observedSpeedIndex": 1463, - "observedSpeedIndexTs": 447902583 - }, - { - "lcpInvalidated": false - } - ] - } - }, - "diagnostics": { - "id": "diagnostics", - "title": "Diagnostics", - "description": "Collection of useful page vitals.", - "score": null, - "scoreDisplayMode": "informative", - "details": { - "type": "debugdata", - "items": [ - { - "numRequests": 76, - "numScripts": 12, - "numStylesheets": 7, - "numFonts": 3, - "numTasks": 34, - "numTasksOver10ms": 0, - "numTasksOver25ms": 0, - "numTasksOver50ms": 0, - "numTasksOver100ms": 0, - "numTasksOver500ms": 0, - "rtt": 98.53099999999999, - "throughput": 8422625.272151468, - "maxRtt": 101.939, - "maxServerLatency": 123.40199999999999, - "totalByteWeight": 10458891, - "totalTaskTime": 2.3089999999999993, - "mainDocumentTransferSize": 209433 - } - ] - } - } - } - } - ], - "screenshot": true, - "stats": { - "grade": "F", - "url": "https://monsuivisocial.incubateur.anct.gouv.fr", - "uri": "stats" - }, - "github_repository": null, - "budget_page": null, - "declaration-a11y": { - "mention": "Accessibilité : non conforme", - "declarationUrl": "https://monsuivisocial.incubateur.anct.gouv.fr/declaration-accessibilite" - }, - "declaration-rgpd": null, - "betagouv": null, - "ecoindex": [ + "id": "cipherlist_EXPORT", + "ip": "www.conseiller-numerique.gouv.fr/104.21.71.120", + "port": "443", + "severity": "OK", + "cwe": "CWE-327", + "finding": "not offered" + }, { - "width": 1920, - "height": 1080, - "url": "https://monsuivisocial.incubateur.anct.gouv.fr", - "size": 13586.48, - "nodes": 301, - "requests": 62, - "grade": "C", - "score": 58, - "ges": 1.84, - "water": 2.76, - "ecoindex_version": "5.4.2", - "date": "2024-11-24 01:05:45.542476", - "page_type": null - } - ], - "sonarcloud": null, - "dsfr": null, - "summary": { - "404": "A+", - "uptime": 100, - "uptimeGrade": "A", - "nmapGrade": "A", - "nmapOpenPortsCount": 2, - "nmapOpenPortsGrade": "A", - "testsslExpireSoon": false, - "testsslExpireDate": "2025-02-19T13:21:00.000Z", - "testsslGrade": "A+", - "cookiesGrade": "A", - "cookiesCount": 0, - "trackersGrade": "A", - "trackersCount": 0, - "lighthouse_performance": 0.97, - "lighthouse_performanceGrade": "A", - "lighthouse_accessibility": 1, - "lighthouse_accessibilityGrade": "A", - "lighthouse_best-practices": 1, - "lighthouse_best-practicesGrade": "A", - "lighthouse_seo": 1, - "lighthouse_seoGrade": "A", - "lighthouse_pwa": 0.4, - "lighthouse_pwaGrade": "D", - "statsGrade": "F", - "declaration-a11y": "C", - "ecoindexGrade": "C" - } - }, - { - "404": [], - "url": "https://www.conseiller-numerique.gouv.fr", - "repositories": [ - "anct-cnum/site-vitrine" - ], - "http": null, - "updownio": { - "token": "h8gt", - "url": "https://www.conseiller-numerique.gouv.fr", - "alias": "", - "last_status": 200, - "uptime": 100, - "down": false, - "down_since": null, - "up_since": "2023-01-17T22:00:24Z", - "error": null, - "period": 1800, - "apdex_t": 0.5, - "string_match": "", - "enabled": false, - "published": false, - "disabled_locations": [], - "recipients": [ - "email:3715942461" - ], - "last_check_at": "2023-03-01T03:17:00Z", - "next_check_at": null, - "created_at": "2022-10-17T12:57:05Z", - "mute_until": null, - "favicon_url": "https://www.conseiller-numerique.gouv.fr/favicon.ico", - "custom_headers": {}, - "http_verb": "GET/HEAD", - "http_body": "", - "ssl": { - "tested_at": "2023-02-28T23:47:45Z", - "expires_at": "2023-05-19T13:27:15Z", - "valid": true, - "error": null - }, - "metrics": {}, - "uptimeGrade": "A" - }, - "nmap": { - "host": "www.conseiller-numerique.gouv.fr", - "protocol": "tcp", - "closed_ports": "996", - "open_ports": [ - { - "service": { - "name": "http", - "product": "Cloudflare http proxy", - "id": "80", - "vulnerabilities": [] - } - }, - { - "service": { - "name": "http", - "product": "Cloudflare http proxy", - "id": "443", - "vulnerabilities": [] - } - }, - { - "service": { - "name": "http", - "product": "Cloudflare http proxy", - "id": "8080", - "vulnerabilities": [] - } - }, - { - "service": { - "name": "http", - "product": "Cloudflare http proxy", - "id": "8443", - "vulnerabilities": [] - } - } - ], - "grade": "B" - }, - "dependabot": null, - "codescan": null, - "testssl": [ - { - "id": "service", - "ip": "www.conseiller-numerique.gouv.fr/104.21.71.120", - "port": "443", - "severity": "INFO", - "finding": "HTTP" - }, - { - "id": "pre_128cipher", - "ip": "www.conseiller-numerique.gouv.fr/104.21.71.120", - "port": "443", - "severity": "INFO", - "finding": "No 128 cipher limit bug" - }, - { - "id": "SSLv2", - "ip": "www.conseiller-numerique.gouv.fr/104.21.71.120", - "port": "443", - "severity": "OK", - "finding": "not offered" - }, - { - "id": "SSLv3", - "ip": "www.conseiller-numerique.gouv.fr/104.21.71.120", - "port": "443", - "severity": "OK", - "finding": "not offered" - }, - { - "id": "TLS1", - "ip": "www.conseiller-numerique.gouv.fr/104.21.71.120", - "port": "443", - "severity": "LOW", - "finding": "offered (deprecated)" - }, - { - "id": "TLS1_1", - "ip": "www.conseiller-numerique.gouv.fr/104.21.71.120", - "port": "443", - "severity": "LOW", - "finding": "offered (deprecated)" - }, - { - "id": "TLS1_2", - "ip": "www.conseiller-numerique.gouv.fr/104.21.71.120", - "port": "443", - "severity": "OK", - "finding": "offered" - }, - { - "id": "TLS1_3", - "ip": "www.conseiller-numerique.gouv.fr/104.21.71.120", - "port": "443", - "severity": "OK", - "finding": "offered with final" - }, - { - "id": "ALPN_HTTP2", - "ip": "www.conseiller-numerique.gouv.fr/104.21.71.120", - "port": "443", - "severity": "OK", - "finding": "h2" - }, - { - "id": "ALPN", - "ip": "www.conseiller-numerique.gouv.fr/104.21.71.120", - "port": "443", - "severity": "INFO", - "finding": "http/1.1" - }, - { - "id": "cipherlist_NULL", - "ip": "www.conseiller-numerique.gouv.fr/104.21.71.120", - "port": "443", - "severity": "OK", - "cwe": "CWE-327", - "finding": "not offered" - }, - { - "id": "cipherlist_aNULL", - "ip": "www.conseiller-numerique.gouv.fr/104.21.71.120", - "port": "443", - "severity": "OK", - "cwe": "CWE-327", - "finding": "not offered" - }, - { - "id": "cipherlist_EXPORT", - "ip": "www.conseiller-numerique.gouv.fr/104.21.71.120", - "port": "443", - "severity": "OK", - "cwe": "CWE-327", - "finding": "not offered" - }, - { - "id": "cipherlist_LOW", - "ip": "www.conseiller-numerique.gouv.fr/104.21.71.120", - "port": "443", - "severity": "OK", - "cwe": "CWE-327", - "finding": "not offered" + "id": "cipherlist_LOW", + "ip": "www.conseiller-numerique.gouv.fr/104.21.71.120", + "port": "443", + "severity": "OK", + "cwe": "CWE-327", + "finding": "not offered" }, { "id": "cipherlist_3DES_IDEA", @@ -5821,7 +5262,7 @@ "ip": "www.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "INFO", - "finding": "not supported" + "finding": "supported" }, { "id": "TLS_timestamp", @@ -5960,8 +5401,8 @@ "id": "cert_expirationStatus ", "ip": "www.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", - "severity": "OK", - "finding": "66 >= 60 days" + "severity": "MEDIUM", + "finding": "expires < 60 days (59)" }, { "id": "cert_notBefore ", @@ -5974,7 +5415,7 @@ "id": "cert_notAfter ", "ip": "www.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", - "severity": "OK", + "severity": "MEDIUM", "finding": "2025-01-29 16:29" }, { @@ -6261,8 +5702,8 @@ "id": "cert_expirationStatus ", "ip": "www.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", - "severity": "OK", - "finding": "66 >= 60 days" + "severity": "MEDIUM", + "finding": "expires < 60 days (59)" }, { "id": "cert_notBefore ", @@ -6275,7 +5716,7 @@ "id": "cert_notAfter ", "ip": "www.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", - "severity": "OK", + "severity": "MEDIUM", "finding": "2025-01-29 16:31" }, { @@ -6472,7 +5913,7 @@ "ip": "www.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "INFO", - "finding": "1732410626" + "finding": "1733015874" }, { "id": "HSTS", @@ -6493,7 +5934,7 @@ "ip": "www.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "INFO", - "finding": "cloudflareserver-timing: cfL4;desc='?proto=TCP&rtt=2159&sent=5&recv=7&lost=0&retrans=0&sent_bytes=3026&recv_bytes=759&delivery_rate=1369127&cwnd=252&unsent_bytes=0&cid=2e226d5cc0f15d86&ts=312&x=0'" + "finding": "cloudflareserver-timing: cfL4;desc='?proto=TCP&rtt=1400&min_rtt=1296&rtt_var=432&sent=5&recv=6&lost=0&retrans=0&sent_bytes=3027&recv_bytes=759&delivery_rate=2203703&cwnd=252&unsent_bytes=0&cid=4b95d54258d0ec13&ts=445&x=0'" }, { "id": "banner_application", @@ -7420,8 +6861,8 @@ "id": "cert_expirationStatus ", "ip": "www.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", - "severity": "OK", - "finding": "66 >= 60 days" + "severity": "MEDIUM", + "finding": "expires < 60 days (59)" }, { "id": "cert_notBefore ", @@ -7434,7 +6875,7 @@ "id": "cert_notAfter ", "ip": "www.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", - "severity": "OK", + "severity": "MEDIUM", "finding": "2025-01-29 16:29" }, { @@ -7721,8 +7162,8 @@ "id": "cert_expirationStatus ", "ip": "www.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", - "severity": "OK", - "finding": "66 >= 60 days" + "severity": "MEDIUM", + "finding": "expires < 60 days (59)" }, { "id": "cert_notBefore ", @@ -7735,7 +7176,7 @@ "id": "cert_notAfter ", "ip": "www.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", - "severity": "OK", + "severity": "MEDIUM", "finding": "2025-01-29 16:31" }, { @@ -7932,7 +7373,7 @@ "ip": "www.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "INFO", - "finding": "1732410685" + "finding": "1733015934" }, { "id": "HSTS", @@ -7953,7 +7394,7 @@ "ip": "www.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "INFO", - "finding": "cloudflareserver-timing: cfL4;desc='?proto=TCP&rtt=1595&sent=5&recv=6&lost=0&retrans=0&sent_bytes=3026&recv_bytes=759&delivery_rate=1961538&cwnd=252&unsent_bytes=0&cid=40e844d413dcc149&ts=311&x=0'" + "finding": "cloudflareserver-timing: cfL4;desc='?proto=TCP&rtt=1527&min_rtt=1382&rtt_var=539&sent=5&recv=6&lost=0&retrans=0&sent_bytes=3026&recv_bytes=759&delivery_rate=2066570&cwnd=252&unsent_bytes=0&cid=8c11a26b8fcd6a9a&ts=442&x=0'" }, { "id": "banner_application", @@ -8511,14 +7952,26 @@ "ip": "www.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "INFO", - "finding": "121" + "finding": "123" } ], "thirdparties": { "trackers": [ { - "type": "unknown", - "url": "https://js.hcaptcha.com/1/api.js" + "type": "cloudflare", + "url": "https://challenges.cloudflare.com/turnstile/v0/api.js", + "details": { + "id": "cloudflare", + "message": "Host files locally" + } + }, + { + "type": "cloudflare", + "url": "https://challenges.cloudflare.com/turnstile/v0/b/a6e12e96a2d5/api.js", + "details": { + "id": "cloudflare", + "message": "Host files locally" + } } ], "cookies": [ @@ -8527,7 +7980,7 @@ "value": "1", "domain": "www.conseiller-numerique.gouv.fr", "path": "/", - "expires": 1732412395, + "expires": 1733017643, "size": 17, "httpOnly": false, "secure": false, @@ -8539,10 +7992,10 @@ }, { "name": "_pk_id.147.204e", - "value": "aded0d849fb255cf.1732410596.", + "value": "6b716532a278ac18.1733015843.", "domain": "www.conseiller-numerique.gouv.fr", "path": "/", - "expires": 1766365796, + "expires": 1766971043, "size": 43, "httpOnly": false, "secure": false, @@ -8557,22 +8010,22 @@ "alt-svc": "h3=\":443\"; ma=86400", "cache-control": "max-age=60, private, proxy-revalidate", "cf-cache-status": "DYNAMIC", - "cf-ray": "8e75842c4f3d86f8-ORD", + "cf-ray": "8eaf3cb69b17f967-SJC", "content-encoding": "br", "content-type": "text/html", - "date": "Sun, 24 Nov 2024 01:09:55 GMT", - "last-modified": "Fri, 15 Nov 2024 06:27:07 GMT", + "date": "Sun, 01 Dec 2024 01:17:22 GMT", + "last-modified": "Thu, 28 Nov 2024 13:34:07 GMT", "nel": "{\"success_fraction\":0,\"report_to\":\"cf-nel\",\"max_age\":604800}", - "report-to": "{\"endpoints\":[{\"url\":\"https:\\/\\/a.nel.cloudflare.com\\/report\\/v4?s=NyjQEdsRwIWOjET4uGKBew3LaLy79UCg9XgZ5PBehdUwxeXxsCBTL1CJGO8nqcXcYWKiLclzUMbINeaE5VQ8Ol%2BIT6aU1KRzLUihCSv2XHaykug7Tsbz4bYc3EOUwhu44QYLqgpW4kXq8UOvVTb8AFMySQ%3D%3D\"}],\"group\":\"cf-nel\",\"max_age\":604800}", + "report-to": "{\"endpoints\":[{\"url\":\"https:\\/\\/a.nel.cloudflare.com\\/report\\/v4?s=BIQ38%2B%2Fr6Ov%2BpV4j7xusNmvleEjCBW5NcGUg7MlBwWyQpcDAfkACaU12LjdeAqaWKFUMmPxHS5acfa%2BPON87Mx3yHJw5PmF%2FYU53%2BszCJL89jHS3mmGhAtR2DXbQXOILot9rPz7bbgcB5s1Kc62J3s3EuQ%3D%3D\"}],\"group\":\"cf-nel\",\"max_age\":604800}", "server": "cloudflare", - "server-timing": "cfL4;desc=\"?proto=TCP&rtt=1903&sent=6&recv=8&lost=0&retrans=0&sent_bytes=2861&recv_bytes=1072&delivery_rate=1631067&cwnd=252&unsent_bytes=0&cid=47813fdef103bb0f&ts=128&x=0\"", - "sozu-id": "01JDDVE826ZRF6PM2VKPW8DDP3", + "server-timing": "cfL4;desc=\"?proto=TCP&rtt=1508&min_rtt=1460&rtt_var=446&sent=6&recv=9&lost=0&retrans=0&sent_bytes=2908&recv_bytes=1072&delivery_rate=1956164&cwnd=253&unsent_bytes=0&cid=2f5ee015a5279c96&ts=172&x=0\"", + "sozu-id": "01JDZWMWS829WEM2W12490KH3C", "vary": "Accept-Encoding" }, "endpoints": [ { "hostname": "www.conseiller-numerique.gouv.fr", - "ip": "104.21.71.120", + "ip": "172.67.144.206", "geoip": { "registered_country": { "geoname_id": 6252001, @@ -8591,8 +8044,8 @@ } }, { - "hostname": "js.hcaptcha.com", - "ip": "104.19.230.21", + "hostname": "challenges.cloudflare.com", + "ip": "104.18.94.41", "geoip": { "registered_country": { "geoname_id": 6252001, @@ -8691,13 +8144,13 @@ "rootPath": true }, { - "slug": "hcaptcha", - "name": "hCaptcha", - "description": "hCaptcha is an anti-bot solution that protects user privacy and rewards websites.", + "slug": "cloudflare-turnstile", + "name": "Cloudflare Turnstile", + "description": "Turnstile is Cloudflare's smart CAPTCHA alternative.", "confidence": 100, - "version": "1", - "icon": "hCaptcha.svg", - "website": "https://www.hcaptcha.com", + "version": null, + "icon": "CloudFlare.svg", + "website": "https://www.cloudflare.com/products/turnstile", "cpe": null, "categories": [ { @@ -8816,7 +8269,7 @@ "type": "dns", "host": "www.conseiller-numerique.gouv.fr.", "matched-at": "www.conseiller-numerique.gouv.fr", - "timestamp": "2024-11-24T01:12:45.545715316Z", + "timestamp": "2024-12-01T01:20:16.777921776Z", "matcher-status": true }, { @@ -8843,10 +8296,10 @@ "host": "https://www.conseiller-numerique.gouv.fr", "matched-at": "https://www.conseiller-numerique.gouv.fr", "extracted-results": [ - "OPTIONS,HEAD,GET,POST" + "GET,POST,OPTIONS,HEAD" ], "ip": "104.21.71.120", - "timestamp": "2024-11-24T01:12:50.186586041Z", + "timestamp": "2024-12-01T01:20:21.921907941Z", "curl-command": "curl -X 'OPTIONS' -H 'Accept: */*' -H 'Accept-Language: en' -H 'User-Agent: Nuclei - Open-source project (github.com/projectdiscovery/nuclei)' 'https://www.conseiller-numerique.gouv.fr'", "matcher-status": true }, @@ -8884,7 +8337,7 @@ "host": "https://www.conseiller-numerique.gouv.fr", "matched-at": "https://www.conseiller-numerique.gouv.fr", "ip": "104.21.71.120", - "timestamp": "2024-11-24T01:13:15.428689853Z", + "timestamp": "2024-12-01T01:20:48.052382149Z", "curl-command": "curl -X 'GET' -H 'Accept: */*' -H 'Accept-Language: en' -H 'User-Agent: Nuclei - Open-source project (github.com/projectdiscovery/nuclei)' 'https://www.conseiller-numerique.gouv.fr'", "matcher-status": true }, @@ -8912,7 +8365,7 @@ "host": "https://www.conseiller-numerique.gouv.fr", "matched-at": "https://www.conseiller-numerique.gouv.fr", "ip": "104.21.71.120", - "timestamp": "2024-11-24T01:13:15.437074624Z", + "timestamp": "2024-12-01T01:20:48.061221023Z", "curl-command": "curl -X 'GET' -H 'Accept: */*' -H 'Accept-Language: en' -H 'User-Agent: Nuclei - Open-source project (github.com/projectdiscovery/nuclei)' 'https://www.conseiller-numerique.gouv.fr'", "matcher-status": true }, @@ -8945,12 +8398,12 @@ "max-request": 1 } }, - "matcher-name": "content-security-policy", + "matcher-name": "referrer-policy", "type": "http", "host": "https://www.conseiller-numerique.gouv.fr", "matched-at": "https://www.conseiller-numerique.gouv.fr", "ip": "104.21.71.120", - "timestamp": "2024-11-24T01:13:22.101529047Z", + "timestamp": "2024-12-01T01:20:56.418041632Z", "curl-command": "curl -X 'GET' -H 'Accept: */*' -H 'Accept-Language: en' -H 'User-Agent: Nuclei - Open-source project (github.com/projectdiscovery/nuclei)' 'https://www.conseiller-numerique.gouv.fr'", "matcher-status": true }, @@ -8983,12 +8436,12 @@ "max-request": 1 } }, - "matcher-name": "permissions-policy", + "matcher-name": "cross-origin-opener-policy", "type": "http", "host": "https://www.conseiller-numerique.gouv.fr", "matched-at": "https://www.conseiller-numerique.gouv.fr", "ip": "104.21.71.120", - "timestamp": "2024-11-24T01:13:22.10157843Z", + "timestamp": "2024-12-01T01:20:56.41808846Z", "curl-command": "curl -X 'GET' -H 'Accept: */*' -H 'Accept-Language: en' -H 'User-Agent: Nuclei - Open-source project (github.com/projectdiscovery/nuclei)' 'https://www.conseiller-numerique.gouv.fr'", "matcher-status": true }, @@ -9021,12 +8474,12 @@ "max-request": 1 } }, - "matcher-name": "x-frame-options", + "matcher-name": "content-security-policy", "type": "http", "host": "https://www.conseiller-numerique.gouv.fr", "matched-at": "https://www.conseiller-numerique.gouv.fr", "ip": "104.21.71.120", - "timestamp": "2024-11-24T01:13:22.10159459Z", + "timestamp": "2024-12-01T01:20:56.418103478Z", "curl-command": "curl -X 'GET' -H 'Accept: */*' -H 'Accept-Language: en' -H 'User-Agent: Nuclei - Open-source project (github.com/projectdiscovery/nuclei)' 'https://www.conseiller-numerique.gouv.fr'", "matcher-status": true }, @@ -9059,12 +8512,12 @@ "max-request": 1 } }, - "matcher-name": "x-permitted-cross-domain-policies", + "matcher-name": "x-content-type-options", "type": "http", "host": "https://www.conseiller-numerique.gouv.fr", "matched-at": "https://www.conseiller-numerique.gouv.fr", "ip": "104.21.71.120", - "timestamp": "2024-11-24T01:13:22.101608165Z", + "timestamp": "2024-12-01T01:20:56.418118356Z", "curl-command": "curl -X 'GET' -H 'Accept: */*' -H 'Accept-Language: en' -H 'User-Agent: Nuclei - Open-source project (github.com/projectdiscovery/nuclei)' 'https://www.conseiller-numerique.gouv.fr'", "matcher-status": true }, @@ -9097,12 +8550,12 @@ "max-request": 1 } }, - "matcher-name": "strict-transport-security", + "matcher-name": "x-permitted-cross-domain-policies", "type": "http", "host": "https://www.conseiller-numerique.gouv.fr", "matched-at": "https://www.conseiller-numerique.gouv.fr", "ip": "104.21.71.120", - "timestamp": "2024-11-24T01:13:22.10162128Z", + "timestamp": "2024-12-01T01:20:56.418196952Z", "curl-command": "curl -X 'GET' -H 'Accept: */*' -H 'Accept-Language: en' -H 'User-Agent: Nuclei - Open-source project (github.com/projectdiscovery/nuclei)' 'https://www.conseiller-numerique.gouv.fr'", "matcher-status": true }, @@ -9135,12 +8588,12 @@ "max-request": 1 } }, - "matcher-name": "x-content-type-options", + "matcher-name": "clear-site-data", "type": "http", "host": "https://www.conseiller-numerique.gouv.fr", "matched-at": "https://www.conseiller-numerique.gouv.fr", "ip": "104.21.71.120", - "timestamp": "2024-11-24T01:13:22.10163736Z", + "timestamp": "2024-12-01T01:20:56.418214485Z", "curl-command": "curl -X 'GET' -H 'Accept: */*' -H 'Accept-Language: en' -H 'User-Agent: Nuclei - Open-source project (github.com/projectdiscovery/nuclei)' 'https://www.conseiller-numerique.gouv.fr'", "matcher-status": true }, @@ -9173,12 +8626,12 @@ "max-request": 1 } }, - "matcher-name": "referrer-policy", + "matcher-name": "cross-origin-embedder-policy", "type": "http", "host": "https://www.conseiller-numerique.gouv.fr", "matched-at": "https://www.conseiller-numerique.gouv.fr", "ip": "104.21.71.120", - "timestamp": "2024-11-24T01:13:22.101650745Z", + "timestamp": "2024-12-01T01:20:56.4182282Z", "curl-command": "curl -X 'GET' -H 'Accept: */*' -H 'Accept-Language: en' -H 'User-Agent: Nuclei - Open-source project (github.com/projectdiscovery/nuclei)' 'https://www.conseiller-numerique.gouv.fr'", "matcher-status": true }, @@ -9211,12 +8664,12 @@ "max-request": 1 } }, - "matcher-name": "clear-site-data", + "matcher-name": "cross-origin-resource-policy", "type": "http", "host": "https://www.conseiller-numerique.gouv.fr", "matched-at": "https://www.conseiller-numerique.gouv.fr", "ip": "104.21.71.120", - "timestamp": "2024-11-24T01:13:22.101664661Z", + "timestamp": "2024-12-01T01:20:56.418241205Z", "curl-command": "curl -X 'GET' -H 'Accept: */*' -H 'Accept-Language: en' -H 'User-Agent: Nuclei - Open-source project (github.com/projectdiscovery/nuclei)' 'https://www.conseiller-numerique.gouv.fr'", "matcher-status": true }, @@ -9249,12 +8702,12 @@ "max-request": 1 } }, - "matcher-name": "cross-origin-embedder-policy", + "matcher-name": "strict-transport-security", "type": "http", "host": "https://www.conseiller-numerique.gouv.fr", "matched-at": "https://www.conseiller-numerique.gouv.fr", "ip": "104.21.71.120", - "timestamp": "2024-11-24T01:13:22.101678237Z", + "timestamp": "2024-12-01T01:20:56.418253938Z", "curl-command": "curl -X 'GET' -H 'Accept: */*' -H 'Accept-Language: en' -H 'User-Agent: Nuclei - Open-source project (github.com/projectdiscovery/nuclei)' 'https://www.conseiller-numerique.gouv.fr'", "matcher-status": true }, @@ -9287,12 +8740,12 @@ "max-request": 1 } }, - "matcher-name": "cross-origin-opener-policy", + "matcher-name": "permissions-policy", "type": "http", "host": "https://www.conseiller-numerique.gouv.fr", "matched-at": "https://www.conseiller-numerique.gouv.fr", "ip": "104.21.71.120", - "timestamp": "2024-11-24T01:13:22.101691221Z", + "timestamp": "2024-12-01T01:20:56.418267514Z", "curl-command": "curl -X 'GET' -H 'Accept: */*' -H 'Accept-Language: en' -H 'User-Agent: Nuclei - Open-source project (github.com/projectdiscovery/nuclei)' 'https://www.conseiller-numerique.gouv.fr'", "matcher-status": true }, @@ -9325,12 +8778,12 @@ "max-request": 1 } }, - "matcher-name": "cross-origin-resource-policy", + "matcher-name": "x-frame-options", "type": "http", "host": "https://www.conseiller-numerique.gouv.fr", "matched-at": "https://www.conseiller-numerique.gouv.fr", "ip": "104.21.71.120", - "timestamp": "2024-11-24T01:13:22.101704196Z", + "timestamp": "2024-12-01T01:20:56.418280578Z", "curl-command": "curl -X 'GET' -H 'Accept: */*' -H 'Accept-Language: en' -H 'User-Agent: Nuclei - Open-source project (github.com/projectdiscovery/nuclei)' 'https://www.conseiller-numerique.gouv.fr'", "matcher-status": true }, @@ -9359,7 +8812,7 @@ "host": "https://www.conseiller-numerique.gouv.fr", "matched-at": "https://www.conseiller-numerique.gouv.fr/robots.txt", "ip": "104.21.71.120", - "timestamp": "2024-11-24T01:13:28.548322884Z", + "timestamp": "2024-12-01T01:21:05.850221325Z", "curl-command": "curl -X 'GET' -H 'Accept: */*' -H 'Accept-Language: en' -H 'User-Agent: Nuclei - Open-source project (github.com/projectdiscovery/nuclei)' 'https://www.conseiller-numerique.gouv.fr/robots.txt'", "matcher-status": true }, @@ -9395,10 +8848,10 @@ "host": "https://www.conseiller-numerique.gouv.fr", "matched-at": "https://www.conseiller-numerique.gouv.fr/", "extracted-results": [ - "https://js.hcaptcha.com/1/api.js" + "https://challenges.cloudflare.com/turnstile/v0/api.js" ], "ip": "104.21.71.120", - "timestamp": "2024-11-24T01:13:32.441951729Z", + "timestamp": "2024-12-01T01:21:11.207426072Z", "curl-command": "curl -X 'GET' -d '' -H 'Host: www.conseiller-numerique.gouv.fr' -H 'User-Agent: Nuclei - Open-source project (github.com/projectdiscovery/nuclei)' 'https://www.conseiller-numerique.gouv.fr/'", "matcher-status": true }, @@ -9438,7 +8891,7 @@ "host": "https://www.conseiller-numerique.gouv.fr", "matched-at": "https://www.conseiller-numerique.gouv.fr/", "ip": "104.21.71.120", - "timestamp": "2024-11-24T01:13:37.026223104Z", + "timestamp": "2024-12-01T01:21:16.712507927Z", "curl-command": "curl -X 'POST' -d '_=' -H 'Content-Type: application/x-www-form-urlencoded' -H 'Host: www.conseiller-numerique.gouv.fr' -H 'User-Agent: Nuclei - Open-source project (github.com/projectdiscovery/nuclei)' 'https://www.conseiller-numerique.gouv.fr/'", "matcher-status": true }, @@ -9469,7 +8922,7 @@ "Google Trust Services" ], "ip": "104.21.71.120", - "timestamp": "2024-11-24T01:19:43.060052354Z", + "timestamp": "2024-12-01T01:26:47.928767135Z", "matcher-status": true }, { @@ -9499,7 +8952,7 @@ "www.conseiller-numerique.gouv.fr" ], "ip": "104.21.71.120", - "timestamp": "2024-11-24T01:19:43.060168451Z", + "timestamp": "2024-12-01T01:26:47.9288763Z", "matcher-status": true }, { @@ -9536,30 +8989,36 @@ "tls11" ], "ip": "104.21.71.120", - "timestamp": "2024-11-24T01:19:43.164950407Z", + "timestamp": "2024-12-01T01:26:47.997949287Z", "matcher-status": true }, { - "template": "ssl/tls-version.yaml", - "template-url": "https://templates.nuclei.sh/public/tls-version", - "template-id": "tls-version", - "template-path": "/home/runner/nuclei-templates/ssl/tls-version.yaml", + "template": "ssl/deprecated-tls.yaml", + "template-url": "https://templates.nuclei.sh/public/deprecated-tls", + "template-id": "deprecated-tls", + "template-path": "/home/runner/nuclei-templates/ssl/deprecated-tls.yaml", "info": { - "name": "TLS Version - Detect", + "name": "Deprecated TLS Detection", "author": [ - "pdteam", - "pussycat0x" + "righettod", + "forgedhallpass" ], "tags": [ "ssl", "tls" ], - "description": "TLS version detection is a security process used to determine the version of the Transport Layer Security (TLS) protocol used by a computer or server.\nIt is important to detect the TLS version in order to ensure secure communication between two computers or servers.\n", + "description": "Both TLS 1.1 and SSLv3 are deprecated in favor of stronger encryption.\n", + "reference": [ + "https://ssl-config.mozilla.org/#config=intermediate" + ], "severity": "info", "metadata": { - "max-request": 4 - } + "max-request": 3, + "shodan-query": "ssl.version:sslv2 ssl.version:sslv3 ssl.version:tlsv1 ssl.version:tlsv1.1" + }, + "remediation": "Update the web server's TLS configuration to disable TLS 1.1 and SSLv3.\n" }, + "extractor-name": "tls_1.0", "type": "ssl", "host": "www.conseiller-numerique.gouv.fr", "matched-at": "www.conseiller-numerique.gouv.fr:443", @@ -9567,36 +9026,30 @@ "tls10" ], "ip": "104.21.71.120", - "timestamp": "2024-11-24T01:19:43.166182215Z", + "timestamp": "2024-12-01T01:26:48.019364175Z", "matcher-status": true }, { - "template": "ssl/deprecated-tls.yaml", - "template-url": "https://templates.nuclei.sh/public/deprecated-tls", - "template-id": "deprecated-tls", - "template-path": "/home/runner/nuclei-templates/ssl/deprecated-tls.yaml", + "template": "ssl/tls-version.yaml", + "template-url": "https://templates.nuclei.sh/public/tls-version", + "template-id": "tls-version", + "template-path": "/home/runner/nuclei-templates/ssl/tls-version.yaml", "info": { - "name": "Deprecated TLS Detection", + "name": "TLS Version - Detect", "author": [ - "righettod", - "forgedhallpass" + "pdteam", + "pussycat0x" ], "tags": [ "ssl", "tls" ], - "description": "Both TLS 1.1 and SSLv3 are deprecated in favor of stronger encryption.\n", - "reference": [ - "https://ssl-config.mozilla.org/#config=intermediate" - ], + "description": "TLS version detection is a security process used to determine the version of the Transport Layer Security (TLS) protocol used by a computer or server.\nIt is important to detect the TLS version in order to ensure secure communication between two computers or servers.\n", "severity": "info", "metadata": { - "max-request": 3, - "shodan-query": "ssl.version:sslv2 ssl.version:sslv3 ssl.version:tlsv1 ssl.version:tlsv1.1" - }, - "remediation": "Update the web server's TLS configuration to disable TLS 1.1 and SSLv3.\n" + "max-request": 4 + } }, - "extractor-name": "tls_1.0", "type": "ssl", "host": "www.conseiller-numerique.gouv.fr", "matched-at": "www.conseiller-numerique.gouv.fr:443", @@ -9604,7 +9057,7 @@ "tls10" ], "ip": "104.21.71.120", - "timestamp": "2024-11-24T01:19:43.192327317Z", + "timestamp": "2024-12-01T01:26:48.063412088Z", "matcher-status": true }, { @@ -9635,7 +9088,7 @@ "tls11" ], "ip": "104.21.71.120", - "timestamp": "2024-11-24T01:19:43.194268755Z", + "timestamp": "2024-12-01T01:26:48.090328969Z", "matcher-status": true }, { @@ -9671,7 +9124,7 @@ "[tls10 TLS_ECDHE_RSA_WITH_AES_128_CBC_SHA]" ], "ip": "104.21.71.120", - "timestamp": "2024-11-24T01:19:43.19928458Z", + "timestamp": "2024-12-01T01:26:48.096991963Z", "matcher-status": true }, { @@ -9702,7 +9155,7 @@ "tls12" ], "ip": "104.21.71.120", - "timestamp": "2024-11-24T01:19:43.223753347Z", + "timestamp": "2024-12-01T01:26:48.110706822Z", "matcher-status": true }, { @@ -9738,7 +9191,7 @@ "[tls11 TLS_ECDHE_RSA_WITH_AES_128_CBC_SHA]" ], "ip": "104.21.71.120", - "timestamp": "2024-11-24T01:19:43.232664982Z", + "timestamp": "2024-12-01T01:26:48.119594271Z", "matcher-status": true }, { @@ -9769,7 +9222,7 @@ "tls13" ], "ip": "104.21.71.120", - "timestamp": "2024-11-24T01:19:43.247603521Z", + "timestamp": "2024-12-01T01:26:48.134255769Z", "matcher-status": true } ], @@ -9777,7 +9230,7 @@ { "requestedUrl": "https://www.conseiller-numerique.gouv.fr/", "finalUrl": "https://www.conseiller-numerique.gouv.fr/", - "fetchTime": "2024-11-24T01:09:22.510Z", + "fetchTime": "2024-12-01T01:16:48.308Z", "runWarnings": [], "categories": { "performance": { @@ -9788,7 +9241,7 @@ "snapshot" ], "id": "performance", - "score": 0.7 + "score": 0.72 }, "accessibility": { "title": "Accessibility", @@ -9840,53 +9293,53 @@ "description": "Collects all available metrics.", "score": null, "scoreDisplayMode": "informative", - "numericValue": 5676, + "numericValue": 5734, "numericUnit": "millisecond", "details": { "type": "debugdata", "items": [ { - "firstContentfulPaint": 3476, - "firstMeaningfulPaint": 3583, - "largestContentfulPaint": 4721, - "interactive": 5676, - "speedIndex": 4042, - "totalBlockingTime": 130, - "maxPotentialFID": 180, + "firstContentfulPaint": 3257, + "firstMeaningfulPaint": 3371, + "largestContentfulPaint": 4470, + "interactive": 5734, + "speedIndex": 4523, + "totalBlockingTime": 81, + "maxPotentialFID": 192, "cumulativeLayoutShift": 0, "cumulativeLayoutShiftMainFrame": 0, "totalCumulativeLayoutShift": 0, "observedTimeOrigin": 0, - "observedTimeOriginTs": 492802957, + "observedTimeOriginTs": 487448694, "observedNavigationStart": 0, - "observedNavigationStartTs": 492802957, - "observedFirstPaint": 635, - "observedFirstPaintTs": 493437556, - "observedFirstContentfulPaint": 635, - "observedFirstContentfulPaintTs": 493437556, - "observedFirstContentfulPaintAllFrames": 635, - "observedFirstContentfulPaintAllFramesTs": 493437556, - "observedFirstMeaningfulPaint": 635, - "observedFirstMeaningfulPaintTs": 493437556, - "observedLargestContentfulPaint": 635, - "observedLargestContentfulPaintTs": 493437556, - "observedLargestContentfulPaintAllFrames": 635, - "observedLargestContentfulPaintAllFramesTs": 493437556, - "observedTraceEnd": 11061, - "observedTraceEndTs": 503864443, - "observedLoad": 811, - "observedLoadTs": 493614235, - "observedDomContentLoaded": 459, - "observedDomContentLoadedTs": 493262350, + "observedNavigationStartTs": 487448694, + "observedFirstPaint": 719, + "observedFirstPaintTs": 488167815, + "observedFirstContentfulPaint": 719, + "observedFirstContentfulPaintTs": 488167815, + "observedFirstContentfulPaintAllFrames": 719, + "observedFirstContentfulPaintAllFramesTs": 488167815, + "observedFirstMeaningfulPaint": 719, + "observedFirstMeaningfulPaintTs": 488167815, + "observedLargestContentfulPaint": 719, + "observedLargestContentfulPaintTs": 488167815, + "observedLargestContentfulPaintAllFrames": 719, + "observedLargestContentfulPaintAllFramesTs": 488167815, + "observedTraceEnd": 13090, + "observedTraceEndTs": 500539069, + "observedLoad": 1151, + "observedLoadTs": 488600102, + "observedDomContentLoaded": 540, + "observedDomContentLoadedTs": 487989101, "observedCumulativeLayoutShift": 0, "observedCumulativeLayoutShiftMainFrame": 0, "observedTotalCumulativeLayoutShift": 0, - "observedFirstVisualChange": 643, - "observedFirstVisualChangeTs": 493445957, - "observedLastVisualChange": 643, - "observedLastVisualChangeTs": 493445957, - "observedSpeedIndex": 647, - "observedSpeedIndexTs": 493449595 + "observedFirstVisualChange": 731, + "observedFirstVisualChangeTs": 488179694, + "observedLastVisualChange": 731, + "observedLastVisualChangeTs": 488179694, + "observedSpeedIndex": 734, + "observedSpeedIndexTs": 488183139 }, { "lcpInvalidated": false @@ -9908,19 +9361,19 @@ "numScripts": 3, "numStylesheets": 1, "numFonts": 4, - "numTasks": 2706, + "numTasks": 2867, "numTasksOver10ms": 5, - "numTasksOver25ms": 4, + "numTasksOver25ms": 1, "numTasksOver50ms": 1, "numTasksOver100ms": 0, "numTasksOver500ms": 0, "rtt": 0, - "throughput": 36676533.157030985, - "maxRtt": 102.208, - "maxServerLatency": 3745.283, - "totalByteWeight": 700398, - "totalTaskTime": 448.30799999999476, - "mainDocumentTransferSize": 1914 + "throughput": 26633818.18545613, + "maxRtt": 154.665, + "maxServerLatency": 4631.296, + "totalByteWeight": 665378, + "totalTaskTime": 418.060999999998, + "mainDocumentTransferSize": 1937 } ] } @@ -9947,15 +9400,15 @@ "width": 1920, "height": 1080, "url": "https://www.conseiller-numerique.gouv.fr", - "size": 720.698, - "nodes": 327, + "size": 689.417, + "nodes": 329, "requests": 36, "grade": "B", "score": 75, "ges": 1.5, "water": 2.25, "ecoindex_version": "5.4.2", - "date": "2024-11-24 01:05:56.064366", + "date": "2024-12-01 01:13:48.674445", "page_type": "website" } ], @@ -9974,8 +9427,8 @@ "cookiesGrade": "B", "cookiesCount": 2, "trackersGrade": "B", - "trackersCount": 1, - "lighthouse_performance": 0.7, + "trackersCount": 2, + "lighthouse_performance": 0.72, "lighthouse_performanceGrade": "B", "lighthouse_accessibility": 0.98, "lighthouse_accessibilityGrade": "A", @@ -10318,7 +9771,7 @@ "ip": "candidat.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "INFO", - "finding": "off by 0 seconds from your localtime" + "finding": "off by -1 seconds from your localtime" }, { "id": "certificate_compression", @@ -10450,8 +9903,8 @@ "id": "cert_expirationStatus ", "ip": "candidat.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", - "severity": "OK", - "finding": "66 >= 60 days" + "severity": "MEDIUM", + "finding": "expires < 60 days (59)" }, { "id": "cert_notBefore ", @@ -10464,7 +9917,7 @@ "id": "cert_notAfter ", "ip": "candidat.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", - "severity": "OK", + "severity": "MEDIUM", "finding": "2025-01-29 17:35" }, { @@ -10751,8 +10204,8 @@ "id": "cert_expirationStatus ", "ip": "candidat.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", - "severity": "OK", - "finding": "66 >= 60 days" + "severity": "MEDIUM", + "finding": "expires < 60 days (59)" }, { "id": "cert_notBefore ", @@ -10765,7 +10218,7 @@ "id": "cert_notAfter ", "ip": "candidat.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", - "severity": "OK", + "severity": "MEDIUM", "finding": "2025-01-29 17:37" }, { @@ -10962,7 +10415,7 @@ "ip": "candidat.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "INFO", - "finding": "1732410572" + "finding": "1733015879" }, { "id": "HSTS", @@ -10983,7 +10436,7 @@ "ip": "candidat.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "INFO", - "finding": "cloudflareserver-timing: cfL4;desc='?proto=TCP&rtt=2285&sent=5&recv=6&lost=0&retrans=0&sent_bytes=3036&recv_bytes=769&delivery_rate=1498426&cwnd=252&unsent_bytes=0&cid=0782c5178e345839&ts=312&x=0'" + "finding": "cloudflareserver-timing: cfL4;desc='?proto=TCP&rtt=1236&min_rtt=1126&rtt_var=424&sent=5&recv=6&lost=0&retrans=0&sent_bytes=3037&recv_bytes=769&delivery_rate=2536412&cwnd=252&unsent_bytes=0&cid=9282b69ac24fa1a8&ts=107&x=0'" }, { "id": "banner_application", @@ -11771,7 +11224,7 @@ "ip": "candidat.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "INFO", - "finding": "supported" + "finding": "not supported" }, { "id": "TLS_timestamp", @@ -11910,8 +11363,8 @@ "id": "cert_expirationStatus ", "ip": "candidat.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", - "severity": "OK", - "finding": "66 >= 60 days" + "severity": "MEDIUM", + "finding": "expires < 60 days (59)" }, { "id": "cert_notBefore ", @@ -11924,7 +11377,7 @@ "id": "cert_notAfter ", "ip": "candidat.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", - "severity": "OK", + "severity": "MEDIUM", "finding": "2025-01-29 17:35" }, { @@ -12211,8 +11664,8 @@ "id": "cert_expirationStatus ", "ip": "candidat.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", - "severity": "OK", - "finding": "66 >= 60 days" + "severity": "MEDIUM", + "finding": "expires < 60 days (59)" }, { "id": "cert_notBefore ", @@ -12225,7 +11678,7 @@ "id": "cert_notAfter ", "ip": "candidat.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", - "severity": "OK", + "severity": "MEDIUM", "finding": "2025-01-29 17:37" }, { @@ -12422,7 +11875,7 @@ "ip": "candidat.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "INFO", - "finding": "1732410631" + "finding": "1733015943" }, { "id": "HSTS", @@ -12443,7 +11896,7 @@ "ip": "candidat.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "INFO", - "finding": "cloudflareserver-timing: cfL4;desc='?proto=TCP&rtt=2921&sent=5&recv=6&lost=0&retrans=0&sent_bytes=3036&recv_bytes=769&delivery_rate=1000700&cwnd=252&unsent_bytes=0&cid=d6f8b1425275a6c8&ts=115&x=0'" + "finding": "cloudflareserver-timing: cfL4;desc='?proto=TCP&rtt=1151&min_rtt=1063&rtt_var=388&sent=5&recv=6&lost=0&retrans=0&sent_bytes=3037&recv_bytes=769&delivery_rate=2686735&cwnd=252&unsent_bytes=0&cid=c0d477ab5357e392&ts=104&x=0'" }, { "id": "banner_application", @@ -13001,7 +12454,7 @@ "ip": "candidat.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "INFO", - "finding": "122" + "finding": "130" } ], "thirdparties": { @@ -13012,7 +12465,7 @@ "value": "1", "domain": ".conseiller-numerique.gouv.fr", "path": "/", - "expires": 1732412341, + "expires": 1733017647, "size": 17, "httpOnly": false, "secure": false, @@ -13024,10 +12477,10 @@ }, { "name": "_pk_id.147.a4f0", - "value": "320a7596660d7418.1732410542.", + "value": "e73392cb1d08836b.1733015848.", "domain": ".conseiller-numerique.gouv.fr", "path": "/", - "expires": 1766365742, + "expires": 1766971048, "size": 43, "httpOnly": false, "secure": false, @@ -13042,16 +12495,16 @@ "alt-svc": "h3=\":443\"; ma=86400", "cache-control": "max-age=60, private, proxy-revalidate", "cf-cache-status": "DYNAMIC", - "cf-ray": "8e7582da3be9290d-ORD", + "cf-ray": "8eaf3cd59ade05c2-IAD", "content-encoding": "br", "content-type": "text/html", - "date": "Sun, 24 Nov 2024 01:09:01 GMT", + "date": "Sun, 01 Dec 2024 01:17:27 GMT", "last-modified": "Fri, 15 Nov 2024 19:22:31 GMT", "nel": "{\"success_fraction\":0,\"report_to\":\"cf-nel\",\"max_age\":604800}", - "report-to": "{\"endpoints\":[{\"url\":\"https:\\/\\/a.nel.cloudflare.com\\/report\\/v4?s=bh4lf2e5iKBXWpkygJJWIlgLcKdSw%2FbdqfZCA8%2B2YOIii%2BEj2JG19NisPnw5hIT7H60cwkw9WEPxjU8bFFsFevk3U4BGtNeqJvLIoQ1m5ISElJ0jxAH14GZnKB1fo%2F%2Fm2s7GicgmZi1xD9AQBLJ5MhSRbxBYcYKt\"}],\"group\":\"cf-nel\",\"max_age\":604800}", + "report-to": "{\"endpoints\":[{\"url\":\"https:\\/\\/a.nel.cloudflare.com\\/report\\/v4?s=gHZhGrAT%2Fiyw9KcfD%2FOiYrvTjSA%2Bq9HEtAImqYhk7UX4cVInCZsXUUcbEPTS2tSNQlUgNHmH9JXfHHHRc53ypbiP5rnJ0v9t0pFhgq%2BXwT1A%2F2tz2pJLEk71xaPCf6%2B69RKvoM1oXjXUCrJ14r5LSxaEd%2BxY0t7N\"}],\"group\":\"cf-nel\",\"max_age\":604800}", "server": "cloudflare", - "server-timing": "cfL4;desc=\"?proto=TCP&rtt=3045&sent=6&recv=9&lost=0&retrans=0&sent_bytes=2894&recv_bytes=1081&delivery_rate=948522&cwnd=253&unsent_bytes=0&cid=1987b247aebe431a&ts=124&x=0\"", - "sozu-id": "01JDDVCXHZER1RYMEQADCCGCQR", + "server-timing": "cfL4;desc=\"?proto=TCP&rtt=1196&min_rtt=1070&rtt_var=370&sent=6&recv=9&lost=0&retrans=0&sent_bytes=2890&recv_bytes=1081&delivery_rate=2669158&cwnd=253&unsent_bytes=0&cid=42ead5b793224012&ts=116&x=0\"", + "sozu-id": "01JDZWN8NZPYMJG4563NT2Z8WV", "vary": "Accept-Encoding" }, "endpoints": [ @@ -13222,7 +12675,7 @@ "type": "dns", "host": "candidat.conseiller-numerique.gouv.fr.", "matched-at": "candidat.conseiller-numerique.gouv.fr", - "timestamp": "2024-11-24T01:11:50.865354802Z", + "timestamp": "2024-12-01T01:20:27.358996084Z", "matcher-status": true }, { @@ -13251,8 +12704,8 @@ "extracted-results": [ "POST,OPTIONS,HEAD,GET" ], - "ip": "172.67.144.206", - "timestamp": "2024-11-24T01:11:55.945151004Z", + "ip": "104.21.71.120", + "timestamp": "2024-12-01T01:20:32.609157076Z", "curl-command": "curl -X 'OPTIONS' -H 'Accept: */*' -H 'Accept-Language: en' -H 'User-Agent: Nuclei - Open-source project (github.com/projectdiscovery/nuclei)' 'https://candidat.conseiller-numerique.gouv.fr/login'", "matcher-status": true }, @@ -13279,8 +12732,8 @@ "type": "http", "host": "https://candidat.conseiller-numerique.gouv.fr/login", "matched-at": "https://candidat.conseiller-numerique.gouv.fr/login", - "ip": "172.67.144.206", - "timestamp": "2024-11-24T01:12:21.049517801Z", + "ip": "104.21.71.120", + "timestamp": "2024-12-01T01:20:57.823045821Z", "curl-command": "curl -X 'GET' -H 'Accept: */*' -H 'Accept-Language: en' -H 'User-Agent: Nuclei - Open-source project (github.com/projectdiscovery/nuclei)' 'https://candidat.conseiller-numerique.gouv.fr/login'", "matcher-status": true }, @@ -13313,12 +12766,12 @@ "max-request": 1 } }, - "matcher-name": "strict-transport-security", + "matcher-name": "x-frame-options", "type": "http", "host": "https://candidat.conseiller-numerique.gouv.fr/login", "matched-at": "https://candidat.conseiller-numerique.gouv.fr/login", - "ip": "172.67.144.206", - "timestamp": "2024-11-24T01:12:27.308707403Z", + "ip": "104.21.71.120", + "timestamp": "2024-12-01T01:21:04.085549796Z", "curl-command": "curl -X 'GET' -H 'Accept: */*' -H 'Accept-Language: en' -H 'User-Agent: Nuclei - Open-source project (github.com/projectdiscovery/nuclei)' 'https://candidat.conseiller-numerique.gouv.fr/login'", "matcher-status": true }, @@ -13351,12 +12804,12 @@ "max-request": 1 } }, - "matcher-name": "content-security-policy", + "matcher-name": "x-content-type-options", "type": "http", "host": "https://candidat.conseiller-numerique.gouv.fr/login", "matched-at": "https://candidat.conseiller-numerique.gouv.fr/login", - "ip": "172.67.144.206", - "timestamp": "2024-11-24T01:12:27.308746295Z", + "ip": "104.21.71.120", + "timestamp": "2024-12-01T01:21:04.085601753Z", "curl-command": "curl -X 'GET' -H 'Accept: */*' -H 'Accept-Language: en' -H 'User-Agent: Nuclei - Open-source project (github.com/projectdiscovery/nuclei)' 'https://candidat.conseiller-numerique.gouv.fr/login'", "matcher-status": true }, @@ -13389,12 +12842,12 @@ "max-request": 1 } }, - "matcher-name": "x-frame-options", + "matcher-name": "cross-origin-embedder-policy", "type": "http", "host": "https://candidat.conseiller-numerique.gouv.fr/login", "matched-at": "https://candidat.conseiller-numerique.gouv.fr/login", - "ip": "172.67.144.206", - "timestamp": "2024-11-24T01:12:27.308761042Z", + "ip": "104.21.71.120", + "timestamp": "2024-12-01T01:21:04.085619105Z", "curl-command": "curl -X 'GET' -H 'Accept: */*' -H 'Accept-Language: en' -H 'User-Agent: Nuclei - Open-source project (github.com/projectdiscovery/nuclei)' 'https://candidat.conseiller-numerique.gouv.fr/login'", "matcher-status": true }, @@ -13427,12 +12880,12 @@ "max-request": 1 } }, - "matcher-name": "x-permitted-cross-domain-policies", + "matcher-name": "cross-origin-opener-policy", "type": "http", "host": "https://candidat.conseiller-numerique.gouv.fr/login", "matched-at": "https://candidat.conseiller-numerique.gouv.fr/login", - "ip": "172.67.144.206", - "timestamp": "2024-11-24T01:12:27.308777403Z", + "ip": "104.21.71.120", + "timestamp": "2024-12-01T01:21:04.085633953Z", "curl-command": "curl -X 'GET' -H 'Accept: */*' -H 'Accept-Language: en' -H 'User-Agent: Nuclei - Open-source project (github.com/projectdiscovery/nuclei)' 'https://candidat.conseiller-numerique.gouv.fr/login'", "matcher-status": true }, @@ -13465,12 +12918,12 @@ "max-request": 1 } }, - "matcher-name": "cross-origin-opener-policy", + "matcher-name": "strict-transport-security", "type": "http", "host": "https://candidat.conseiller-numerique.gouv.fr/login", "matched-at": "https://candidat.conseiller-numerique.gouv.fr/login", - "ip": "172.67.144.206", - "timestamp": "2024-11-24T01:12:27.308794384Z", + "ip": "104.21.71.120", + "timestamp": "2024-12-01T01:21:04.085662025Z", "curl-command": "curl -X 'GET' -H 'Accept: */*' -H 'Accept-Language: en' -H 'User-Agent: Nuclei - Open-source project (github.com/projectdiscovery/nuclei)' 'https://candidat.conseiller-numerique.gouv.fr/login'", "matcher-status": true }, @@ -13503,12 +12956,12 @@ "max-request": 1 } }, - "matcher-name": "cross-origin-resource-policy", + "matcher-name": "permissions-policy", "type": "http", "host": "https://candidat.conseiller-numerique.gouv.fr/login", "matched-at": "https://candidat.conseiller-numerique.gouv.fr/login", - "ip": "172.67.144.206", - "timestamp": "2024-11-24T01:12:27.308811466Z", + "ip": "104.21.71.120", + "timestamp": "2024-12-01T01:21:04.085723059Z", "curl-command": "curl -X 'GET' -H 'Accept: */*' -H 'Accept-Language: en' -H 'User-Agent: Nuclei - Open-source project (github.com/projectdiscovery/nuclei)' 'https://candidat.conseiller-numerique.gouv.fr/login'", "matcher-status": true }, @@ -13541,12 +12994,12 @@ "max-request": 1 } }, - "matcher-name": "permissions-policy", + "matcher-name": "x-permitted-cross-domain-policies", "type": "http", "host": "https://candidat.conseiller-numerique.gouv.fr/login", "matched-at": "https://candidat.conseiller-numerique.gouv.fr/login", - "ip": "172.67.144.206", - "timestamp": "2024-11-24T01:12:27.308854146Z", + "ip": "104.21.71.120", + "timestamp": "2024-12-01T01:21:04.085771469Z", "curl-command": "curl -X 'GET' -H 'Accept: */*' -H 'Accept-Language: en' -H 'User-Agent: Nuclei - Open-source project (github.com/projectdiscovery/nuclei)' 'https://candidat.conseiller-numerique.gouv.fr/login'", "matcher-status": true }, @@ -13579,12 +13032,12 @@ "max-request": 1 } }, - "matcher-name": "x-content-type-options", + "matcher-name": "referrer-policy", "type": "http", "host": "https://candidat.conseiller-numerique.gouv.fr/login", "matched-at": "https://candidat.conseiller-numerique.gouv.fr/login", - "ip": "172.67.144.206", - "timestamp": "2024-11-24T01:12:27.308868873Z", + "ip": "104.21.71.120", + "timestamp": "2024-12-01T01:21:04.085805112Z", "curl-command": "curl -X 'GET' -H 'Accept: */*' -H 'Accept-Language: en' -H 'User-Agent: Nuclei - Open-source project (github.com/projectdiscovery/nuclei)' 'https://candidat.conseiller-numerique.gouv.fr/login'", "matcher-status": true }, @@ -13617,12 +13070,12 @@ "max-request": 1 } }, - "matcher-name": "referrer-policy", + "matcher-name": "clear-site-data", "type": "http", "host": "https://candidat.conseiller-numerique.gouv.fr/login", "matched-at": "https://candidat.conseiller-numerique.gouv.fr/login", - "ip": "172.67.144.206", - "timestamp": "2024-11-24T01:12:27.30888332Z", + "ip": "104.21.71.120", + "timestamp": "2024-12-01T01:21:04.085824839Z", "curl-command": "curl -X 'GET' -H 'Accept: */*' -H 'Accept-Language: en' -H 'User-Agent: Nuclei - Open-source project (github.com/projectdiscovery/nuclei)' 'https://candidat.conseiller-numerique.gouv.fr/login'", "matcher-status": true }, @@ -13655,12 +13108,12 @@ "max-request": 1 } }, - "matcher-name": "clear-site-data", + "matcher-name": "cross-origin-resource-policy", "type": "http", "host": "https://candidat.conseiller-numerique.gouv.fr/login", "matched-at": "https://candidat.conseiller-numerique.gouv.fr/login", - "ip": "172.67.144.206", - "timestamp": "2024-11-24T01:12:27.308896304Z", + "ip": "104.21.71.120", + "timestamp": "2024-12-01T01:21:04.085845698Z", "curl-command": "curl -X 'GET' -H 'Accept: */*' -H 'Accept-Language: en' -H 'User-Agent: Nuclei - Open-source project (github.com/projectdiscovery/nuclei)' 'https://candidat.conseiller-numerique.gouv.fr/login'", "matcher-status": true }, @@ -13693,12 +13146,12 @@ "max-request": 1 } }, - "matcher-name": "cross-origin-embedder-policy", + "matcher-name": "content-security-policy", "type": "http", "host": "https://candidat.conseiller-numerique.gouv.fr/login", "matched-at": "https://candidat.conseiller-numerique.gouv.fr/login", - "ip": "172.67.144.206", - "timestamp": "2024-11-24T01:12:27.308911092Z", + "ip": "104.21.71.120", + "timestamp": "2024-12-01T01:21:04.085867258Z", "curl-command": "curl -X 'GET' -H 'Accept: */*' -H 'Accept-Language: en' -H 'User-Agent: Nuclei - Open-source project (github.com/projectdiscovery/nuclei)' 'https://candidat.conseiller-numerique.gouv.fr/login'", "matcher-status": true }, @@ -13726,8 +13179,8 @@ "type": "http", "host": "https://candidat.conseiller-numerique.gouv.fr/login", "matched-at": "https://candidat.conseiller-numerique.gouv.fr/robots.txt", - "ip": "172.67.144.206", - "timestamp": "2024-11-24T01:12:35.710295261Z", + "ip": "104.21.71.120", + "timestamp": "2024-12-01T01:21:11.084145731Z", "curl-command": "curl -X 'GET' -H 'Accept: */*' -H 'Accept-Language: en' -H 'User-Agent: Nuclei - Open-source project (github.com/projectdiscovery/nuclei)' 'https://candidat.conseiller-numerique.gouv.fr/robots.txt'", "matcher-status": true }, @@ -13766,8 +13219,8 @@ "type": "http", "host": "https://candidat.conseiller-numerique.gouv.fr/login", "matched-at": "https://candidat.conseiller-numerique.gouv.fr/login/", - "ip": "172.67.144.206", - "timestamp": "2024-11-24T01:12:44.742740001Z", + "ip": "104.21.71.120", + "timestamp": "2024-12-01T01:21:19.6135648Z", "curl-command": "curl -X 'POST' -d '_=' -H 'Content-Type: application/x-www-form-urlencoded' -H 'Host: candidat.conseiller-numerique.gouv.fr' -H 'User-Agent: Nuclei - Open-source project (github.com/projectdiscovery/nuclei)' 'https://candidat.conseiller-numerique.gouv.fr/login/'", "matcher-status": true }, @@ -13797,8 +13250,8 @@ "extracted-results": [ "Google Trust Services" ], - "ip": "172.67.144.206", - "timestamp": "2024-11-24T01:17:38.95960495Z", + "ip": "104.21.71.120", + "timestamp": "2024-12-01T01:27:05.930230938Z", "matcher-status": true }, { @@ -13827,8 +13280,8 @@ "extracted-results": [ "candidat.conseiller-numerique.gouv.fr" ], - "ip": "172.67.144.206", - "timestamp": "2024-11-24T01:17:38.959719664Z", + "ip": "104.21.71.120", + "timestamp": "2024-12-01T01:27:05.930468652Z", "matcher-status": true }, { @@ -13864,8 +13317,8 @@ "extracted-results": [ "tls11" ], - "ip": "172.67.144.206", - "timestamp": "2024-11-24T01:17:39.147831113Z", + "ip": "104.21.71.120", + "timestamp": "2024-12-01T01:27:05.949541239Z", "matcher-status": true }, { @@ -13901,8 +13354,8 @@ "extracted-results": [ "tls10" ], - "ip": "172.67.144.206", - "timestamp": "2024-11-24T01:17:39.175212022Z", + "ip": "104.21.71.120", + "timestamp": "2024-12-01T01:27:05.977238717Z", "matcher-status": true }, { @@ -13932,8 +13385,8 @@ "extracted-results": [ "tls10" ], - "ip": "172.67.144.206", - "timestamp": "2024-11-24T01:17:39.340913624Z", + "ip": "104.21.71.120", + "timestamp": "2024-12-01T01:27:05.984684315Z", "matcher-status": true }, { @@ -13963,39 +13416,44 @@ "extracted-results": [ "tls11" ], - "ip": "172.67.144.206", - "timestamp": "2024-11-24T01:17:39.368593337Z", + "ip": "104.21.71.120", + "timestamp": "2024-12-01T01:27:06.011429923Z", "matcher-status": true }, { - "template": "ssl/tls-version.yaml", - "template-url": "https://templates.nuclei.sh/public/tls-version", - "template-id": "tls-version", - "template-path": "/home/runner/nuclei-templates/ssl/tls-version.yaml", + "template": "ssl/weak-cipher-suites.yaml", + "template-url": "https://templates.nuclei.sh/public/weak-cipher-suites", + "template-id": "weak-cipher-suites", + "template-path": "/home/runner/nuclei-templates/ssl/weak-cipher-suites.yaml", "info": { - "name": "TLS Version - Detect", + "name": "Weak Cipher Suites Detection", "author": [ - "pdteam", "pussycat0x" ], "tags": [ "ssl", - "tls" + "tls", + "misconfig" ], - "description": "TLS version detection is a security process used to determine the version of the Transport Layer Security (TLS) protocol used by a computer or server.\nIt is important to detect the TLS version in order to ensure secure communication between two computers or servers.\n", - "severity": "info", + "description": "A weak cipher is defined as an encryption/decryption algorithm that uses a key of insufficient length. Using an insufficient length for a key in an encryption/decryption algorithm opens up the possibility (or probability) that the encryption scheme could be broken.", + "reference": [ + "https://www.acunetix.com/vulnerabilities/web/tls-ssl-weak-cipher-suites/", + "http://ciphersuite.info" + ], + "severity": "low", "metadata": { "max-request": 4 } }, + "matcher-name": "tls-1.0", "type": "ssl", "host": "candidat.conseiller-numerique.gouv.fr", "matched-at": "candidat.conseiller-numerique.gouv.fr:443", "extracted-results": [ - "tls12" + "[tls10 TLS_ECDHE_RSA_WITH_AES_128_CBC_SHA]" ], - "ip": "172.67.144.206", - "timestamp": "2024-11-24T01:17:39.398651924Z", + "ip": "104.21.71.120", + "timestamp": "2024-12-01T01:27:06.014339606Z", "matcher-status": true }, { @@ -14023,10 +13481,10 @@ "host": "candidat.conseiller-numerique.gouv.fr", "matched-at": "candidat.conseiller-numerique.gouv.fr:443", "extracted-results": [ - "tls13" + "tls12" ], - "ip": "172.67.144.206", - "timestamp": "2024-11-24T01:17:39.425419487Z", + "ip": "104.21.71.120", + "timestamp": "2024-12-01T01:27:06.039652151Z", "matcher-status": true }, { @@ -14054,51 +13512,46 @@ "max-request": 4 } }, - "matcher-name": "tls-1.0", + "matcher-name": "tls-1.1", "type": "ssl", "host": "candidat.conseiller-numerique.gouv.fr", "matched-at": "candidat.conseiller-numerique.gouv.fr:443", "extracted-results": [ - "[tls10 TLS_ECDHE_RSA_WITH_AES_128_CBC_SHA]" + "[tls11 TLS_ECDHE_RSA_WITH_AES_128_CBC_SHA]" ], - "ip": "172.67.144.206", - "timestamp": "2024-11-24T01:17:39.462879487Z", + "ip": "104.21.71.120", + "timestamp": "2024-12-01T01:27:06.042461418Z", "matcher-status": true }, { - "template": "ssl/weak-cipher-suites.yaml", - "template-url": "https://templates.nuclei.sh/public/weak-cipher-suites", - "template-id": "weak-cipher-suites", - "template-path": "/home/runner/nuclei-templates/ssl/weak-cipher-suites.yaml", + "template": "ssl/tls-version.yaml", + "template-url": "https://templates.nuclei.sh/public/tls-version", + "template-id": "tls-version", + "template-path": "/home/runner/nuclei-templates/ssl/tls-version.yaml", "info": { - "name": "Weak Cipher Suites Detection", + "name": "TLS Version - Detect", "author": [ + "pdteam", "pussycat0x" ], "tags": [ "ssl", - "tls", - "misconfig" - ], - "description": "A weak cipher is defined as an encryption/decryption algorithm that uses a key of insufficient length. Using an insufficient length for a key in an encryption/decryption algorithm opens up the possibility (or probability) that the encryption scheme could be broken.", - "reference": [ - "https://www.acunetix.com/vulnerabilities/web/tls-ssl-weak-cipher-suites/", - "http://ciphersuite.info" + "tls" ], - "severity": "low", + "description": "TLS version detection is a security process used to determine the version of the Transport Layer Security (TLS) protocol used by a computer or server.\nIt is important to detect the TLS version in order to ensure secure communication between two computers or servers.\n", + "severity": "info", "metadata": { "max-request": 4 } }, - "matcher-name": "tls-1.1", "type": "ssl", "host": "candidat.conseiller-numerique.gouv.fr", "matched-at": "candidat.conseiller-numerique.gouv.fr:443", "extracted-results": [ - "[tls11 TLS_ECDHE_RSA_WITH_AES_128_CBC_SHA]" + "tls13" ], - "ip": "172.67.144.206", - "timestamp": "2024-11-24T01:17:39.491427935Z", + "ip": "104.21.71.120", + "timestamp": "2024-12-01T01:27:06.061612942Z", "matcher-status": true } ], @@ -14106,8 +13559,10 @@ { "requestedUrl": "https://candidat.conseiller-numerique.gouv.fr/login", "finalUrl": "https://candidat.conseiller-numerique.gouv.fr/login", - "fetchTime": "2024-11-24T01:08:38.250Z", - "runWarnings": [], + "fetchTime": "2024-12-01T01:17:02.152Z", + "runWarnings": [ + "The tested device appears to have a slower CPU than Lighthouse expects. This can negatively affect your performance score. Learn more about [calibrating an appropriate CPU slowdown multiplier](https://github.com/GoogleChrome/lighthouse/blob/master/docs/throttling.md#cpu-throttling)." + ], "categories": { "performance": { "title": "Performance", @@ -14117,7 +13572,7 @@ "snapshot" ], "id": "performance", - "score": 0.81 + "score": 0.82 }, "accessibility": { "title": "Accessibility", @@ -14169,53 +13624,53 @@ "description": "Collects all available metrics.", "score": null, "scoreDisplayMode": "informative", - "numericValue": 3552, + "numericValue": 3425, "numericUnit": "millisecond", "details": { "type": "debugdata", "items": [ { - "firstContentfulPaint": 2601, - "firstMeaningfulPaint": 2615, - "largestContentfulPaint": 4219, - "interactive": 3552, - "speedIndex": 2873, - "totalBlockingTime": 1, + "firstContentfulPaint": 3021, + "firstMeaningfulPaint": 3037, + "largestContentfulPaint": 3846, + "interactive": 3425, + "speedIndex": 3021, + "totalBlockingTime": 4, "maxPotentialFID": 57, - "cumulativeLayoutShift": 0.025251782417297364, - "cumulativeLayoutShiftMainFrame": 0.025251782417297364, - "totalCumulativeLayoutShift": 0.025251782417297364, + "cumulativeLayoutShift": 0.045919740676879886, + "cumulativeLayoutShiftMainFrame": 0.045919740676879886, + "totalCumulativeLayoutShift": 0.045919740676879886, "observedTimeOrigin": 0, - "observedTimeOriginTs": 453480452, + "observedTimeOriginTs": 455307867, "observedNavigationStart": 0, - "observedNavigationStartTs": 453480452, - "observedFirstPaint": 460, - "observedFirstPaintTs": 453940198, - "observedFirstContentfulPaint": 460, - "observedFirstContentfulPaintTs": 453940198, - "observedFirstContentfulPaintAllFrames": 460, - "observedFirstContentfulPaintAllFramesTs": 453940198, - "observedFirstMeaningfulPaint": 460, - "observedFirstMeaningfulPaintTs": 453940198, - "observedLargestContentfulPaint": 478, - "observedLargestContentfulPaintTs": 453958882, - "observedLargestContentfulPaintAllFrames": 478, - "observedLargestContentfulPaintAllFramesTs": 453958882, - "observedTraceEnd": 3180, - "observedTraceEndTs": 456660907, - "observedLoad": 854, - "observedLoadTs": 454333989, - "observedDomContentLoaded": 423, - "observedDomContentLoadedTs": 453903273, - "observedCumulativeLayoutShift": 0.025251782417297364, - "observedCumulativeLayoutShiftMainFrame": 0.025251782417297364, - "observedTotalCumulativeLayoutShift": 0.025251782417297364, - "observedFirstVisualChange": 468, - "observedFirstVisualChangeTs": 453948452, - "observedLastVisualChange": 1118, - "observedLastVisualChangeTs": 454598452, - "observedSpeedIndex": 483, - "observedSpeedIndexTs": 453963674 + "observedNavigationStartTs": 455307867, + "observedFirstPaint": 633, + "observedFirstPaintTs": 455940475, + "observedFirstContentfulPaint": 633, + "observedFirstContentfulPaintTs": 455940475, + "observedFirstContentfulPaintAllFrames": 633, + "observedFirstContentfulPaintAllFramesTs": 455940475, + "observedFirstMeaningfulPaint": 633, + "observedFirstMeaningfulPaintTs": 455940475, + "observedLargestContentfulPaint": 650, + "observedLargestContentfulPaintTs": 455958088, + "observedLargestContentfulPaintAllFrames": 650, + "observedLargestContentfulPaintAllFramesTs": 455958088, + "observedTraceEnd": 3301, + "observedTraceEndTs": 458609032, + "observedLoad": 968, + "observedLoadTs": 456275662, + "observedDomContentLoaded": 591, + "observedDomContentLoadedTs": 455899070, + "observedCumulativeLayoutShift": 0.045919740676879886, + "observedCumulativeLayoutShiftMainFrame": 0.045919740676879886, + "observedTotalCumulativeLayoutShift": 0.045919740676879886, + "observedFirstVisualChange": 640, + "observedFirstVisualChangeTs": 455947867, + "observedLastVisualChange": 1273, + "observedLastVisualChangeTs": 456580867, + "observedSpeedIndex": 655, + "observedSpeedIndexTs": 455963261 }, { "lcpInvalidated": false @@ -14237,19 +13692,19 @@ "numScripts": 2, "numStylesheets": 1, "numFonts": 3, - "numTasks": 774, - "numTasksOver10ms": 6, - "numTasksOver25ms": 1, - "numTasksOver50ms": 0, - "numTasksOver100ms": 0, + "numTasks": 747, + "numTasksOver10ms": 8, + "numTasksOver25ms": 4, + "numTasksOver50ms": 2, + "numTasksOver100ms": 1, "numTasksOver500ms": 0, "rtt": 0, - "throughput": 31169031.58106519, - "maxRtt": 102.50399999999999, - "maxServerLatency": 16.913, - "totalByteWeight": 504950, - "totalTaskTime": 174.80899999999903, - "mainDocumentTransferSize": 1615 + "throughput": 29303439.87469666, + "maxRtt": 83.967, + "maxServerLatency": 21.48, + "totalByteWeight": 505162, + "totalTaskTime": 409.1629999999995, + "mainDocumentTransferSize": 1567 } ] } @@ -14276,7 +13731,7 @@ "width": 1920, "height": 1080, "url": "https://candidat.conseiller-numerique.gouv.fr/login", - "size": 516.279, + "size": 516.515, "nodes": 82, "requests": 14, "grade": "A", @@ -14284,7 +13739,7 @@ "ges": 1.24, "water": 1.86, "ecoindex_version": "5.4.2", - "date": "2024-11-24 01:05:44.333030", + "date": "2024-12-01 01:13:44.226589", "page_type": null } ], @@ -14304,7 +13759,7 @@ "cookiesCount": 2, "trackersGrade": "A", "trackersCount": 0, - "lighthouse_performance": 0.81, + "lighthouse_performance": 0.82, "lighthouse_performanceGrade": "B", "lighthouse_accessibility": 1, "lighthouse_accessibilityGrade": "A", @@ -14372,77 +13827,77 @@ "testssl": [ { "id": "service", - "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "INFO", "finding": "HTTP" }, { "id": "pre_128cipher", - "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "INFO", "finding": "No 128 cipher limit bug" }, { "id": "SSLv2", - "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "OK", "finding": "not offered" }, { "id": "SSLv3", - "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "OK", "finding": "not offered" }, { "id": "TLS1", - "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "LOW", "finding": "offered (deprecated)" }, { "id": "TLS1_1", - "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "LOW", "finding": "offered (deprecated)" }, { "id": "TLS1_2", - "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "OK", "finding": "offered" }, { "id": "TLS1_3", - "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "OK", "finding": "offered with final" }, { "id": "ALPN_HTTP2", - "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "OK", "finding": "h2" }, { "id": "ALPN", - "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "INFO", "finding": "http/1.1" }, { "id": "cipherlist_NULL", - "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "OK", "cwe": "CWE-327", @@ -14450,7 +13905,7 @@ }, { "id": "cipherlist_aNULL", - "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "OK", "cwe": "CWE-327", @@ -14458,7 +13913,7 @@ }, { "id": "cipherlist_EXPORT", - "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "OK", "cwe": "CWE-327", @@ -14466,7 +13921,7 @@ }, { "id": "cipherlist_LOW", - "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "OK", "cwe": "CWE-327", @@ -14474,7 +13929,7 @@ }, { "id": "cipherlist_3DES_IDEA", - "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "INFO", "cwe": "CWE-310", @@ -14482,7 +13937,7 @@ }, { "id": "cipherlist_OBSOLETED", - "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "LOW", "cwe": "CWE-310", @@ -14490,819 +13945,819 @@ }, { "id": "cipherlist_STRONG_NOFS", - "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "OK", "finding": "offered" }, { "id": "cipherlist_STRONG_FS", - "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "OK", "finding": "offered" }, { "id": "cipher_order-tls1", - "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "OK", "finding": "server" }, { "id": "cipherorder_TLSv1", - "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "INFO", "finding": "ECDHE-RSA-AES128-SHA" }, { "id": "cipher_order-tls1_1", - "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "OK", "finding": "server" }, { "id": "cipherorder_TLSv1_1", - "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "INFO", "finding": "ECDHE-RSA-AES128-SHA" }, { "id": "cipher_order-tls1_2", - "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "OK", "finding": "server" }, { "id": "cipherorder_TLSv1_2", - "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "INFO", "finding": "ECDHE-ECDSA-AES128-GCM-SHA256" }, { "id": "cipher_order", - "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "OK", "finding": "server -- TLS 1.3 client determined" }, { "id": "FS", - "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "OK", "finding": "offered" }, { "id": "FS_ciphers", - "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "INFO", "finding": "ECDHE-ECDSA-AES128-GCM-SHA256 ECDHE-ECDSA-AES128-SHA256 ECDHE-ECDSA-AES128-SHA ECDHE-ECDSA-AES256-GCM-SHA384 ECDHE-ECDSA-AES256-SHA384 ECDHE-ECDSA-AES256-SHA ECDHE-RSA-AES128-GCM-SHA256 ECDHE-RSA-AES128-SHA256 ECDHE-RSA-AES128-SHA ECDHE-RSA-AES256-GCM-SHA384 ECDHE-RSA-AES256-SHA384 ECDHE-RSA-AES256-SHA" }, { "id": "FS_ECDHE_curves", - "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "OK", "finding": "prime256v1" }, { "id": "TLS_extensions", - "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "INFO", "finding": "'server name/#0' 'renegotiation info/#65281' 'EC point formats/#11' 'session ticket/#35' 'status request/#5' 'next protocol/#13172' 'key share/#51' 'supported versions/#43' 'extended master secret/#23' 'application layer protocol negotiation/#16' 'compress_certificate/#27'" }, { "id": "TLS_session_ticket", - "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "INFO", "finding": "valid for 64800 seconds only (", - "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "OK", "finding": "SHA256 with RSA" }, { "id": "cert_keySize ", - "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "INFO", "finding": "RSA 2048 bits (exponent is 65537)" }, { "id": "cert_keyUsage ", - "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "INFO", "finding": "Digital Signature, Key Encipherment" }, { "id": "cert_extKeyUsage ", - "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "INFO", "finding": "TLS Web Server Authentication" }, { "id": "cert_serialNumber ", - "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "INFO", "finding": "03D2A9B46D0C0DE5131921EAC43FBCFA" }, { "id": "cert_serialNumberLen ", - "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "INFO", "finding": "16" }, { "id": "cert_fingerprintSHA1 ", - "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "INFO", "finding": "4A215834CB12589ED799651DD1F5DD469B2BB950" }, { "id": "cert_fingerprintSHA256 ", - "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "INFO", "finding": "9737A9BB66C8E2F73A9FB45203822894DB0DEE3674D368CA32B5F2E6895FD521" }, { "id": "cert ", - "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "INFO", "finding": "-----BEGIN CERTIFICATE-----\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\n-----END CERTIFICATE-----" }, { "id": "cert_commonName ", - "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "OK", "finding": "pilotage.conseiller-numerique.gouv.fr" }, { "id": "cert_commonName_wo_SNI ", - "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "INFO", "finding": "request w/o SNI didn't succeed" }, { "id": "cert_subjectAltName ", - "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "INFO", "finding": "pilotage.conseiller-numerique.gouv.fr" }, { "id": "cert_trust ", - "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "OK", "finding": "Ok via SAN and CN (SNI mandatory)" }, { "id": "cert_chain_of_trust ", - "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "OK", "finding": "passed." }, { "id": "cert_certificatePolicies_EV ", - "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "INFO", "finding": "no" }, { "id": "cert_expirationStatus ", - "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", - "severity": "OK", - "finding": "66 >= 60 days" + "severity": "MEDIUM", + "finding": "expires < 60 days (59)" }, { "id": "cert_notBefore ", - "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "INFO", "finding": "2024-10-31 16:36" }, { "id": "cert_notAfter ", - "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", - "severity": "OK", + "severity": "MEDIUM", "finding": "2025-01-29 17:33" }, { "id": "cert_extlifeSpan ", - "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "OK", "finding": "certificate has no extended life time according to browser forum" }, { "id": "cert_eTLS ", - "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "INFO", "finding": "not present" }, { "id": "cert_crlDistributionPoints ", - "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "INFO", "finding": "http://c.pki.goog/wr1/WFaXJLtXExs.crl" }, { "id": "cert_ocspURL ", - "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "INFO", "finding": "http://o.pki.goog/s/wr1/A9I" }, { "id": "OCSP_stapling ", - "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "OK", "finding": "offered" }, { "id": "cert_ocspRevoked ", - "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "OK", "finding": "not revoked" }, { "id": "cert_mustStapleExtension ", - "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "INFO", "finding": "--" }, { "id": "DNS_CAArecord ", - "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "LOW", "finding": "--" }, { "id": "certificate_transparency ", - "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "OK", "finding": "yes (certificate extension)" }, { "id": "certs_countServer ", - "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "INFO", "finding": "3" }, { "id": "certs_list_ordering_problem ", - "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "INFO", "finding": "no" }, { "id": "cert_caIssuers ", - "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "INFO", "finding": "WR1 (Google Trust Services from US)" }, { "id": "intermediate_cert <#1> ", - "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "INFO", "finding": "-----BEGIN CERTIFICATE-----\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\n-----END CERTIFICATE-----" }, { "id": "intermediate_cert_fingerprintSHA256 <#1> ", - "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "INFO", "finding": "B10B6F00E609509E8700F6D34687A2BFCE38EA05A8FDF1CDC40C3A2A0D0D0E45" }, { "id": "intermediate_cert_notBefore <#1> ", - "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "INFO", "finding": "2023-12-13 09:00" }, { "id": "intermediate_cert_notAfter <#1> ", - "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "OK", "finding": "2029-02-20 14:00" }, { "id": "intermediate_cert_expiration <#1> ", - "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "OK", "finding": "ok > 40 days" }, { "id": "intermediate_cert_chain <#1> ", - "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "INFO", "finding": "WR1 <-- GTS Root R1" }, { "id": "intermediate_cert <#2> ", - "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "INFO", "finding": "-----BEGIN CERTIFICATE-----\nMIIFYjCCBEqgAwIBAgIQd70NbNs2+RrqIQ/E8FjTDTANBgkqhkiG9w0BAQsFADBXMQswCQYDVQQGEwJCRTEZMBcGA1UEChMQR2xvYmFsU2lnbiBudi1zYTEQMA4GA1UECxMHUm9vdCBDQTEbMBkGA1UEAxMSR2xvYmFsU2lnbiBSb290IENBMB4XDTIwMDYxOTAwMDA0MloXDTI4MDEyODAwMDA0MlowRzELMAkGA1UEBhMCVVMxIjAgBgNVBAoTGUdvb2dsZSBUcnVzdCBTZXJ2aWNlcyBMTEMxFDASBgNVBAMTC0dUUyBSb290IFIxMIICIjANBgkqhkiG9w0BAQEFAAOCAg8AMIICCgKCAgEAthECix7joXebO9y/lD63ladAPKH9gvl9MgaCcfb2jH/76Nu8ai6Xl6OMS/kr9rH5zoQdsfnFl97vufKj6bwSiV6nqlKr+CMny6SxnGPb15l+8Ape62im9MZaRw1NEDPjTrETo8gYbEvs/AmQ351kKSUjB6G00j0uYODP0gmHu81I8E3CwnqIiru6z1kZ1q+PsAewnjHxgsHA3y6mbWwZDrXYfiYaRQM9sHmklCitD38m5agI/pboPGiUU+6DOogrFZYJsuB6jC511pzrp1Zkj5ZPaK49l8KEj8C8QMALXL32h7M1bKwYUH+E4EzNktMg6TO8UpmvMrUpsyUqtEj5cuHKZPfmghCN6J3Cioj6OGaK/GP5Afl4/Xtcd/p2h/rs37EOeZVXtL0m79YB0esWCruOC7XFxYpVq9Os6pFLKcwZpDIlTirxZUTQAs6qzkm06p98g7BAe+dDq6dso499iYH6TKX/1Y7DzkvgtdizjkXPdsDtQCv9Uw+wp9U7DbGKogPeMa3Md+pvez7W35EiEua++tgy/BBjFFFy3l3WFpO9KWgz7zpm7AeKJt8T11dleCfeXkkUAKIAf5qoIbapsZWwpbkNFhHax2xIPEDgfg1azVY80ZcFuctL7TlLnMQ/0lUTbiSw1nH69MG6zO0b9f6BQdgAmD06yK56mDcYBZUCAwEAAaOCATgwggE0MA4GA1UdDwEB/wQEAwIBhjAPBgNVHRMBAf8EBTADAQH/MB0GA1UdDgQWBBTkrysmcRorSCeFL1JmLO/wiRNxPjAfBgNVHSMEGDAWgBRge2YaRQ2XyolQL30EzTSo//z9SzBgBggrBgEFBQcBAQRUMFIwJQYIKwYBBQUHMAGGGWh0dHA6Ly9vY3NwLnBraS5nb29nL2dzcjEwKQYIKwYBBQUHMAKGHWh0dHA6Ly9wa2kuZ29vZy9nc3IxL2dzcjEuY3J0MDIGA1UdHwQrMCkwJ6AloCOGIWh0dHA6Ly9jcmwucGtpLmdvb2cvZ3NyMS9nc3IxLmNybDA7BgNVHSAENDAyMAgGBmeBDAECATAIBgZngQwBAgIwDQYLKwYBBAHWeQIFAwIwDQYLKwYBBAHWeQIFAwMwDQYJKoZIhvcNAQELBQADggEBADSkHrEoo9C0dhemMXoh6dFSPsjbdBZBiLg9NR3t5P+T4Vxfq7vqfM/b5A3Ri1fyJm9bvhdGaJQ3b2t6yMAYN/olUazsaL+yyEn9WprKASOshIArAoyZl+tJaox118fessmXn1hIVw41oeQa1v1vg4Fv74zPl6/AhSrw9U5pCZEt4Wi4wStz6dTZ/CLANx8LZh1J7QJVj2fhMtfTJr9w4z30Z209fOU0iOMy+qduBmpvvYuR7hZL6Dupszfnw0Skfths18dG9ZKb59UhvmaSGZRVbNQpsg3BZlvid0lIKO2d1xozclOzgjXPYovJJIultzkMu34qQb9Sz/yilrbCgj8=\n-----END CERTIFICATE-----" }, { "id": "intermediate_cert_fingerprintSHA256 <#2> ", - "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "INFO", "finding": "3EE0278DF71FA3C125C4CD487F01D774694E6FC57E0CD94C24EFD769133918E5" }, { "id": "intermediate_cert_notBefore <#2> ", - "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "INFO", "finding": "2020-06-19 00:00" }, { "id": "intermediate_cert_notAfter <#2> ", - "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "OK", "finding": "2028-01-28 00:00" }, { "id": "intermediate_cert_expiration <#2> ", - "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "OK", "finding": "ok > 40 days" }, { "id": "intermediate_cert_chain <#2> ", - "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "INFO", "finding": "GTS Root R1 <-- GlobalSign Root CA" }, { "id": "intermediate_cert_badOCSP ", - "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "OK", "finding": "intermediate certificate(s) is/are ok" }, { "id": "cert_signatureAlgorithm ", - "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "OK", "finding": "ECDSA with SHA256" }, { "id": "cert_keySize ", - "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "OK", "finding": "EC 256 bits (curve P-256)" }, { "id": "cert_keyUsage ", - "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "INFO", "finding": "Digital Signature" }, { "id": "cert_extKeyUsage ", - "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "INFO", "finding": "TLS Web Server Authentication" }, { "id": "cert_serialNumber ", - "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "INFO", "finding": "84F0FA466EFC1B4D11A8FACF48447868" }, { "id": "cert_serialNumberLen ", - "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "INFO", "finding": "16" }, { "id": "cert_fingerprintSHA1 ", - "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "INFO", "finding": "7F94607603ED690AFA859C26B3D392196A8F97EF" }, { "id": "cert_fingerprintSHA256 ", - "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "INFO", "finding": "CF9AF1F66522D5C766BE38F90925F558FAB2BD0187A5BB1F924332094A4ED06B" }, { "id": "cert ", - "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "INFO", "finding": "-----BEGIN CERTIFICATE-----\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\n-----END CERTIFICATE-----" }, { "id": "cert_commonName ", - "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "OK", "finding": "pilotage.conseiller-numerique.gouv.fr" }, { "id": "cert_commonName_wo_SNI ", - "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "INFO", "finding": "request w/o SNI didn't succeed, usual for EC certificates" }, { "id": "cert_subjectAltName ", - "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "INFO", "finding": "pilotage.conseiller-numerique.gouv.fr" }, { "id": "cert_trust ", - "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "OK", "finding": "Ok via SAN and CN (SNI mandatory)" }, { "id": "cert_chain_of_trust ", - "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "OK", "finding": "passed." }, { "id": "cert_certificatePolicies_EV ", - "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "INFO", "finding": "no" }, { "id": "cert_expirationStatus ", - "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", - "severity": "OK", - "finding": "66 >= 60 days" + "severity": "MEDIUM", + "finding": "expires < 60 days (59)" }, { "id": "cert_notBefore ", - "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "INFO", "finding": "2024-10-31 16:36" }, { "id": "cert_notAfter ", - "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", - "severity": "OK", + "severity": "MEDIUM", "finding": "2025-01-29 17:36" }, { "id": "cert_extlifeSpan ", - "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "OK", "finding": "certificate has no extended life time according to browser forum" }, { "id": "cert_eTLS ", - "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "INFO", "finding": "not present" }, { "id": "cert_crlDistributionPoints ", - "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "INFO", "finding": "http://c.pki.goog/we1/S5C6cZxkWsc.crl" }, { "id": "cert_ocspURL ", - "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "INFO", "finding": "http://o.pki.goog/s/we1/hPA" }, { "id": "OCSP_stapling ", - "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "OK", "finding": "offered" }, { "id": "cert_ocspRevoked ", - "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "OK", "finding": "not revoked" }, { "id": "cert_mustStapleExtension ", - "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "INFO", "finding": "--" }, { "id": "DNS_CAArecord ", - "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "LOW", "finding": "--" }, { "id": "certificate_transparency ", - "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "OK", "finding": "yes (certificate extension)" }, { "id": "certs_countServer ", - "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "INFO", "finding": "3" }, { "id": "certs_list_ordering_problem ", - "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "INFO", "finding": "no" }, { "id": "cert_caIssuers ", - "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "INFO", "finding": "WE1 (Google Trust Services from US)" }, { "id": "intermediate_cert <#1> ", - "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "INFO", "finding": "-----BEGIN CERTIFICATE-----\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\n-----END CERTIFICATE-----" }, { "id": "intermediate_cert_fingerprintSHA256 <#1> ", - "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "INFO", "finding": "1DFC1605FBAD358D8BC844F76D15203FAC9CA5C1A79FD4857FFAF2864FBEBF96" }, { "id": "intermediate_cert_notBefore <#1> ", - "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "INFO", "finding": "2023-12-13 09:00" }, { "id": "intermediate_cert_notAfter <#1> ", - "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "OK", "finding": "2029-02-20 14:00" }, { "id": "intermediate_cert_expiration <#1> ", - "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "OK", "finding": "ok > 40 days" }, { "id": "intermediate_cert_chain <#1> ", - "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "INFO", "finding": "WE1 <-- GTS Root R4" }, { "id": "intermediate_cert <#2> ", - "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "INFO", "finding": "-----BEGIN CERTIFICATE-----\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\n-----END CERTIFICATE-----" }, { "id": "intermediate_cert_fingerprintSHA256 <#2> ", - "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "INFO", "finding": "76B27B80A58027DC3CF1DA68DAC17010ED93997D0B603E2FADBE85012493B5A7" }, { "id": "intermediate_cert_notBefore <#2> ", - "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "INFO", "finding": "2023-11-15 03:43" }, { "id": "intermediate_cert_notAfter <#2> ", - "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "OK", "finding": "2028-01-28 00:00" }, { "id": "intermediate_cert_expiration <#2> ", - "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "OK", "finding": "ok > 40 days" }, { "id": "intermediate_cert_chain <#2> ", - "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "INFO", "finding": "GTS Root R4 <-- GlobalSign Root CA" }, { "id": "intermediate_cert_badOCSP ", - "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "OK", "finding": "intermediate certificate(s) is/are ok" }, { "id": "HTTP_status_code", - "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "INFO", "finding": "200 OK ('/')" }, { "id": "HTTP_clock_skew", - "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "INFO", "finding": "0 seconds from localtime" }, { "id": "HTTP_headerTime", - "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "INFO", - "finding": "1732411595" + "finding": "1733016871" }, { "id": "HSTS", - "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "LOW", "finding": "not offered" }, { "id": "HPKP", - "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "INFO", "finding": "No support for HTTP Public Key Pinning" }, { "id": "banner_server", - "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "INFO", - "finding": "cloudflareserver-timing: cfL4;desc='?proto=TCP&rtt=2615&sent=5&recv=7&lost=0&retrans=0&sent_bytes=3037&recv_bytes=769&delivery_rate=1201009&cwnd=252&unsent_bytes=0&cid=54e75e8c345d55e3&ts=321&x=0'" + "finding": "cloudflareserver-timing: cfL4;desc='?proto=TCP&rtt=8488&min_rtt=8410&rtt_var=2427&sent=5&recv=6&lost=0&retrans=0&sent_bytes=3037&recv_bytes=769&delivery_rate=339595&cwnd=252&unsent_bytes=0&cid=a6b101b0a9804ccb&ts=494&x=0'" }, { "id": "banner_application", - "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "INFO", "finding": "No application banner found" }, { "id": "cookie_count", - "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "INFO", "finding": "0 at '/'" }, { "id": "security_headers", - "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "MEDIUM", "finding": "--" }, { "id": "banner_reverseproxy", - "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "INFO", "cwe": "CWE-200", @@ -15310,7 +14765,7 @@ }, { "id": "heartbleed", - "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "OK", "cve": "CVE-2014-0160", @@ -15319,7 +14774,7 @@ }, { "id": "CCS", - "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "OK", "cve": "CVE-2014-0224", @@ -15328,7 +14783,7 @@ }, { "id": "ticketbleed", - "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "OK", "cve": "CVE-2016-9244", @@ -15337,7 +14792,7 @@ }, { "id": "ROBOT", - "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "OK", "cve": "CVE-2017-17382 CVE-2017-17427 CVE-2017-17428 CVE-2017-13098 CVE-2017-1000385 CVE-2017-13099 CVE-2016-6883 CVE-2012-5081 CVE-2017-6168", @@ -15346,7 +14801,7 @@ }, { "id": "secure_renego", - "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "OK", "cwe": "CWE-310", @@ -15354,7 +14809,7 @@ }, { "id": "secure_client_renego", - "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "OK", "cve": "CVE-2011-1473", @@ -15363,7 +14818,7 @@ }, { "id": "CRIME_TLS", - "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "OK", "cve": "CVE-2012-4929", @@ -15372,7 +14827,7 @@ }, { "id": "BREACH", - "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "MEDIUM", "cve": "CVE-2013-3587", @@ -15381,7 +14836,7 @@ }, { "id": "POODLE_SSL", - "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "OK", "cve": "CVE-2014-3566", @@ -15390,14 +14845,14 @@ }, { "id": "fallback_SCSV", - "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "OK", "finding": "supported" }, { "id": "SWEET32", - "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "LOW", "cve": "CVE-2016-2183 CVE-2016-6329", @@ -15406,7 +14861,7 @@ }, { "id": "FREAK", - "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "OK", "cve": "CVE-2015-0204", @@ -15415,7 +14870,7 @@ }, { "id": "DROWN", - "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "OK", "cve": "CVE-2016-0800 CVE-2016-0703", @@ -15424,7 +14879,7 @@ }, { "id": "DROWN_hint", - "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "INFO", "cve": "CVE-2016-0800 CVE-2016-0703", @@ -15433,7 +14888,7 @@ }, { "id": "LOGJAM", - "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "OK", "cve": "CVE-2015-4000", @@ -15442,7 +14897,7 @@ }, { "id": "LOGJAM-common_primes", - "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "OK", "cve": "CVE-2015-4000", @@ -15451,7 +14906,7 @@ }, { "id": "BEAST_CBC_TLS1", - "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "MEDIUM", "cve": "CVE-2011-3389", @@ -15460,7 +14915,7 @@ }, { "id": "BEAST", - "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "LOW", "cve": "CVE-2011-3389", @@ -15469,7 +14924,7 @@ }, { "id": "LUCKY13", - "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "LOW", "cve": "CVE-2013-0169", @@ -15478,7 +14933,7 @@ }, { "id": "winshock", - "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "OK", "cve": "CVE-2014-6321", @@ -15487,7 +14942,7 @@ }, { "id": "RC4", - "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "OK", "cve": "CVE-2013-2566 CVE-2015-2808", @@ -15496,413 +14951,413 @@ }, { "id": "clientsimulation-android_60", - "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "INFO", "finding": "TLSv1.2 ECDHE-ECDSA-AES128-GCM-SHA256" }, { "id": "clientsimulation-android_70", - "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "INFO", "finding": "TLSv1.2 ECDHE-ECDSA-AES128-GCM-SHA256" }, { "id": "clientsimulation-android_81", - "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "INFO", "finding": "TLSv1.2 ECDHE-ECDSA-AES128-GCM-SHA256" }, { "id": "clientsimulation-android_90", - "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "INFO", "finding": "TLSv1.3 TLS_AES_128_GCM_SHA256" }, { "id": "clientsimulation-android_X", - "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "INFO", "finding": "TLSv1.3 TLS_AES_128_GCM_SHA256" }, { "id": "clientsimulation-android_11", - "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "INFO", "finding": "TLSv1.3 TLS_AES_128_GCM_SHA256" }, { "id": "clientsimulation-android_12", - "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "INFO", "finding": "TLSv1.3 TLS_AES_128_GCM_SHA256" }, { "id": "clientsimulation-chrome_79_win10", - "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "INFO", "finding": "TLSv1.3 TLS_AES_128_GCM_SHA256" }, { "id": "clientsimulation-chrome_101_win10", - "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "INFO", "finding": "TLSv1.3 TLS_AES_128_GCM_SHA256" }, { "id": "clientsimulation-firefox_66_win81", - "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "INFO", "finding": "TLSv1.3 TLS_AES_128_GCM_SHA256" }, { "id": "clientsimulation-firefox_100_win10", - "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "INFO", "finding": "TLSv1.3 TLS_AES_128_GCM_SHA256" }, { "id": "clientsimulation-ie_6_xp", - "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "INFO", "finding": "No connection" }, { "id": "clientsimulation-ie_8_win7", - "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "INFO", "finding": "TLSv1.0 ECDHE-RSA-AES128-SHA" }, { "id": "clientsimulation-ie_8_xp", - "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "INFO", "finding": "No connection" }, { "id": "clientsimulation-ie_11_win7", - "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "INFO", "finding": "TLSv1.2 ECDHE-ECDSA-AES128-GCM-SHA256" }, { "id": "clientsimulation-ie_11_win81", - "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "INFO", "finding": "TLSv1.2 ECDHE-ECDSA-AES128-GCM-SHA256" }, { "id": "clientsimulation-ie_11_winphone81", - "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "INFO", "finding": "TLSv1.2 ECDHE-ECDSA-AES128-GCM-SHA256" }, { "id": "clientsimulation-ie_11_win10", - "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "INFO", "finding": "TLSv1.2 ECDHE-ECDSA-AES128-GCM-SHA256" }, { "id": "clientsimulation-edge_15_win10", - "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "INFO", "finding": "TLSv1.2 ECDHE-ECDSA-AES128-GCM-SHA256" }, { "id": "clientsimulation-edge_101_win10_21h2", - "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "INFO", "finding": "TLSv1.3 TLS_AES_128_GCM_SHA256" }, { "id": "clientsimulation-safari_121_ios_122", - "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "INFO", "finding": "TLSv1.3 TLS_CHACHA20_POLY1305_SHA256" }, { "id": "clientsimulation-safari_130_osx_10146", - "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "INFO", "finding": "TLSv1.3 TLS_CHACHA20_POLY1305_SHA256" }, { "id": "clientsimulation-safari_154_osx_1231", - "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "INFO", "finding": "TLSv1.3 TLS_AES_128_GCM_SHA256" }, { "id": "clientsimulation-java_7u25", - "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "INFO", "finding": "TLSv1.0 ECDHE-RSA-AES128-SHA" }, { "id": "clientsimulation-java_8u161", - "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "INFO", "finding": "TLSv1.2 ECDHE-ECDSA-AES128-GCM-SHA256" }, { "id": "clientsimulation-java1102", - "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "INFO", "finding": "TLSv1.3 TLS_AES_128_GCM_SHA256" }, { "id": "clientsimulation-java1703", - "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "INFO", "finding": "TLSv1.3 TLS_AES_256_GCM_SHA384" }, { "id": "clientsimulation-go_1178", - "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "INFO", "finding": "TLSv1.3 TLS_AES_128_GCM_SHA256" }, { "id": "clientsimulation-libressl_283", - "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "INFO", "finding": "TLSv1.2 ECDHE-ECDSA-CHACHA20-POLY1305" }, { "id": "clientsimulation-openssl_102e", - "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "INFO", "finding": "TLSv1.2 ECDHE-ECDSA-AES128-GCM-SHA256" }, { "id": "clientsimulation-openssl_110l", - "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "INFO", "finding": "TLSv1.2 ECDHE-ECDSA-CHACHA20-POLY1305" }, { "id": "clientsimulation-openssl_111d", - "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "INFO", "finding": "TLSv1.3 TLS_AES_256_GCM_SHA384" }, { "id": "clientsimulation-openssl_303", - "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "INFO", "finding": "TLSv1.3 TLS_AES_256_GCM_SHA384" }, { "id": "clientsimulation-apple_mail_16_0", - "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "INFO", "finding": "TLSv1.2 ECDHE-ECDSA-AES128-GCM-SHA256" }, { "id": "clientsimulation-thunderbird_91_9", - "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "INFO", "finding": "TLSv1.3 TLS_AES_128_GCM_SHA256" }, { "id": "rating_spec", - "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "INFO", "finding": "SSL Labs's 'SSL Server Rating Guide' (version 2009q from 2020-01-30)" }, { "id": "rating_doc", - "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "INFO", "finding": "https://github.com/ssllabs/research/wiki/SSL-Server-Rating-Guide" }, { "id": "protocol_support_score", - "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "INFO", "finding": "95" }, { "id": "protocol_support_score_weighted", - "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "INFO", "finding": "28" }, { "id": "key_exchange_score", - "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "INFO", "finding": "90" }, { "id": "key_exchange_score_weighted", - "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "INFO", "finding": "27" }, { "id": "cipher_strength_score", - "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "INFO", "finding": "60" }, { "id": "cipher_strength_score_weighted", - "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "INFO", "finding": "24" }, { "id": "final_score", - "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "INFO", "finding": "79" }, { "id": "overall_grade", - "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "MEDIUM", "finding": "B" }, { "id": "grade_cap_reason_1", - "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "INFO", "finding": "Grade capped to B. TLS 1.1 offered" }, { "id": "grade_cap_reason_2", - "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "INFO", "finding": "Grade capped to B. TLS 1.0 offered" }, { "id": "grade_cap_reason_3", - "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "INFO", "finding": "Grade capped to A. HSTS is not offered" }, { "id": "service", - "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "INFO", "finding": "HTTP" }, { "id": "pre_128cipher", - "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "INFO", "finding": "No 128 cipher limit bug" }, { "id": "SSLv2", - "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "OK", "finding": "not offered" }, { "id": "SSLv3", - "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "OK", "finding": "not offered" }, { "id": "TLS1", - "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "LOW", "finding": "offered (deprecated)" }, { "id": "TLS1_1", - "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "LOW", "finding": "offered (deprecated)" }, { "id": "TLS1_2", - "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "OK", "finding": "offered" }, { "id": "TLS1_3", - "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "OK", "finding": "offered with final" }, { "id": "ALPN_HTTP2", - "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "OK", "finding": "h2" }, { "id": "ALPN", - "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "INFO", "finding": "http/1.1" }, { "id": "cipherlist_NULL", - "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "OK", "cwe": "CWE-327", @@ -15910,7 +15365,7 @@ }, { "id": "cipherlist_aNULL", - "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "OK", "cwe": "CWE-327", @@ -15918,7 +15373,7 @@ }, { "id": "cipherlist_EXPORT", - "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "OK", "cwe": "CWE-327", @@ -15926,7 +15381,7 @@ }, { "id": "cipherlist_LOW", - "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "OK", "cwe": "CWE-327", @@ -15934,7 +15389,7 @@ }, { "id": "cipherlist_3DES_IDEA", - "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "INFO", "cwe": "CWE-310", @@ -15942,7 +15397,7 @@ }, { "id": "cipherlist_OBSOLETED", - "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "LOW", "cwe": "CWE-310", @@ -15950,819 +15405,819 @@ }, { "id": "cipherlist_STRONG_NOFS", - "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "OK", "finding": "offered" }, { "id": "cipherlist_STRONG_FS", - "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "OK", "finding": "offered" }, { "id": "cipher_order-tls1", - "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "OK", "finding": "server" }, { "id": "cipherorder_TLSv1", - "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "INFO", "finding": "ECDHE-RSA-AES128-SHA" }, { "id": "cipher_order-tls1_1", - "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "OK", "finding": "server" }, { "id": "cipherorder_TLSv1_1", - "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "INFO", "finding": "ECDHE-RSA-AES128-SHA" }, { "id": "cipher_order-tls1_2", - "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "OK", "finding": "server" }, { "id": "cipherorder_TLSv1_2", - "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "INFO", "finding": "ECDHE-ECDSA-AES128-GCM-SHA256" }, { "id": "cipher_order", - "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "OK", "finding": "server -- TLS 1.3 client determined" }, { "id": "FS", - "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "OK", "finding": "offered" }, { "id": "FS_ciphers", - "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "INFO", "finding": "ECDHE-ECDSA-AES128-GCM-SHA256 ECDHE-ECDSA-AES128-SHA256 ECDHE-ECDSA-AES128-SHA ECDHE-ECDSA-AES256-GCM-SHA384 ECDHE-ECDSA-AES256-SHA384 ECDHE-ECDSA-AES256-SHA ECDHE-RSA-AES128-GCM-SHA256 ECDHE-RSA-AES128-SHA256 ECDHE-RSA-AES128-SHA ECDHE-RSA-AES256-GCM-SHA384 ECDHE-RSA-AES256-SHA384 ECDHE-RSA-AES256-SHA" }, { "id": "FS_ECDHE_curves", - "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "OK", "finding": "prime256v1" }, { "id": "TLS_extensions", - "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "INFO", "finding": "'server name/#0' 'renegotiation info/#65281' 'EC point formats/#11' 'session ticket/#35' 'status request/#5' 'next protocol/#13172' 'key share/#51' 'supported versions/#43' 'extended master secret/#23' 'application layer protocol negotiation/#16' 'compress_certificate/#27'" }, { "id": "TLS_session_ticket", - "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "INFO", "finding": "valid for 64800 seconds only (", - "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "OK", "finding": "SHA256 with RSA" }, { "id": "cert_keySize ", - "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "INFO", "finding": "RSA 2048 bits (exponent is 65537)" }, { "id": "cert_keyUsage ", - "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "INFO", "finding": "Digital Signature, Key Encipherment" }, { "id": "cert_extKeyUsage ", - "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "INFO", "finding": "TLS Web Server Authentication" }, { "id": "cert_serialNumber ", - "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "INFO", "finding": "03D2A9B46D0C0DE5131921EAC43FBCFA" }, { "id": "cert_serialNumberLen ", - "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "INFO", "finding": "16" }, { "id": "cert_fingerprintSHA1 ", - "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "INFO", "finding": "4A215834CB12589ED799651DD1F5DD469B2BB950" }, { "id": "cert_fingerprintSHA256 ", - "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "INFO", "finding": "9737A9BB66C8E2F73A9FB45203822894DB0DEE3674D368CA32B5F2E6895FD521" }, { "id": "cert ", - "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "INFO", "finding": "-----BEGIN CERTIFICATE-----\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\n-----END CERTIFICATE-----" }, { "id": "cert_commonName ", - "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "OK", "finding": "pilotage.conseiller-numerique.gouv.fr" }, { "id": "cert_commonName_wo_SNI ", - "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "INFO", "finding": "request w/o SNI didn't succeed" }, { "id": "cert_subjectAltName ", - "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "INFO", "finding": "pilotage.conseiller-numerique.gouv.fr" }, { "id": "cert_trust ", - "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "OK", "finding": "Ok via SAN and CN (SNI mandatory)" }, { "id": "cert_chain_of_trust ", - "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "OK", "finding": "passed." }, { "id": "cert_certificatePolicies_EV ", - "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "INFO", "finding": "no" }, { "id": "cert_expirationStatus ", - "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", - "severity": "OK", - "finding": "66 >= 60 days" + "severity": "MEDIUM", + "finding": "expires < 60 days (59)" }, { "id": "cert_notBefore ", - "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "INFO", "finding": "2024-10-31 16:36" }, { "id": "cert_notAfter ", - "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", - "severity": "OK", + "severity": "MEDIUM", "finding": "2025-01-29 17:33" }, { "id": "cert_extlifeSpan ", - "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "OK", "finding": "certificate has no extended life time according to browser forum" }, { "id": "cert_eTLS ", - "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "INFO", "finding": "not present" }, { "id": "cert_crlDistributionPoints ", - "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "INFO", "finding": "http://c.pki.goog/wr1/WFaXJLtXExs.crl" }, { "id": "cert_ocspURL ", - "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "INFO", "finding": "http://o.pki.goog/s/wr1/A9I" }, { "id": "OCSP_stapling ", - "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "OK", "finding": "offered" }, { "id": "cert_ocspRevoked ", - "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "OK", "finding": "not revoked" }, { "id": "cert_mustStapleExtension ", - "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "INFO", "finding": "--" }, { "id": "DNS_CAArecord ", - "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "LOW", "finding": "--" }, { "id": "certificate_transparency ", - "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "OK", "finding": "yes (certificate extension)" }, { "id": "certs_countServer ", - "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "INFO", "finding": "3" }, { "id": "certs_list_ordering_problem ", - "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "INFO", "finding": "no" }, { "id": "cert_caIssuers ", - "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "INFO", "finding": "WR1 (Google Trust Services from US)" }, { "id": "intermediate_cert <#1> ", - "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "INFO", "finding": "-----BEGIN CERTIFICATE-----\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\n-----END CERTIFICATE-----" }, { "id": "intermediate_cert_fingerprintSHA256 <#1> ", - "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "INFO", "finding": "B10B6F00E609509E8700F6D34687A2BFCE38EA05A8FDF1CDC40C3A2A0D0D0E45" }, { "id": "intermediate_cert_notBefore <#1> ", - "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "INFO", "finding": "2023-12-13 09:00" }, { "id": "intermediate_cert_notAfter <#1> ", - "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "OK", "finding": "2029-02-20 14:00" }, { "id": "intermediate_cert_expiration <#1> ", - "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "OK", "finding": "ok > 40 days" }, { "id": "intermediate_cert_chain <#1> ", - "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "INFO", "finding": "WR1 <-- GTS Root R1" }, { "id": "intermediate_cert <#2> ", - "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "INFO", "finding": "-----BEGIN CERTIFICATE-----\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\n-----END CERTIFICATE-----" }, { "id": "intermediate_cert_fingerprintSHA256 <#2> ", - "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "INFO", "finding": "3EE0278DF71FA3C125C4CD487F01D774694E6FC57E0CD94C24EFD769133918E5" }, { "id": "intermediate_cert_notBefore <#2> ", - "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "INFO", "finding": "2020-06-19 00:00" }, { "id": "intermediate_cert_notAfter <#2> ", - "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "OK", "finding": "2028-01-28 00:00" }, { "id": "intermediate_cert_expiration <#2> ", - "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "OK", "finding": "ok > 40 days" }, { "id": "intermediate_cert_chain <#2> ", - "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "INFO", "finding": "GTS Root R1 <-- GlobalSign Root CA" }, { "id": "intermediate_cert_badOCSP ", - "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "OK", "finding": "intermediate certificate(s) is/are ok" }, { "id": "cert_signatureAlgorithm ", - "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "OK", "finding": "ECDSA with SHA256" }, { "id": "cert_keySize ", - "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "OK", "finding": "EC 256 bits (curve P-256)" }, { "id": "cert_keyUsage ", - "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "INFO", "finding": "Digital Signature" }, { "id": "cert_extKeyUsage ", - "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "INFO", "finding": "TLS Web Server Authentication" }, { "id": "cert_serialNumber ", - "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "INFO", "finding": "84F0FA466EFC1B4D11A8FACF48447868" }, { "id": "cert_serialNumberLen ", - "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "INFO", "finding": "16" }, { "id": "cert_fingerprintSHA1 ", - "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "INFO", "finding": "7F94607603ED690AFA859C26B3D392196A8F97EF" }, { "id": "cert_fingerprintSHA256 ", - "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "INFO", "finding": "CF9AF1F66522D5C766BE38F90925F558FAB2BD0187A5BB1F924332094A4ED06B" }, { "id": "cert ", - "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "INFO", "finding": "-----BEGIN CERTIFICATE-----\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\n-----END CERTIFICATE-----" }, { "id": "cert_commonName ", - "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "OK", "finding": "pilotage.conseiller-numerique.gouv.fr" }, { "id": "cert_commonName_wo_SNI ", - "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "INFO", "finding": "request w/o SNI didn't succeed, usual for EC certificates" }, { "id": "cert_subjectAltName ", - "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "INFO", "finding": "pilotage.conseiller-numerique.gouv.fr" }, { "id": "cert_trust ", - "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "OK", "finding": "Ok via SAN and CN (SNI mandatory)" }, { "id": "cert_chain_of_trust ", - "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "OK", "finding": "passed." }, { "id": "cert_certificatePolicies_EV ", - "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "INFO", "finding": "no" }, { "id": "cert_expirationStatus ", - "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", - "severity": "OK", - "finding": "66 >= 60 days" + "severity": "MEDIUM", + "finding": "expires < 60 days (59)" }, { "id": "cert_notBefore ", - "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "INFO", "finding": "2024-10-31 16:36" }, { "id": "cert_notAfter ", - "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", - "severity": "OK", + "severity": "MEDIUM", "finding": "2025-01-29 17:36" }, { "id": "cert_extlifeSpan ", - "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "OK", "finding": "certificate has no extended life time according to browser forum" }, { "id": "cert_eTLS ", - "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "INFO", "finding": "not present" }, { "id": "cert_crlDistributionPoints ", - "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "INFO", "finding": "http://c.pki.goog/we1/S5C6cZxkWsc.crl" }, { "id": "cert_ocspURL ", - "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "INFO", "finding": "http://o.pki.goog/s/we1/hPA" }, { "id": "OCSP_stapling ", - "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "OK", "finding": "offered" }, { "id": "cert_ocspRevoked ", - "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "OK", "finding": "not revoked" }, { "id": "cert_mustStapleExtension ", - "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "INFO", "finding": "--" }, { "id": "DNS_CAArecord ", - "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "LOW", "finding": "--" }, { "id": "certificate_transparency ", - "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "OK", "finding": "yes (certificate extension)" }, { "id": "certs_countServer ", - "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "INFO", "finding": "3" }, { "id": "certs_list_ordering_problem ", - "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "INFO", "finding": "no" }, { "id": "cert_caIssuers ", - "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "INFO", "finding": "WE1 (Google Trust Services from US)" }, { "id": "intermediate_cert <#1> ", - "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "INFO", "finding": "-----BEGIN CERTIFICATE-----\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\n-----END CERTIFICATE-----" }, { "id": "intermediate_cert_fingerprintSHA256 <#1> ", - "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "INFO", "finding": "1DFC1605FBAD358D8BC844F76D15203FAC9CA5C1A79FD4857FFAF2864FBEBF96" }, { "id": "intermediate_cert_notBefore <#1> ", - "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "INFO", "finding": "2023-12-13 09:00" }, { "id": "intermediate_cert_notAfter <#1> ", - "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "OK", "finding": "2029-02-20 14:00" }, { "id": "intermediate_cert_expiration <#1> ", - "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "OK", "finding": "ok > 40 days" }, { "id": "intermediate_cert_chain <#1> ", - "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "INFO", "finding": "WE1 <-- GTS Root R4" }, { "id": "intermediate_cert <#2> ", - "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "INFO", "finding": "-----BEGIN CERTIFICATE-----\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\n-----END CERTIFICATE-----" }, { "id": "intermediate_cert_fingerprintSHA256 <#2> ", - "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "INFO", "finding": "76B27B80A58027DC3CF1DA68DAC17010ED93997D0B603E2FADBE85012493B5A7" }, { "id": "intermediate_cert_notBefore <#2> ", - "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "INFO", "finding": "2023-11-15 03:43" }, { "id": "intermediate_cert_notAfter <#2> ", - "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "OK", "finding": "2028-01-28 00:00" }, { "id": "intermediate_cert_expiration <#2> ", - "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "OK", "finding": "ok > 40 days" }, { "id": "intermediate_cert_chain <#2> ", - "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "INFO", "finding": "GTS Root R4 <-- GlobalSign Root CA" }, { "id": "intermediate_cert_badOCSP ", - "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "OK", "finding": "intermediate certificate(s) is/are ok" }, { "id": "HTTP_status_code", - "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "INFO", "finding": "200 OK ('/')" }, { "id": "HTTP_clock_skew", - "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "INFO", "finding": "0 seconds from localtime" }, { "id": "HTTP_headerTime", - "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "INFO", - "finding": "1732411654" + "finding": "1733016934" }, { "id": "HSTS", - "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "LOW", "finding": "not offered" }, { "id": "HPKP", - "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "INFO", "finding": "No support for HTTP Public Key Pinning" }, { "id": "banner_server", - "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "INFO", - "finding": "cloudflareserver-timing: cfL4;desc='?proto=TCP&rtt=1857&sent=5&recv=6&lost=0&retrans=0&sent_bytes=3035&recv_bytes=769&delivery_rate=1584026&cwnd=252&unsent_bytes=0&cid=8cdd47f66f7e141c&ts=127&x=0'" + "finding": "cloudflareserver-timing: cfL4;desc='?proto=TCP&rtt=8357&min_rtt=8334&rtt_var=2390&sent=5&recv=6&lost=0&retrans=0&sent_bytes=3036&recv_bytes=769&delivery_rate=342158&cwnd=252&unsent_bytes=0&cid=2dc72d671320921b&ts=483&x=0'" }, { "id": "banner_application", - "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "INFO", "finding": "No application banner found" }, { "id": "cookie_count", - "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "INFO", "finding": "0 at '/'" }, { "id": "security_headers", - "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "MEDIUM", "finding": "--" }, { "id": "banner_reverseproxy", - "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "INFO", "cwe": "CWE-200", @@ -16770,7 +16225,7 @@ }, { "id": "heartbleed", - "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "OK", "cve": "CVE-2014-0160", @@ -16779,7 +16234,7 @@ }, { "id": "CCS", - "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "OK", "cve": "CVE-2014-0224", @@ -16788,7 +16243,7 @@ }, { "id": "ticketbleed", - "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "OK", "cve": "CVE-2016-9244", @@ -16797,7 +16252,7 @@ }, { "id": "ROBOT", - "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "OK", "cve": "CVE-2017-17382 CVE-2017-17427 CVE-2017-17428 CVE-2017-13098 CVE-2017-1000385 CVE-2017-13099 CVE-2016-6883 CVE-2012-5081 CVE-2017-6168", @@ -16806,7 +16261,7 @@ }, { "id": "secure_renego", - "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "OK", "cwe": "CWE-310", @@ -16814,7 +16269,7 @@ }, { "id": "secure_client_renego", - "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "OK", "cve": "CVE-2011-1473", @@ -16823,7 +16278,7 @@ }, { "id": "CRIME_TLS", - "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "OK", "cve": "CVE-2012-4929", @@ -16832,7 +16287,7 @@ }, { "id": "BREACH", - "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "MEDIUM", "cve": "CVE-2013-3587", @@ -16841,7 +16296,7 @@ }, { "id": "POODLE_SSL", - "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "OK", "cve": "CVE-2014-3566", @@ -16850,14 +16305,14 @@ }, { "id": "fallback_SCSV", - "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "OK", "finding": "supported" }, { "id": "SWEET32", - "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "LOW", "cve": "CVE-2016-2183 CVE-2016-6329", @@ -16866,7 +16321,7 @@ }, { "id": "FREAK", - "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "OK", "cve": "CVE-2015-0204", @@ -16875,7 +16330,7 @@ }, { "id": "DROWN", - "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "OK", "cve": "CVE-2016-0800 CVE-2016-0703", @@ -16884,7 +16339,7 @@ }, { "id": "DROWN_hint", - "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "INFO", "cve": "CVE-2016-0800 CVE-2016-0703", @@ -16893,7 +16348,7 @@ }, { "id": "LOGJAM", - "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "OK", "cve": "CVE-2015-4000", @@ -16902,7 +16357,7 @@ }, { "id": "LOGJAM-common_primes", - "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "OK", "cve": "CVE-2015-4000", @@ -16911,7 +16366,7 @@ }, { "id": "BEAST_CBC_TLS1", - "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "MEDIUM", "cve": "CVE-2011-3389", @@ -16920,7 +16375,7 @@ }, { "id": "BEAST", - "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "LOW", "cve": "CVE-2011-3389", @@ -16929,7 +16384,7 @@ }, { "id": "LUCKY13", - "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "LOW", "cve": "CVE-2013-0169", @@ -16938,7 +16393,7 @@ }, { "id": "winshock", - "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "OK", "cve": "CVE-2014-6321", @@ -16947,7 +16402,7 @@ }, { "id": "RC4", - "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "OK", "cve": "CVE-2013-2566 CVE-2015-2808", @@ -16956,346 +16411,346 @@ }, { "id": "clientsimulation-android_60", - "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "INFO", "finding": "TLSv1.2 ECDHE-ECDSA-AES128-GCM-SHA256" }, { "id": "clientsimulation-android_70", - "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "INFO", "finding": "TLSv1.2 ECDHE-ECDSA-AES128-GCM-SHA256" }, { "id": "clientsimulation-android_81", - "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "INFO", "finding": "TLSv1.2 ECDHE-ECDSA-AES128-GCM-SHA256" }, { "id": "clientsimulation-android_90", - "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "INFO", "finding": "TLSv1.3 TLS_AES_128_GCM_SHA256" }, { "id": "clientsimulation-android_X", - "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "INFO", "finding": "TLSv1.3 TLS_AES_128_GCM_SHA256" }, { "id": "clientsimulation-android_11", - "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "INFO", "finding": "TLSv1.3 TLS_AES_128_GCM_SHA256" }, { "id": "clientsimulation-android_12", - "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "INFO", "finding": "TLSv1.3 TLS_AES_128_GCM_SHA256" }, { "id": "clientsimulation-chrome_79_win10", - "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "INFO", "finding": "TLSv1.3 TLS_AES_128_GCM_SHA256" }, { "id": "clientsimulation-chrome_101_win10", - "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "INFO", "finding": "TLSv1.3 TLS_AES_128_GCM_SHA256" }, { "id": "clientsimulation-firefox_66_win81", - "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "INFO", "finding": "TLSv1.3 TLS_AES_128_GCM_SHA256" }, { "id": "clientsimulation-firefox_100_win10", - "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "INFO", "finding": "TLSv1.3 TLS_AES_128_GCM_SHA256" }, { "id": "clientsimulation-ie_6_xp", - "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "INFO", "finding": "No connection" }, { "id": "clientsimulation-ie_8_win7", - "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "INFO", "finding": "TLSv1.0 ECDHE-RSA-AES128-SHA" }, { "id": "clientsimulation-ie_8_xp", - "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "INFO", "finding": "No connection" }, { "id": "clientsimulation-ie_11_win7", - "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "INFO", "finding": "TLSv1.2 ECDHE-ECDSA-AES128-GCM-SHA256" }, { "id": "clientsimulation-ie_11_win81", - "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "INFO", "finding": "TLSv1.2 ECDHE-ECDSA-AES128-GCM-SHA256" }, { "id": "clientsimulation-ie_11_winphone81", - "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "INFO", "finding": "TLSv1.2 ECDHE-ECDSA-AES128-GCM-SHA256" }, { "id": "clientsimulation-ie_11_win10", - "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "INFO", "finding": "TLSv1.2 ECDHE-ECDSA-AES128-GCM-SHA256" }, { "id": "clientsimulation-edge_15_win10", - "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "INFO", "finding": "TLSv1.2 ECDHE-ECDSA-AES128-GCM-SHA256" }, { "id": "clientsimulation-edge_101_win10_21h2", - "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "INFO", "finding": "TLSv1.3 TLS_AES_128_GCM_SHA256" }, { "id": "clientsimulation-safari_121_ios_122", - "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "INFO", "finding": "TLSv1.3 TLS_CHACHA20_POLY1305_SHA256" }, { "id": "clientsimulation-safari_130_osx_10146", - "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "INFO", "finding": "TLSv1.3 TLS_CHACHA20_POLY1305_SHA256" }, { "id": "clientsimulation-safari_154_osx_1231", - "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "INFO", "finding": "TLSv1.3 TLS_AES_128_GCM_SHA256" }, { "id": "clientsimulation-java_7u25", - "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "INFO", "finding": "TLSv1.0 ECDHE-RSA-AES128-SHA" }, { "id": "clientsimulation-java_8u161", - "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "INFO", "finding": "TLSv1.2 ECDHE-ECDSA-AES128-GCM-SHA256" }, { "id": "clientsimulation-java1102", - "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "INFO", "finding": "TLSv1.3 TLS_AES_128_GCM_SHA256" }, { "id": "clientsimulation-java1703", - "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "INFO", "finding": "TLSv1.3 TLS_AES_256_GCM_SHA384" }, { "id": "clientsimulation-go_1178", - "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "INFO", "finding": "TLSv1.3 TLS_AES_128_GCM_SHA256" }, { "id": "clientsimulation-libressl_283", - "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "INFO", "finding": "TLSv1.2 ECDHE-ECDSA-CHACHA20-POLY1305" }, { "id": "clientsimulation-openssl_102e", - "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "INFO", "finding": "TLSv1.2 ECDHE-ECDSA-AES128-GCM-SHA256" }, { "id": "clientsimulation-openssl_110l", - "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "INFO", "finding": "TLSv1.2 ECDHE-ECDSA-CHACHA20-POLY1305" }, { "id": "clientsimulation-openssl_111d", - "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "INFO", "finding": "TLSv1.3 TLS_AES_256_GCM_SHA384" }, { "id": "clientsimulation-openssl_303", - "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "INFO", "finding": "TLSv1.3 TLS_AES_256_GCM_SHA384" }, { "id": "clientsimulation-apple_mail_16_0", - "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "INFO", "finding": "TLSv1.2 ECDHE-ECDSA-AES128-GCM-SHA256" }, { "id": "clientsimulation-thunderbird_91_9", - "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "INFO", "finding": "TLSv1.3 TLS_AES_128_GCM_SHA256" }, { "id": "rating_spec", - "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "INFO", "finding": "SSL Labs's 'SSL Server Rating Guide' (version 2009q from 2020-01-30)" }, { "id": "rating_doc", - "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "INFO", "finding": "https://github.com/ssllabs/research/wiki/SSL-Server-Rating-Guide" }, { "id": "protocol_support_score", - "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "INFO", "finding": "95" }, { "id": "protocol_support_score_weighted", - "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "INFO", "finding": "28" }, { "id": "key_exchange_score", - "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "INFO", "finding": "90" }, { "id": "key_exchange_score_weighted", - "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "INFO", "finding": "27" }, { "id": "cipher_strength_score", - "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "INFO", "finding": "60" }, { "id": "cipher_strength_score_weighted", - "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "INFO", "finding": "24" }, { "id": "final_score", - "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "INFO", "finding": "79" }, { "id": "overall_grade", - "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "MEDIUM", "finding": "B" }, { "id": "grade_cap_reason_1", - "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "INFO", "finding": "Grade capped to B. TLS 1.1 offered" }, { "id": "grade_cap_reason_2", - "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "INFO", "finding": "Grade capped to B. TLS 1.0 offered" }, { "id": "grade_cap_reason_3", - "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "INFO", "finding": "Grade capped to A. HSTS is not offered" }, { "id": "scanTime", - "ip": "pilotage.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "pilotage.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "INFO", - "finding": "121" + "finding": "128" } ], "thirdparties": { @@ -17306,7 +16761,7 @@ "value": "1", "domain": "pilotage.conseiller-numerique.gouv.fr", "path": "/", - "expires": 1732413365, + "expires": 1733018639, "size": 17, "httpOnly": false, "secure": false, @@ -17318,10 +16773,10 @@ }, { "name": "_pk_id.123.d79b", - "value": "b1e14a1296274826.1732411566.", + "value": "9d614893245be8c0.1733016839.", "domain": "pilotage.conseiller-numerique.gouv.fr", "path": "/", - "expires": 1766366766, + "expires": 1766972039, "size": 43, "httpOnly": false, "secure": false, @@ -17335,16 +16790,16 @@ "headers": { "alt-svc": "h3=\":443\"; ma=86400", "cf-cache-status": "DYNAMIC", - "cf-ray": "8e759bd83ef76194-ORD", + "cf-ray": "8eaf55086f502edf-LAX", "content-encoding": "br", "content-type": "text/html", - "date": "Sun, 24 Nov 2024 01:26:04 GMT", + "date": "Sun, 01 Dec 2024 01:33:58 GMT", "last-modified": "Fri, 15 Nov 2024 08:54:26 GMT", "nel": "{\"success_fraction\":0,\"report_to\":\"cf-nel\",\"max_age\":604800}", - "report-to": "{\"endpoints\":[{\"url\":\"https:\\/\\/a.nel.cloudflare.com\\/report\\/v4?s=yLbt7g%2BG42d5Meh%2FMak3%2BfmNTojBcHIcMu7zdYsck4skVwdYdawczqjJitIQIHFl5mO7pmkGTVlcpMw2HJD9jq9QM%2BH3KOX4TxxqDn%2FqXCZ%2F3z1XTL58ePMv9iv7HICQN6BIWTL4TgAUZfWzyCo86MQxpxfLpDAw\"}],\"group\":\"cf-nel\",\"max_age\":604800}", + "report-to": "{\"endpoints\":[{\"url\":\"https:\\/\\/a.nel.cloudflare.com\\/report\\/v4?s=WX5oDJBJV%2FIL4NlbBlHLAqMo3y3JqHa2iDUKJIE%2FV%2FfgZ%2FfWa4%2Fw9B4%2Fmpjd8SCnt%2BzQgSYbs0Cc5OaVvEq%2Fs5qcYlVrUuYvlf4g1oY%2Fxjt62MsIKul%2F2GqzlNx5kBaYp7Y%2F%2Fz4EaWNAG944azR5mKmOITWBRmLd\"}],\"group\":\"cf-nel\",\"max_age\":604800}", "server": "cloudflare", - "server-timing": "cfL4;desc=\"?proto=TCP&rtt=2436&sent=6&recv=9&lost=0&retrans=0&sent_bytes=2875&recv_bytes=1081&delivery_rate=1855750&cwnd=250&unsent_bytes=0&cid=1562d964102d26c6&ts=132&x=0\"", - "sozu-id": "01JDDWC39PJVNXF0WR5J23EWFN", + "server-timing": "cfL4;desc=\"?proto=TCP&rtt=13878&min_rtt=8307&rtt_var=12737&sent=6&recv=9&lost=0&retrans=0&sent_bytes=2874&recv_bytes=1081&delivery_rate=343806&cwnd=253&unsent_bytes=0&cid=a0dcbd49e8564157&ts=188&x=0\"", + "sozu-id": "01JDZXM0HR65PJAZ0P483S5MV4", "vary": "Accept-Encoding" }, "endpoints": [ @@ -17499,2153 +16954,1241 @@ ] }, "zap": null, - "nuclei": [ + "nuclei": [], + "lhr": [ { - "template": "dns/caa-fingerprint.yaml", - "template-url": "https://templates.nuclei.sh/public/caa-fingerprint", - "template-id": "caa-fingerprint", - "template-path": "/home/runner/nuclei-templates/dns/caa-fingerprint.yaml", - "info": { - "name": "CAA Record", - "author": [ - "pdteam" - ], - "tags": [ - "dns", - "caa" - ], - "description": "A CAA record was discovered. A CAA record is used to specify which certificate authorities (CAs) are allowed to issue certificates for a domain.", - "reference": [ - "https://support.dnsimple.com/articles/caa-record/#whats-a-caa-record" - ], - "severity": "info", - "metadata": { - "max-request": 1 + "requestedUrl": "https://pilotage.conseiller-numerique.gouv.fr/login", + "finalUrl": "https://pilotage.conseiller-numerique.gouv.fr/login", + "fetchTime": "2024-12-01T01:33:32.755Z", + "runWarnings": [], + "categories": { + "performance": { + "title": "Performance", + "supportedModes": [ + "navigation", + "timespan", + "snapshot" + ], + "id": "performance", + "score": 0.74 }, - "classification": { - "cve-id": null, - "cwe-id": [ - "cwe-200" - ] + "accessibility": { + "title": "Accessibility", + "description": "These checks highlight opportunities to [improve the accessibility of your web app](https://developers.google.com/web/fundamentals/accessibility). Only a subset of accessibility issues can be automatically detected so manual testing is also encouraged.", + "manualDescription": "These items address areas which an automated testing tool cannot cover. Learn more in our guide on [conducting an accessibility review](https://developers.google.com/web/fundamentals/accessibility/how-to-review).", + "supportedModes": [ + "navigation", + "snapshot" + ], + "id": "accessibility", + "score": 0.92 + }, + "best-practices": { + "title": "Best Practices", + "supportedModes": [ + "navigation", + "timespan", + "snapshot" + ], + "id": "best-practices", + "score": 0.92 + }, + "seo": { + "title": "SEO", + "description": "These checks ensure that your page is following basic search engine optimization advice. There are many additional factors Lighthouse does not score here that may affect your search ranking, including performance on [Core Web Vitals](https://web.dev/learn-web-vitals/). [Learn more](https://support.google.com/webmasters/answer/35769).", + "manualDescription": "Run these additional validators on your site to check additional SEO best practices.", + "supportedModes": [ + "navigation", + "snapshot" + ], + "id": "seo", + "score": 1 + }, + "pwa": { + "title": "PWA", + "description": "These checks validate the aspects of a Progressive Web App. [Learn more](https://developers.google.com/web/progressive-web-apps/checklist).", + "manualDescription": "These checks are required by the baseline [PWA Checklist](https://developers.google.com/web/progressive-web-apps/checklist) but are not automatically checked by Lighthouse. They do not affect your score but it's important that you verify them manually.", + "supportedModes": [ + "navigation" + ], + "id": "pwa", + "score": 0.8 } }, - "type": "dns", - "host": "pilotage.conseiller-numerique.gouv.fr.", - "matched-at": "pilotage.conseiller-numerique.gouv.fr", - "timestamp": "2024-11-24T01:28:52.501427422Z", - "matcher-status": true - }, + "audits": { + "metrics": { + "id": "metrics", + "title": "Metrics", + "description": "Collects all available metrics.", + "score": null, + "scoreDisplayMode": "informative", + "numericValue": 4324, + "numericUnit": "millisecond", + "details": { + "type": "debugdata", + "items": [ + { + "firstContentfulPaint": 4021, + "firstMeaningfulPaint": 4054, + "largestContentfulPaint": 4282, + "interactive": 4324, + "speedIndex": 4021, + "totalBlockingTime": 53, + "maxPotentialFID": 156, + "cumulativeLayoutShift": 0.02173834482828776, + "cumulativeLayoutShiftMainFrame": 0.02173834482828776, + "totalCumulativeLayoutShift": 0.02173834482828776, + "observedTimeOrigin": 0, + "observedTimeOriginTs": 423282526, + "observedNavigationStart": 0, + "observedNavigationStartTs": 423282526, + "observedFirstPaint": 537, + "observedFirstPaintTs": 423819321, + "observedFirstContentfulPaint": 537, + "observedFirstContentfulPaintTs": 423819321, + "observedFirstContentfulPaintAllFrames": 537, + "observedFirstContentfulPaintAllFramesTs": 423819321, + "observedFirstMeaningfulPaint": 537, + "observedFirstMeaningfulPaintTs": 423819321, + "observedLargestContentfulPaint": 537, + "observedLargestContentfulPaintTs": 423819321, + "observedLargestContentfulPaintAllFrames": 537, + "observedLargestContentfulPaintAllFramesTs": 423819321, + "observedTraceEnd": 3991, + "observedTraceEndTs": 427273600, + "observedLoad": 1116, + "observedLoadTs": 424398301, + "observedDomContentLoaded": 490, + "observedDomContentLoadedTs": 423772816, + "observedCumulativeLayoutShift": 0.02173834482828776, + "observedCumulativeLayoutShiftMainFrame": 0.02173834482828776, + "observedTotalCumulativeLayoutShift": 0.02173834482828776, + "observedFirstVisualChange": 550, + "observedFirstVisualChangeTs": 423832526, + "observedLastVisualChange": 600, + "observedLastVisualChangeTs": 423882526, + "observedSpeedIndex": 568, + "observedSpeedIndexTs": 423850712 + }, + { + "lcpInvalidated": false + } + ] + } + }, + "diagnostics": { + "id": "diagnostics", + "title": "Diagnostics", + "description": "Collection of useful page vitals.", + "score": null, + "scoreDisplayMode": "informative", + "details": { + "type": "debugdata", + "items": [ + { + "numRequests": 20, + "numScripts": 3, + "numStylesheets": 1, + "numFonts": 3, + "numTasks": 936, + "numTasksOver10ms": 7, + "numTasksOver25ms": 1, + "numTasksOver50ms": 0, + "numTasksOver100ms": 0, + "numTasksOver500ms": 0, + "rtt": 0, + "throughput": 20957892.33041889, + "maxRtt": 150.705, + "maxServerLatency": 42.919, + "totalByteWeight": 847993, + "totalTaskTime": 218.6419999999978, + "mainDocumentTransferSize": 1231 + } + ] + } + } + } + } + ], + "screenshot": true, + "stats": { + "grade": "A", + "url": "https://pilotage.conseiller-numerique.gouv.fr/login", + "uri": "stats" + }, + "github_repository": null, + "budget_page": null, + "declaration-a11y": { + "mention": "Accessibilité : non conforme", + "declarationUrl": "https://www.conseiller-numerique.gouv.fr/accessibilite" + }, + "declaration-rgpd": null, + "betagouv": null, + "ecoindex": [ { - "template": "http/miscellaneous/options-method.yaml", - "template-url": "https://templates.nuclei.sh/public/options-method", - "template-id": "options-method", - "template-path": "/home/runner/nuclei-templates/http/miscellaneous/options-method.yaml", - "info": { - "name": "Allowed Options Method", - "author": [ - "pdteam" - ], - "tags": [ - "miscellaneous", - "misc", - "generic" - ], - "severity": "info", - "metadata": { - "max-request": 1 + "width": 1920, + "height": 1080, + "url": "https://pilotage.conseiller-numerique.gouv.fr/login", + "size": 823.736, + "nodes": 87, + "requests": 14, + "grade": "A", + "score": 86, + "ges": 1.28, + "water": 1.92, + "ecoindex_version": "5.4.2", + "date": "2024-12-01 01:30:20.115263", + "page_type": null + } + ], + "sonarcloud": null, + "dsfr": null, + "summary": { + "404": "A+", + "nmapGrade": "B", + "nmapOpenPortsCount": 4, + "nmapOpenPortsGrade": "F", + "testsslExpireSoon": null, + "testsslExpireDate": null, + "testsslGrade": "B", + "cookiesGrade": "B", + "cookiesCount": 2, + "trackersGrade": "A", + "trackersCount": 0, + "lighthouse_performance": 0.74, + "lighthouse_performanceGrade": "B", + "lighthouse_accessibility": 0.92, + "lighthouse_accessibilityGrade": "A", + "lighthouse_best-practices": 0.92, + "lighthouse_best-practicesGrade": "A", + "lighthouse_seo": 1, + "lighthouse_seoGrade": "A", + "lighthouse_pwa": 0.8, + "lighthouse_pwaGrade": "B", + "statsGrade": "A", + "declaration-a11y": "C", + "ecoindexGrade": "A" + } + }, + { + "404": [], + "url": "https://coop.conseiller-numerique.gouv.fr", + "repositories": [ + "anct-cnum/portail-conseiller" + ], + "http": null, + "updownio": { + "token": "rl2p", + "url": "https://coop.conseiller-numerique.gouv.fr", + "alias": "", + "last_status": 200, + "uptime": 100, + "down": false, + "down_since": null, + "up_since": "2022-11-12T14:15:10Z", + "error": null, + "period": 1800, + "apdex_t": 0.5, + "string_match": "", + "enabled": false, + "published": false, + "disabled_locations": [], + "recipients": [ + "email:3715942461" + ], + "last_check_at": "2023-03-01T02:56:07Z", + "next_check_at": null, + "created_at": "2022-10-17T12:57:34Z", + "mute_until": null, + "favicon_url": "https://coop.conseiller-numerique.gouv.fr/favicon-64.png", + "custom_headers": {}, + "http_verb": "GET/HEAD", + "http_body": "", + "ssl": { + "tested_at": "2023-03-01T00:56:29Z", + "expires_at": "2023-04-28T05:59:37Z", + "valid": true, + "error": null + }, + "metrics": {}, + "uptimeGrade": "A" + }, + "nmap": { + "host": "coop.conseiller-numerique.gouv.fr", + "protocol": "tcp", + "closed_ports": "996", + "open_ports": [ + { + "service": { + "name": "http", + "product": "Cloudflare http proxy", + "id": "80", + "vulnerabilities": [] } }, - "type": "http", - "host": "https://pilotage.conseiller-numerique.gouv.fr/login", - "matched-at": "https://pilotage.conseiller-numerique.gouv.fr/login", - "extracted-results": [ - "OPTIONS,HEAD,GET,POST" - ], - "ip": "172.67.144.206", - "timestamp": "2024-11-24T01:28:57.681001848Z", - "curl-command": "curl -X 'OPTIONS' -H 'Accept: */*' -H 'Accept-Language: en' -H 'User-Agent: Nuclei - Open-source project (github.com/projectdiscovery/nuclei)' 'https://pilotage.conseiller-numerique.gouv.fr/login'", - "matcher-status": true - }, - { - "template": "http/technologies/tech-detect.yaml", - "template-url": "https://templates.nuclei.sh/public/tech-detect", - "template-id": "tech-detect", - "template-path": "/home/runner/nuclei-templates/http/technologies/tech-detect.yaml", - "info": { - "name": "Wappalyzer Technology Detection", - "author": [ - "hakluke", - "righettod" - ], - "tags": [ - "tech" - ], - "severity": "info", - "metadata": { - "max-request": 1 + { + "service": { + "name": "http", + "product": "Cloudflare http proxy", + "id": "443", + "vulnerabilities": [] } }, - "matcher-name": "cloudflare", - "type": "http", - "host": "https://pilotage.conseiller-numerique.gouv.fr/login", - "matched-at": "https://pilotage.conseiller-numerique.gouv.fr/login", - "ip": "172.67.144.206", - "timestamp": "2024-11-24T01:29:22.649097409Z", - "curl-command": "curl -X 'GET' -H 'Accept: */*' -H 'Accept-Language: en' -H 'User-Agent: Nuclei - Open-source project (github.com/projectdiscovery/nuclei)' 'https://pilotage.conseiller-numerique.gouv.fr/login'", - "matcher-status": true - }, - { - "template": "http/misconfiguration/http-missing-security-headers.yaml", - "template-url": "https://templates.nuclei.sh/public/http-missing-security-headers", - "template-id": "http-missing-security-headers", - "template-path": "/home/runner/nuclei-templates/http/misconfiguration/http-missing-security-headers.yaml", - "info": { - "name": "HTTP Missing Security Headers", - "author": [ - "socketz", - "geeknik", - "g4l1t0", - "convisoappsec", - "kurohost", - "dawid-czarnecki", - "forgedhallpass", - "jub0bs", - "userdehghani" - ], - "tags": [ - "misconfig", - "headers", - "generic" - ], - "description": "This template searches for missing HTTP security headers. The impact of these missing headers can vary.\n", - "severity": "info", - "metadata": { - "max-request": 1 + { + "service": { + "name": "http", + "product": "Cloudflare http proxy", + "id": "8080", + "vulnerabilities": [] } }, - "matcher-name": "x-frame-options", - "type": "http", - "host": "https://pilotage.conseiller-numerique.gouv.fr/login", - "matched-at": "https://pilotage.conseiller-numerique.gouv.fr/login", - "ip": "172.67.144.206", - "timestamp": "2024-11-24T01:29:28.937244759Z", - "curl-command": "curl -X 'GET' -H 'Accept: */*' -H 'Accept-Language: en' -H 'User-Agent: Nuclei - Open-source project (github.com/projectdiscovery/nuclei)' 'https://pilotage.conseiller-numerique.gouv.fr/login'", - "matcher-status": true + { + "service": { + "name": "http", + "product": "Cloudflare http proxy", + "id": "8443", + "vulnerabilities": [] + } + } + ], + "grade": "B" + }, + "dependabot": null, + "codescan": null, + "testssl": [ + { + "id": "service", + "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", + "port": "443", + "severity": "INFO", + "finding": "HTTP" }, { - "template": "http/misconfiguration/http-missing-security-headers.yaml", - "template-url": "https://templates.nuclei.sh/public/http-missing-security-headers", - "template-id": "http-missing-security-headers", - "template-path": "/home/runner/nuclei-templates/http/misconfiguration/http-missing-security-headers.yaml", - "info": { - "name": "HTTP Missing Security Headers", - "author": [ - "socketz", - "geeknik", - "g4l1t0", - "convisoappsec", - "kurohost", - "dawid-czarnecki", - "forgedhallpass", - "jub0bs", - "userdehghani" - ], - "tags": [ - "misconfig", - "headers", - "generic" - ], - "description": "This template searches for missing HTTP security headers. The impact of these missing headers can vary.\n", - "severity": "info", - "metadata": { - "max-request": 1 - } - }, - "matcher-name": "x-content-type-options", - "type": "http", - "host": "https://pilotage.conseiller-numerique.gouv.fr/login", - "matched-at": "https://pilotage.conseiller-numerique.gouv.fr/login", - "ip": "172.67.144.206", - "timestamp": "2024-11-24T01:29:28.937288952Z", - "curl-command": "curl -X 'GET' -H 'Accept: */*' -H 'Accept-Language: en' -H 'User-Agent: Nuclei - Open-source project (github.com/projectdiscovery/nuclei)' 'https://pilotage.conseiller-numerique.gouv.fr/login'", - "matcher-status": true + "id": "pre_128cipher", + "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", + "port": "443", + "severity": "INFO", + "finding": "No 128 cipher limit bug" }, { - "template": "http/misconfiguration/http-missing-security-headers.yaml", - "template-url": "https://templates.nuclei.sh/public/http-missing-security-headers", - "template-id": "http-missing-security-headers", - "template-path": "/home/runner/nuclei-templates/http/misconfiguration/http-missing-security-headers.yaml", - "info": { - "name": "HTTP Missing Security Headers", - "author": [ - "socketz", - "geeknik", - "g4l1t0", - "convisoappsec", - "kurohost", - "dawid-czarnecki", - "forgedhallpass", - "jub0bs", - "userdehghani" - ], - "tags": [ - "misconfig", - "headers", - "generic" - ], - "description": "This template searches for missing HTTP security headers. The impact of these missing headers can vary.\n", - "severity": "info", - "metadata": { - "max-request": 1 - } - }, - "matcher-name": "x-permitted-cross-domain-policies", - "type": "http", - "host": "https://pilotage.conseiller-numerique.gouv.fr/login", - "matched-at": "https://pilotage.conseiller-numerique.gouv.fr/login", - "ip": "172.67.144.206", - "timestamp": "2024-11-24T01:29:28.937308689Z", - "curl-command": "curl -X 'GET' -H 'Accept: */*' -H 'Accept-Language: en' -H 'User-Agent: Nuclei - Open-source project (github.com/projectdiscovery/nuclei)' 'https://pilotage.conseiller-numerique.gouv.fr/login'", - "matcher-status": true + "id": "SSLv2", + "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", + "port": "443", + "severity": "OK", + "finding": "not offered" }, { - "template": "http/misconfiguration/http-missing-security-headers.yaml", - "template-url": "https://templates.nuclei.sh/public/http-missing-security-headers", - "template-id": "http-missing-security-headers", - "template-path": "/home/runner/nuclei-templates/http/misconfiguration/http-missing-security-headers.yaml", - "info": { - "name": "HTTP Missing Security Headers", - "author": [ - "socketz", - "geeknik", - "g4l1t0", - "convisoappsec", - "kurohost", - "dawid-czarnecki", - "forgedhallpass", - "jub0bs", - "userdehghani" - ], - "tags": [ - "misconfig", - "headers", - "generic" - ], - "description": "This template searches for missing HTTP security headers. The impact of these missing headers can vary.\n", - "severity": "info", - "metadata": { - "max-request": 1 - } - }, - "matcher-name": "clear-site-data", - "type": "http", - "host": "https://pilotage.conseiller-numerique.gouv.fr/login", - "matched-at": "https://pilotage.conseiller-numerique.gouv.fr/login", - "ip": "172.67.144.206", - "timestamp": "2024-11-24T01:29:28.937326012Z", - "curl-command": "curl -X 'GET' -H 'Accept: */*' -H 'Accept-Language: en' -H 'User-Agent: Nuclei - Open-source project (github.com/projectdiscovery/nuclei)' 'https://pilotage.conseiller-numerique.gouv.fr/login'", - "matcher-status": true + "id": "SSLv3", + "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", + "port": "443", + "severity": "OK", + "finding": "not offered" }, { - "template": "http/misconfiguration/http-missing-security-headers.yaml", - "template-url": "https://templates.nuclei.sh/public/http-missing-security-headers", - "template-id": "http-missing-security-headers", - "template-path": "/home/runner/nuclei-templates/http/misconfiguration/http-missing-security-headers.yaml", - "info": { - "name": "HTTP Missing Security Headers", - "author": [ - "socketz", - "geeknik", - "g4l1t0", - "convisoappsec", - "kurohost", - "dawid-czarnecki", - "forgedhallpass", - "jub0bs", - "userdehghani" - ], - "tags": [ - "misconfig", - "headers", - "generic" - ], - "description": "This template searches for missing HTTP security headers. The impact of these missing headers can vary.\n", - "severity": "info", - "metadata": { - "max-request": 1 - } - }, - "matcher-name": "cross-origin-resource-policy", - "type": "http", - "host": "https://pilotage.conseiller-numerique.gouv.fr/login", - "matched-at": "https://pilotage.conseiller-numerique.gouv.fr/login", - "ip": "172.67.144.206", - "timestamp": "2024-11-24T01:29:28.937340439Z", - "curl-command": "curl -X 'GET' -H 'Accept: */*' -H 'Accept-Language: en' -H 'User-Agent: Nuclei - Open-source project (github.com/projectdiscovery/nuclei)' 'https://pilotage.conseiller-numerique.gouv.fr/login'", - "matcher-status": true + "id": "TLS1", + "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", + "port": "443", + "severity": "LOW", + "finding": "offered (deprecated)" }, { - "template": "http/misconfiguration/http-missing-security-headers.yaml", - "template-url": "https://templates.nuclei.sh/public/http-missing-security-headers", - "template-id": "http-missing-security-headers", - "template-path": "/home/runner/nuclei-templates/http/misconfiguration/http-missing-security-headers.yaml", - "info": { - "name": "HTTP Missing Security Headers", - "author": [ - "socketz", - "geeknik", - "g4l1t0", - "convisoappsec", - "kurohost", - "dawid-czarnecki", - "forgedhallpass", - "jub0bs", - "userdehghani" - ], - "tags": [ - "misconfig", - "headers", - "generic" - ], - "description": "This template searches for missing HTTP security headers. The impact of these missing headers can vary.\n", - "severity": "info", - "metadata": { - "max-request": 1 - } - }, - "matcher-name": "strict-transport-security", - "type": "http", - "host": "https://pilotage.conseiller-numerique.gouv.fr/login", - "matched-at": "https://pilotage.conseiller-numerique.gouv.fr/login", - "ip": "172.67.144.206", - "timestamp": "2024-11-24T01:29:28.937353413Z", - "curl-command": "curl -X 'GET' -H 'Accept: */*' -H 'Accept-Language: en' -H 'User-Agent: Nuclei - Open-source project (github.com/projectdiscovery/nuclei)' 'https://pilotage.conseiller-numerique.gouv.fr/login'", - "matcher-status": true + "id": "TLS1_1", + "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", + "port": "443", + "severity": "LOW", + "finding": "offered (deprecated)" }, { - "template": "http/misconfiguration/http-missing-security-headers.yaml", - "template-url": "https://templates.nuclei.sh/public/http-missing-security-headers", - "template-id": "http-missing-security-headers", - "template-path": "/home/runner/nuclei-templates/http/misconfiguration/http-missing-security-headers.yaml", - "info": { - "name": "HTTP Missing Security Headers", - "author": [ - "socketz", - "geeknik", - "g4l1t0", - "convisoappsec", - "kurohost", - "dawid-czarnecki", - "forgedhallpass", - "jub0bs", - "userdehghani" - ], - "tags": [ - "misconfig", - "headers", - "generic" - ], - "description": "This template searches for missing HTTP security headers. The impact of these missing headers can vary.\n", - "severity": "info", - "metadata": { - "max-request": 1 - } - }, - "matcher-name": "permissions-policy", - "type": "http", - "host": "https://pilotage.conseiller-numerique.gouv.fr/login", - "matched-at": "https://pilotage.conseiller-numerique.gouv.fr/login", - "ip": "172.67.144.206", - "timestamp": "2024-11-24T01:29:28.937369333Z", - "curl-command": "curl -X 'GET' -H 'Accept: */*' -H 'Accept-Language: en' -H 'User-Agent: Nuclei - Open-source project (github.com/projectdiscovery/nuclei)' 'https://pilotage.conseiller-numerique.gouv.fr/login'", - "matcher-status": true + "id": "TLS1_2", + "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", + "port": "443", + "severity": "OK", + "finding": "offered" }, { - "template": "http/misconfiguration/http-missing-security-headers.yaml", - "template-url": "https://templates.nuclei.sh/public/http-missing-security-headers", - "template-id": "http-missing-security-headers", - "template-path": "/home/runner/nuclei-templates/http/misconfiguration/http-missing-security-headers.yaml", - "info": { - "name": "HTTP Missing Security Headers", - "author": [ - "socketz", - "geeknik", - "g4l1t0", - "convisoappsec", - "kurohost", - "dawid-czarnecki", - "forgedhallpass", - "jub0bs", - "userdehghani" - ], - "tags": [ - "misconfig", - "headers", - "generic" - ], - "description": "This template searches for missing HTTP security headers. The impact of these missing headers can vary.\n", - "severity": "info", - "metadata": { - "max-request": 1 - } - }, - "matcher-name": "cross-origin-embedder-policy", - "type": "http", - "host": "https://pilotage.conseiller-numerique.gouv.fr/login", - "matched-at": "https://pilotage.conseiller-numerique.gouv.fr/login", - "ip": "172.67.144.206", - "timestamp": "2024-11-24T01:29:28.93738364Z", - "curl-command": "curl -X 'GET' -H 'Accept: */*' -H 'Accept-Language: en' -H 'User-Agent: Nuclei - Open-source project (github.com/projectdiscovery/nuclei)' 'https://pilotage.conseiller-numerique.gouv.fr/login'", - "matcher-status": true + "id": "TLS1_3", + "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", + "port": "443", + "severity": "OK", + "finding": "offered with final" }, { - "template": "http/misconfiguration/http-missing-security-headers.yaml", - "template-url": "https://templates.nuclei.sh/public/http-missing-security-headers", - "template-id": "http-missing-security-headers", - "template-path": "/home/runner/nuclei-templates/http/misconfiguration/http-missing-security-headers.yaml", - "info": { - "name": "HTTP Missing Security Headers", - "author": [ - "socketz", - "geeknik", - "g4l1t0", - "convisoappsec", - "kurohost", - "dawid-czarnecki", - "forgedhallpass", - "jub0bs", - "userdehghani" - ], - "tags": [ - "misconfig", - "headers", - "generic" - ], - "description": "This template searches for missing HTTP security headers. The impact of these missing headers can vary.\n", - "severity": "info", - "metadata": { - "max-request": 1 - } - }, - "matcher-name": "cross-origin-opener-policy", - "type": "http", - "host": "https://pilotage.conseiller-numerique.gouv.fr/login", - "matched-at": "https://pilotage.conseiller-numerique.gouv.fr/login", - "ip": "172.67.144.206", - "timestamp": "2024-11-24T01:29:28.937396905Z", - "curl-command": "curl -X 'GET' -H 'Accept: */*' -H 'Accept-Language: en' -H 'User-Agent: Nuclei - Open-source project (github.com/projectdiscovery/nuclei)' 'https://pilotage.conseiller-numerique.gouv.fr/login'", - "matcher-status": true + "id": "ALPN_HTTP2", + "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", + "port": "443", + "severity": "OK", + "finding": "h2" }, { - "template": "http/misconfiguration/http-missing-security-headers.yaml", - "template-url": "https://templates.nuclei.sh/public/http-missing-security-headers", - "template-id": "http-missing-security-headers", - "template-path": "/home/runner/nuclei-templates/http/misconfiguration/http-missing-security-headers.yaml", - "info": { - "name": "HTTP Missing Security Headers", - "author": [ - "socketz", - "geeknik", - "g4l1t0", - "convisoappsec", - "kurohost", - "dawid-czarnecki", - "forgedhallpass", - "jub0bs", - "userdehghani" - ], - "tags": [ - "misconfig", - "headers", - "generic" - ], - "description": "This template searches for missing HTTP security headers. The impact of these missing headers can vary.\n", - "severity": "info", - "metadata": { - "max-request": 1 - } - }, - "matcher-name": "content-security-policy", - "type": "http", - "host": "https://pilotage.conseiller-numerique.gouv.fr/login", - "matched-at": "https://pilotage.conseiller-numerique.gouv.fr/login", - "ip": "172.67.144.206", - "timestamp": "2024-11-24T01:29:28.937439595Z", - "curl-command": "curl -X 'GET' -H 'Accept: */*' -H 'Accept-Language: en' -H 'User-Agent: Nuclei - Open-source project (github.com/projectdiscovery/nuclei)' 'https://pilotage.conseiller-numerique.gouv.fr/login'", - "matcher-status": true + "id": "ALPN", + "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", + "port": "443", + "severity": "INFO", + "finding": "http/1.1" }, { - "template": "http/misconfiguration/http-missing-security-headers.yaml", - "template-url": "https://templates.nuclei.sh/public/http-missing-security-headers", - "template-id": "http-missing-security-headers", - "template-path": "/home/runner/nuclei-templates/http/misconfiguration/http-missing-security-headers.yaml", - "info": { - "name": "HTTP Missing Security Headers", - "author": [ - "socketz", - "geeknik", - "g4l1t0", - "convisoappsec", - "kurohost", - "dawid-czarnecki", - "forgedhallpass", - "jub0bs", - "userdehghani" - ], - "tags": [ - "misconfig", - "headers", - "generic" - ], - "description": "This template searches for missing HTTP security headers. The impact of these missing headers can vary.\n", - "severity": "info", - "metadata": { - "max-request": 1 - } - }, - "matcher-name": "referrer-policy", - "type": "http", - "host": "https://pilotage.conseiller-numerique.gouv.fr/login", - "matched-at": "https://pilotage.conseiller-numerique.gouv.fr/login", - "ip": "172.67.144.206", - "timestamp": "2024-11-24T01:29:28.937453411Z", - "curl-command": "curl -X 'GET' -H 'Accept: */*' -H 'Accept-Language: en' -H 'User-Agent: Nuclei - Open-source project (github.com/projectdiscovery/nuclei)' 'https://pilotage.conseiller-numerique.gouv.fr/login'", - "matcher-status": true + "id": "cipherlist_NULL", + "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", + "port": "443", + "severity": "OK", + "cwe": "CWE-327", + "finding": "not offered" }, { - "template": "http/miscellaneous/robots-txt-endpoint.yaml", - "template-url": "https://templates.nuclei.sh/public/robots-txt-endpoint", - "template-id": "robots-txt-endpoint", - "template-path": "/home/runner/nuclei-templates/http/miscellaneous/robots-txt-endpoint.yaml", - "info": { - "name": "robots.txt endpoint prober", - "author": [ - "caspergn", - "pdteam" - ], - "tags": [ - "miscellaneous", - "misc", - "generic" - ], - "severity": "info", - "metadata": { - "max-request": 2 - } - }, - "type": "http", - "host": "https://pilotage.conseiller-numerique.gouv.fr/login", - "matched-at": "https://pilotage.conseiller-numerique.gouv.fr/robots.txt", - "ip": "172.67.144.206", - "timestamp": "2024-11-24T01:29:35.598962361Z", - "curl-command": "curl -X 'GET' -H 'Accept: */*' -H 'Accept-Language: en' -H 'User-Agent: Nuclei - Open-source project (github.com/projectdiscovery/nuclei)' 'https://pilotage.conseiller-numerique.gouv.fr/robots.txt'", - "matcher-status": true + "id": "cipherlist_aNULL", + "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", + "port": "443", + "severity": "OK", + "cwe": "CWE-327", + "finding": "not offered" }, { - "template": "http/technologies/waf-detect.yaml", - "template-url": "https://templates.nuclei.sh/public/waf-detect", - "template-id": "waf-detect", - "template-path": "/home/runner/nuclei-templates/http/technologies/waf-detect.yaml", - "info": { - "name": "WAF Detection", - "author": [ - "dwisiswant0", - "lu4nx" - ], - "tags": [ - "waf", - "tech", - "misc" - ], - "description": "A web application firewall was detected.", - "reference": [ - "https://github.com/ekultek/whatwaf" - ], - "severity": "info", - "metadata": { - "max-request": 1 - }, - "classification": { - "cve-id": null, - "cwe-id": [ - "cwe-200" - ] - } - }, - "matcher-name": "cloudflare", - "type": "http", - "host": "https://pilotage.conseiller-numerique.gouv.fr/login", - "matched-at": "https://pilotage.conseiller-numerique.gouv.fr/login/", - "ip": "172.67.144.206", - "timestamp": "2024-11-24T01:29:45.06893091Z", - "curl-command": "curl -X 'POST' -d '_=' -H 'Content-Type: application/x-www-form-urlencoded' -H 'Host: pilotage.conseiller-numerique.gouv.fr' -H 'User-Agent: Nuclei - Open-source project (github.com/projectdiscovery/nuclei)' 'https://pilotage.conseiller-numerique.gouv.fr/login/'", - "matcher-status": true + "id": "cipherlist_EXPORT", + "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", + "port": "443", + "severity": "OK", + "cwe": "CWE-327", + "finding": "not offered" }, { - "template": "ssl/detect-ssl-issuer.yaml", - "template-url": "https://templates.nuclei.sh/public/ssl-issuer", - "template-id": "ssl-issuer", - "template-path": "/home/runner/nuclei-templates/ssl/detect-ssl-issuer.yaml", - "info": { - "name": "Detect SSL Certificate Issuer", - "author": [ - "lingtren" - ], - "tags": [ - "ssl", - "tls" - ], - "description": "Extract the issuer's organization from the target's certificate. Issuers are entities which sign and distribute certificates.\n", - "severity": "info", - "metadata": { - "max-request": 1 - } - }, - "type": "ssl", - "host": "pilotage.conseiller-numerique.gouv.fr", - "matched-at": "pilotage.conseiller-numerique.gouv.fr:443", - "extracted-results": [ - "Google Trust Services" - ], - "ip": "172.67.144.206", - "timestamp": "2024-11-24T01:35:16.434805194Z", - "matcher-status": true + "id": "cipherlist_LOW", + "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", + "port": "443", + "severity": "OK", + "cwe": "CWE-327", + "finding": "not offered" }, { - "template": "ssl/ssl-dns-names.yaml", - "template-url": "https://templates.nuclei.sh/public/ssl-dns-names", - "template-id": "ssl-dns-names", - "template-path": "/home/runner/nuclei-templates/ssl/ssl-dns-names.yaml", - "info": { - "name": "SSL DNS Names", - "author": [ - "pdteam" - ], - "tags": [ - "ssl", - "tls" - ], - "description": "Extract the Subject Alternative Name (SAN) from the target's certificate. SAN facilitates the usage of additional hostnames with the same certificate.\n", - "severity": "info", - "metadata": { - "max-request": 1 - } - }, - "type": "ssl", - "host": "pilotage.conseiller-numerique.gouv.fr", - "matched-at": "pilotage.conseiller-numerique.gouv.fr:443", - "extracted-results": [ - "pilotage.conseiller-numerique.gouv.fr" - ], - "ip": "172.67.144.206", - "timestamp": "2024-11-24T01:35:16.435067967Z", - "matcher-status": true + "id": "cipherlist_3DES_IDEA", + "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", + "port": "443", + "severity": "INFO", + "cwe": "CWE-310", + "finding": "not offered" }, { - "template": "ssl/deprecated-tls.yaml", - "template-url": "https://templates.nuclei.sh/public/deprecated-tls", - "template-id": "deprecated-tls", - "template-path": "/home/runner/nuclei-templates/ssl/deprecated-tls.yaml", - "info": { - "name": "Deprecated TLS Detection", - "author": [ - "righettod", - "forgedhallpass" - ], - "tags": [ - "ssl", - "tls" - ], - "description": "Both TLS 1.1 and SSLv3 are deprecated in favor of stronger encryption.\n", - "reference": [ - "https://ssl-config.mozilla.org/#config=intermediate" - ], - "severity": "info", - "metadata": { - "max-request": 3, - "shodan-query": "ssl.version:sslv2 ssl.version:sslv3 ssl.version:tlsv1 ssl.version:tlsv1.1" - }, - "remediation": "Update the web server's TLS configuration to disable TLS 1.1 and SSLv3.\n" - }, - "extractor-name": "tls_1.1", - "type": "ssl", - "host": "pilotage.conseiller-numerique.gouv.fr", - "matched-at": "pilotage.conseiller-numerique.gouv.fr:443", - "extracted-results": [ - "tls11" - ], - "ip": "172.67.144.206", - "timestamp": "2024-11-24T01:35:16.589391135Z", - "matcher-status": true + "id": "cipherlist_OBSOLETED", + "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", + "port": "443", + "severity": "LOW", + "cwe": "CWE-310", + "finding": "offered" }, { - "template": "ssl/deprecated-tls.yaml", - "template-url": "https://templates.nuclei.sh/public/deprecated-tls", - "template-id": "deprecated-tls", - "template-path": "/home/runner/nuclei-templates/ssl/deprecated-tls.yaml", - "info": { - "name": "Deprecated TLS Detection", - "author": [ - "righettod", - "forgedhallpass" - ], - "tags": [ - "ssl", - "tls" - ], - "description": "Both TLS 1.1 and SSLv3 are deprecated in favor of stronger encryption.\n", - "reference": [ - "https://ssl-config.mozilla.org/#config=intermediate" - ], - "severity": "info", - "metadata": { - "max-request": 3, - "shodan-query": "ssl.version:sslv2 ssl.version:sslv3 ssl.version:tlsv1 ssl.version:tlsv1.1" - }, - "remediation": "Update the web server's TLS configuration to disable TLS 1.1 and SSLv3.\n" - }, - "extractor-name": "tls_1.0", - "type": "ssl", - "host": "pilotage.conseiller-numerique.gouv.fr", - "matched-at": "pilotage.conseiller-numerique.gouv.fr:443", - "extracted-results": [ - "tls10" - ], - "ip": "172.67.144.206", - "timestamp": "2024-11-24T01:35:16.628130449Z", - "matcher-status": true + "id": "cipherlist_STRONG_NOFS", + "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", + "port": "443", + "severity": "OK", + "finding": "offered" }, { - "template": "ssl/tls-version.yaml", - "template-url": "https://templates.nuclei.sh/public/tls-version", - "template-id": "tls-version", - "template-path": "/home/runner/nuclei-templates/ssl/tls-version.yaml", - "info": { - "name": "TLS Version - Detect", - "author": [ - "pdteam", - "pussycat0x" - ], - "tags": [ - "ssl", - "tls" - ], - "description": "TLS version detection is a security process used to determine the version of the Transport Layer Security (TLS) protocol used by a computer or server.\nIt is important to detect the TLS version in order to ensure secure communication between two computers or servers.\n", - "severity": "info", - "metadata": { - "max-request": 4 - } - }, - "type": "ssl", - "host": "pilotage.conseiller-numerique.gouv.fr", - "matched-at": "pilotage.conseiller-numerique.gouv.fr:443", - "extracted-results": [ - "tls10" - ], - "ip": "172.67.144.206", - "timestamp": "2024-11-24T01:35:16.676995556Z", - "matcher-status": true + "id": "cipherlist_STRONG_FS", + "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", + "port": "443", + "severity": "OK", + "finding": "offered" }, { - "template": "ssl/weak-cipher-suites.yaml", - "template-url": "https://templates.nuclei.sh/public/weak-cipher-suites", - "template-id": "weak-cipher-suites", - "template-path": "/home/runner/nuclei-templates/ssl/weak-cipher-suites.yaml", - "info": { - "name": "Weak Cipher Suites Detection", - "author": [ - "pussycat0x" - ], - "tags": [ - "ssl", - "tls", - "misconfig" - ], - "description": "A weak cipher is defined as an encryption/decryption algorithm that uses a key of insufficient length. Using an insufficient length for a key in an encryption/decryption algorithm opens up the possibility (or probability) that the encryption scheme could be broken.", - "reference": [ - "https://www.acunetix.com/vulnerabilities/web/tls-ssl-weak-cipher-suites/", - "http://ciphersuite.info" - ], - "severity": "low", - "metadata": { - "max-request": 4 - } - }, - "matcher-name": "tls-1.0", - "type": "ssl", - "host": "pilotage.conseiller-numerique.gouv.fr", - "matched-at": "pilotage.conseiller-numerique.gouv.fr:443", - "extracted-results": [ - "[tls10 TLS_ECDHE_RSA_WITH_AES_128_CBC_SHA]" - ], - "ip": "172.67.144.206", - "timestamp": "2024-11-24T01:35:16.699347703Z", - "matcher-status": true + "id": "cipher_order-tls1", + "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", + "port": "443", + "severity": "OK", + "finding": "server" }, { - "template": "ssl/tls-version.yaml", - "template-url": "https://templates.nuclei.sh/public/tls-version", - "template-id": "tls-version", - "template-path": "/home/runner/nuclei-templates/ssl/tls-version.yaml", - "info": { - "name": "TLS Version - Detect", - "author": [ - "pdteam", - "pussycat0x" - ], - "tags": [ - "ssl", - "tls" - ], - "description": "TLS version detection is a security process used to determine the version of the Transport Layer Security (TLS) protocol used by a computer or server.\nIt is important to detect the TLS version in order to ensure secure communication between two computers or servers.\n", - "severity": "info", - "metadata": { - "max-request": 4 - } - }, - "type": "ssl", - "host": "pilotage.conseiller-numerique.gouv.fr", - "matched-at": "pilotage.conseiller-numerique.gouv.fr:443", - "extracted-results": [ - "tls11" - ], - "ip": "172.67.144.206", - "timestamp": "2024-11-24T01:35:16.711432309Z", - "matcher-status": true - }, - { - "template": "ssl/weak-cipher-suites.yaml", - "template-url": "https://templates.nuclei.sh/public/weak-cipher-suites", - "template-id": "weak-cipher-suites", - "template-path": "/home/runner/nuclei-templates/ssl/weak-cipher-suites.yaml", - "info": { - "name": "Weak Cipher Suites Detection", - "author": [ - "pussycat0x" - ], - "tags": [ - "ssl", - "tls", - "misconfig" - ], - "description": "A weak cipher is defined as an encryption/decryption algorithm that uses a key of insufficient length. Using an insufficient length for a key in an encryption/decryption algorithm opens up the possibility (or probability) that the encryption scheme could be broken.", - "reference": [ - "https://www.acunetix.com/vulnerabilities/web/tls-ssl-weak-cipher-suites/", - "http://ciphersuite.info" - ], - "severity": "low", - "metadata": { - "max-request": 4 - } - }, - "matcher-name": "tls-1.1", - "type": "ssl", - "host": "pilotage.conseiller-numerique.gouv.fr", - "matched-at": "pilotage.conseiller-numerique.gouv.fr:443", - "extracted-results": [ - "[tls11 TLS_ECDHE_RSA_WITH_AES_128_CBC_SHA]" - ], - "ip": "172.67.144.206", - "timestamp": "2024-11-24T01:35:16.727198899Z", - "matcher-status": true - }, - { - "template": "ssl/tls-version.yaml", - "template-url": "https://templates.nuclei.sh/public/tls-version", - "template-id": "tls-version", - "template-path": "/home/runner/nuclei-templates/ssl/tls-version.yaml", - "info": { - "name": "TLS Version - Detect", - "author": [ - "pdteam", - "pussycat0x" - ], - "tags": [ - "ssl", - "tls" - ], - "description": "TLS version detection is a security process used to determine the version of the Transport Layer Security (TLS) protocol used by a computer or server.\nIt is important to detect the TLS version in order to ensure secure communication between two computers or servers.\n", - "severity": "info", - "metadata": { - "max-request": 4 - } - }, - "type": "ssl", - "host": "pilotage.conseiller-numerique.gouv.fr", - "matched-at": "pilotage.conseiller-numerique.gouv.fr:443", - "extracted-results": [ - "tls12" - ], - "ip": "172.67.144.206", - "timestamp": "2024-11-24T01:35:16.743281176Z", - "matcher-status": true - }, - { - "template": "ssl/tls-version.yaml", - "template-url": "https://templates.nuclei.sh/public/tls-version", - "template-id": "tls-version", - "template-path": "/home/runner/nuclei-templates/ssl/tls-version.yaml", - "info": { - "name": "TLS Version - Detect", - "author": [ - "pdteam", - "pussycat0x" - ], - "tags": [ - "ssl", - "tls" - ], - "description": "TLS version detection is a security process used to determine the version of the Transport Layer Security (TLS) protocol used by a computer or server.\nIt is important to detect the TLS version in order to ensure secure communication between two computers or servers.\n", - "severity": "info", - "metadata": { - "max-request": 4 - } - }, - "type": "ssl", - "host": "pilotage.conseiller-numerique.gouv.fr", - "matched-at": "pilotage.conseiller-numerique.gouv.fr:443", - "extracted-results": [ - "tls13" - ], - "ip": "172.67.144.206", - "timestamp": "2024-11-24T01:35:16.764396784Z", - "matcher-status": true - } - ], - "lhr": [ - { - "requestedUrl": "https://pilotage.conseiller-numerique.gouv.fr/login", - "finalUrl": "https://pilotage.conseiller-numerique.gouv.fr/login", - "fetchTime": "2024-11-24T01:25:41.536Z", - "runWarnings": [], - "categories": { - "performance": { - "title": "Performance", - "supportedModes": [ - "navigation", - "timespan", - "snapshot" - ], - "id": "performance", - "score": 0.68 - }, - "accessibility": { - "title": "Accessibility", - "description": "These checks highlight opportunities to [improve the accessibility of your web app](https://developers.google.com/web/fundamentals/accessibility). Only a subset of accessibility issues can be automatically detected so manual testing is also encouraged.", - "manualDescription": "These items address areas which an automated testing tool cannot cover. Learn more in our guide on [conducting an accessibility review](https://developers.google.com/web/fundamentals/accessibility/how-to-review).", - "supportedModes": [ - "navigation", - "snapshot" - ], - "id": "accessibility", - "score": 0.92 - }, - "best-practices": { - "title": "Best Practices", - "supportedModes": [ - "navigation", - "timespan", - "snapshot" - ], - "id": "best-practices", - "score": 0.92 - }, - "seo": { - "title": "SEO", - "description": "These checks ensure that your page is following basic search engine optimization advice. There are many additional factors Lighthouse does not score here that may affect your search ranking, including performance on [Core Web Vitals](https://web.dev/learn-web-vitals/). [Learn more](https://support.google.com/webmasters/answer/35769).", - "manualDescription": "Run these additional validators on your site to check additional SEO best practices.", - "supportedModes": [ - "navigation", - "snapshot" - ], - "id": "seo", - "score": 1 - }, - "pwa": { - "title": "PWA", - "description": "These checks validate the aspects of a Progressive Web App. [Learn more](https://developers.google.com/web/progressive-web-apps/checklist).", - "manualDescription": "These checks are required by the baseline [PWA Checklist](https://developers.google.com/web/progressive-web-apps/checklist) but are not automatically checked by Lighthouse. They do not affect your score but it's important that you verify them manually.", - "supportedModes": [ - "navigation" - ], - "id": "pwa", - "score": 0.8 - } - }, - "audits": { - "metrics": { - "id": "metrics", - "title": "Metrics", - "description": "Collects all available metrics.", - "score": null, - "scoreDisplayMode": "informative", - "numericValue": 5321, - "numericUnit": "millisecond", - "details": { - "type": "debugdata", - "items": [ - { - "firstContentfulPaint": 4167, - "firstMeaningfulPaint": 4167, - "largestContentfulPaint": 5033, - "interactive": 5321, - "speedIndex": 4167, - "totalBlockingTime": 119, - "maxPotentialFID": 288, - "cumulativeLayoutShift": 0.02173834482828776, - "cumulativeLayoutShiftMainFrame": 0.02173834482828776, - "totalCumulativeLayoutShift": 0.02173834482828776, - "observedTimeOrigin": 0, - "observedTimeOriginTs": 435615548, - "observedNavigationStart": 0, - "observedNavigationStartTs": 435615548, - "observedFirstPaint": 545, - "observedFirstPaintTs": 436160113, - "observedFirstContentfulPaint": 545, - "observedFirstContentfulPaintTs": 436160113, - "observedFirstContentfulPaintAllFrames": 545, - "observedFirstContentfulPaintAllFramesTs": 436160113, - "observedFirstMeaningfulPaint": 545, - "observedFirstMeaningfulPaintTs": 436160113, - "observedLargestContentfulPaint": 545, - "observedLargestContentfulPaintTs": 436160113, - "observedLargestContentfulPaintAllFrames": 545, - "observedLargestContentfulPaintAllFramesTs": 436160113, - "observedTraceEnd": 3596, - "observedTraceEndTs": 439211547, - "observedLoad": 946, - "observedLoadTs": 436561283, - "observedDomContentLoaded": 498, - "observedDomContentLoadedTs": 436113657, - "observedCumulativeLayoutShift": 0.02173834482828776, - "observedCumulativeLayoutShiftMainFrame": 0.02173834482828776, - "observedTotalCumulativeLayoutShift": 0.02173834482828776, - "observedFirstVisualChange": 550, - "observedFirstVisualChangeTs": 436165548, - "observedLastVisualChange": 583, - "observedLastVisualChangeTs": 436198548, - "observedSpeedIndex": 562, - "observedSpeedIndexTs": 436177719 - }, - { - "lcpInvalidated": false - } - ] - } - }, - "diagnostics": { - "id": "diagnostics", - "title": "Diagnostics", - "description": "Collection of useful page vitals.", - "score": null, - "scoreDisplayMode": "informative", - "details": { - "type": "debugdata", - "items": [ - { - "numRequests": 20, - "numScripts": 3, - "numStylesheets": 1, - "numFonts": 3, - "numTasks": 880, - "numTasksOver10ms": 5, - "numTasksOver25ms": 2, - "numTasksOver50ms": 1, - "numTasksOver100ms": 0, - "numTasksOver500ms": 0, - "rtt": 0, - "throughput": 45881639.83220321, - "maxRtt": 105.358, - "maxServerLatency": 13.764, - "totalByteWeight": 847778, - "totalTaskTime": 237.29399999999853, - "mainDocumentTransferSize": 1260 - } - ] - } - } - } - } - ], - "screenshot": true, - "stats": { - "grade": "A", - "url": "https://pilotage.conseiller-numerique.gouv.fr/login", - "uri": "stats" - }, - "github_repository": null, - "budget_page": null, - "declaration-a11y": { - "mention": "Accessibilité : non conforme", - "declarationUrl": "https://www.conseiller-numerique.gouv.fr/accessibilite" - }, - "declaration-rgpd": null, - "betagouv": null, - "ecoindex": [ - { - "width": 1920, - "height": 1080, - "url": "https://pilotage.conseiller-numerique.gouv.fr/login", - "size": 823.463, - "nodes": 87, - "requests": 14, - "grade": "A", - "score": 86, - "ges": 1.28, - "water": 1.92, - "ecoindex_version": "5.4.2", - "date": "2024-11-24 01:22:42.320279", - "page_type": null - } - ], - "sonarcloud": null, - "dsfr": null, - "summary": { - "404": "A+", - "nmapGrade": "B", - "nmapOpenPortsCount": 4, - "nmapOpenPortsGrade": "F", - "testsslExpireSoon": null, - "testsslExpireDate": null, - "testsslGrade": "B", - "cookiesGrade": "B", - "cookiesCount": 2, - "trackersGrade": "A", - "trackersCount": 0, - "lighthouse_performance": 0.68, - "lighthouse_performanceGrade": "B", - "lighthouse_accessibility": 0.92, - "lighthouse_accessibilityGrade": "A", - "lighthouse_best-practices": 0.92, - "lighthouse_best-practicesGrade": "A", - "lighthouse_seo": 1, - "lighthouse_seoGrade": "A", - "lighthouse_pwa": 0.8, - "lighthouse_pwaGrade": "B", - "statsGrade": "A", - "declaration-a11y": "C", - "ecoindexGrade": "A" - } - }, - { - "404": [], - "url": "https://coop.conseiller-numerique.gouv.fr", - "repositories": [ - "anct-cnum/portail-conseiller" - ], - "http": null, - "updownio": { - "token": "rl2p", - "url": "https://coop.conseiller-numerique.gouv.fr", - "alias": "", - "last_status": 200, - "uptime": 100, - "down": false, - "down_since": null, - "up_since": "2022-11-12T14:15:10Z", - "error": null, - "period": 1800, - "apdex_t": 0.5, - "string_match": "", - "enabled": false, - "published": false, - "disabled_locations": [], - "recipients": [ - "email:3715942461" - ], - "last_check_at": "2023-03-01T02:56:07Z", - "next_check_at": null, - "created_at": "2022-10-17T12:57:34Z", - "mute_until": null, - "favicon_url": "https://coop.conseiller-numerique.gouv.fr/favicon-64.png", - "custom_headers": {}, - "http_verb": "GET/HEAD", - "http_body": "", - "ssl": { - "tested_at": "2023-03-01T00:56:29Z", - "expires_at": "2023-04-28T05:59:37Z", - "valid": true, - "error": null - }, - "metrics": {}, - "uptimeGrade": "A" - }, - "nmap": { - "host": "coop.conseiller-numerique.gouv.fr", - "protocol": "tcp", - "closed_ports": "996", - "open_ports": [ - { - "service": { - "name": "http", - "product": "Cloudflare http proxy", - "id": "80", - "vulnerabilities": [] - } - }, - { - "service": { - "name": "http", - "product": "Cloudflare http proxy", - "id": "443", - "vulnerabilities": [] - } - }, - { - "service": { - "name": "http", - "product": "Cloudflare http proxy", - "id": "8080", - "vulnerabilities": [] - } - }, - { - "service": { - "name": "http", - "product": "Cloudflare http proxy", - "id": "8443", - "vulnerabilities": [] - } - } - ], - "grade": "B" - }, - "dependabot": null, - "codescan": null, - "testssl": [ - { - "id": "service", - "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", - "port": "443", - "severity": "INFO", - "finding": "HTTP" - }, - { - "id": "pre_128cipher", - "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", - "port": "443", - "severity": "INFO", - "finding": "No 128 cipher limit bug" - }, - { - "id": "SSLv2", - "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", - "port": "443", - "severity": "OK", - "finding": "not offered" - }, - { - "id": "SSLv3", - "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", - "port": "443", - "severity": "OK", - "finding": "not offered" - }, - { - "id": "TLS1", - "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", - "port": "443", - "severity": "LOW", - "finding": "offered (deprecated)" - }, - { - "id": "TLS1_1", - "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", - "port": "443", - "severity": "LOW", - "finding": "offered (deprecated)" - }, - { - "id": "TLS1_2", - "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", - "port": "443", - "severity": "OK", - "finding": "offered" - }, - { - "id": "TLS1_3", - "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", - "port": "443", - "severity": "OK", - "finding": "offered with final" - }, - { - "id": "ALPN_HTTP2", - "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", - "port": "443", - "severity": "OK", - "finding": "h2" - }, - { - "id": "ALPN", - "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", - "port": "443", - "severity": "INFO", - "finding": "http/1.1" - }, - { - "id": "cipherlist_NULL", - "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", - "port": "443", - "severity": "OK", - "cwe": "CWE-327", - "finding": "not offered" - }, - { - "id": "cipherlist_aNULL", - "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", - "port": "443", - "severity": "OK", - "cwe": "CWE-327", - "finding": "not offered" - }, - { - "id": "cipherlist_EXPORT", - "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", - "port": "443", - "severity": "OK", - "cwe": "CWE-327", - "finding": "not offered" - }, - { - "id": "cipherlist_LOW", - "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", - "port": "443", - "severity": "OK", - "cwe": "CWE-327", - "finding": "not offered" - }, - { - "id": "cipherlist_3DES_IDEA", - "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", - "port": "443", - "severity": "INFO", - "cwe": "CWE-310", - "finding": "not offered" - }, - { - "id": "cipherlist_OBSOLETED", - "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", - "port": "443", - "severity": "LOW", - "cwe": "CWE-310", - "finding": "offered" - }, - { - "id": "cipherlist_STRONG_NOFS", - "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", - "port": "443", - "severity": "OK", - "finding": "offered" - }, - { - "id": "cipherlist_STRONG_FS", - "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", - "port": "443", - "severity": "OK", - "finding": "offered" - }, - { - "id": "cipher_order-tls1", - "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", - "port": "443", - "severity": "OK", - "finding": "server" - }, - { - "id": "cipherorder_TLSv1", - "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", - "port": "443", - "severity": "INFO", - "finding": "ECDHE-RSA-AES128-SHA" + "id": "cipherorder_TLSv1", + "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", + "port": "443", + "severity": "INFO", + "finding": "ECDHE-RSA-AES128-SHA" }, { "id": "cipher_order-tls1_1", - "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "OK", "finding": "server" }, { "id": "cipherorder_TLSv1_1", - "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "INFO", "finding": "ECDHE-RSA-AES128-SHA" }, { "id": "cipher_order-tls1_2", - "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "OK", "finding": "server" }, { "id": "cipherorder_TLSv1_2", - "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "INFO", "finding": "ECDHE-ECDSA-AES128-GCM-SHA256" }, { "id": "cipher_order", - "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "OK", "finding": "server -- TLS 1.3 client determined" }, { "id": "FS", - "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "OK", "finding": "offered" }, { "id": "FS_ciphers", - "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "INFO", "finding": "ECDHE-ECDSA-AES128-GCM-SHA256 ECDHE-ECDSA-AES128-SHA256 ECDHE-ECDSA-AES128-SHA ECDHE-ECDSA-AES256-GCM-SHA384 ECDHE-ECDSA-AES256-SHA384 ECDHE-ECDSA-AES256-SHA ECDHE-RSA-AES128-GCM-SHA256 ECDHE-RSA-AES128-SHA256 ECDHE-RSA-AES128-SHA ECDHE-RSA-AES256-GCM-SHA384 ECDHE-RSA-AES256-SHA384 ECDHE-RSA-AES256-SHA" }, { "id": "FS_ECDHE_curves", - "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "OK", "finding": "prime256v1" }, { "id": "TLS_extensions", - "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "INFO", "finding": "'server name/#0' 'renegotiation info/#65281' 'EC point formats/#11' 'session ticket/#35' 'status request/#5' 'next protocol/#13172' 'key share/#51' 'supported versions/#43' 'extended master secret/#23' 'application layer protocol negotiation/#16' 'compress_certificate/#27'" }, { "id": "TLS_session_ticket", - "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "INFO", "finding": "valid for 64800 seconds only (", - "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "OK", "finding": "SHA256 with RSA" }, { "id": "cert_keySize ", - "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "INFO", "finding": "RSA 2048 bits (exponent is 65537)" }, { "id": "cert_keyUsage ", - "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "INFO", "finding": "Digital Signature, Key Encipherment" }, { "id": "cert_extKeyUsage ", - "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "INFO", "finding": "TLS Web Server Authentication" }, { "id": "cert_serialNumber ", - "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "INFO", "finding": "B048497D59B7470D0D7359B1C12A3847" }, { "id": "cert_serialNumberLen ", - "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "INFO", "finding": "16" }, { "id": "cert_fingerprintSHA1 ", - "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "INFO", "finding": "EE41DD0BAD0AC8E54E6FAEFF0891583122178419" }, { "id": "cert_fingerprintSHA256 ", - "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "INFO", "finding": "5C614B7E23683CD11F59DD06097F8FD2078EF2A8DC29521F4001ACD5971B873F" }, { "id": "cert ", - "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "INFO", "finding": "-----BEGIN CERTIFICATE-----\nMIIFTjCCBDagAwIBAgIRALBISX1Zt0cNDXNZscEqOEcwDQYJKoZIhvcNAQELBQAwOzELMAkGA1UEBhMCVVMxHjAcBgNVBAoTFUdvb2dsZSBUcnVzdCBTZXJ2aWNlczEMMAoGA1UEAxMDV1IxMB4XDTI0MTAzMTIwMzkzMFoXDTI1MDEyOTIxMzcyMFowLDEqMCgGA1UEAxMhY29vcC5jb25zZWlsbGVyLW51bWVyaXF1ZS5nb3V2LmZyMIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEA0Cu2kXPYApmvY3uG7copZ7/XsBcX+WjUJuZKBl7OY8XPJSh07thwLujkl+8BVgtNd5FcLY952Fq7l8b0m6ZkyHQOwOXQnhTA+ARhsTbfZgtHu6VpF146RZswTYtnFfcZo0GTwoKEYT5IkDUxYhHgbZK8Sd4WKH/IdYGzu/WLSDk8zz0gIWko5buM4SucYYOAnrGtPmZomNdcXQgL4Kx+1zgzEp4LgO+O/s7gqF27xwy7tHjGkcGNZFlAFq/FUTQlrXGjQrkgHa3vrhZeLX5NmN5HPomxUeAtDsD2KGP+vBtKFXJKw+ImkDNxRI+S5ym+EZaYD1UacCw+eYuVwOIHRQIDAQABo4ICWjCCAlYwDgYDVR0PAQH/BAQDAgWgMBMGA1UdJQQMMAoGCCsGAQUFBwMBMAwGA1UdEwEB/wQCMAAwHQYDVR0OBBYEFH4pPWdOBh90xX3PS1x5Z1B26db/MB8GA1UdIwQYMBaAFGZpSdTeKpyRA8+JDiS4DjADboguMF4GCCsGAQUFBwEBBFIwUDAnBggrBgEFBQcwAYYbaHR0cDovL28ucGtpLmdvb2cvcy93cjEvc0VnMCUGCCsGAQUFBzAChhlodHRwOi8vaS5wa2kuZ29vZy93cjEuY3J0MCwGA1UdEQQlMCOCIWNvb3AuY29uc2VpbGxlci1udW1lcmlxdWUuZ291di5mcjATBgNVHSAEDDAKMAgGBmeBDAECATA2BgNVHR8ELzAtMCugKaAnhiVodHRwOi8vYy5wa2kuZ29vZy93cjEvSFVnbERrYmhlWU0uY3JsMIIBBAYKKwYBBAHWeQIEAgSB9QSB8gDwAHUATnWjJ1yaEMM4W2zU3z9S6x3w4I4bjWnAsfpksWKaOd8AAAGS5ITxdQAABAMARjBEAiBmz3kFTidOrTnU1d0Ff+lPP/YnsRqIOEejBPeR5dz3fQIgId1Sh08CSME3d2r+MFd2dW++gKurXdPZd2WKSO8d3iwAdwDm0jFjQHeMwRBBBtdxuc7B0kD2loSG+7qHMh39HjeOUAAAAZLkhPGLAAAEAwBIMEYCIQCKoonRA9ndnhv6abgHrvDzMv2tClKbaXvTHY3J3JgdUwIhAOzBZNNY8Nq5atldGpZg8hn/pqSzwDvSigwgoAIwP3etMA0GCSqGSIb3DQEBCwUAA4IBAQC2JPTpEd+MP9pgcvFO+PBHAZZoWKhS0MdUiiWkdmrkDRyroAEPd2g7UqspfZYDLSCy08HZCezXIT/hx/FqhbBDYAkJDbAR4iUy/JkEFc22/8M2NiUgIf5ZAHQ1N+OwaWGN0XGFY2utdWtlRlLX4tdhQ1a7IbcvKf84IbaaKJGqkIeXBKY9ZcFZRmlUmF2DViYH7o0Kj1ae3nmovgDYeMpxOSsp70Jw6O4fhGkLGXl9ug0e98VvfMUCB8x/Lowu8CkkwhzdWZThz+FDk3lNhwQVyr8S+aHpbGZ1/+ZgaXGG6Dc83ZEtIAk7gYS9Ic/ymOfDxDzg9JuVVACFEUoX5DWb\n-----END CERTIFICATE-----" }, { "id": "cert_commonName ", - "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "OK", "finding": "coop.conseiller-numerique.gouv.fr" }, { "id": "cert_commonName_wo_SNI ", - "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "INFO", "finding": "request w/o SNI didn't succeed" }, { "id": "cert_subjectAltName ", - "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "INFO", "finding": "coop.conseiller-numerique.gouv.fr" }, { "id": "cert_trust ", - "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "OK", "finding": "Ok via SAN and CN (SNI mandatory)" }, { "id": "cert_chain_of_trust ", - "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "OK", "finding": "passed." }, { "id": "cert_certificatePolicies_EV ", - "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "INFO", "finding": "no" }, { "id": "cert_expirationStatus ", - "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", - "severity": "OK", - "finding": "66 >= 60 days" + "severity": "MEDIUM", + "finding": "expires < 60 days (59)" }, { "id": "cert_notBefore ", - "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "INFO", "finding": "2024-10-31 20:39" }, { "id": "cert_notAfter ", - "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", - "severity": "OK", + "severity": "MEDIUM", "finding": "2025-01-29 21:37" }, { "id": "cert_extlifeSpan ", - "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "OK", "finding": "certificate has no extended life time according to browser forum" }, { "id": "cert_eTLS ", - "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "INFO", "finding": "not present" }, { "id": "cert_crlDistributionPoints ", - "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "INFO", "finding": "http://c.pki.goog/wr1/HUglDkbheYM.crl" }, { "id": "cert_ocspURL ", - "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "INFO", "finding": "http://o.pki.goog/s/wr1/sEg" }, { "id": "OCSP_stapling ", - "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "OK", "finding": "offered" }, { "id": "cert_ocspRevoked ", - "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "OK", "finding": "not revoked" }, { "id": "cert_mustStapleExtension ", - "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "INFO", "finding": "--" }, { "id": "DNS_CAArecord ", - "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "LOW", "finding": "--" }, { "id": "certificate_transparency ", - "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "OK", "finding": "yes (certificate extension)" }, { "id": "certs_countServer ", - "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "INFO", "finding": "3" }, { "id": "certs_list_ordering_problem ", - "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "INFO", "finding": "no" }, { "id": "cert_caIssuers ", - "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "INFO", "finding": "WR1 (Google Trust Services from US)" }, { "id": "intermediate_cert <#1> ", - "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "INFO", "finding": "-----BEGIN CERTIFICATE-----\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\n-----END CERTIFICATE-----" }, { "id": "intermediate_cert_fingerprintSHA256 <#1> ", - "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "INFO", "finding": "B10B6F00E609509E8700F6D34687A2BFCE38EA05A8FDF1CDC40C3A2A0D0D0E45" }, { "id": "intermediate_cert_notBefore <#1> ", - "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "INFO", "finding": "2023-12-13 09:00" }, { "id": "intermediate_cert_notAfter <#1> ", - "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "OK", "finding": "2029-02-20 14:00" }, { "id": "intermediate_cert_expiration <#1> ", - "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "OK", "finding": "ok > 40 days" }, { "id": "intermediate_cert_chain <#1> ", - "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "INFO", "finding": "WR1 <-- GTS Root R1" }, { "id": "intermediate_cert <#2> ", - "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "INFO", "finding": "-----BEGIN CERTIFICATE-----\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\n-----END CERTIFICATE-----" }, { "id": "intermediate_cert_fingerprintSHA256 <#2> ", - "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "INFO", "finding": "3EE0278DF71FA3C125C4CD487F01D774694E6FC57E0CD94C24EFD769133918E5" }, { "id": "intermediate_cert_notBefore <#2> ", - "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "INFO", "finding": "2020-06-19 00:00" }, { "id": "intermediate_cert_notAfter <#2> ", - "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "OK", "finding": "2028-01-28 00:00" }, { "id": "intermediate_cert_expiration <#2> ", - "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "OK", "finding": "ok > 40 days" }, { "id": "intermediate_cert_chain <#2> ", - "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "INFO", "finding": "GTS Root R1 <-- GlobalSign Root CA" }, { "id": "intermediate_cert_badOCSP ", - "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "OK", "finding": "intermediate certificate(s) is/are ok" }, { "id": "cert_signatureAlgorithm ", - "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "OK", "finding": "ECDSA with SHA256" }, { "id": "cert_keySize ", - "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "OK", "finding": "EC 256 bits (curve P-256)" }, { "id": "cert_keyUsage ", - "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "INFO", "finding": "Digital Signature" }, { "id": "cert_extKeyUsage ", - "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "INFO", "finding": "TLS Web Server Authentication" }, { "id": "cert_serialNumber ", - "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "INFO", "finding": "300F29DD6FF81E0611EFAFFC7AEF2543" }, { "id": "cert_serialNumberLen ", - "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "INFO", "finding": "16" }, { "id": "cert_fingerprintSHA1 ", - "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "INFO", "finding": "69444EF811B62FFA0AB63EDBE5ACB324DB9A397F" }, { "id": "cert_fingerprintSHA256 ", - "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "INFO", "finding": "21C5C5AD1B44269834953168C56F1039C0260FF8CB2DDD82744D14DFEF7CE6B4" }, { "id": "cert ", - "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "INFO", "finding": "-----BEGIN CERTIFICATE-----\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\n-----END CERTIFICATE-----" }, { "id": "cert_commonName ", - "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "OK", "finding": "coop.conseiller-numerique.gouv.fr" }, { "id": "cert_commonName_wo_SNI ", - "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "INFO", "finding": "request w/o SNI didn't succeed, usual for EC certificates" }, { "id": "cert_subjectAltName ", - "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "INFO", "finding": "coop.conseiller-numerique.gouv.fr" }, { "id": "cert_trust ", - "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "OK", "finding": "Ok via SAN and CN (SNI mandatory)" }, { "id": "cert_chain_of_trust ", - "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "OK", "finding": "passed." }, { "id": "cert_certificatePolicies_EV ", - "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "INFO", "finding": "no" }, { "id": "cert_expirationStatus ", - "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", - "severity": "OK", - "finding": "66 >= 60 days" + "severity": "MEDIUM", + "finding": "expires < 60 days (59)" }, { "id": "cert_notBefore ", - "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "INFO", "finding": "2024-10-31 20:39" }, { "id": "cert_notAfter ", - "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", - "severity": "OK", + "severity": "MEDIUM", "finding": "2025-01-29 21:39" }, { "id": "cert_extlifeSpan ", - "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "OK", "finding": "certificate has no extended life time according to browser forum" }, { "id": "cert_eTLS ", - "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "INFO", "finding": "not present" }, { "id": "cert_crlDistributionPoints ", - "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "INFO", "finding": "http://c.pki.goog/we1/k9D0LcQcFTo.crl" }, { "id": "cert_ocspURL ", - "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "INFO", "finding": "http://o.pki.goog/s/we1/MA8" }, { "id": "OCSP_stapling ", - "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "OK", "finding": "offered" }, { "id": "cert_ocspRevoked ", - "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "OK", "finding": "not revoked" }, { "id": "cert_mustStapleExtension ", - "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "INFO", "finding": "--" }, { "id": "DNS_CAArecord ", - "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "LOW", "finding": "--" }, { "id": "certificate_transparency ", - "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "OK", "finding": "yes (certificate extension)" }, { "id": "certs_countServer ", - "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "INFO", "finding": "3" }, { "id": "certs_list_ordering_problem ", - "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "INFO", "finding": "no" }, { "id": "cert_caIssuers ", - "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "INFO", "finding": "WE1 (Google Trust Services from US)" }, { "id": "intermediate_cert <#1> ", - "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "INFO", "finding": "-----BEGIN CERTIFICATE-----\nMIICnzCCAiWgAwIBAgIQf/MZd5csIkp2FV0TttaF4zAKBggqhkjOPQQDAzBHMQswCQYDVQQGEwJVUzEiMCAGA1UEChMZR29vZ2xlIFRydXN0IFNlcnZpY2VzIExMQzEUMBIGA1UEAxMLR1RTIFJvb3QgUjQwHhcNMjMxMjEzMDkwMDAwWhcNMjkwMjIwMTQwMDAwWjA7MQswCQYDVQQGEwJVUzEeMBwGA1UEChMVR29vZ2xlIFRydXN0IFNlcnZpY2VzMQwwCgYDVQQDEwNXRTEwWTATBgcqhkjOPQIBBggqhkjOPQMBBwNCAARvzTr+Z1dHTCEDhUDCR127WEcPQMFcF4XGGTfn1XzthkubgdnXGhOlCgP4mMTG6J7/EFmPLCaY9eYmJbsPAvpWo4H+MIH7MA4GA1UdDwEB/wQEAwIBhjAdBgNVHSUEFjAUBggrBgEFBQcDAQYIKwYBBQUHAwIwEgYDVR0TAQH/BAgwBgEB/wIBADAdBgNVHQ4EFgQUkHeSNWfE/6jMqeZ72YB5e8yT+TgwHwYDVR0jBBgwFoAUgEzW63T/STaj1dj8tT7FavCUHYwwNAYIKwYBBQUHAQEEKDAmMCQGCCsGAQUFBzAChhhodHRwOi8vaS5wa2kuZ29vZy9yNC5jcnQwKwYDVR0fBCQwIjAgoB6gHIYaaHR0cDovL2MucGtpLmdvb2cvci9yNC5jcmwwEwYDVR0gBAwwCjAIBgZngQwBAgEwCgYIKoZIzj0EAwMDaAAwZQIxAOcCq1HW90OVznX+0RGU1cxAQXomvtgM8zItPZCuFQ8jSBJSjz5keROv9aYsAm5VsQIwJonMaAFi54mrfhfoFNZEfuNMSQ6/bIBiNLiyoX46FohQvKeIoJ99cx7sUkFN7uJW\n-----END CERTIFICATE-----" }, { "id": "intermediate_cert_fingerprintSHA256 <#1> ", - "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "INFO", "finding": "1DFC1605FBAD358D8BC844F76D15203FAC9CA5C1A79FD4857FFAF2864FBEBF96" }, { "id": "intermediate_cert_notBefore <#1> ", - "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "INFO", "finding": "2023-12-13 09:00" }, { "id": "intermediate_cert_notAfter <#1> ", - "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "OK", "finding": "2029-02-20 14:00" }, { "id": "intermediate_cert_expiration <#1> ", - "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "OK", "finding": "ok > 40 days" }, { "id": "intermediate_cert_chain <#1> ", - "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "INFO", "finding": "WE1 <-- GTS Root R4" }, { "id": "intermediate_cert <#2> ", - "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "INFO", "finding": "-----BEGIN CERTIFICATE-----\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\n-----END CERTIFICATE-----" }, { "id": "intermediate_cert_fingerprintSHA256 <#2> ", - "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "INFO", "finding": "76B27B80A58027DC3CF1DA68DAC17010ED93997D0B603E2FADBE85012493B5A7" }, { "id": "intermediate_cert_notBefore <#2> ", - "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "INFO", "finding": "2023-11-15 03:43" }, { "id": "intermediate_cert_notAfter <#2> ", - "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "OK", "finding": "2028-01-28 00:00" }, { "id": "intermediate_cert_expiration <#2> ", - "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "OK", "finding": "ok > 40 days" }, { "id": "intermediate_cert_chain <#2> ", - "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "INFO", "finding": "GTS Root R4 <-- GlobalSign Root CA" }, { "id": "intermediate_cert_badOCSP ", - "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "OK", "finding": "intermediate certificate(s) is/are ok" }, { "id": "HTTP_status_code", - "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "INFO", "finding": "301 Moved Permanently ('/')" }, { "id": "HTTP_clock_skew", - "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "INFO", "finding": "0 seconds from localtime" }, { "id": "HTTP_headerTime", - "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "INFO", - "finding": "1732411633" + "finding": "1733016943" }, { "id": "HSTS", - "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "LOW", "finding": "not offered" }, { "id": "HPKP", - "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "INFO", "finding": "No support for HTTP Public Key Pinning" }, { "id": "banner_server", - "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "INFO", - "finding": "cloudflareserver-timing: cfL4;desc='?proto=TCP&rtt=1544&sent=4&recv=7&lost=0&retrans=0&sent_bytes=3026&recv_bytes=761&delivery_rate=1957505&cwnd=252&unsent_bytes=0&cid=222d5b1c081dc8dc&ts=11&x=0'" + "finding": "cloudflareserver-timing: cfL4;desc='?proto=TCP&rtt=8909&min_rtt=8531&rtt_var=2729&sent=4&recv=6&lost=0&retrans=0&sent_bytes=3026&recv_bytes=761&delivery_rate=334779&cwnd=214&unsent_bytes=0&cid=20c314816171dad9&ts=27&x=0'" }, { "id": "banner_application", - "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "INFO", "finding": "No application banner found" }, { "id": "cookie_count", - "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "INFO", "finding": "0 at '/' (30x detected, better try target URL of 30x)" }, { "id": "Cache-Control", - "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "INFO", "finding": "max-age=3600" }, { "id": "banner_reverseproxy", - "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "INFO", "cwe": "CWE-200", @@ -19653,7 +18196,7 @@ }, { "id": "heartbleed", - "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "OK", "cve": "CVE-2014-0160", @@ -19662,7 +18205,7 @@ }, { "id": "CCS", - "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "OK", "cve": "CVE-2014-0224", @@ -19671,7 +18214,7 @@ }, { "id": "ticketbleed", - "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "OK", "cve": "CVE-2016-9244", @@ -19680,7 +18223,7 @@ }, { "id": "ROBOT", - "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "OK", "cve": "CVE-2017-17382 CVE-2017-17427 CVE-2017-17428 CVE-2017-13098 CVE-2017-1000385 CVE-2017-13099 CVE-2016-6883 CVE-2012-5081 CVE-2017-6168", @@ -19689,7 +18232,7 @@ }, { "id": "secure_renego", - "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "OK", "cwe": "CWE-310", @@ -19697,7 +18240,7 @@ }, { "id": "secure_client_renego", - "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "OK", "cve": "CVE-2011-1473", @@ -19706,7 +18249,7 @@ }, { "id": "CRIME_TLS", - "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "OK", "cve": "CVE-2012-4929", @@ -19715,7 +18258,7 @@ }, { "id": "BREACH", - "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "OK", "cve": "CVE-2013-3587", @@ -19724,7 +18267,7 @@ }, { "id": "POODLE_SSL", - "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "OK", "cve": "CVE-2014-3566", @@ -19733,14 +18276,14 @@ }, { "id": "fallback_SCSV", - "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "OK", "finding": "supported" }, { "id": "SWEET32", - "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "LOW", "cve": "CVE-2016-2183 CVE-2016-6329", @@ -19749,7 +18292,7 @@ }, { "id": "FREAK", - "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "OK", "cve": "CVE-2015-0204", @@ -19758,7 +18301,7 @@ }, { "id": "DROWN", - "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "OK", "cve": "CVE-2016-0800 CVE-2016-0703", @@ -19767,7 +18310,7 @@ }, { "id": "DROWN_hint", - "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "INFO", "cve": "CVE-2016-0800 CVE-2016-0703", @@ -19776,7 +18319,7 @@ }, { "id": "LOGJAM", - "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "OK", "cve": "CVE-2015-4000", @@ -19785,7 +18328,7 @@ }, { "id": "LOGJAM-common_primes", - "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "OK", "cve": "CVE-2015-4000", @@ -19794,7 +18337,7 @@ }, { "id": "BEAST_CBC_TLS1", - "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "MEDIUM", "cve": "CVE-2011-3389", @@ -19803,7 +18346,7 @@ }, { "id": "BEAST", - "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "LOW", "cve": "CVE-2011-3389", @@ -19812,7 +18355,7 @@ }, { "id": "LUCKY13", - "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "LOW", "cve": "CVE-2013-0169", @@ -19821,7 +18364,7 @@ }, { "id": "winshock", - "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "OK", "cve": "CVE-2014-6321", @@ -19830,7 +18373,7 @@ }, { "id": "RC4", - "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "OK", "cve": "CVE-2013-2566 CVE-2015-2808", @@ -19839,413 +18382,413 @@ }, { "id": "clientsimulation-android_60", - "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "INFO", "finding": "TLSv1.2 ECDHE-ECDSA-AES128-GCM-SHA256" }, { "id": "clientsimulation-android_70", - "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "INFO", "finding": "TLSv1.2 ECDHE-ECDSA-AES128-GCM-SHA256" }, { "id": "clientsimulation-android_81", - "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "INFO", "finding": "TLSv1.2 ECDHE-ECDSA-AES128-GCM-SHA256" }, { "id": "clientsimulation-android_90", - "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "INFO", "finding": "TLSv1.3 TLS_AES_128_GCM_SHA256" }, { "id": "clientsimulation-android_X", - "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "INFO", "finding": "TLSv1.3 TLS_AES_128_GCM_SHA256" }, { "id": "clientsimulation-android_11", - "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "INFO", "finding": "TLSv1.3 TLS_AES_128_GCM_SHA256" }, { "id": "clientsimulation-android_12", - "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "INFO", "finding": "TLSv1.3 TLS_AES_128_GCM_SHA256" }, { "id": "clientsimulation-chrome_79_win10", - "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "INFO", "finding": "TLSv1.3 TLS_AES_128_GCM_SHA256" }, { "id": "clientsimulation-chrome_101_win10", - "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "INFO", "finding": "TLSv1.3 TLS_AES_128_GCM_SHA256" }, { "id": "clientsimulation-firefox_66_win81", - "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "INFO", "finding": "TLSv1.3 TLS_AES_128_GCM_SHA256" }, { "id": "clientsimulation-firefox_100_win10", - "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "INFO", "finding": "TLSv1.3 TLS_AES_128_GCM_SHA256" }, { "id": "clientsimulation-ie_6_xp", - "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "INFO", "finding": "No connection" }, { "id": "clientsimulation-ie_8_win7", - "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "INFO", "finding": "TLSv1.0 ECDHE-RSA-AES128-SHA" }, { "id": "clientsimulation-ie_8_xp", - "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "INFO", "finding": "No connection" }, { "id": "clientsimulation-ie_11_win7", - "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "INFO", "finding": "TLSv1.2 ECDHE-ECDSA-AES128-GCM-SHA256" }, { "id": "clientsimulation-ie_11_win81", - "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "INFO", "finding": "TLSv1.2 ECDHE-ECDSA-AES128-GCM-SHA256" }, { "id": "clientsimulation-ie_11_winphone81", - "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "INFO", "finding": "TLSv1.2 ECDHE-ECDSA-AES128-GCM-SHA256" }, { "id": "clientsimulation-ie_11_win10", - "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "INFO", "finding": "TLSv1.2 ECDHE-ECDSA-AES128-GCM-SHA256" }, { "id": "clientsimulation-edge_15_win10", - "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "INFO", "finding": "TLSv1.2 ECDHE-ECDSA-AES128-GCM-SHA256" }, { "id": "clientsimulation-edge_101_win10_21h2", - "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "INFO", "finding": "TLSv1.3 TLS_AES_128_GCM_SHA256" }, { "id": "clientsimulation-safari_121_ios_122", - "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "INFO", "finding": "TLSv1.3 TLS_CHACHA20_POLY1305_SHA256" }, { "id": "clientsimulation-safari_130_osx_10146", - "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "INFO", "finding": "TLSv1.3 TLS_CHACHA20_POLY1305_SHA256" }, { "id": "clientsimulation-safari_154_osx_1231", - "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "INFO", "finding": "TLSv1.3 TLS_AES_128_GCM_SHA256" }, { "id": "clientsimulation-java_7u25", - "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "INFO", "finding": "TLSv1.0 ECDHE-RSA-AES128-SHA" }, { "id": "clientsimulation-java_8u161", - "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "INFO", "finding": "TLSv1.2 ECDHE-ECDSA-AES128-GCM-SHA256" }, { "id": "clientsimulation-java1102", - "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "INFO", "finding": "TLSv1.3 TLS_AES_128_GCM_SHA256" }, { "id": "clientsimulation-java1703", - "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "INFO", "finding": "TLSv1.3 TLS_AES_256_GCM_SHA384" }, { "id": "clientsimulation-go_1178", - "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "INFO", "finding": "TLSv1.3 TLS_AES_128_GCM_SHA256" }, { "id": "clientsimulation-libressl_283", - "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "INFO", "finding": "TLSv1.2 ECDHE-ECDSA-CHACHA20-POLY1305" }, { "id": "clientsimulation-openssl_102e", - "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "INFO", "finding": "TLSv1.2 ECDHE-ECDSA-AES128-GCM-SHA256" }, { "id": "clientsimulation-openssl_110l", - "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "INFO", "finding": "TLSv1.2 ECDHE-ECDSA-CHACHA20-POLY1305" }, { "id": "clientsimulation-openssl_111d", - "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "INFO", "finding": "TLSv1.3 TLS_AES_256_GCM_SHA384" }, { "id": "clientsimulation-openssl_303", - "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "INFO", "finding": "TLSv1.3 TLS_AES_256_GCM_SHA384" }, { "id": "clientsimulation-apple_mail_16_0", - "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "INFO", "finding": "TLSv1.2 ECDHE-ECDSA-AES128-GCM-SHA256" }, { "id": "clientsimulation-thunderbird_91_9", - "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "INFO", "finding": "TLSv1.3 TLS_AES_128_GCM_SHA256" }, { "id": "rating_spec", - "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "INFO", "finding": "SSL Labs's 'SSL Server Rating Guide' (version 2009q from 2020-01-30)" }, { "id": "rating_doc", - "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "INFO", "finding": "https://github.com/ssllabs/research/wiki/SSL-Server-Rating-Guide" }, { "id": "protocol_support_score", - "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "INFO", "finding": "95" }, { "id": "protocol_support_score_weighted", - "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "INFO", "finding": "28" }, { "id": "key_exchange_score", - "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "INFO", "finding": "90" }, { "id": "key_exchange_score_weighted", - "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "INFO", "finding": "27" }, { "id": "cipher_strength_score", - "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "INFO", "finding": "60" }, { "id": "cipher_strength_score_weighted", - "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "INFO", "finding": "24" }, { "id": "final_score", - "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "INFO", "finding": "79" }, { "id": "overall_grade", - "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "MEDIUM", "finding": "B" }, { "id": "grade_cap_reason_1", - "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "INFO", "finding": "Grade capped to B. TLS 1.1 offered" }, { "id": "grade_cap_reason_2", - "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "INFO", "finding": "Grade capped to B. TLS 1.0 offered" }, { "id": "grade_cap_reason_3", - "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", + "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", "port": "443", "severity": "INFO", "finding": "Grade capped to A. HSTS is not offered" }, { "id": "service", - "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "INFO", "finding": "HTTP" }, { "id": "pre_128cipher", - "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "INFO", "finding": "No 128 cipher limit bug" }, { "id": "SSLv2", - "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "OK", "finding": "not offered" }, { "id": "SSLv3", - "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "OK", "finding": "not offered" }, { "id": "TLS1", - "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "LOW", "finding": "offered (deprecated)" }, { "id": "TLS1_1", - "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "LOW", "finding": "offered (deprecated)" }, { "id": "TLS1_2", - "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "OK", "finding": "offered" }, { "id": "TLS1_3", - "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "OK", "finding": "offered with final" }, { "id": "ALPN_HTTP2", - "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "OK", "finding": "h2" }, { "id": "ALPN", - "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "INFO", "finding": "http/1.1" }, { "id": "cipherlist_NULL", - "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "OK", "cwe": "CWE-327", @@ -20253,7 +18796,7 @@ }, { "id": "cipherlist_aNULL", - "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "OK", "cwe": "CWE-327", @@ -20261,7 +18804,7 @@ }, { "id": "cipherlist_EXPORT", - "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "OK", "cwe": "CWE-327", @@ -20269,7 +18812,7 @@ }, { "id": "cipherlist_LOW", - "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "OK", "cwe": "CWE-327", @@ -20277,7 +18820,7 @@ }, { "id": "cipherlist_3DES_IDEA", - "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "INFO", "cwe": "CWE-310", @@ -20285,7 +18828,7 @@ }, { "id": "cipherlist_OBSOLETED", - "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "LOW", "cwe": "CWE-310", @@ -20293,819 +18836,819 @@ }, { "id": "cipherlist_STRONG_NOFS", - "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "OK", "finding": "offered" }, { "id": "cipherlist_STRONG_FS", - "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "OK", "finding": "offered" }, { "id": "cipher_order-tls1", - "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "OK", "finding": "server" }, { "id": "cipherorder_TLSv1", - "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "INFO", "finding": "ECDHE-RSA-AES128-SHA" }, { "id": "cipher_order-tls1_1", - "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "OK", "finding": "server" }, { "id": "cipherorder_TLSv1_1", - "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "INFO", "finding": "ECDHE-RSA-AES128-SHA" }, { "id": "cipher_order-tls1_2", - "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "OK", "finding": "server" }, { "id": "cipherorder_TLSv1_2", - "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "INFO", "finding": "ECDHE-ECDSA-AES128-GCM-SHA256" }, { "id": "cipher_order", - "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "OK", "finding": "server -- TLS 1.3 client determined" }, { "id": "FS", - "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "OK", "finding": "offered" }, { "id": "FS_ciphers", - "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "INFO", "finding": "ECDHE-ECDSA-AES128-GCM-SHA256 ECDHE-ECDSA-AES128-SHA256 ECDHE-ECDSA-AES128-SHA ECDHE-ECDSA-AES256-GCM-SHA384 ECDHE-ECDSA-AES256-SHA384 ECDHE-ECDSA-AES256-SHA ECDHE-RSA-AES128-GCM-SHA256 ECDHE-RSA-AES128-SHA256 ECDHE-RSA-AES128-SHA ECDHE-RSA-AES256-GCM-SHA384 ECDHE-RSA-AES256-SHA384 ECDHE-RSA-AES256-SHA" }, { "id": "FS_ECDHE_curves", - "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "OK", "finding": "prime256v1" }, { "id": "TLS_extensions", - "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "INFO", "finding": "'server name/#0' 'renegotiation info/#65281' 'EC point formats/#11' 'session ticket/#35' 'status request/#5' 'next protocol/#13172' 'key share/#51' 'supported versions/#43' 'extended master secret/#23' 'application layer protocol negotiation/#16' 'compress_certificate/#27'" }, { "id": "TLS_session_ticket", - "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "INFO", "finding": "valid for 64800 seconds only (", - "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "OK", "finding": "SHA256 with RSA" }, { "id": "cert_keySize ", - "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "INFO", "finding": "RSA 2048 bits (exponent is 65537)" }, { "id": "cert_keyUsage ", - "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "INFO", "finding": "Digital Signature, Key Encipherment" }, { "id": "cert_extKeyUsage ", - "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "INFO", "finding": "TLS Web Server Authentication" }, { "id": "cert_serialNumber ", - "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "INFO", "finding": "B048497D59B7470D0D7359B1C12A3847" }, { "id": "cert_serialNumberLen ", - "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "INFO", "finding": "16" }, { "id": "cert_fingerprintSHA1 ", - "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "INFO", "finding": "EE41DD0BAD0AC8E54E6FAEFF0891583122178419" }, { "id": "cert_fingerprintSHA256 ", - "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "INFO", "finding": "5C614B7E23683CD11F59DD06097F8FD2078EF2A8DC29521F4001ACD5971B873F" }, { "id": "cert ", - "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "INFO", "finding": "-----BEGIN CERTIFICATE-----\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\n-----END CERTIFICATE-----" }, { "id": "cert_commonName ", - "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "OK", "finding": "coop.conseiller-numerique.gouv.fr" }, { "id": "cert_commonName_wo_SNI ", - "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "INFO", "finding": "request w/o SNI didn't succeed" }, { "id": "cert_subjectAltName ", - "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "INFO", "finding": "coop.conseiller-numerique.gouv.fr" }, { "id": "cert_trust ", - "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "OK", "finding": "Ok via SAN and CN (SNI mandatory)" }, { "id": "cert_chain_of_trust ", - "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "OK", "finding": "passed." }, { "id": "cert_certificatePolicies_EV ", - "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "INFO", "finding": "no" }, { "id": "cert_expirationStatus ", - "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", - "severity": "OK", - "finding": "66 >= 60 days" + "severity": "MEDIUM", + "finding": "expires < 60 days (59)" }, { "id": "cert_notBefore ", - "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "INFO", "finding": "2024-10-31 20:39" }, { "id": "cert_notAfter ", - "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", - "severity": "OK", + "severity": "MEDIUM", "finding": "2025-01-29 21:37" }, { "id": "cert_extlifeSpan ", - "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "OK", "finding": "certificate has no extended life time according to browser forum" }, { "id": "cert_eTLS ", - "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "INFO", "finding": "not present" }, { "id": "cert_crlDistributionPoints ", - "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "INFO", "finding": "http://c.pki.goog/wr1/HUglDkbheYM.crl" }, { "id": "cert_ocspURL ", - "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "INFO", "finding": "http://o.pki.goog/s/wr1/sEg" }, { "id": "OCSP_stapling ", - "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "OK", "finding": "offered" }, { "id": "cert_ocspRevoked ", - "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "OK", "finding": "not revoked" }, { "id": "cert_mustStapleExtension ", - "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "INFO", "finding": "--" }, { "id": "DNS_CAArecord ", - "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "LOW", "finding": "--" }, { "id": "certificate_transparency ", - "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "OK", "finding": "yes (certificate extension)" }, { "id": "certs_countServer ", - "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "INFO", "finding": "3" }, { "id": "certs_list_ordering_problem ", - "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "INFO", "finding": "no" }, { "id": "cert_caIssuers ", - "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "INFO", "finding": "WR1 (Google Trust Services from US)" }, { "id": "intermediate_cert <#1> ", - "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "INFO", "finding": "-----BEGIN CERTIFICATE-----\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\n-----END CERTIFICATE-----" }, { "id": "intermediate_cert_fingerprintSHA256 <#1> ", - "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "INFO", "finding": "B10B6F00E609509E8700F6D34687A2BFCE38EA05A8FDF1CDC40C3A2A0D0D0E45" }, { "id": "intermediate_cert_notBefore <#1> ", - "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "INFO", "finding": "2023-12-13 09:00" }, { "id": "intermediate_cert_notAfter <#1> ", - "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "OK", "finding": "2029-02-20 14:00" }, { "id": "intermediate_cert_expiration <#1> ", - "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "OK", "finding": "ok > 40 days" }, { "id": "intermediate_cert_chain <#1> ", - "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "INFO", "finding": "WR1 <-- GTS Root R1" }, { "id": "intermediate_cert <#2> ", - "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "INFO", "finding": "-----BEGIN CERTIFICATE-----\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\n-----END CERTIFICATE-----" }, { "id": "intermediate_cert_fingerprintSHA256 <#2> ", - "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "INFO", "finding": "3EE0278DF71FA3C125C4CD487F01D774694E6FC57E0CD94C24EFD769133918E5" }, { "id": "intermediate_cert_notBefore <#2> ", - "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "INFO", "finding": "2020-06-19 00:00" }, { "id": "intermediate_cert_notAfter <#2> ", - "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "OK", "finding": "2028-01-28 00:00" }, { "id": "intermediate_cert_expiration <#2> ", - "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "OK", "finding": "ok > 40 days" }, { "id": "intermediate_cert_chain <#2> ", - "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "INFO", "finding": "GTS Root R1 <-- GlobalSign Root CA" }, { "id": "intermediate_cert_badOCSP ", - "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "OK", "finding": "intermediate certificate(s) is/are ok" }, { "id": "cert_signatureAlgorithm ", - "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "OK", "finding": "ECDSA with SHA256" }, { "id": "cert_keySize ", - "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "OK", "finding": "EC 256 bits (curve P-256)" }, { "id": "cert_keyUsage ", - "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "INFO", "finding": "Digital Signature" }, { "id": "cert_extKeyUsage ", - "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "INFO", "finding": "TLS Web Server Authentication" }, { "id": "cert_serialNumber ", - "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "INFO", "finding": "300F29DD6FF81E0611EFAFFC7AEF2543" }, { "id": "cert_serialNumberLen ", - "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "INFO", "finding": "16" }, { "id": "cert_fingerprintSHA1 ", - "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "INFO", "finding": "69444EF811B62FFA0AB63EDBE5ACB324DB9A397F" }, { "id": "cert_fingerprintSHA256 ", - "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "INFO", "finding": "21C5C5AD1B44269834953168C56F1039C0260FF8CB2DDD82744D14DFEF7CE6B4" }, { "id": "cert ", - "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "INFO", "finding": "-----BEGIN CERTIFICATE-----\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\n-----END CERTIFICATE-----" }, { "id": "cert_commonName ", - "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "OK", "finding": "coop.conseiller-numerique.gouv.fr" }, { "id": "cert_commonName_wo_SNI ", - "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "INFO", "finding": "request w/o SNI didn't succeed, usual for EC certificates" }, { "id": "cert_subjectAltName ", - "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "INFO", "finding": "coop.conseiller-numerique.gouv.fr" }, { "id": "cert_trust ", - "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "OK", "finding": "Ok via SAN and CN (SNI mandatory)" }, { "id": "cert_chain_of_trust ", - "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "OK", "finding": "passed." }, { "id": "cert_certificatePolicies_EV ", - "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "INFO", "finding": "no" }, { "id": "cert_expirationStatus ", - "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", - "severity": "OK", - "finding": "66 >= 60 days" + "severity": "MEDIUM", + "finding": "expires < 60 days (59)" }, { "id": "cert_notBefore ", - "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "INFO", "finding": "2024-10-31 20:39" }, { "id": "cert_notAfter ", - "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", - "severity": "OK", + "severity": "MEDIUM", "finding": "2025-01-29 21:39" }, { "id": "cert_extlifeSpan ", - "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "OK", "finding": "certificate has no extended life time according to browser forum" }, { "id": "cert_eTLS ", - "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "INFO", "finding": "not present" }, { "id": "cert_crlDistributionPoints ", - "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "INFO", "finding": "http://c.pki.goog/we1/k9D0LcQcFTo.crl" }, { "id": "cert_ocspURL ", - "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "INFO", "finding": "http://o.pki.goog/s/we1/MA8" }, { "id": "OCSP_stapling ", - "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "OK", "finding": "offered" }, { "id": "cert_ocspRevoked ", - "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "OK", "finding": "not revoked" }, { "id": "cert_mustStapleExtension ", - "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "INFO", "finding": "--" }, { "id": "DNS_CAArecord ", - "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "LOW", "finding": "--" }, { "id": "certificate_transparency ", - "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "OK", "finding": "yes (certificate extension)" }, { "id": "certs_countServer ", - "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "INFO", "finding": "3" }, { "id": "certs_list_ordering_problem ", - "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "INFO", "finding": "no" }, { "id": "cert_caIssuers ", - "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "INFO", "finding": "WE1 (Google Trust Services from US)" }, { "id": "intermediate_cert <#1> ", - "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "INFO", "finding": "-----BEGIN CERTIFICATE-----\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\n-----END CERTIFICATE-----" }, { "id": "intermediate_cert_fingerprintSHA256 <#1> ", - "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "INFO", "finding": "1DFC1605FBAD358D8BC844F76D15203FAC9CA5C1A79FD4857FFAF2864FBEBF96" }, { "id": "intermediate_cert_notBefore <#1> ", - "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "INFO", "finding": "2023-12-13 09:00" }, { "id": "intermediate_cert_notAfter <#1> ", - "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "OK", "finding": "2029-02-20 14:00" }, { "id": "intermediate_cert_expiration <#1> ", - "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "OK", "finding": "ok > 40 days" }, { "id": "intermediate_cert_chain <#1> ", - "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "INFO", "finding": "WE1 <-- GTS Root R4" }, { "id": "intermediate_cert <#2> ", - "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "INFO", "finding": "-----BEGIN CERTIFICATE-----\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\n-----END CERTIFICATE-----" }, { "id": "intermediate_cert_fingerprintSHA256 <#2> ", - "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "INFO", "finding": "76B27B80A58027DC3CF1DA68DAC17010ED93997D0B603E2FADBE85012493B5A7" }, { "id": "intermediate_cert_notBefore <#2> ", - "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "INFO", "finding": "2023-11-15 03:43" }, { "id": "intermediate_cert_notAfter <#2> ", - "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "OK", "finding": "2028-01-28 00:00" }, { "id": "intermediate_cert_expiration <#2> ", - "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "OK", "finding": "ok > 40 days" }, { "id": "intermediate_cert_chain <#2> ", - "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "INFO", "finding": "GTS Root R4 <-- GlobalSign Root CA" }, { "id": "intermediate_cert_badOCSP ", - "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "OK", "finding": "intermediate certificate(s) is/are ok" }, { "id": "HTTP_status_code", - "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "INFO", "finding": "301 Moved Permanently ('/')" }, { "id": "HTTP_clock_skew", - "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "INFO", "finding": "0 seconds from localtime" }, { "id": "HTTP_headerTime", - "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "INFO", - "finding": "1732411688" + "finding": "1733017002" }, { "id": "HSTS", - "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "LOW", "finding": "not offered" }, { "id": "HPKP", - "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "INFO", "finding": "No support for HTTP Public Key Pinning" }, { "id": "banner_server", - "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "INFO", - "finding": "cloudflareserver-timing: cfL4;desc='?proto=TCP&rtt=1526&sent=4&recv=6&lost=0&retrans=0&sent_bytes=3026&recv_bytes=761&delivery_rate=2191864&cwnd=252&unsent_bytes=0&cid=d3a56abef31a2865&ts=11&x=0'" + "finding": "cloudflareserver-timing: cfL4;desc='?proto=TCP&rtt=8572&min_rtt=8527&rtt_var=2430&sent=4&recv=6&lost=0&retrans=0&sent_bytes=3025&recv_bytes=761&delivery_rate=334936&cwnd=253&unsent_bytes=0&cid=315e9f46614620f1&ts=28&x=0'" }, { "id": "banner_application", - "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "INFO", "finding": "No application banner found" }, { "id": "cookie_count", - "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "INFO", "finding": "0 at '/' (30x detected, better try target URL of 30x)" }, { "id": "Cache-Control", - "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "INFO", "finding": "max-age=3600" }, { "id": "banner_reverseproxy", - "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "INFO", "cwe": "CWE-200", @@ -21113,7 +19656,7 @@ }, { "id": "heartbleed", - "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "OK", "cve": "CVE-2014-0160", @@ -21122,7 +19665,7 @@ }, { "id": "CCS", - "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "OK", "cve": "CVE-2014-0224", @@ -21131,7 +19674,7 @@ }, { "id": "ticketbleed", - "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "OK", "cve": "CVE-2016-9244", @@ -21140,7 +19683,7 @@ }, { "id": "ROBOT", - "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "OK", "cve": "CVE-2017-17382 CVE-2017-17427 CVE-2017-17428 CVE-2017-13098 CVE-2017-1000385 CVE-2017-13099 CVE-2016-6883 CVE-2012-5081 CVE-2017-6168", @@ -21149,7 +19692,7 @@ }, { "id": "secure_renego", - "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "OK", "cwe": "CWE-310", @@ -21157,7 +19700,7 @@ }, { "id": "secure_client_renego", - "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "OK", "cve": "CVE-2011-1473", @@ -21166,7 +19709,7 @@ }, { "id": "CRIME_TLS", - "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "OK", "cve": "CVE-2012-4929", @@ -21175,7 +19718,7 @@ }, { "id": "BREACH", - "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "OK", "cve": "CVE-2013-3587", @@ -21184,7 +19727,7 @@ }, { "id": "POODLE_SSL", - "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "OK", "cve": "CVE-2014-3566", @@ -21193,14 +19736,14 @@ }, { "id": "fallback_SCSV", - "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "OK", "finding": "supported" }, { "id": "SWEET32", - "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "LOW", "cve": "CVE-2016-2183 CVE-2016-6329", @@ -21209,7 +19752,7 @@ }, { "id": "FREAK", - "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "OK", "cve": "CVE-2015-0204", @@ -21218,7 +19761,7 @@ }, { "id": "DROWN", - "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "OK", "cve": "CVE-2016-0800 CVE-2016-0703", @@ -21227,7 +19770,7 @@ }, { "id": "DROWN_hint", - "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "INFO", "cve": "CVE-2016-0800 CVE-2016-0703", @@ -21236,7 +19779,7 @@ }, { "id": "LOGJAM", - "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "OK", "cve": "CVE-2015-4000", @@ -21245,7 +19788,7 @@ }, { "id": "LOGJAM-common_primes", - "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "OK", "cve": "CVE-2015-4000", @@ -21254,7 +19797,7 @@ }, { "id": "BEAST_CBC_TLS1", - "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "MEDIUM", "cve": "CVE-2011-3389", @@ -21263,7 +19806,7 @@ }, { "id": "BEAST", - "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "LOW", "cve": "CVE-2011-3389", @@ -21272,7 +19815,7 @@ }, { "id": "LUCKY13", - "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "LOW", "cve": "CVE-2013-0169", @@ -21281,7 +19824,7 @@ }, { "id": "winshock", - "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "OK", "cve": "CVE-2014-6321", @@ -21290,7 +19833,7 @@ }, { "id": "RC4", - "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "OK", "cve": "CVE-2013-2566 CVE-2015-2808", @@ -21299,346 +19842,346 @@ }, { "id": "clientsimulation-android_60", - "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "INFO", "finding": "TLSv1.2 ECDHE-ECDSA-AES128-GCM-SHA256" }, { "id": "clientsimulation-android_70", - "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "INFO", "finding": "TLSv1.2 ECDHE-ECDSA-AES128-GCM-SHA256" }, { "id": "clientsimulation-android_81", - "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "INFO", "finding": "TLSv1.2 ECDHE-ECDSA-AES128-GCM-SHA256" }, { "id": "clientsimulation-android_90", - "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "INFO", "finding": "TLSv1.3 TLS_AES_128_GCM_SHA256" }, { "id": "clientsimulation-android_X", - "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "INFO", "finding": "TLSv1.3 TLS_AES_128_GCM_SHA256" }, { "id": "clientsimulation-android_11", - "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "INFO", "finding": "TLSv1.3 TLS_AES_128_GCM_SHA256" }, { "id": "clientsimulation-android_12", - "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "INFO", "finding": "TLSv1.3 TLS_AES_128_GCM_SHA256" }, { "id": "clientsimulation-chrome_79_win10", - "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "INFO", "finding": "TLSv1.3 TLS_AES_128_GCM_SHA256" }, { "id": "clientsimulation-chrome_101_win10", - "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "INFO", "finding": "TLSv1.3 TLS_AES_128_GCM_SHA256" }, { "id": "clientsimulation-firefox_66_win81", - "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "INFO", "finding": "TLSv1.3 TLS_AES_128_GCM_SHA256" }, { "id": "clientsimulation-firefox_100_win10", - "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "INFO", "finding": "TLSv1.3 TLS_AES_128_GCM_SHA256" }, { "id": "clientsimulation-ie_6_xp", - "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "INFO", "finding": "No connection" }, { "id": "clientsimulation-ie_8_win7", - "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "INFO", "finding": "TLSv1.0 ECDHE-RSA-AES128-SHA" }, { "id": "clientsimulation-ie_8_xp", - "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "INFO", "finding": "No connection" }, { "id": "clientsimulation-ie_11_win7", - "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "INFO", "finding": "TLSv1.2 ECDHE-ECDSA-AES128-GCM-SHA256" }, { "id": "clientsimulation-ie_11_win81", - "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "INFO", "finding": "TLSv1.2 ECDHE-ECDSA-AES128-GCM-SHA256" }, { "id": "clientsimulation-ie_11_winphone81", - "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "INFO", "finding": "TLSv1.2 ECDHE-ECDSA-AES128-GCM-SHA256" }, { "id": "clientsimulation-ie_11_win10", - "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "INFO", "finding": "TLSv1.2 ECDHE-ECDSA-AES128-GCM-SHA256" }, { "id": "clientsimulation-edge_15_win10", - "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "INFO", "finding": "TLSv1.2 ECDHE-ECDSA-AES128-GCM-SHA256" }, { "id": "clientsimulation-edge_101_win10_21h2", - "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "INFO", "finding": "TLSv1.3 TLS_AES_128_GCM_SHA256" }, { "id": "clientsimulation-safari_121_ios_122", - "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "INFO", "finding": "TLSv1.3 TLS_CHACHA20_POLY1305_SHA256" }, { "id": "clientsimulation-safari_130_osx_10146", - "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "INFO", "finding": "TLSv1.3 TLS_CHACHA20_POLY1305_SHA256" }, { "id": "clientsimulation-safari_154_osx_1231", - "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "INFO", "finding": "TLSv1.3 TLS_AES_128_GCM_SHA256" }, { "id": "clientsimulation-java_7u25", - "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "INFO", "finding": "TLSv1.0 ECDHE-RSA-AES128-SHA" }, { "id": "clientsimulation-java_8u161", - "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "INFO", "finding": "TLSv1.2 ECDHE-ECDSA-AES128-GCM-SHA256" }, { "id": "clientsimulation-java1102", - "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "INFO", "finding": "TLSv1.3 TLS_AES_128_GCM_SHA256" }, { "id": "clientsimulation-java1703", - "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "INFO", "finding": "TLSv1.3 TLS_AES_256_GCM_SHA384" }, { "id": "clientsimulation-go_1178", - "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "INFO", "finding": "TLSv1.3 TLS_AES_128_GCM_SHA256" }, { "id": "clientsimulation-libressl_283", - "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "INFO", "finding": "TLSv1.2 ECDHE-ECDSA-CHACHA20-POLY1305" }, { "id": "clientsimulation-openssl_102e", - "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "INFO", "finding": "TLSv1.2 ECDHE-ECDSA-AES128-GCM-SHA256" }, { "id": "clientsimulation-openssl_110l", - "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "INFO", "finding": "TLSv1.2 ECDHE-ECDSA-CHACHA20-POLY1305" }, { "id": "clientsimulation-openssl_111d", - "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "INFO", "finding": "TLSv1.3 TLS_AES_256_GCM_SHA384" }, { "id": "clientsimulation-openssl_303", - "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "INFO", "finding": "TLSv1.3 TLS_AES_256_GCM_SHA384" }, { "id": "clientsimulation-apple_mail_16_0", - "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "INFO", "finding": "TLSv1.2 ECDHE-ECDSA-AES128-GCM-SHA256" }, { "id": "clientsimulation-thunderbird_91_9", - "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "INFO", "finding": "TLSv1.3 TLS_AES_128_GCM_SHA256" }, { "id": "rating_spec", - "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "INFO", "finding": "SSL Labs's 'SSL Server Rating Guide' (version 2009q from 2020-01-30)" }, { "id": "rating_doc", - "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "INFO", "finding": "https://github.com/ssllabs/research/wiki/SSL-Server-Rating-Guide" }, { "id": "protocol_support_score", - "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "INFO", "finding": "95" }, { "id": "protocol_support_score_weighted", - "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "INFO", "finding": "28" }, { "id": "key_exchange_score", - "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "INFO", "finding": "90" }, { "id": "key_exchange_score_weighted", - "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "INFO", "finding": "27" }, { "id": "cipher_strength_score", - "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "INFO", "finding": "60" }, { "id": "cipher_strength_score_weighted", - "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "INFO", "finding": "24" }, { "id": "final_score", - "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "INFO", "finding": "79" }, { "id": "overall_grade", - "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "MEDIUM", "finding": "B" }, { "id": "grade_cap_reason_1", - "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "INFO", "finding": "Grade capped to B. TLS 1.1 offered" }, { "id": "grade_cap_reason_2", - "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "INFO", "finding": "Grade capped to B. TLS 1.0 offered" }, { "id": "grade_cap_reason_3", - "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "INFO", "finding": "Grade capped to A. HSTS is not offered" }, { "id": "scanTime", - "ip": "coop.conseiller-numerique.gouv.fr/172.67.144.206", + "ip": "coop.conseiller-numerique.gouv.fr/104.21.71.120", "port": "443", "severity": "INFO", - "finding": "114" + "finding": "121" } ], "thirdparties": { @@ -21658,12 +20201,12 @@ "content-encoding": "gzip", "content-security-policy": "default-src 'self' https://matomo.incubateur.anct.gouv.fr https://sentry.incubateur.net; script-src 'self' https://matomo.incubateur.anct.gouv.fr 'unsafe-inline' 'unsafe-eval'; script-src-attr 'none'; style-src 'self' https: 'unsafe-inline'; img-src 'self' data:; frame-src https://www.youtube-nocookie.com/; object-src 'none'; connect-src 'self' https://coop-mediation-numerique-uploads-main.s3.fr-par.scw.cloud https://auth.agentconnect.gouv.fr https://matomo.incubateur.anct.gouv.fr https://sentry.incubateur.net https://openmaptiles.geo.data.gouv.fr https://openmaptiles.github.io https://aides-territoires.beta.gouv.fr https://recherche-entreprises.api.gouv.fr https://api-adresse.data.gouv.fr; worker-src 'self' blob:; font-src 'self' https: data:; frame-ancestors 'self' https://matomo.incubateur.anct.gouv.fr; form-action 'self'; base-uri 'self'; upgrade-insecure-requests true;", "content-type": "text/html; charset=utf-8", - "date": "Sun, 24 Nov 2024 01:26:40 GMT", + "date": "Sun, 01 Dec 2024 01:35:06 GMT", "server": "envoy", "strict-transport-security": "max-age=63072000", "vary": "RSC, Next-Router-State-Tree, Next-Router-Prefetch, Accept-Encoding", "x-content-type-options": "nosniff", - "x-envoy-upstream-service-time": "64", + "x-envoy-upstream-service-time": "101", "x-frame-options": "DENY", "x-powered-by": "Next.js", "x-xss-protection": "1; mode=block" @@ -21691,19 +20234,19 @@ }, { "hostname": "cdn.jsdelivr.net", - "ip": "146.75.29.229", + "ip": "146.75.93.229", "geoip": { "city": { - "geoname_id": 4744870, + "geoname_id": 5368361, "names": { - "de": "Ashburn", - "en": "Ashburn", - "es": "Ashburn", - "fr": "Ashburn", - "ja": "アッシュバーン", - "pt-BR": "Ashburn", - "ru": "Ашберн", - "zh-CN": "阿什本" + "de": "Los Angeles", + "en": "Los Angeles", + "es": "Los Ángeles", + "fr": "Los Angeles", + "ja": "ロサンゼルス", + "pt-BR": "Los Angeles", + "ru": "Лос-Анджелес", + "zh-CN": "洛杉矶" } }, "continent": { @@ -21736,13 +20279,13 @@ }, "location": { "accuracy_radius": 20, - "latitude": 39.0469, - "longitude": -77.4903, - "metro_code": 511, - "time_zone": "America/New_York" + "latitude": 34.0544, + "longitude": -118.2441, + "metro_code": 803, + "time_zone": "America/Los_Angeles" }, "postal": { - "code": "20149" + "code": "90060" }, "registered_country": { "geoname_id": 6252001, @@ -21760,17 +20303,17 @@ }, "subdivisions": [ { - "geoname_id": 6254928, - "iso_code": "VA", + "geoname_id": 5332921, + "iso_code": "CA", "names": { - "de": "Virginia", - "en": "Virginia", - "es": "Virginia", - "fr": "Virginie", - "ja": "バージニア州", - "pt-BR": "Virgínia", - "ru": "Вирджиния", - "zh-CN": "弗吉尼亚州" + "de": "Kalifornien", + "en": "California", + "es": "California", + "fr": "Californie", + "ja": "カリフォルニア州", + "pt-BR": "Califórnia", + "ru": "Калифорния", + "zh-CN": "加州" } } ] @@ -21858,7 +20401,7 @@ "type": "dns", "host": "coop.conseiller-numerique.gouv.fr.", "matched-at": "coop.conseiller-numerique.gouv.fr", - "timestamp": "2024-11-24T01:29:23.115055752Z", + "timestamp": "2024-12-01T01:38:01.607672982Z", "matcher-status": true }, { @@ -21884,8 +20427,8 @@ "type": "http", "host": "https://coop.conseiller-numerique.gouv.fr", "matched-at": "https://coop.conseiller-numerique.gouv.fr", - "ip": "172.67.144.206", - "timestamp": "2024-11-24T01:29:51.27111774Z", + "ip": "104.21.71.120", + "timestamp": "2024-12-01T01:38:29.804255233Z", "curl-command": "curl -X 'GET' -H 'Accept: */*' -H 'Accept-Language: en' -H 'User-Agent: Nuclei - Open-source project (github.com/projectdiscovery/nuclei)' 'https://coop.conseiller-numerique.gouv.fr'", "matcher-status": true }, @@ -21924,8 +20467,8 @@ "type": "http", "host": "https://coop.conseiller-numerique.gouv.fr", "matched-at": "https://coop.conseiller-numerique.gouv.fr/", - "ip": "172.67.144.206", - "timestamp": "2024-11-24T01:30:13.204926254Z", + "ip": "104.21.71.120", + "timestamp": "2024-12-01T01:38:51.76812145Z", "curl-command": "curl -X 'POST' -d '_=' -H 'Content-Type: application/x-www-form-urlencoded' -H 'Host: coop.conseiller-numerique.gouv.fr' -H 'User-Agent: Nuclei - Open-source project (github.com/projectdiscovery/nuclei)' 'https://coop.conseiller-numerique.gouv.fr/'", "matcher-status": true }, @@ -21955,8 +20498,8 @@ "extracted-results": [ "Google Trust Services" ], - "ip": "172.67.144.206", - "timestamp": "2024-11-24T01:32:59.38631612Z", + "ip": "104.21.71.120", + "timestamp": "2024-12-01T01:41:37.848674974Z", "matcher-status": true }, { @@ -21985,8 +20528,8 @@ "extracted-results": [ "coop.conseiller-numerique.gouv.fr" ], - "ip": "172.67.144.206", - "timestamp": "2024-11-24T01:32:59.386433679Z", + "ip": "104.21.71.120", + "timestamp": "2024-12-01T01:41:37.848826377Z", "matcher-status": true }, { @@ -22022,8 +20565,8 @@ "extracted-results": [ "tls11" ], - "ip": "172.67.144.206", - "timestamp": "2024-11-24T01:32:59.397507811Z", + "ip": "104.21.71.120", + "timestamp": "2024-12-01T01:41:38.103561847Z", "matcher-status": true }, { @@ -22059,8 +20602,8 @@ "extracted-results": [ "tls10" ], - "ip": "172.67.144.206", - "timestamp": "2024-11-24T01:32:59.434531352Z", + "ip": "104.21.71.120", + "timestamp": "2024-12-01T01:41:38.195815855Z", "matcher-status": true }, { @@ -22090,8 +20633,8 @@ "extracted-results": [ "tls10" ], - "ip": "172.67.144.206", - "timestamp": "2024-11-24T01:32:59.48115211Z", + "ip": "104.21.71.120", + "timestamp": "2024-12-01T01:41:38.331159696Z", "matcher-status": true }, { @@ -22121,75 +20664,75 @@ "extracted-results": [ "tls11" ], - "ip": "172.67.144.206", - "timestamp": "2024-11-24T01:32:59.517437644Z", + "ip": "104.21.71.120", + "timestamp": "2024-12-01T01:41:38.423846242Z", "matcher-status": true }, { - "template": "ssl/weak-cipher-suites.yaml", - "template-url": "https://templates.nuclei.sh/public/weak-cipher-suites", - "template-id": "weak-cipher-suites", - "template-path": "/home/runner/nuclei-templates/ssl/weak-cipher-suites.yaml", + "template": "ssl/tls-version.yaml", + "template-url": "https://templates.nuclei.sh/public/tls-version", + "template-id": "tls-version", + "template-path": "/home/runner/nuclei-templates/ssl/tls-version.yaml", "info": { - "name": "Weak Cipher Suites Detection", + "name": "TLS Version - Detect", "author": [ + "pdteam", "pussycat0x" ], "tags": [ "ssl", - "tls", - "misconfig" - ], - "description": "A weak cipher is defined as an encryption/decryption algorithm that uses a key of insufficient length. Using an insufficient length for a key in an encryption/decryption algorithm opens up the possibility (or probability) that the encryption scheme could be broken.", - "reference": [ - "https://www.acunetix.com/vulnerabilities/web/tls-ssl-weak-cipher-suites/", - "http://ciphersuite.info" + "tls" ], - "severity": "low", + "description": "TLS version detection is a security process used to determine the version of the Transport Layer Security (TLS) protocol used by a computer or server.\nIt is important to detect the TLS version in order to ensure secure communication between two computers or servers.\n", + "severity": "info", "metadata": { "max-request": 4 } }, - "matcher-name": "tls-1.0", "type": "ssl", "host": "coop.conseiller-numerique.gouv.fr", "matched-at": "coop.conseiller-numerique.gouv.fr:443", "extracted-results": [ - "[tls10 TLS_ECDHE_RSA_WITH_AES_128_CBC_SHA]" + "tls12" ], - "ip": "172.67.144.206", - "timestamp": "2024-11-24T01:32:59.548354387Z", + "ip": "104.21.71.120", + "timestamp": "2024-12-01T01:41:38.511942374Z", "matcher-status": true }, { - "template": "ssl/tls-version.yaml", - "template-url": "https://templates.nuclei.sh/public/tls-version", - "template-id": "tls-version", - "template-path": "/home/runner/nuclei-templates/ssl/tls-version.yaml", + "template": "ssl/weak-cipher-suites.yaml", + "template-url": "https://templates.nuclei.sh/public/weak-cipher-suites", + "template-id": "weak-cipher-suites", + "template-path": "/home/runner/nuclei-templates/ssl/weak-cipher-suites.yaml", "info": { - "name": "TLS Version - Detect", + "name": "Weak Cipher Suites Detection", "author": [ - "pdteam", "pussycat0x" ], "tags": [ "ssl", - "tls" + "tls", + "misconfig" ], - "description": "TLS version detection is a security process used to determine the version of the Transport Layer Security (TLS) protocol used by a computer or server.\nIt is important to detect the TLS version in order to ensure secure communication between two computers or servers.\n", - "severity": "info", + "description": "A weak cipher is defined as an encryption/decryption algorithm that uses a key of insufficient length. Using an insufficient length for a key in an encryption/decryption algorithm opens up the possibility (or probability) that the encryption scheme could be broken.", + "reference": [ + "https://www.acunetix.com/vulnerabilities/web/tls-ssl-weak-cipher-suites/", + "http://ciphersuite.info" + ], + "severity": "low", "metadata": { "max-request": 4 } }, + "matcher-name": "tls-1.0", "type": "ssl", "host": "coop.conseiller-numerique.gouv.fr", "matched-at": "coop.conseiller-numerique.gouv.fr:443", "extracted-results": [ - "tls12" + "[tls10 TLS_ECDHE_RSA_WITH_AES_128_CBC_SHA]" ], - "ip": "172.67.144.206", - "timestamp": "2024-11-24T01:32:59.548774868Z", + "ip": "104.21.71.120", + "timestamp": "2024-12-01T01:41:38.56085995Z", "matcher-status": true }, { @@ -22219,8 +20762,8 @@ "extracted-results": [ "tls13" ], - "ip": "172.67.144.206", - "timestamp": "2024-11-24T01:32:59.577259285Z", + "ip": "104.21.71.120", + "timestamp": "2024-12-01T01:41:38.593488473Z", "matcher-status": true }, { @@ -22255,8 +20798,8 @@ "extracted-results": [ "[tls11 TLS_ECDHE_RSA_WITH_AES_128_CBC_SHA]" ], - "ip": "172.67.144.206", - "timestamp": "2024-11-24T01:32:59.580732015Z", + "ip": "104.21.71.120", + "timestamp": "2024-12-01T01:41:38.65383864Z", "matcher-status": true } ], @@ -22264,7 +20807,7 @@ { "requestedUrl": "https://coop.conseiller-numerique.gouv.fr/", "finalUrl": "https://coop-numerique.anct.gouv.fr/migration", - "fetchTime": "2024-11-24T01:26:16.339Z", + "fetchTime": "2024-12-01T01:34:42.445Z", "runWarnings": [ "The page may not be loading as expected because your test URL (https://coop.conseiller-numerique.gouv.fr/) was redirected to https://coop-numerique.anct.gouv.fr/migration. Try testing the second URL directly." ], @@ -22277,7 +20820,7 @@ "snapshot" ], "id": "performance", - "score": 0.64 + "score": 0.65 }, "accessibility": { "title": "Accessibility", @@ -22329,53 +20872,53 @@ "description": "Collects all available metrics.", "score": null, "scoreDisplayMode": "informative", - "numericValue": 5396, + "numericValue": 5490, "numericUnit": "millisecond", "details": { "type": "debugdata", "items": [ { - "firstContentfulPaint": 3400, - "firstMeaningfulPaint": 3400, - "largestContentfulPaint": 5518, - "interactive": 5396, - "speedIndex": 3636, - "totalBlockingTime": 248, - "maxPotentialFID": 357, + "firstContentfulPaint": 3932, + "firstMeaningfulPaint": 3932, + "largestContentfulPaint": 5845, + "interactive": 5490, + "speedIndex": 4447, + "totalBlockingTime": 115, + "maxPotentialFID": 230, "cumulativeLayoutShift": 0, "cumulativeLayoutShiftMainFrame": 0, "totalCumulativeLayoutShift": 0, "observedTimeOrigin": 0, - "observedTimeOriginTs": 354310981, + "observedTimeOriginTs": 383197430, "observedNavigationStart": 0, - "observedNavigationStartTs": 354310981, - "observedFirstPaint": 1189, - "observedFirstPaintTs": 355500272, - "observedFirstContentfulPaint": 1189, - "observedFirstContentfulPaintTs": 355500272, - "observedFirstContentfulPaintAllFrames": 1189, - "observedFirstContentfulPaintAllFramesTs": 355500272, - "observedFirstMeaningfulPaint": 1189, - "observedFirstMeaningfulPaintTs": 355500272, - "observedLargestContentfulPaint": 1189, - "observedLargestContentfulPaintTs": 355500272, - "observedLargestContentfulPaintAllFrames": 1189, - "observedLargestContentfulPaintAllFramesTs": 355500272, - "observedTraceEnd": 4751, - "observedTraceEndTs": 359062153, - "observedLoad": 1199, - "observedLoadTs": 355510083, - "observedDomContentLoaded": 1199, - "observedDomContentLoadedTs": 355509780, + "observedNavigationStartTs": 383197430, + "observedFirstPaint": 1518, + "observedFirstPaintTs": 384715450, + "observedFirstContentfulPaint": 1518, + "observedFirstContentfulPaintTs": 384715450, + "observedFirstContentfulPaintAllFrames": 1518, + "observedFirstContentfulPaintAllFramesTs": 384715450, + "observedFirstMeaningfulPaint": 1518, + "observedFirstMeaningfulPaintTs": 384715450, + "observedLargestContentfulPaint": 1518, + "observedLargestContentfulPaintTs": 384715450, + "observedLargestContentfulPaintAllFrames": 1518, + "observedLargestContentfulPaintAllFramesTs": 384715450, + "observedTraceEnd": 5197, + "observedTraceEndTs": 388393974, + "observedLoad": 1522, + "observedLoadTs": 384719522, + "observedDomContentLoaded": 1522, + "observedDomContentLoadedTs": 384719203, "observedCumulativeLayoutShift": 0, "observedCumulativeLayoutShiftMainFrame": 0, "observedTotalCumulativeLayoutShift": 0, - "observedFirstVisualChange": 1191, - "observedFirstVisualChangeTs": 355501981, - "observedLastVisualChange": 1391, - "observedLastVisualChangeTs": 355701981, - "observedSpeedIndex": 1197, - "observedSpeedIndexTs": 355508446 + "observedFirstVisualChange": 1520, + "observedFirstVisualChangeTs": 384717430, + "observedLastVisualChange": 1820, + "observedLastVisualChangeTs": 385017430, + "observedSpeedIndex": 1530, + "observedSpeedIndexTs": 384726944 }, { "lcpInvalidated": false @@ -22393,23 +20936,23 @@ "type": "debugdata", "items": [ { - "numRequests": 34, - "numScripts": 17, + "numRequests": 38, + "numScripts": 21, "numStylesheets": 4, "numFonts": 3, - "numTasks": 966, - "numTasksOver10ms": 4, - "numTasksOver25ms": 2, - "numTasksOver50ms": 2, + "numTasks": 1014, + "numTasksOver10ms": 2, + "numTasksOver25ms": 1, + "numTasksOver50ms": 1, "numTasksOver100ms": 0, "numTasksOver500ms": 0, - "rtt": 2.1189999999999998, - "throughput": 8805905.359518709, - "maxRtt": 87.47699999999999, - "maxServerLatency": 213.192, - "totalByteWeight": 615386, - "totalTaskTime": 323.4059999999982, - "mainDocumentTransferSize": 7503 + "rtt": 16.754, + "throughput": 5752148.134159505, + "maxRtt": 143.906, + "maxServerLatency": 397.45799999999997, + "totalByteWeight": 663229, + "totalTaskTime": 245.81799999999922, + "mainDocumentTransferSize": 7627 } ] } @@ -22435,15 +20978,15 @@ "width": 1920, "height": 1080, "url": "https://coop.conseiller-numerique.gouv.fr", - "size": 662.322, - "nodes": 71, - "requests": 35, + "size": 710.111, + "nodes": 75, + "requests": 39, "grade": "A", - "score": 84, - "ges": 1.32, - "water": 1.98, + "score": 83, + "ges": 1.34, + "water": 2.01, "ecoindex_version": "5.4.2", - "date": "2024-11-24 01:23:13.746481", + "date": "2024-12-01 01:31:53.434922", "page_type": null } ], @@ -22463,7 +21006,7 @@ "cookiesCount": 0, "trackersGrade": "B", "trackersCount": 1, - "lighthouse_performance": 0.64, + "lighthouse_performance": 0.65, "lighthouse_performanceGrade": "C", "lighthouse_accessibility": 1, "lighthouse_accessibilityGrade": "A", @@ -30153,77 +28696,77 @@ "testssl": [ { "id": "service", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.20", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.78", "port": "443", "severity": "INFO", "finding": "HTTP" }, { "id": "pre_128cipher", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.20", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.78", "port": "443", "severity": "INFO", "finding": "No 128 cipher limit bug" }, { "id": "SSLv2", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.20", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.78", "port": "443", "severity": "OK", "finding": "not offered" }, { "id": "SSLv3", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.20", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.78", "port": "443", "severity": "OK", "finding": "not offered" }, { "id": "TLS1", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.20", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.78", "port": "443", "severity": "INFO", "finding": "not offered" }, { "id": "TLS1_1", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.20", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.78", "port": "443", "severity": "INFO", "finding": "not offered" }, { "id": "TLS1_2", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.20", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.78", "port": "443", "severity": "OK", "finding": "offered" }, { "id": "TLS1_3", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.20", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.78", "port": "443", "severity": "OK", "finding": "offered with final" }, { "id": "ALPN_HTTP2", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.20", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.78", "port": "443", "severity": "OK", "finding": "h2" }, { "id": "ALPN", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.20", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.78", "port": "443", "severity": "INFO", "finding": "http/1.1" }, { "id": "cipherlist_NULL", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.20", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.78", "port": "443", "severity": "OK", "cwe": "CWE-327", @@ -30231,7 +28774,7 @@ }, { "id": "cipherlist_aNULL", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.20", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.78", "port": "443", "severity": "OK", "cwe": "CWE-327", @@ -30239,7 +28782,7 @@ }, { "id": "cipherlist_EXPORT", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.20", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.78", "port": "443", "severity": "OK", "cwe": "CWE-327", @@ -30247,7 +28790,7 @@ }, { "id": "cipherlist_LOW", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.20", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.78", "port": "443", "severity": "OK", "cwe": "CWE-327", @@ -30255,7 +28798,7 @@ }, { "id": "cipherlist_3DES_IDEA", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.20", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.78", "port": "443", "severity": "INFO", "cwe": "CWE-310", @@ -30263,7 +28806,7 @@ }, { "id": "cipherlist_OBSOLETED", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.20", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.78", "port": "443", "severity": "INFO", "cwe": "CWE-310", @@ -30271,581 +28814,581 @@ }, { "id": "cipherlist_STRONG_NOFS", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.20", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.78", "port": "443", "severity": "INFO", "finding": "not offered" }, { "id": "cipherlist_STRONG_FS", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.20", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.78", "port": "443", "severity": "OK", "finding": "offered" }, { "id": "cipher_order-tls1_2", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.20", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.78", "port": "443", "severity": "OK", "finding": "server" }, { "id": "cipherorder_TLSv1_2", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.20", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.78", "port": "443", "severity": "INFO", "finding": "ECDHE-RSA-AES128-GCM-SHA256" }, { "id": "cipher_order", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.20", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.78", "port": "443", "severity": "OK", "finding": "server" }, { "id": "FS", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.20", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.78", "port": "443", "severity": "OK", "finding": "offered" }, { "id": "FS_ciphers", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.20", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.78", "port": "443", "severity": "INFO", "finding": "ECDHE-RSA-AES128-GCM-SHA256 ECDHE-RSA-AES256-GCM-SHA384" }, { "id": "FS_ECDHE_curves", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.20", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.78", "port": "443", "severity": "OK", "finding": "prime256v1 secp384r1" }, { "id": "TLS_extensions", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.20", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.78", "port": "443", "severity": "INFO", "finding": "'server name/#0' 'EC point formats/#11' 'renegotiation info/#65281' 'session ticket/#35' 'supported versions/#43' 'key share/#51' 'status request/#5' 'application layer protocol negotiation/#16' 'extended master secret/#23'" }, { "id": "TLS_session_ticket", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.20", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.78", "port": "443", "severity": "INFO", "finding": "valid for 86400 seconds only (= 60 days" + "finding": "210 >= 60 days" }, { "id": "cert_notBefore", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.20", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.78", "port": "443", "severity": "INFO", "finding": "2024-05-30 00:00" }, { "id": "cert_notAfter", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.20", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.78", "port": "443", "severity": "OK", "finding": "2025-06-29 23:59" }, { "id": "cert_extlifeSpan", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.20", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.78", "port": "443", "severity": "OK", "finding": "certificate has no extended life time according to browser forum" }, { "id": "cert_eTLS", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.20", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.78", "port": "443", "severity": "INFO", "finding": "not present" }, { "id": "cert_crlDistributionPoints", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.20", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.78", "port": "443", "severity": "INFO", "finding": "http://crl.r2m03.amazontrust.com/r2m03.crl" }, { "id": "cert_ocspURL", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.20", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.78", "port": "443", "severity": "INFO", "finding": "http://ocsp.r2m03.amazontrust.com" }, { "id": "OCSP_stapling", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.20", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.78", "port": "443", "severity": "LOW", "finding": "not offered" }, { "id": "cert_mustStapleExtension", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.20", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.78", "port": "443", "severity": "INFO", "finding": "--" }, { "id": "DNS_CAArecord", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.20", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.78", "port": "443", "severity": "LOW", "finding": "--" }, { "id": "certificate_transparency", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.20", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.78", "port": "443", "severity": "OK", "finding": "yes (certificate extension)" }, { "id": "certs_countServer", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.20", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.78", "port": "443", "severity": "INFO", "finding": "4" }, { "id": "certs_list_ordering_problem", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.20", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.78", "port": "443", "severity": "INFO", "finding": "no" }, { "id": "cert_caIssuers", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.20", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.78", "port": "443", "severity": "INFO", "finding": "Amazon RSA 2048 M03 (Amazon from US)" }, { "id": "intermediate_cert <#1>", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.20", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.78", "port": "443", "severity": "INFO", "finding": "-----BEGIN CERTIFICATE-----\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\n-----END CERTIFICATE-----" }, { "id": "intermediate_cert_fingerprintSHA256 <#1>", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.20", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.78", "port": "443", "severity": "INFO", "finding": "BF8A69027BCC8D2D42A6E6D25BDD4873F6A34B8F90EDF07E86C5D6916DA0B933" }, { "id": "intermediate_cert_notBefore <#1>", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.20", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.78", "port": "443", "severity": "INFO", "finding": "2022-08-23 22:26" }, { "id": "intermediate_cert_notAfter <#1>", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.20", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.78", "port": "443", "severity": "OK", "finding": "2030-08-23 22:26" }, { "id": "intermediate_cert_expiration <#1>", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.20", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.78", "port": "443", "severity": "OK", "finding": "ok > 40 days" }, { "id": "intermediate_cert_chain <#1>", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.20", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.78", "port": "443", "severity": "INFO", "finding": "Amazon RSA 2048 M03 <-- Amazon Root CA 1" }, { "id": "intermediate_cert <#2>", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.20", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.78", "port": "443", "severity": "INFO", "finding": "-----BEGIN CERTIFICATE-----\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\n-----END CERTIFICATE-----" }, { "id": "intermediate_cert_fingerprintSHA256 <#2>", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.20", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.78", "port": "443", "severity": "INFO", "finding": "87DCD4DC74640A322CD205552506D1BE64F12596258096544986B4850BC72706" }, { "id": "intermediate_cert_notBefore <#2>", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.20", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.78", "port": "443", "severity": "INFO", "finding": "2015-05-25 12:00" }, { "id": "intermediate_cert_notAfter <#2>", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.20", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.78", "port": "443", "severity": "OK", "finding": "2037-12-31 01:00" }, { "id": "intermediate_cert_expiration <#2>", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.20", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.78", "port": "443", "severity": "OK", "finding": "ok > 40 days" }, { "id": "intermediate_cert_chain <#2>", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.20", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.78", "port": "443", "severity": "INFO", "finding": "Amazon Root CA 1 <-- Starfield Services Root Certificate Authority - G2" }, { "id": "intermediate_cert <#3>", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.20", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.78", "port": "443", "severity": "INFO", "finding": "-----BEGIN CERTIFICATE-----\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\n-----END CERTIFICATE-----" }, { "id": "intermediate_cert_fingerprintSHA256 <#3>", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.20", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.78", "port": "443", "severity": "INFO", "finding": "28689B30E4C306AAB53B027B29E36AD6DD1DCF4B953994482CA84BDC1ECAC996" }, { "id": "intermediate_cert_notBefore <#3>", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.20", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.78", "port": "443", "severity": "INFO", "finding": "2009-09-02 00:00" }, { "id": "intermediate_cert_notAfter <#3>", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.20", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.78", "port": "443", "severity": "OK", "finding": "2034-06-28 17:39" }, { "id": "intermediate_cert_expiration <#3>", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.20", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.78", "port": "443", "severity": "OK", "finding": "ok > 40 days" }, { "id": "intermediate_cert_chain <#3>", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.20", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.78", "port": "443", "severity": "INFO", "finding": "Starfield Services Root Certificate Authority - G2 <--" }, { "id": "intermediate_cert_badOCSP", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.20", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.78", "port": "443", "severity": "OK", "finding": "intermediate certificate(s) is/are ok" }, { "id": "HTTP_status_code", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.20", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.78", "port": "443", "severity": "INFO", "finding": "200 OK ('/')" }, { "id": "HTTP_clock_skew", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.20", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.78", "port": "443", "severity": "INFO", "finding": "+1 seconds from localtime" }, { "id": "HTTP_headerTime", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.20", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.78", "port": "443", "severity": "INFO", - "finding": "1732406172" + "finding": "1733017449" }, { "id": "HTTP_headerAge", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.20", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.78", "port": "443", "severity": "INFO", - "finding": "6204 seconds" + "finding": "262 seconds" }, { "id": "HSTS_time", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.20", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.78", "port": "443", "severity": "OK", "finding": "730 days (=63072000 seconds) > 15552000 seconds" }, { "id": "HSTS_subdomains", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.20", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.78", "port": "443", "severity": "OK", "finding": "includes subdomains" }, { "id": "HSTS_preload", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.20", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.78", "port": "443", "severity": "OK", "finding": "domain IS marked for preloading" }, { "id": "HPKP", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.20", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.78", "port": "443", "severity": "INFO", "finding": "No support for HTTP Public Key Pinning" }, { "id": "banner_server", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.20", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.78", "port": "443", "severity": "INFO", "finding": "AmazonS3" }, { "id": "banner_application", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.20", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.78", "port": "443", "severity": "INFO", "finding": "No application banner found" }, { "id": "cookie_count", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.20", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.78", "port": "443", "severity": "INFO", "finding": "0 at '/'" }, { "id": "X-Frame-Options", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.20", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.78", "port": "443", "severity": "OK", "finding": "DENY" }, { "id": "X-Content-Type-Options", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.20", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.78", "port": "443", "severity": "OK", "finding": "nosniff" }, { "id": "Content-Security-Policy", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.20", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.78", "port": "443", "severity": "OK", "finding": "default-src 'self' data: https://*.gouv.fr https://openmaptiles.github.io ; font-src 'self' https://cdn.jsdelivr.net; img-src 'self' data: https://*.gouv.fr; object-src 'none'; script-src 'self' 'unsafe-inline' 'unsafe-eval' https://*.gouv.fr blob:; style-src 'self' 'unsafe-inline';" }, { "id": "Permissions-Policy", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.20", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.78", "port": "443", "severity": "OK", "finding": "accelerometer=(), camera=(), geolocation=(self), gyroscope=(), magnetometer=(), microphone=(), payment=(), usb=()" }, { "id": "X-XSS-Protection", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.20", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.78", "port": "443", "severity": "INFO", "finding": "1; mode=block" }, { "id": "Referrer-Policy", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.20", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.78", "port": "443", "severity": "INFO", "finding": "same-origin" }, { "id": "banner_reverseproxy", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.20", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.78", "port": "443", "severity": "INFO", "cwe": "CWE-200", @@ -30853,7 +29396,7 @@ }, { "id": "heartbleed", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.20", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.78", "port": "443", "severity": "OK", "cve": "CVE-2014-0160", @@ -30862,7 +29405,7 @@ }, { "id": "CCS", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.20", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.78", "port": "443", "severity": "OK", "cve": "CVE-2014-0224", @@ -30871,7 +29414,7 @@ }, { "id": "ticketbleed", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.20", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.78", "port": "443", "severity": "OK", "cve": "CVE-2016-9244", @@ -30880,7 +29423,7 @@ }, { "id": "ROBOT", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.20", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.78", "port": "443", "severity": "OK", "cve": "CVE-2017-17382 CVE-2017-17427 CVE-2017-17428 CVE-2017-13098 CVE-2017-1000385 CVE-2017-13099 CVE-2016-6883 CVE-2012-5081 CVE-2017-6168", @@ -30889,7 +29432,7 @@ }, { "id": "secure_renego", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.20", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.78", "port": "443", "severity": "OK", "cwe": "CWE-310", @@ -30897,7 +29440,7 @@ }, { "id": "secure_client_renego", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.20", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.78", "port": "443", "severity": "OK", "cve": "CVE-2011-1473", @@ -30906,7 +29449,7 @@ }, { "id": "CRIME_TLS", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.20", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.78", "port": "443", "severity": "OK", "cve": "CVE-2012-4929", @@ -30915,7 +29458,7 @@ }, { "id": "BREACH", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.20", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.78", "port": "443", "severity": "MEDIUM", "cve": "CVE-2013-3587", @@ -30924,7 +29467,7 @@ }, { "id": "POODLE_SSL", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.20", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.78", "port": "443", "severity": "OK", "cve": "CVE-2014-3566", @@ -30933,14 +29476,14 @@ }, { "id": "fallback_SCSV", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.20", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.78", "port": "443", "severity": "OK", "finding": "no protocol below TLS 1.2 offered" }, { "id": "SWEET32", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.20", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.78", "port": "443", "severity": "OK", "cve": "CVE-2016-2183 CVE-2016-6329", @@ -30949,7 +29492,7 @@ }, { "id": "FREAK", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.20", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.78", "port": "443", "severity": "OK", "cve": "CVE-2015-0204", @@ -30958,7 +29501,7 @@ }, { "id": "DROWN", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.20", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.78", "port": "443", "severity": "OK", "cve": "CVE-2016-0800 CVE-2016-0703", @@ -30967,7 +29510,7 @@ }, { "id": "DROWN_hint", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.20", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.78", "port": "443", "severity": "INFO", "cve": "CVE-2016-0800 CVE-2016-0703", @@ -30976,7 +29519,7 @@ }, { "id": "LOGJAM", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.20", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.78", "port": "443", "severity": "OK", "cve": "CVE-2015-4000", @@ -30985,7 +29528,7 @@ }, { "id": "LOGJAM-common_primes", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.20", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.78", "port": "443", "severity": "OK", "cve": "CVE-2015-4000", @@ -30994,7 +29537,7 @@ }, { "id": "BEAST", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.20", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.78", "port": "443", "severity": "OK", "cve": "CVE-2011-3389", @@ -31003,7 +29546,7 @@ }, { "id": "LUCKY13", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.20", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.78", "port": "443", "severity": "OK", "cve": "CVE-2013-0169", @@ -31012,7 +29555,7 @@ }, { "id": "winshock", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.20", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.78", "port": "443", "severity": "OK", "cve": "CVE-2014-6321", @@ -31021,7 +29564,7 @@ }, { "id": "RC4", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.20", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.78", "port": "443", "severity": "OK", "cve": "CVE-2013-2566 CVE-2015-2808", @@ -31030,392 +29573,392 @@ }, { "id": "clientsimulation-android_60", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.20", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.78", "port": "443", "severity": "INFO", "finding": "TLSv1.2 ECDHE-RSA-AES128-GCM-SHA256" }, { "id": "clientsimulation-android_70", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.20", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.78", "port": "443", "severity": "INFO", "finding": "TLSv1.2 ECDHE-RSA-AES128-GCM-SHA256" }, { "id": "clientsimulation-android_81", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.20", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.78", "port": "443", "severity": "INFO", "finding": "TLSv1.2 ECDHE-RSA-AES128-GCM-SHA256" }, { "id": "clientsimulation-android_90", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.20", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.78", "port": "443", "severity": "INFO", "finding": "TLSv1.3 TLS_AES_128_GCM_SHA256" }, { "id": "clientsimulation-android_X", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.20", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.78", "port": "443", "severity": "INFO", "finding": "TLSv1.3 TLS_AES_128_GCM_SHA256" }, { "id": "clientsimulation-android_11", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.20", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.78", "port": "443", "severity": "INFO", "finding": "TLSv1.3 TLS_AES_128_GCM_SHA256" }, { "id": "clientsimulation-android_12", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.20", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.78", "port": "443", "severity": "INFO", "finding": "TLSv1.3 TLS_AES_128_GCM_SHA256" }, { "id": "clientsimulation-chrome_79_win10", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.20", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.78", "port": "443", "severity": "INFO", "finding": "TLSv1.3 TLS_AES_128_GCM_SHA256" }, { "id": "clientsimulation-chrome_101_win10", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.20", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.78", "port": "443", "severity": "INFO", "finding": "TLSv1.3 TLS_AES_128_GCM_SHA256" }, { "id": "clientsimulation-firefox_66_win81", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.20", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.78", "port": "443", "severity": "INFO", "finding": "TLSv1.3 TLS_AES_128_GCM_SHA256" }, { "id": "clientsimulation-firefox_100_win10", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.20", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.78", "port": "443", "severity": "INFO", "finding": "TLSv1.3 TLS_AES_128_GCM_SHA256" }, { "id": "clientsimulation-ie_6_xp", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.20", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.78", "port": "443", "severity": "INFO", "finding": "No connection" }, { "id": "clientsimulation-ie_8_win7", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.20", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.78", "port": "443", "severity": "INFO", "finding": "No connection" }, { "id": "clientsimulation-ie_8_xp", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.20", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.78", "port": "443", "severity": "INFO", "finding": "No connection" }, { "id": "clientsimulation-ie_11_win7", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.20", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.78", "port": "443", "severity": "INFO", "finding": "No connection" }, { "id": "clientsimulation-ie_11_win81", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.20", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.78", "port": "443", "severity": "INFO", "finding": "No connection" }, { "id": "clientsimulation-ie_11_winphone81", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.20", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.78", "port": "443", "severity": "INFO", "finding": "No connection" }, { "id": "clientsimulation-ie_11_win10", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.20", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.78", "port": "443", "severity": "INFO", "finding": "TLSv1.2 ECDHE-RSA-AES128-GCM-SHA256" }, { "id": "clientsimulation-edge_15_win10", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.20", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.78", "port": "443", "severity": "INFO", "finding": "TLSv1.2 ECDHE-RSA-AES128-GCM-SHA256" }, { "id": "clientsimulation-edge_101_win10_21h2", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.20", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.78", "port": "443", "severity": "INFO", "finding": "TLSv1.3 TLS_AES_128_GCM_SHA256" }, { "id": "clientsimulation-safari_121_ios_122", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.20", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.78", "port": "443", "severity": "INFO", "finding": "TLSv1.3 TLS_AES_128_GCM_SHA256" }, { "id": "clientsimulation-safari_130_osx_10146", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.20", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.78", "port": "443", "severity": "INFO", "finding": "TLSv1.3 TLS_AES_128_GCM_SHA256" }, { "id": "clientsimulation-safari_154_osx_1231", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.20", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.78", "port": "443", "severity": "INFO", "finding": "TLSv1.3 TLS_AES_128_GCM_SHA256" }, { "id": "clientsimulation-java_7u25", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.20", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.78", "port": "443", "severity": "INFO", "finding": "No connection" }, { "id": "clientsimulation-java_8u161", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.20", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.78", "port": "443", "severity": "INFO", "finding": "TLSv1.2 ECDHE-RSA-AES128-GCM-SHA256" }, { "id": "clientsimulation-java1102", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.20", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.78", "port": "443", "severity": "INFO", "finding": "TLSv1.3 TLS_AES_128_GCM_SHA256" }, { "id": "clientsimulation-java1703", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.20", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.78", "port": "443", "severity": "INFO", "finding": "TLSv1.3 TLS_AES_128_GCM_SHA256" }, { "id": "clientsimulation-go_1178", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.20", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.78", "port": "443", "severity": "INFO", "finding": "TLSv1.3 TLS_AES_128_GCM_SHA256" }, { "id": "clientsimulation-libressl_283", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.20", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.78", "port": "443", "severity": "INFO", "finding": "TLSv1.2 ECDHE-RSA-AES128-GCM-SHA256" }, { "id": "clientsimulation-openssl_102e", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.20", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.78", "port": "443", "severity": "INFO", "finding": "TLSv1.2 ECDHE-RSA-AES128-GCM-SHA256" }, { "id": "clientsimulation-openssl_110l", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.20", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.78", "port": "443", "severity": "INFO", "finding": "TLSv1.2 ECDHE-RSA-AES128-GCM-SHA256" }, { "id": "clientsimulation-openssl_111d", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.20", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.78", "port": "443", "severity": "INFO", "finding": "TLSv1.3 TLS_AES_128_GCM_SHA256" }, { "id": "clientsimulation-openssl_303", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.20", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.78", "port": "443", "severity": "INFO", "finding": "TLSv1.3 TLS_AES_128_GCM_SHA256" }, { "id": "clientsimulation-apple_mail_16_0", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.20", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.78", "port": "443", "severity": "INFO", "finding": "TLSv1.2 ECDHE-RSA-AES128-GCM-SHA256" }, { "id": "clientsimulation-thunderbird_91_9", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.20", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.78", "port": "443", "severity": "INFO", "finding": "TLSv1.3 TLS_AES_128_GCM_SHA256" }, { "id": "rating_spec", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.20", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.78", "port": "443", "severity": "INFO", "finding": "SSL Labs's 'SSL Server Rating Guide' (version 2009q from 2020-01-30)" }, { "id": "rating_doc", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.20", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.78", "port": "443", "severity": "INFO", "finding": "https://github.com/ssllabs/research/wiki/SSL-Server-Rating-Guide" }, { "id": "protocol_support_score", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.20", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.78", "port": "443", "severity": "INFO", "finding": "100" }, { "id": "protocol_support_score_weighted", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.20", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.78", "port": "443", "severity": "INFO", "finding": "30" }, { "id": "key_exchange_score", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.20", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.78", "port": "443", "severity": "INFO", "finding": "90" }, { "id": "key_exchange_score_weighted", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.20", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.78", "port": "443", "severity": "INFO", "finding": "27" }, { "id": "cipher_strength_score", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.20", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.78", "port": "443", "severity": "INFO", "finding": "60" }, { "id": "cipher_strength_score_weighted", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.20", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.78", "port": "443", "severity": "INFO", "finding": "24" }, { "id": "final_score", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.20", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.78", "port": "443", "severity": "INFO", "finding": "81" }, { "id": "overall_grade", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.20", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.78", "port": "443", "severity": "OK", "finding": "A+" }, { "id": "service", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.78", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.52", "port": "443", "severity": "INFO", "finding": "HTTP" }, { "id": "pre_128cipher", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.78", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.52", "port": "443", "severity": "INFO", "finding": "No 128 cipher limit bug" }, { "id": "SSLv2", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.78", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.52", "port": "443", "severity": "OK", "finding": "not offered" }, { "id": "SSLv3", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.78", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.52", "port": "443", "severity": "OK", "finding": "not offered" }, { "id": "TLS1", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.78", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.52", "port": "443", "severity": "INFO", "finding": "not offered" }, { "id": "TLS1_1", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.78", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.52", "port": "443", "severity": "INFO", "finding": "not offered" }, { "id": "TLS1_2", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.78", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.52", "port": "443", "severity": "OK", "finding": "offered" }, { "id": "TLS1_3", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.78", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.52", "port": "443", "severity": "OK", "finding": "offered with final" }, { "id": "ALPN_HTTP2", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.78", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.52", "port": "443", "severity": "OK", "finding": "h2" }, { "id": "ALPN", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.78", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.52", "port": "443", "severity": "INFO", "finding": "http/1.1" }, { "id": "cipherlist_NULL", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.78", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.52", "port": "443", "severity": "OK", "cwe": "CWE-327", @@ -31423,7 +29966,7 @@ }, { "id": "cipherlist_aNULL", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.78", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.52", "port": "443", "severity": "OK", "cwe": "CWE-327", @@ -31431,7 +29974,7 @@ }, { "id": "cipherlist_EXPORT", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.78", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.52", "port": "443", "severity": "OK", "cwe": "CWE-327", @@ -31439,7 +29982,7 @@ }, { "id": "cipherlist_LOW", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.78", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.52", "port": "443", "severity": "OK", "cwe": "CWE-327", @@ -31447,7 +29990,7 @@ }, { "id": "cipherlist_3DES_IDEA", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.78", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.52", "port": "443", "severity": "INFO", "cwe": "CWE-310", @@ -31455,7 +29998,7 @@ }, { "id": "cipherlist_OBSOLETED", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.78", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.52", "port": "443", "severity": "INFO", "cwe": "CWE-310", @@ -31463,589 +30006,596 @@ }, { "id": "cipherlist_STRONG_NOFS", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.78", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.52", "port": "443", "severity": "INFO", "finding": "not offered" }, { "id": "cipherlist_STRONG_FS", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.78", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.52", "port": "443", "severity": "OK", "finding": "offered" }, { "id": "cipher_order-tls1_2", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.78", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.52", "port": "443", "severity": "OK", "finding": "server" }, { "id": "cipherorder_TLSv1_2", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.78", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.52", "port": "443", "severity": "INFO", "finding": "ECDHE-RSA-AES128-GCM-SHA256" }, { "id": "cipher_order", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.78", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.52", "port": "443", "severity": "OK", "finding": "server" }, { "id": "FS", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.78", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.52", "port": "443", "severity": "OK", "finding": "offered" }, { "id": "FS_ciphers", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.78", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.52", "port": "443", "severity": "INFO", "finding": "ECDHE-RSA-AES128-GCM-SHA256 ECDHE-RSA-AES256-GCM-SHA384" }, { "id": "FS_ECDHE_curves", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.78", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.52", "port": "443", "severity": "OK", "finding": "prime256v1 secp384r1" }, { "id": "TLS_extensions", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.78", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.52", "port": "443", "severity": "INFO", - "finding": "'server name/#0' 'EC point formats/#11' 'renegotiation info/#65281' 'session ticket/#35' 'supported versions/#43' 'key share/#51' 'status request/#5' 'application layer protocol negotiation/#16' 'extended master secret/#23'" + "finding": "'server name/#0' 'EC point formats/#11' 'renegotiation info/#65281' 'status request/#5' 'session ticket/#35' 'supported versions/#43' 'key share/#51' 'application layer protocol negotiation/#16' 'extended master secret/#23'" }, { "id": "TLS_session_ticket", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.78", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.52", "port": "443", "severity": "INFO", "finding": "valid for 86400 seconds only (= 60 days" + "finding": "210 >= 60 days" }, { "id": "cert_notBefore", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.78", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.52", "port": "443", "severity": "INFO", "finding": "2024-05-30 00:00" }, { "id": "cert_notAfter", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.78", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.52", "port": "443", "severity": "OK", "finding": "2025-06-29 23:59" }, { "id": "cert_extlifeSpan", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.78", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.52", "port": "443", "severity": "OK", "finding": "certificate has no extended life time according to browser forum" }, { "id": "cert_eTLS", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.78", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.52", "port": "443", "severity": "INFO", "finding": "not present" }, { "id": "cert_crlDistributionPoints", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.78", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.52", "port": "443", "severity": "INFO", "finding": "http://crl.r2m03.amazontrust.com/r2m03.crl" }, { "id": "cert_ocspURL", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.78", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.52", "port": "443", "severity": "INFO", "finding": "http://ocsp.r2m03.amazontrust.com" }, { "id": "OCSP_stapling", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.78", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.52", "port": "443", - "severity": "LOW", - "finding": "not offered" + "severity": "OK", + "finding": "offered" + }, + { + "id": "cert_ocspRevoked", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.52", + "port": "443", + "severity": "OK", + "finding": "not revoked" }, { "id": "cert_mustStapleExtension", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.78", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.52", "port": "443", "severity": "INFO", "finding": "--" }, { "id": "DNS_CAArecord", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.78", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.52", "port": "443", "severity": "LOW", "finding": "--" }, { "id": "certificate_transparency", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.78", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.52", "port": "443", "severity": "OK", "finding": "yes (certificate extension)" }, { "id": "certs_countServer", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.78", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.52", "port": "443", "severity": "INFO", "finding": "4" }, { "id": "certs_list_ordering_problem", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.78", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.52", "port": "443", "severity": "INFO", "finding": "no" }, { "id": "cert_caIssuers", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.78", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.52", "port": "443", "severity": "INFO", "finding": "Amazon RSA 2048 M03 (Amazon from US)" }, { "id": "intermediate_cert <#1>", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.78", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.52", "port": "443", "severity": "INFO", "finding": "-----BEGIN CERTIFICATE-----\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\n-----END CERTIFICATE-----" }, { "id": "intermediate_cert_fingerprintSHA256 <#1>", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.78", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.52", "port": "443", "severity": "INFO", "finding": "BF8A69027BCC8D2D42A6E6D25BDD4873F6A34B8F90EDF07E86C5D6916DA0B933" }, { "id": "intermediate_cert_notBefore <#1>", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.78", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.52", "port": "443", "severity": "INFO", "finding": "2022-08-23 22:26" }, { "id": "intermediate_cert_notAfter <#1>", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.78", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.52", "port": "443", "severity": "OK", "finding": "2030-08-23 22:26" }, { "id": "intermediate_cert_expiration <#1>", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.78", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.52", "port": "443", "severity": "OK", "finding": "ok > 40 days" }, { "id": "intermediate_cert_chain <#1>", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.78", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.52", "port": "443", "severity": "INFO", "finding": "Amazon RSA 2048 M03 <-- Amazon Root CA 1" }, { "id": "intermediate_cert <#2>", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.78", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.52", "port": "443", "severity": "INFO", "finding": "-----BEGIN CERTIFICATE-----\nMIIEkjCCA3qgAwIBAgITBn+USionzfP6wq4rAfkI7rnExjANBgkqhkiG9w0BAQsFADCBmDELMAkGA1UEBhMCVVMxEDAOBgNVBAgTB0FyaXpvbmExEzARBgNVBAcTClNjb3R0c2RhbGUxJTAjBgNVBAoTHFN0YXJmaWVsZCBUZWNobm9sb2dpZXMsIEluYy4xOzA5BgNVBAMTMlN0YXJmaWVsZCBTZXJ2aWNlcyBSb290IENlcnRpZmljYXRlIEF1dGhvcml0eSAtIEcyMB4XDTE1MDUyNTEyMDAwMFoXDTM3MTIzMTAxMDAwMFowOTELMAkGA1UEBhMCVVMxDzANBgNVBAoTBkFtYXpvbjEZMBcGA1UEAxMQQW1hem9uIFJvb3QgQ0EgMTCCASIwDQYJKoZIhvcNAQEBBQADggEPADCCAQoCggEBALJ4gHHKeNXjca9HgFB0fW7Y14h29Jlo91ghYPl0hAEvrAIthtOgQ3pOsqTQNroBvo3bSMgHFzZM9O6II8c+6zf1tRn4SWiw3te5djgdYZ6k/oI2peVKVuRF4fn9tBb6dNqcmzU5L/qwIFAGbHrQgLKm+a/sRxmPUDgH3KKHOVj4utWp+UhnMJbulHheb4mjUcAwhmahRWa6VOujw5H5SNz/0egwLX0tdHA114gk957EWW67c4cX8jJGKLhD+rcdqsq08p8kDi1L93FcXmn/6pUCyziKrlA4b9v7LWIbxcceVOF34GfID5yHI9Y/QCB/IIDEgEw+OyQmjgSubJrIqg0CAwEAAaOCATEwggEtMA8GA1UdEwEB/wQFMAMBAf8wDgYDVR0PAQH/BAQDAgGGMB0GA1UdDgQWBBSEGMyFNOy8DJSULghZnMeyEE4KCDAfBgNVHSMEGDAWgBScXwDfqgHXMCs4iKK4bUqc8hGRgzB4BggrBgEFBQcBAQRsMGowLgYIKwYBBQUHMAGGImh0dHA6Ly9vY3NwLnJvb3RnMi5hbWF6b250cnVzdC5jb20wOAYIKwYBBQUHMAKGLGh0dHA6Ly9jcnQucm9vdGcyLmFtYXpvbnRydXN0LmNvbS9yb290ZzIuY2VyMD0GA1UdHwQ2MDQwMqAwoC6GLGh0dHA6Ly9jcmwucm9vdGcyLmFtYXpvbnRydXN0LmNvbS9yb290ZzIuY3JsMBEGA1UdIAQKMAgwBgYEVR0gADANBgkqhkiG9w0BAQsFAAOCAQEAYjdCXLwQtT6LLOkMm2xF4gcAevnFWAu5CIw+7bMlPLVvUOTNNWqnkzSWMiGpSESrnO09tKpzbeR/FoCJbM8oAxiDR3mjEH4wW6w7sGDgd9QIpuEdfF7Au/maeyKdpwAJfqxGF4PcnCZXmTA5YpaP7dreqsXMGz7KQ2hsVxa81Q4gLv7/wmpdLqBKbRRYh5TmOTFffHPLkIhqhBGWJ6bt2YFGpn6jcgAKUj6DiAdjd4lpFw85hdKrCEVN0FE6/V1dN2RMfjCyVSRCnTawXZwXgWHxyvkQAiSr6w10kY17RSlQOYiypok1JR4UakcjMS9cmvqtmg5iUaQqqcT5NJ0hGA==\n-----END CERTIFICATE-----" }, { "id": "intermediate_cert_fingerprintSHA256 <#2>", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.78", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.52", "port": "443", "severity": "INFO", "finding": "87DCD4DC74640A322CD205552506D1BE64F12596258096544986B4850BC72706" }, { "id": "intermediate_cert_notBefore <#2>", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.78", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.52", "port": "443", "severity": "INFO", "finding": "2015-05-25 12:00" }, { "id": "intermediate_cert_notAfter <#2>", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.78", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.52", "port": "443", "severity": "OK", "finding": "2037-12-31 01:00" }, { "id": "intermediate_cert_expiration <#2>", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.78", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.52", "port": "443", "severity": "OK", "finding": "ok > 40 days" }, { "id": "intermediate_cert_chain <#2>", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.78", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.52", "port": "443", "severity": "INFO", "finding": "Amazon Root CA 1 <-- Starfield Services Root Certificate Authority - G2" }, { "id": "intermediate_cert <#3>", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.78", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.52", "port": "443", "severity": "INFO", "finding": "-----BEGIN CERTIFICATE-----\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\n-----END CERTIFICATE-----" }, { "id": "intermediate_cert_fingerprintSHA256 <#3>", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.78", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.52", "port": "443", "severity": "INFO", "finding": "28689B30E4C306AAB53B027B29E36AD6DD1DCF4B953994482CA84BDC1ECAC996" }, { "id": "intermediate_cert_notBefore <#3>", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.78", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.52", "port": "443", "severity": "INFO", "finding": "2009-09-02 00:00" }, { "id": "intermediate_cert_notAfter <#3>", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.78", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.52", "port": "443", "severity": "OK", "finding": "2034-06-28 17:39" }, { "id": "intermediate_cert_expiration <#3>", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.78", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.52", "port": "443", "severity": "OK", "finding": "ok > 40 days" }, { "id": "intermediate_cert_chain <#3>", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.78", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.52", "port": "443", "severity": "INFO", "finding": "Starfield Services Root Certificate Authority - G2 <--" }, { "id": "intermediate_cert_badOCSP", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.78", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.52", "port": "443", "severity": "OK", "finding": "intermediate certificate(s) is/are ok" }, { "id": "HTTP_status_code", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.78", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.52", "port": "443", "severity": "INFO", "finding": "200 OK ('/')" }, { "id": "HTTP_clock_skew", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.78", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.52", "port": "443", "severity": "INFO", "finding": "+1 seconds from localtime" }, { "id": "HTTP_headerTime", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.78", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.52", "port": "443", "severity": "INFO", - "finding": "1732406172" + "finding": "1733017449" }, { "id": "HTTP_headerAge", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.78", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.52", "port": "443", "severity": "INFO", - "finding": "6278 seconds" + "finding": "337 seconds" }, { "id": "HSTS_time", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.78", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.52", "port": "443", "severity": "OK", "finding": "730 days (=63072000 seconds) > 15552000 seconds" }, { "id": "HSTS_subdomains", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.78", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.52", "port": "443", "severity": "OK", "finding": "includes subdomains" }, { "id": "HSTS_preload", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.78", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.52", "port": "443", "severity": "OK", "finding": "domain IS marked for preloading" }, { "id": "HPKP", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.78", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.52", "port": "443", "severity": "INFO", "finding": "No support for HTTP Public Key Pinning" }, { "id": "banner_server", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.78", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.52", "port": "443", "severity": "INFO", "finding": "AmazonS3" }, { "id": "banner_application", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.78", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.52", "port": "443", "severity": "INFO", "finding": "No application banner found" }, { "id": "cookie_count", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.78", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.52", "port": "443", "severity": "INFO", "finding": "0 at '/'" }, { "id": "X-Frame-Options", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.78", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.52", "port": "443", "severity": "OK", "finding": "DENY" }, { "id": "X-Content-Type-Options", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.78", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.52", "port": "443", "severity": "OK", "finding": "nosniff" }, { "id": "Content-Security-Policy", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.78", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.52", "port": "443", "severity": "OK", "finding": "default-src 'self' data: https://*.gouv.fr https://openmaptiles.github.io ; font-src 'self' https://cdn.jsdelivr.net; img-src 'self' data: https://*.gouv.fr; object-src 'none'; script-src 'self' 'unsafe-inline' 'unsafe-eval' https://*.gouv.fr blob:; style-src 'self' 'unsafe-inline';" }, { "id": "Permissions-Policy", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.78", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.52", "port": "443", "severity": "OK", "finding": "accelerometer=(), camera=(), geolocation=(self), gyroscope=(), magnetometer=(), microphone=(), payment=(), usb=()" }, { "id": "X-XSS-Protection", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.78", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.52", "port": "443", "severity": "INFO", "finding": "1; mode=block" }, { "id": "Referrer-Policy", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.78", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.52", "port": "443", "severity": "INFO", "finding": "same-origin" }, { "id": "banner_reverseproxy", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.78", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.52", "port": "443", "severity": "INFO", "cwe": "CWE-200", - "finding": "X-Cache: Hit from cloudfrontVia: 1.1 9b9a066c240ddede25e109bd9f493f86.cloudfront.net (CloudFront)" + "finding": "X-Cache: Hit from cloudfrontVia: 1.1 e7017602a9625d2d0a22386cb8355050.cloudfront.net (CloudFront)" }, { "id": "heartbleed", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.78", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.52", "port": "443", "severity": "OK", "cve": "CVE-2014-0160", @@ -32054,7 +30604,7 @@ }, { "id": "CCS", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.78", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.52", "port": "443", "severity": "OK", "cve": "CVE-2014-0224", @@ -32063,7 +30613,7 @@ }, { "id": "ticketbleed", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.78", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.52", "port": "443", "severity": "OK", "cve": "CVE-2016-9244", @@ -32072,7 +30622,7 @@ }, { "id": "ROBOT", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.78", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.52", "port": "443", "severity": "OK", "cve": "CVE-2017-17382 CVE-2017-17427 CVE-2017-17428 CVE-2017-13098 CVE-2017-1000385 CVE-2017-13099 CVE-2016-6883 CVE-2012-5081 CVE-2017-6168", @@ -32081,7 +30631,7 @@ }, { "id": "secure_renego", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.78", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.52", "port": "443", "severity": "OK", "cwe": "CWE-310", @@ -32089,7 +30639,7 @@ }, { "id": "secure_client_renego", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.78", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.52", "port": "443", "severity": "OK", "cve": "CVE-2011-1473", @@ -32098,7 +30648,7 @@ }, { "id": "CRIME_TLS", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.78", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.52", "port": "443", "severity": "OK", "cve": "CVE-2012-4929", @@ -32107,7 +30657,7 @@ }, { "id": "BREACH", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.78", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.52", "port": "443", "severity": "MEDIUM", "cve": "CVE-2013-3587", @@ -32116,7 +30666,7 @@ }, { "id": "POODLE_SSL", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.78", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.52", "port": "443", "severity": "OK", "cve": "CVE-2014-3566", @@ -32125,14 +30675,14 @@ }, { "id": "fallback_SCSV", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.78", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.52", "port": "443", "severity": "OK", "finding": "no protocol below TLS 1.2 offered" }, { "id": "SWEET32", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.78", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.52", "port": "443", "severity": "OK", "cve": "CVE-2016-2183 CVE-2016-6329", @@ -32141,7 +30691,7 @@ }, { "id": "FREAK", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.78", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.52", "port": "443", "severity": "OK", "cve": "CVE-2015-0204", @@ -32150,7 +30700,7 @@ }, { "id": "DROWN", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.78", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.52", "port": "443", "severity": "OK", "cve": "CVE-2016-0800 CVE-2016-0703", @@ -32159,7 +30709,7 @@ }, { "id": "DROWN_hint", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.78", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.52", "port": "443", "severity": "INFO", "cve": "CVE-2016-0800 CVE-2016-0703", @@ -32168,7 +30718,7 @@ }, { "id": "LOGJAM", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.78", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.52", "port": "443", "severity": "OK", "cve": "CVE-2015-4000", @@ -32177,7 +30727,7 @@ }, { "id": "LOGJAM-common_primes", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.78", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.52", "port": "443", "severity": "OK", "cve": "CVE-2015-4000", @@ -32186,7 +30736,7 @@ }, { "id": "BEAST", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.78", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.52", "port": "443", "severity": "OK", "cve": "CVE-2011-3389", @@ -32195,7 +30745,7 @@ }, { "id": "LUCKY13", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.78", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.52", "port": "443", "severity": "OK", "cve": "CVE-2013-0169", @@ -32204,7 +30754,7 @@ }, { "id": "winshock", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.78", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.52", "port": "443", "severity": "OK", "cve": "CVE-2014-6321", @@ -32213,7 +30763,7 @@ }, { "id": "RC4", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.78", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.52", "port": "443", "severity": "OK", "cve": "CVE-2013-2566 CVE-2015-2808", @@ -32222,392 +30772,392 @@ }, { "id": "clientsimulation-android_60", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.78", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.52", "port": "443", "severity": "INFO", "finding": "TLSv1.2 ECDHE-RSA-AES128-GCM-SHA256" }, { "id": "clientsimulation-android_70", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.78", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.52", "port": "443", "severity": "INFO", "finding": "TLSv1.2 ECDHE-RSA-AES128-GCM-SHA256" }, { "id": "clientsimulation-android_81", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.78", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.52", "port": "443", "severity": "INFO", "finding": "TLSv1.2 ECDHE-RSA-AES128-GCM-SHA256" }, { "id": "clientsimulation-android_90", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.78", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.52", "port": "443", "severity": "INFO", "finding": "TLSv1.3 TLS_AES_128_GCM_SHA256" }, { "id": "clientsimulation-android_X", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.78", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.52", "port": "443", "severity": "INFO", "finding": "TLSv1.3 TLS_AES_128_GCM_SHA256" }, { "id": "clientsimulation-android_11", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.78", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.52", "port": "443", "severity": "INFO", "finding": "TLSv1.3 TLS_AES_128_GCM_SHA256" }, { "id": "clientsimulation-android_12", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.78", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.52", "port": "443", "severity": "INFO", "finding": "TLSv1.3 TLS_AES_128_GCM_SHA256" }, { "id": "clientsimulation-chrome_79_win10", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.78", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.52", "port": "443", "severity": "INFO", "finding": "TLSv1.3 TLS_AES_128_GCM_SHA256" }, { "id": "clientsimulation-chrome_101_win10", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.78", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.52", "port": "443", "severity": "INFO", "finding": "TLSv1.3 TLS_AES_128_GCM_SHA256" }, { "id": "clientsimulation-firefox_66_win81", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.78", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.52", "port": "443", "severity": "INFO", "finding": "TLSv1.3 TLS_AES_128_GCM_SHA256" }, { "id": "clientsimulation-firefox_100_win10", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.78", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.52", "port": "443", "severity": "INFO", "finding": "TLSv1.3 TLS_AES_128_GCM_SHA256" }, { "id": "clientsimulation-ie_6_xp", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.78", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.52", "port": "443", "severity": "INFO", "finding": "No connection" }, { "id": "clientsimulation-ie_8_win7", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.78", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.52", "port": "443", "severity": "INFO", "finding": "No connection" }, { "id": "clientsimulation-ie_8_xp", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.78", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.52", "port": "443", "severity": "INFO", "finding": "No connection" }, { "id": "clientsimulation-ie_11_win7", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.78", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.52", "port": "443", "severity": "INFO", "finding": "No connection" }, { "id": "clientsimulation-ie_11_win81", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.78", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.52", "port": "443", "severity": "INFO", "finding": "No connection" }, { "id": "clientsimulation-ie_11_winphone81", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.78", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.52", "port": "443", "severity": "INFO", "finding": "No connection" }, { "id": "clientsimulation-ie_11_win10", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.78", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.52", "port": "443", "severity": "INFO", "finding": "TLSv1.2 ECDHE-RSA-AES128-GCM-SHA256" }, { "id": "clientsimulation-edge_15_win10", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.78", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.52", "port": "443", "severity": "INFO", "finding": "TLSv1.2 ECDHE-RSA-AES128-GCM-SHA256" }, { "id": "clientsimulation-edge_101_win10_21h2", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.78", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.52", "port": "443", "severity": "INFO", "finding": "TLSv1.3 TLS_AES_128_GCM_SHA256" }, { "id": "clientsimulation-safari_121_ios_122", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.78", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.52", "port": "443", "severity": "INFO", "finding": "TLSv1.3 TLS_AES_128_GCM_SHA256" }, { "id": "clientsimulation-safari_130_osx_10146", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.78", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.52", "port": "443", "severity": "INFO", "finding": "TLSv1.3 TLS_AES_128_GCM_SHA256" }, { "id": "clientsimulation-safari_154_osx_1231", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.78", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.52", "port": "443", "severity": "INFO", "finding": "TLSv1.3 TLS_AES_128_GCM_SHA256" }, { "id": "clientsimulation-java_7u25", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.78", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.52", "port": "443", "severity": "INFO", "finding": "No connection" }, { "id": "clientsimulation-java_8u161", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.78", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.52", "port": "443", "severity": "INFO", "finding": "TLSv1.2 ECDHE-RSA-AES128-GCM-SHA256" }, { "id": "clientsimulation-java1102", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.78", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.52", "port": "443", "severity": "INFO", "finding": "TLSv1.3 TLS_AES_128_GCM_SHA256" }, { "id": "clientsimulation-java1703", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.78", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.52", "port": "443", "severity": "INFO", "finding": "TLSv1.3 TLS_AES_128_GCM_SHA256" }, { "id": "clientsimulation-go_1178", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.78", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.52", "port": "443", "severity": "INFO", "finding": "TLSv1.3 TLS_AES_128_GCM_SHA256" }, { "id": "clientsimulation-libressl_283", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.78", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.52", "port": "443", "severity": "INFO", "finding": "TLSv1.2 ECDHE-RSA-AES128-GCM-SHA256" }, { "id": "clientsimulation-openssl_102e", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.78", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.52", "port": "443", "severity": "INFO", "finding": "TLSv1.2 ECDHE-RSA-AES128-GCM-SHA256" }, { "id": "clientsimulation-openssl_110l", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.78", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.52", "port": "443", "severity": "INFO", "finding": "TLSv1.2 ECDHE-RSA-AES128-GCM-SHA256" }, { "id": "clientsimulation-openssl_111d", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.78", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.52", "port": "443", "severity": "INFO", "finding": "TLSv1.3 TLS_AES_128_GCM_SHA256" }, { "id": "clientsimulation-openssl_303", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.78", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.52", "port": "443", "severity": "INFO", "finding": "TLSv1.3 TLS_AES_128_GCM_SHA256" }, { "id": "clientsimulation-apple_mail_16_0", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.78", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.52", "port": "443", "severity": "INFO", "finding": "TLSv1.2 ECDHE-RSA-AES128-GCM-SHA256" }, { "id": "clientsimulation-thunderbird_91_9", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.78", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.52", "port": "443", "severity": "INFO", "finding": "TLSv1.3 TLS_AES_128_GCM_SHA256" }, { "id": "rating_spec", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.78", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.52", "port": "443", "severity": "INFO", "finding": "SSL Labs's 'SSL Server Rating Guide' (version 2009q from 2020-01-30)" }, { "id": "rating_doc", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.78", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.52", "port": "443", "severity": "INFO", "finding": "https://github.com/ssllabs/research/wiki/SSL-Server-Rating-Guide" }, { "id": "protocol_support_score", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.78", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.52", "port": "443", "severity": "INFO", "finding": "100" }, { "id": "protocol_support_score_weighted", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.78", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.52", "port": "443", "severity": "INFO", "finding": "30" }, { "id": "key_exchange_score", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.78", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.52", "port": "443", "severity": "INFO", "finding": "90" }, { "id": "key_exchange_score_weighted", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.78", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.52", "port": "443", "severity": "INFO", "finding": "27" }, { "id": "cipher_strength_score", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.78", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.52", "port": "443", "severity": "INFO", "finding": "60" }, { "id": "cipher_strength_score_weighted", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.78", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.52", "port": "443", "severity": "INFO", "finding": "24" }, { "id": "final_score", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.78", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.52", "port": "443", "severity": "INFO", "finding": "81" }, { "id": "overall_grade", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.78", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.52", "port": "443", "severity": "OK", "finding": "A+" }, { "id": "service", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.52", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.84", "port": "443", "severity": "INFO", "finding": "HTTP" }, { "id": "pre_128cipher", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.52", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.84", "port": "443", "severity": "INFO", "finding": "No 128 cipher limit bug" }, { "id": "SSLv2", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.52", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.84", "port": "443", "severity": "OK", "finding": "not offered" }, { "id": "SSLv3", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.52", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.84", "port": "443", "severity": "OK", "finding": "not offered" }, { "id": "TLS1", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.52", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.84", "port": "443", "severity": "INFO", "finding": "not offered" }, { "id": "TLS1_1", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.52", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.84", "port": "443", "severity": "INFO", "finding": "not offered" }, { "id": "TLS1_2", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.52", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.84", "port": "443", "severity": "OK", "finding": "offered" }, { "id": "TLS1_3", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.52", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.84", "port": "443", "severity": "OK", "finding": "offered with final" }, { "id": "ALPN_HTTP2", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.52", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.84", "port": "443", "severity": "OK", "finding": "h2" }, { "id": "ALPN", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.52", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.84", "port": "443", "severity": "INFO", "finding": "http/1.1" }, { "id": "cipherlist_NULL", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.52", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.84", "port": "443", "severity": "OK", "cwe": "CWE-327", @@ -32615,7 +31165,7 @@ }, { "id": "cipherlist_aNULL", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.52", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.84", "port": "443", "severity": "OK", "cwe": "CWE-327", @@ -32623,7 +31173,7 @@ }, { "id": "cipherlist_EXPORT", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.52", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.84", "port": "443", "severity": "OK", "cwe": "CWE-327", @@ -32631,7 +31181,7 @@ }, { "id": "cipherlist_LOW", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.52", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.84", "port": "443", "severity": "OK", "cwe": "CWE-327", @@ -32639,7 +31189,7 @@ }, { "id": "cipherlist_3DES_IDEA", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.52", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.84", "port": "443", "severity": "INFO", "cwe": "CWE-310", @@ -32647,7 +31197,7 @@ }, { "id": "cipherlist_OBSOLETED", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.52", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.84", "port": "443", "severity": "INFO", "cwe": "CWE-310", @@ -32655,596 +31205,596 @@ }, { "id": "cipherlist_STRONG_NOFS", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.52", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.84", "port": "443", "severity": "INFO", "finding": "not offered" }, { "id": "cipherlist_STRONG_FS", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.52", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.84", "port": "443", "severity": "OK", "finding": "offered" }, { "id": "cipher_order-tls1_2", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.52", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.84", "port": "443", "severity": "OK", "finding": "server" }, { "id": "cipherorder_TLSv1_2", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.52", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.84", "port": "443", "severity": "INFO", "finding": "ECDHE-RSA-AES128-GCM-SHA256" }, { "id": "cipher_order", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.52", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.84", "port": "443", "severity": "OK", "finding": "server" }, { "id": "FS", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.52", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.84", "port": "443", "severity": "OK", "finding": "offered" }, { "id": "FS_ciphers", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.52", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.84", "port": "443", "severity": "INFO", "finding": "ECDHE-RSA-AES128-GCM-SHA256 ECDHE-RSA-AES256-GCM-SHA384" }, { "id": "FS_ECDHE_curves", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.52", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.84", "port": "443", "severity": "OK", "finding": "prime256v1 secp384r1" }, { "id": "TLS_extensions", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.52", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.84", "port": "443", "severity": "INFO", "finding": "'server name/#0' 'EC point formats/#11' 'renegotiation info/#65281' 'status request/#5' 'session ticket/#35' 'supported versions/#43' 'key share/#51' 'application layer protocol negotiation/#16' 'extended master secret/#23'" }, { "id": "TLS_session_ticket", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.52", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.84", "port": "443", "severity": "INFO", "finding": "valid for 86400 seconds only (= 60 days" + "finding": "210 >= 60 days" }, { "id": "cert_notBefore", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.52", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.84", "port": "443", "severity": "INFO", "finding": "2024-05-30 00:00" }, { "id": "cert_notAfter", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.52", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.84", "port": "443", "severity": "OK", "finding": "2025-06-29 23:59" }, { "id": "cert_extlifeSpan", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.52", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.84", "port": "443", "severity": "OK", "finding": "certificate has no extended life time according to browser forum" }, { "id": "cert_eTLS", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.52", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.84", "port": "443", "severity": "INFO", "finding": "not present" }, { "id": "cert_crlDistributionPoints", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.52", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.84", "port": "443", "severity": "INFO", "finding": "http://crl.r2m03.amazontrust.com/r2m03.crl" }, { "id": "cert_ocspURL", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.52", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.84", "port": "443", "severity": "INFO", "finding": "http://ocsp.r2m03.amazontrust.com" }, { "id": "OCSP_stapling", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.52", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.84", "port": "443", "severity": "OK", "finding": "offered" }, { "id": "cert_ocspRevoked", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.52", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.84", "port": "443", "severity": "OK", "finding": "not revoked" }, { "id": "cert_mustStapleExtension", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.52", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.84", "port": "443", "severity": "INFO", "finding": "--" }, { "id": "DNS_CAArecord", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.52", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.84", "port": "443", "severity": "LOW", "finding": "--" }, { "id": "certificate_transparency", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.52", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.84", "port": "443", "severity": "OK", "finding": "yes (certificate extension)" }, { "id": "certs_countServer", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.52", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.84", "port": "443", "severity": "INFO", "finding": "4" }, { "id": "certs_list_ordering_problem", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.52", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.84", "port": "443", "severity": "INFO", "finding": "no" }, { "id": "cert_caIssuers", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.52", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.84", "port": "443", "severity": "INFO", "finding": "Amazon RSA 2048 M03 (Amazon from US)" }, { "id": "intermediate_cert <#1>", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.52", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.84", "port": "443", "severity": "INFO", "finding": "-----BEGIN CERTIFICATE-----\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\n-----END CERTIFICATE-----" }, { "id": "intermediate_cert_fingerprintSHA256 <#1>", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.52", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.84", "port": "443", "severity": "INFO", "finding": "BF8A69027BCC8D2D42A6E6D25BDD4873F6A34B8F90EDF07E86C5D6916DA0B933" }, { "id": "intermediate_cert_notBefore <#1>", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.52", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.84", "port": "443", "severity": "INFO", "finding": "2022-08-23 22:26" }, { "id": "intermediate_cert_notAfter <#1>", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.52", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.84", "port": "443", "severity": "OK", "finding": "2030-08-23 22:26" }, { "id": "intermediate_cert_expiration <#1>", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.52", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.84", "port": "443", "severity": "OK", "finding": "ok > 40 days" }, { "id": "intermediate_cert_chain <#1>", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.52", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.84", "port": "443", "severity": "INFO", "finding": "Amazon RSA 2048 M03 <-- Amazon Root CA 1" }, { "id": "intermediate_cert <#2>", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.52", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.84", "port": "443", "severity": "INFO", "finding": "-----BEGIN CERTIFICATE-----\nMIIEkjCCA3qgAwIBAgITBn+USionzfP6wq4rAfkI7rnExjANBgkqhkiG9w0BAQsFADCBmDELMAkGA1UEBhMCVVMxEDAOBgNVBAgTB0FyaXpvbmExEzARBgNVBAcTClNjb3R0c2RhbGUxJTAjBgNVBAoTHFN0YXJmaWVsZCBUZWNobm9sb2dpZXMsIEluYy4xOzA5BgNVBAMTMlN0YXJmaWVsZCBTZXJ2aWNlcyBSb290IENlcnRpZmljYXRlIEF1dGhvcml0eSAtIEcyMB4XDTE1MDUyNTEyMDAwMFoXDTM3MTIzMTAxMDAwMFowOTELMAkGA1UEBhMCVVMxDzANBgNVBAoTBkFtYXpvbjEZMBcGA1UEAxMQQW1hem9uIFJvb3QgQ0EgMTCCASIwDQYJKoZIhvcNAQEBBQADggEPADCCAQoCggEBALJ4gHHKeNXjca9HgFB0fW7Y14h29Jlo91ghYPl0hAEvrAIthtOgQ3pOsqTQNroBvo3bSMgHFzZM9O6II8c+6zf1tRn4SWiw3te5djgdYZ6k/oI2peVKVuRF4fn9tBb6dNqcmzU5L/qwIFAGbHrQgLKm+a/sRxmPUDgH3KKHOVj4utWp+UhnMJbulHheb4mjUcAwhmahRWa6VOujw5H5SNz/0egwLX0tdHA114gk957EWW67c4cX8jJGKLhD+rcdqsq08p8kDi1L93FcXmn/6pUCyziKrlA4b9v7LWIbxcceVOF34GfID5yHI9Y/QCB/IIDEgEw+OyQmjgSubJrIqg0CAwEAAaOCATEwggEtMA8GA1UdEwEB/wQFMAMBAf8wDgYDVR0PAQH/BAQDAgGGMB0GA1UdDgQWBBSEGMyFNOy8DJSULghZnMeyEE4KCDAfBgNVHSMEGDAWgBScXwDfqgHXMCs4iKK4bUqc8hGRgzB4BggrBgEFBQcBAQRsMGowLgYIKwYBBQUHMAGGImh0dHA6Ly9vY3NwLnJvb3RnMi5hbWF6b250cnVzdC5jb20wOAYIKwYBBQUHMAKGLGh0dHA6Ly9jcnQucm9vdGcyLmFtYXpvbnRydXN0LmNvbS9yb290ZzIuY2VyMD0GA1UdHwQ2MDQwMqAwoC6GLGh0dHA6Ly9jcmwucm9vdGcyLmFtYXpvbnRydXN0LmNvbS9yb290ZzIuY3JsMBEGA1UdIAQKMAgwBgYEVR0gADANBgkqhkiG9w0BAQsFAAOCAQEAYjdCXLwQtT6LLOkMm2xF4gcAevnFWAu5CIw+7bMlPLVvUOTNNWqnkzSWMiGpSESrnO09tKpzbeR/FoCJbM8oAxiDR3mjEH4wW6w7sGDgd9QIpuEdfF7Au/maeyKdpwAJfqxGF4PcnCZXmTA5YpaP7dreqsXMGz7KQ2hsVxa81Q4gLv7/wmpdLqBKbRRYh5TmOTFffHPLkIhqhBGWJ6bt2YFGpn6jcgAKUj6DiAdjd4lpFw85hdKrCEVN0FE6/V1dN2RMfjCyVSRCnTawXZwXgWHxyvkQAiSr6w10kY17RSlQOYiypok1JR4UakcjMS9cmvqtmg5iUaQqqcT5NJ0hGA==\n-----END CERTIFICATE-----" }, { "id": "intermediate_cert_fingerprintSHA256 <#2>", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.52", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.84", "port": "443", "severity": "INFO", "finding": "87DCD4DC74640A322CD205552506D1BE64F12596258096544986B4850BC72706" }, { "id": "intermediate_cert_notBefore <#2>", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.52", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.84", "port": "443", "severity": "INFO", "finding": "2015-05-25 12:00" }, { "id": "intermediate_cert_notAfter <#2>", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.52", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.84", "port": "443", "severity": "OK", "finding": "2037-12-31 01:00" }, { "id": "intermediate_cert_expiration <#2>", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.52", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.84", "port": "443", "severity": "OK", "finding": "ok > 40 days" }, { "id": "intermediate_cert_chain <#2>", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.52", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.84", "port": "443", "severity": "INFO", "finding": "Amazon Root CA 1 <-- Starfield Services Root Certificate Authority - G2" }, { "id": "intermediate_cert <#3>", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.52", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.84", "port": "443", "severity": "INFO", "finding": "-----BEGIN CERTIFICATE-----\nMIIEdTCCA12gAwIBAgIJAKcOSkw0grd/MA0GCSqGSIb3DQEBCwUAMGgxCzAJBgNVBAYTAlVTMSUwIwYDVQQKExxTdGFyZmllbGQgVGVjaG5vbG9naWVzLCBJbmMuMTIwMAYDVQQLEylTdGFyZmllbGQgQ2xhc3MgMiBDZXJ0aWZpY2F0aW9uIEF1dGhvcml0eTAeFw0wOTA5MDIwMDAwMDBaFw0zNDA2MjgxNzM5MTZaMIGYMQswCQYDVQQGEwJVUzEQMA4GA1UECBMHQXJpem9uYTETMBEGA1UEBxMKU2NvdHRzZGFsZTElMCMGA1UEChMcU3RhcmZpZWxkIFRlY2hub2xvZ2llcywgSW5jLjE7MDkGA1UEAxMyU3RhcmZpZWxkIFNlcnZpY2VzIFJvb3QgQ2VydGlmaWNhdGUgQXV0aG9yaXR5IC0gRzIwggEiMA0GCSqGSIb3DQEBAQUAA4IBDwAwggEKAoIBAQDVDDrEKvlO4vW+GZdfjohTsR8/y8+fIBNtKTrID30892t2OGPZNmCom15cAICyL1l/9of5JUOG52kbUpqQ4XHj2C0NTm/2yEnZtvMaVq4rtnQU68/7JuMauh2WLmo7WJSJR1b/JaCTcFOD2oR0FMNnngRoOt+OQFodSk7PQ5E751bWAHDLUu57fa4657wx+UX2wmDPE1kCK4DMNEffud6QZW0CzyyRpqbn3oUYSXxmTqM6bam17jQuug0DuDPfR+uxa40l2ZvOgdFFRjKWcIfeAg5JQ4W2bHO7ZOphQazJ1FTfhy/HIrImzJ9ZVGif/L4qL8RVHHVAYBeFAlU5i38FAgMBAAGjgfAwge0wDwYDVR0TAQH/BAUwAwEB/zAOBgNVHQ8BAf8EBAMCAYYwHQYDVR0OBBYEFJxfAN+qAdcwKziIorhtSpzyEZGDMB8GA1UdIwQYMBaAFL9ft9HO3R+G9FtVrNzXEMIOqYjnME8GCCsGAQUFBwEBBEMwQTAcBggrBgEFBQcwAYYQaHR0cDovL28uc3MyLnVzLzAhBggrBgEFBQcwAoYVaHR0cDovL3guc3MyLnVzL3guY2VyMCYGA1UdHwQfMB0wG6AZoBeGFWh0dHA6Ly9zLnNzMi51cy9yLmNybDARBgNVHSAECjAIMAYGBFUdIAAwDQYJKoZIhvcNAQELBQADggEBACMd44pXyn3pF3lM8R5V/cxTbj5HD9/GVfKyBDbtgB9TxF00KGu+x1X8Z+rLP3+QsjPNG1gQggL4+C/1E2DUBc7xgQjB3ad1l08YuW3e95ORCLp+QCztweq7dp4zBncdDQh/U90bZKuCJ/Fp1U1ervShw3WnWEQt8jxwmKy6abaVd38PMV4s/KCHOkdp8Hlf9BRUpJVeEXgSYCfOn8J3/yNTd126/+pZ59vPr5KW7ySaNRB6nJHGDn2Z9j8Z3/VyVOEVqQdZe4O/Ui5GjLIAZHYcSNPYeehuVsyuLAOQ1xk4meTKCRlb/weWsKh/NEnfVqn3sF/tM+2MR7cwA130A4w=\n-----END CERTIFICATE-----" }, { "id": "intermediate_cert_fingerprintSHA256 <#3>", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.52", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.84", "port": "443", "severity": "INFO", "finding": "28689B30E4C306AAB53B027B29E36AD6DD1DCF4B953994482CA84BDC1ECAC996" }, { "id": "intermediate_cert_notBefore <#3>", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.52", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.84", "port": "443", "severity": "INFO", "finding": "2009-09-02 00:00" }, { "id": "intermediate_cert_notAfter <#3>", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.52", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.84", "port": "443", "severity": "OK", "finding": "2034-06-28 17:39" }, { "id": "intermediate_cert_expiration <#3>", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.52", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.84", "port": "443", "severity": "OK", "finding": "ok > 40 days" }, { "id": "intermediate_cert_chain <#3>", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.52", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.84", "port": "443", "severity": "INFO", "finding": "Starfield Services Root Certificate Authority - G2 <--" }, { "id": "intermediate_cert_badOCSP", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.52", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.84", "port": "443", "severity": "OK", "finding": "intermediate certificate(s) is/are ok" }, { "id": "HTTP_status_code", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.52", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.84", "port": "443", "severity": "INFO", "finding": "200 OK ('/')" }, { "id": "HTTP_clock_skew", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.52", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.84", "port": "443", "severity": "INFO", "finding": "+1 seconds from localtime" }, { "id": "HTTP_headerTime", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.52", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.84", "port": "443", "severity": "INFO", - "finding": "1732406172" + "finding": "1733017449" }, { "id": "HTTP_headerAge", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.52", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.84", "port": "443", "severity": "INFO", - "finding": "6352 seconds" + "finding": "413 seconds" }, { "id": "HSTS_time", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.52", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.84", "port": "443", "severity": "OK", "finding": "730 days (=63072000 seconds) > 15552000 seconds" }, { "id": "HSTS_subdomains", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.52", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.84", "port": "443", "severity": "OK", "finding": "includes subdomains" }, { "id": "HSTS_preload", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.52", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.84", "port": "443", "severity": "OK", "finding": "domain IS marked for preloading" }, { "id": "HPKP", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.52", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.84", "port": "443", "severity": "INFO", "finding": "No support for HTTP Public Key Pinning" }, { "id": "banner_server", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.52", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.84", "port": "443", "severity": "INFO", "finding": "AmazonS3" }, { "id": "banner_application", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.52", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.84", "port": "443", "severity": "INFO", "finding": "No application banner found" }, { "id": "cookie_count", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.52", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.84", "port": "443", "severity": "INFO", "finding": "0 at '/'" }, { "id": "X-Frame-Options", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.52", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.84", "port": "443", "severity": "OK", "finding": "DENY" }, { "id": "X-Content-Type-Options", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.52", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.84", "port": "443", "severity": "OK", "finding": "nosniff" }, { "id": "Content-Security-Policy", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.52", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.84", "port": "443", "severity": "OK", "finding": "default-src 'self' data: https://*.gouv.fr https://openmaptiles.github.io ; font-src 'self' https://cdn.jsdelivr.net; img-src 'self' data: https://*.gouv.fr; object-src 'none'; script-src 'self' 'unsafe-inline' 'unsafe-eval' https://*.gouv.fr blob:; style-src 'self' 'unsafe-inline';" }, { "id": "Permissions-Policy", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.52", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.84", "port": "443", "severity": "OK", "finding": "accelerometer=(), camera=(), geolocation=(self), gyroscope=(), magnetometer=(), microphone=(), payment=(), usb=()" }, { "id": "X-XSS-Protection", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.52", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.84", "port": "443", "severity": "INFO", "finding": "1; mode=block" }, { "id": "Referrer-Policy", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.52", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.84", "port": "443", "severity": "INFO", "finding": "same-origin" }, { "id": "banner_reverseproxy", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.52", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.84", "port": "443", "severity": "INFO", "cwe": "CWE-200", - "finding": "X-Cache: Hit from cloudfrontVia: 1.1 9b9a066c240ddede25e109bd9f493f86.cloudfront.net (CloudFront)" + "finding": "X-Cache: Hit from cloudfrontVia: 1.1 e7017602a9625d2d0a22386cb8355050.cloudfront.net (CloudFront)" }, { "id": "heartbleed", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.52", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.84", "port": "443", "severity": "OK", "cve": "CVE-2014-0160", @@ -33253,7 +31803,7 @@ }, { "id": "CCS", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.52", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.84", "port": "443", "severity": "OK", "cve": "CVE-2014-0224", @@ -33262,7 +31812,7 @@ }, { "id": "ticketbleed", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.52", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.84", "port": "443", "severity": "OK", "cve": "CVE-2016-9244", @@ -33271,7 +31821,7 @@ }, { "id": "ROBOT", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.52", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.84", "port": "443", "severity": "OK", "cve": "CVE-2017-17382 CVE-2017-17427 CVE-2017-17428 CVE-2017-13098 CVE-2017-1000385 CVE-2017-13099 CVE-2016-6883 CVE-2012-5081 CVE-2017-6168", @@ -33280,7 +31830,7 @@ }, { "id": "secure_renego", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.52", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.84", "port": "443", "severity": "OK", "cwe": "CWE-310", @@ -33288,7 +31838,7 @@ }, { "id": "secure_client_renego", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.52", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.84", "port": "443", "severity": "OK", "cve": "CVE-2011-1473", @@ -33297,7 +31847,7 @@ }, { "id": "CRIME_TLS", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.52", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.84", "port": "443", "severity": "OK", "cve": "CVE-2012-4929", @@ -33306,7 +31856,7 @@ }, { "id": "BREACH", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.52", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.84", "port": "443", "severity": "MEDIUM", "cve": "CVE-2013-3587", @@ -33315,7 +31865,7 @@ }, { "id": "POODLE_SSL", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.52", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.84", "port": "443", "severity": "OK", "cve": "CVE-2014-3566", @@ -33324,14 +31874,14 @@ }, { "id": "fallback_SCSV", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.52", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.84", "port": "443", "severity": "OK", "finding": "no protocol below TLS 1.2 offered" }, { "id": "SWEET32", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.52", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.84", "port": "443", "severity": "OK", "cve": "CVE-2016-2183 CVE-2016-6329", @@ -33340,7 +31890,7 @@ }, { "id": "FREAK", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.52", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.84", "port": "443", "severity": "OK", "cve": "CVE-2015-0204", @@ -33349,7 +31899,7 @@ }, { "id": "DROWN", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.52", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.84", "port": "443", "severity": "OK", "cve": "CVE-2016-0800 CVE-2016-0703", @@ -33358,7 +31908,7 @@ }, { "id": "DROWN_hint", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.52", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.84", "port": "443", "severity": "INFO", "cve": "CVE-2016-0800 CVE-2016-0703", @@ -33367,7 +31917,7 @@ }, { "id": "LOGJAM", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.52", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.84", "port": "443", "severity": "OK", "cve": "CVE-2015-4000", @@ -33376,7 +31926,7 @@ }, { "id": "LOGJAM-common_primes", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.52", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.84", "port": "443", "severity": "OK", "cve": "CVE-2015-4000", @@ -33385,7 +31935,7 @@ }, { "id": "BEAST", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.52", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.84", "port": "443", "severity": "OK", "cve": "CVE-2011-3389", @@ -33394,7 +31944,7 @@ }, { "id": "LUCKY13", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.52", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.84", "port": "443", "severity": "OK", "cve": "CVE-2013-0169", @@ -33403,7 +31953,7 @@ }, { "id": "winshock", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.52", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.84", "port": "443", "severity": "OK", "cve": "CVE-2014-6321", @@ -33412,7 +31962,7 @@ }, { "id": "RC4", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.52", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.84", "port": "443", "severity": "OK", "cve": "CVE-2013-2566 CVE-2015-2808", @@ -33421,392 +31971,392 @@ }, { "id": "clientsimulation-android_60", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.52", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.84", "port": "443", "severity": "INFO", "finding": "TLSv1.2 ECDHE-RSA-AES128-GCM-SHA256" }, { "id": "clientsimulation-android_70", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.52", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.84", "port": "443", "severity": "INFO", "finding": "TLSv1.2 ECDHE-RSA-AES128-GCM-SHA256" }, { "id": "clientsimulation-android_81", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.52", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.84", "port": "443", "severity": "INFO", "finding": "TLSv1.2 ECDHE-RSA-AES128-GCM-SHA256" }, { "id": "clientsimulation-android_90", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.52", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.84", "port": "443", "severity": "INFO", "finding": "TLSv1.3 TLS_AES_128_GCM_SHA256" }, { "id": "clientsimulation-android_X", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.52", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.84", "port": "443", "severity": "INFO", "finding": "TLSv1.3 TLS_AES_128_GCM_SHA256" }, { "id": "clientsimulation-android_11", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.52", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.84", "port": "443", "severity": "INFO", "finding": "TLSv1.3 TLS_AES_128_GCM_SHA256" }, { "id": "clientsimulation-android_12", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.52", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.84", "port": "443", "severity": "INFO", "finding": "TLSv1.3 TLS_AES_128_GCM_SHA256" }, { "id": "clientsimulation-chrome_79_win10", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.52", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.84", "port": "443", "severity": "INFO", "finding": "TLSv1.3 TLS_AES_128_GCM_SHA256" }, { "id": "clientsimulation-chrome_101_win10", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.52", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.84", "port": "443", "severity": "INFO", "finding": "TLSv1.3 TLS_AES_128_GCM_SHA256" }, { "id": "clientsimulation-firefox_66_win81", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.52", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.84", "port": "443", "severity": "INFO", "finding": "TLSv1.3 TLS_AES_128_GCM_SHA256" }, { "id": "clientsimulation-firefox_100_win10", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.52", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.84", "port": "443", "severity": "INFO", "finding": "TLSv1.3 TLS_AES_128_GCM_SHA256" }, { "id": "clientsimulation-ie_6_xp", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.52", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.84", "port": "443", "severity": "INFO", "finding": "No connection" }, { "id": "clientsimulation-ie_8_win7", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.52", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.84", "port": "443", "severity": "INFO", "finding": "No connection" }, { "id": "clientsimulation-ie_8_xp", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.52", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.84", "port": "443", "severity": "INFO", "finding": "No connection" }, { "id": "clientsimulation-ie_11_win7", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.52", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.84", "port": "443", "severity": "INFO", "finding": "No connection" }, { "id": "clientsimulation-ie_11_win81", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.52", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.84", "port": "443", "severity": "INFO", "finding": "No connection" }, { "id": "clientsimulation-ie_11_winphone81", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.52", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.84", "port": "443", "severity": "INFO", "finding": "No connection" }, { "id": "clientsimulation-ie_11_win10", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.52", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.84", "port": "443", "severity": "INFO", "finding": "TLSv1.2 ECDHE-RSA-AES128-GCM-SHA256" }, { "id": "clientsimulation-edge_15_win10", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.52", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.84", "port": "443", "severity": "INFO", "finding": "TLSv1.2 ECDHE-RSA-AES128-GCM-SHA256" }, { "id": "clientsimulation-edge_101_win10_21h2", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.52", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.84", "port": "443", "severity": "INFO", "finding": "TLSv1.3 TLS_AES_128_GCM_SHA256" }, { "id": "clientsimulation-safari_121_ios_122", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.52", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.84", "port": "443", "severity": "INFO", "finding": "TLSv1.3 TLS_AES_128_GCM_SHA256" }, { "id": "clientsimulation-safari_130_osx_10146", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.52", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.84", "port": "443", "severity": "INFO", "finding": "TLSv1.3 TLS_AES_128_GCM_SHA256" }, { "id": "clientsimulation-safari_154_osx_1231", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.52", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.84", "port": "443", "severity": "INFO", "finding": "TLSv1.3 TLS_AES_128_GCM_SHA256" }, { "id": "clientsimulation-java_7u25", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.52", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.84", "port": "443", "severity": "INFO", "finding": "No connection" }, { "id": "clientsimulation-java_8u161", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.52", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.84", "port": "443", "severity": "INFO", "finding": "TLSv1.2 ECDHE-RSA-AES128-GCM-SHA256" }, { "id": "clientsimulation-java1102", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.52", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.84", "port": "443", "severity": "INFO", "finding": "TLSv1.3 TLS_AES_128_GCM_SHA256" }, { "id": "clientsimulation-java1703", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.52", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.84", "port": "443", "severity": "INFO", "finding": "TLSv1.3 TLS_AES_128_GCM_SHA256" }, { "id": "clientsimulation-go_1178", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.52", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.84", "port": "443", "severity": "INFO", "finding": "TLSv1.3 TLS_AES_128_GCM_SHA256" }, { "id": "clientsimulation-libressl_283", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.52", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.84", "port": "443", "severity": "INFO", "finding": "TLSv1.2 ECDHE-RSA-AES128-GCM-SHA256" }, { "id": "clientsimulation-openssl_102e", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.52", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.84", "port": "443", "severity": "INFO", "finding": "TLSv1.2 ECDHE-RSA-AES128-GCM-SHA256" }, { "id": "clientsimulation-openssl_110l", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.52", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.84", "port": "443", "severity": "INFO", "finding": "TLSv1.2 ECDHE-RSA-AES128-GCM-SHA256" }, { "id": "clientsimulation-openssl_111d", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.52", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.84", "port": "443", "severity": "INFO", "finding": "TLSv1.3 TLS_AES_128_GCM_SHA256" }, { "id": "clientsimulation-openssl_303", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.52", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.84", "port": "443", "severity": "INFO", "finding": "TLSv1.3 TLS_AES_128_GCM_SHA256" }, { "id": "clientsimulation-apple_mail_16_0", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.52", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.84", "port": "443", "severity": "INFO", "finding": "TLSv1.2 ECDHE-RSA-AES128-GCM-SHA256" }, { "id": "clientsimulation-thunderbird_91_9", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.52", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.84", "port": "443", "severity": "INFO", "finding": "TLSv1.3 TLS_AES_128_GCM_SHA256" }, { "id": "rating_spec", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.52", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.84", "port": "443", "severity": "INFO", "finding": "SSL Labs's 'SSL Server Rating Guide' (version 2009q from 2020-01-30)" }, { "id": "rating_doc", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.52", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.84", "port": "443", "severity": "INFO", "finding": "https://github.com/ssllabs/research/wiki/SSL-Server-Rating-Guide" }, { "id": "protocol_support_score", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.52", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.84", "port": "443", "severity": "INFO", "finding": "100" }, { "id": "protocol_support_score_weighted", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.52", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.84", "port": "443", "severity": "INFO", "finding": "30" }, { "id": "key_exchange_score", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.52", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.84", "port": "443", "severity": "INFO", "finding": "90" }, { "id": "key_exchange_score_weighted", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.52", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.84", "port": "443", "severity": "INFO", "finding": "27" }, { "id": "cipher_strength_score", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.52", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.84", "port": "443", "severity": "INFO", "finding": "60" }, { "id": "cipher_strength_score_weighted", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.52", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.84", "port": "443", "severity": "INFO", "finding": "24" }, { "id": "final_score", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.52", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.84", "port": "443", "severity": "INFO", "finding": "81" }, { "id": "overall_grade", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.52", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.84", "port": "443", "severity": "OK", "finding": "A+" }, { "id": "service", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.84", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.20", "port": "443", "severity": "INFO", "finding": "HTTP" }, { "id": "pre_128cipher", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.84", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.20", "port": "443", "severity": "INFO", "finding": "No 128 cipher limit bug" }, { "id": "SSLv2", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.84", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.20", "port": "443", "severity": "OK", "finding": "not offered" }, { "id": "SSLv3", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.84", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.20", "port": "443", "severity": "OK", "finding": "not offered" }, { "id": "TLS1", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.84", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.20", "port": "443", "severity": "INFO", "finding": "not offered" }, { "id": "TLS1_1", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.84", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.20", "port": "443", "severity": "INFO", "finding": "not offered" }, { "id": "TLS1_2", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.84", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.20", "port": "443", "severity": "OK", "finding": "offered" }, { "id": "TLS1_3", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.84", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.20", "port": "443", "severity": "OK", "finding": "offered with final" }, { "id": "ALPN_HTTP2", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.84", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.20", "port": "443", "severity": "OK", "finding": "h2" }, { "id": "ALPN", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.84", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.20", "port": "443", "severity": "INFO", "finding": "http/1.1" }, { "id": "cipherlist_NULL", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.84", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.20", "port": "443", "severity": "OK", "cwe": "CWE-327", @@ -33814,7 +32364,7 @@ }, { "id": "cipherlist_aNULL", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.84", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.20", "port": "443", "severity": "OK", "cwe": "CWE-327", @@ -33822,7 +32372,7 @@ }, { "id": "cipherlist_EXPORT", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.84", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.20", "port": "443", "severity": "OK", "cwe": "CWE-327", @@ -33830,7 +32380,7 @@ }, { "id": "cipherlist_LOW", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.84", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.20", "port": "443", "severity": "OK", "cwe": "CWE-327", @@ -33838,7 +32388,7 @@ }, { "id": "cipherlist_3DES_IDEA", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.84", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.20", "port": "443", "severity": "INFO", "cwe": "CWE-310", @@ -33846,7 +32396,7 @@ }, { "id": "cipherlist_OBSOLETED", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.84", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.20", "port": "443", "severity": "INFO", "cwe": "CWE-310", @@ -33854,589 +32404,589 @@ }, { "id": "cipherlist_STRONG_NOFS", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.84", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.20", "port": "443", "severity": "INFO", "finding": "not offered" }, { "id": "cipherlist_STRONG_FS", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.84", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.20", "port": "443", "severity": "OK", "finding": "offered" }, { "id": "cipher_order-tls1_2", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.84", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.20", "port": "443", "severity": "OK", "finding": "server" }, { "id": "cipherorder_TLSv1_2", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.84", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.20", "port": "443", "severity": "INFO", "finding": "ECDHE-RSA-AES128-GCM-SHA256" }, { "id": "cipher_order", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.84", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.20", "port": "443", "severity": "OK", "finding": "server" }, { "id": "FS", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.84", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.20", "port": "443", "severity": "OK", "finding": "offered" }, { "id": "FS_ciphers", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.84", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.20", "port": "443", "severity": "INFO", "finding": "ECDHE-RSA-AES128-GCM-SHA256 ECDHE-RSA-AES256-GCM-SHA384" }, { "id": "FS_ECDHE_curves", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.84", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.20", "port": "443", "severity": "OK", "finding": "prime256v1 secp384r1" }, { "id": "TLS_extensions", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.84", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.20", "port": "443", "severity": "INFO", "finding": "'server name/#0' 'EC point formats/#11' 'renegotiation info/#65281' 'session ticket/#35' 'supported versions/#43' 'key share/#51' 'status request/#5' 'application layer protocol negotiation/#16' 'extended master secret/#23'" }, { "id": "TLS_session_ticket", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.84", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.20", "port": "443", "severity": "INFO", "finding": "valid for 86400 seconds only (= 60 days" + "finding": "210 >= 60 days" }, { "id": "cert_notBefore", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.84", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.20", "port": "443", "severity": "INFO", "finding": "2024-05-30 00:00" }, { "id": "cert_notAfter", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.84", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.20", "port": "443", "severity": "OK", "finding": "2025-06-29 23:59" }, { "id": "cert_extlifeSpan", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.84", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.20", "port": "443", "severity": "OK", "finding": "certificate has no extended life time according to browser forum" }, { "id": "cert_eTLS", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.84", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.20", "port": "443", "severity": "INFO", "finding": "not present" }, { "id": "cert_crlDistributionPoints", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.84", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.20", "port": "443", "severity": "INFO", "finding": "http://crl.r2m03.amazontrust.com/r2m03.crl" }, { "id": "cert_ocspURL", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.84", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.20", "port": "443", "severity": "INFO", "finding": "http://ocsp.r2m03.amazontrust.com" }, { "id": "OCSP_stapling", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.84", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.20", "port": "443", "severity": "LOW", "finding": "not offered" }, { "id": "cert_mustStapleExtension", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.84", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.20", "port": "443", "severity": "INFO", "finding": "--" }, { "id": "DNS_CAArecord", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.84", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.20", "port": "443", "severity": "LOW", "finding": "--" }, { "id": "certificate_transparency", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.84", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.20", "port": "443", "severity": "OK", "finding": "yes (certificate extension)" }, { "id": "certs_countServer", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.84", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.20", "port": "443", "severity": "INFO", "finding": "4" }, { "id": "certs_list_ordering_problem", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.84", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.20", "port": "443", "severity": "INFO", "finding": "no" }, { "id": "cert_caIssuers", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.84", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.20", "port": "443", "severity": "INFO", "finding": "Amazon RSA 2048 M03 (Amazon from US)" }, { "id": "intermediate_cert <#1>", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.84", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.20", "port": "443", "severity": "INFO", "finding": "-----BEGIN CERTIFICATE-----\nMIIEXjCCA0agAwIBAgITB3MSTNQG0mfAmRzdKZqfODF5hTANBgkqhkiG9w0BAQsFADA5MQswCQYDVQQGEwJVUzEPMA0GA1UEChMGQW1hem9uMRkwFwYDVQQDExBBbWF6b24gUm9vdCBDQSAxMB4XDTIyMDgyMzIyMjYwNFoXDTMwMDgyMzIyMjYwNFowPDELMAkGA1UEBhMCVVMxDzANBgNVBAoTBkFtYXpvbjEcMBoGA1UEAxMTQW1hem9uIFJTQSAyMDQ4IE0wMzCCASIwDQYJKoZIhvcNAQEBBQADggEPADCCAQoCggEBALd/pVko8vuM475Tf45HV3BbCl/B9Jy89G1CRkFjcPY06WA9lS+7dWbUA7GtWUKoksr69hKMwcMsNpxlw7b3jeXFgxB09/nmalcAWtnLzF+LaDKEA5DQmvKzuh1nfIfqEiKCQSmXXh09Xs+dO7cm5qbaL2hhNJCSAejciwcvOFgFNgEMR42wm6KIFHsQW28jhA+1u/M0p6fVwReuEgZfLfdx82Px0LJck3lST3EB/JfbdsdOzzzg5YkY1dfuqf8y5fUeZ7CzWXbTjujwX/TovmeWKA36VLCz75azW6tDNuDn66FOpADZZ9omVaF6BqNJiLMVl6P3/c0OiUMC6Z5OfKcCAwEAAaOCAVowggFWMBIGA1UdEwEB/wQIMAYBAf8CAQAwDgYDVR0PAQH/BAQDAgGGMB0GA1UdJQQWMBQGCCsGAQUFBwMBBggrBgEFBQcDAjAdBgNVHQ4EFgQUVdkYX9IczAHhWLS+q9lVQgHXLgIwHwYDVR0jBBgwFoAUhBjMhTTsvAyUlC4IWZzHshBOCggwewYIKwYBBQUHAQEEbzBtMC8GCCsGAQUFBzABhiNodHRwOi8vb2NzcC5yb290Y2ExLmFtYXpvbnRydXN0LmNvbTA6BggrBgEFBQcwAoYuaHR0cDovL2NydC5yb290Y2ExLmFtYXpvbnRydXN0LmNvbS9yb290Y2ExLmNlcjA/BgNVHR8EODA2MDSgMqAwhi5odHRwOi8vY3JsLnJvb3RjYTEuYW1hem9udHJ1c3QuY29tL3Jvb3RjYTEuY3JsMBMGA1UdIAQMMAowCAYGZ4EMAQIBMA0GCSqGSIb3DQEBCwUAA4IBAQAGjeWm2cC+3z2MzSCnte46/7JZvj3iQZDY7EvODNdZF41n71Lrk9kbfNwerK0dVNzW36Wefr7j7ZSwBVg50W5ay65jNSN74TTQV1yt4WnSbVvN6KlMs1hiyOZdoHKsKDV2UGNxbdoBYCQNa2GYF8FQIWLugNp35aSOpMy6cFlymFQomIrnOQHwK1nvVY4qxDSJMU/gNJz17D8ArPN3ngnyZ2TwepJ0uBINz3G5te2rdFUF4i4Y3Bb7FUlHDYm4u8aIRGpk2ZpfXmxaoxnbIBZRvGLPSUuPwnwoUOMsJ8jirI5vs2dvchPb7MtI1rlei02f2ivH2vxkjDLltSpe2fiC\n-----END CERTIFICATE-----" }, { "id": "intermediate_cert_fingerprintSHA256 <#1>", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.84", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.20", "port": "443", "severity": "INFO", "finding": "BF8A69027BCC8D2D42A6E6D25BDD4873F6A34B8F90EDF07E86C5D6916DA0B933" }, { "id": "intermediate_cert_notBefore <#1>", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.84", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.20", "port": "443", "severity": "INFO", "finding": "2022-08-23 22:26" }, { "id": "intermediate_cert_notAfter <#1>", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.84", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.20", "port": "443", "severity": "OK", "finding": "2030-08-23 22:26" }, { "id": "intermediate_cert_expiration <#1>", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.84", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.20", "port": "443", "severity": "OK", "finding": "ok > 40 days" }, { "id": "intermediate_cert_chain <#1>", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.84", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.20", "port": "443", "severity": "INFO", "finding": "Amazon RSA 2048 M03 <-- Amazon Root CA 1" }, { "id": "intermediate_cert <#2>", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.84", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.20", "port": "443", "severity": "INFO", "finding": "-----BEGIN CERTIFICATE-----\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\n-----END CERTIFICATE-----" }, { "id": "intermediate_cert_fingerprintSHA256 <#2>", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.84", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.20", "port": "443", "severity": "INFO", "finding": "87DCD4DC74640A322CD205552506D1BE64F12596258096544986B4850BC72706" }, { "id": "intermediate_cert_notBefore <#2>", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.84", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.20", "port": "443", "severity": "INFO", "finding": "2015-05-25 12:00" }, { "id": "intermediate_cert_notAfter <#2>", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.84", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.20", "port": "443", "severity": "OK", "finding": "2037-12-31 01:00" }, { "id": "intermediate_cert_expiration <#2>", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.84", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.20", "port": "443", "severity": "OK", "finding": "ok > 40 days" }, { "id": "intermediate_cert_chain <#2>", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.84", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.20", "port": "443", "severity": "INFO", "finding": "Amazon Root CA 1 <-- Starfield Services Root Certificate Authority - G2" }, { "id": "intermediate_cert <#3>", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.84", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.20", "port": "443", "severity": "INFO", "finding": "-----BEGIN CERTIFICATE-----\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\n-----END CERTIFICATE-----" }, { "id": "intermediate_cert_fingerprintSHA256 <#3>", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.84", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.20", "port": "443", "severity": "INFO", "finding": "28689B30E4C306AAB53B027B29E36AD6DD1DCF4B953994482CA84BDC1ECAC996" }, { "id": "intermediate_cert_notBefore <#3>", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.84", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.20", "port": "443", "severity": "INFO", "finding": "2009-09-02 00:00" }, { "id": "intermediate_cert_notAfter <#3>", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.84", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.20", "port": "443", "severity": "OK", "finding": "2034-06-28 17:39" }, { "id": "intermediate_cert_expiration <#3>", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.84", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.20", "port": "443", "severity": "OK", "finding": "ok > 40 days" }, { "id": "intermediate_cert_chain <#3>", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.84", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.20", "port": "443", "severity": "INFO", "finding": "Starfield Services Root Certificate Authority - G2 <--" }, { "id": "intermediate_cert_badOCSP", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.84", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.20", "port": "443", "severity": "OK", "finding": "intermediate certificate(s) is/are ok" }, { "id": "HTTP_status_code", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.84", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.20", "port": "443", "severity": "INFO", "finding": "200 OK ('/')" }, { "id": "HTTP_clock_skew", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.84", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.20", "port": "443", "severity": "INFO", "finding": "+1 seconds from localtime" }, { "id": "HTTP_headerTime", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.84", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.20", "port": "443", "severity": "INFO", - "finding": "1732406172" + "finding": "1733017449" }, { "id": "HTTP_headerAge", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.84", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.20", "port": "443", "severity": "INFO", - "finding": "6426 seconds" + "finding": "490 seconds" }, { "id": "HSTS_time", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.84", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.20", "port": "443", "severity": "OK", "finding": "730 days (=63072000 seconds) > 15552000 seconds" }, { "id": "HSTS_subdomains", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.84", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.20", "port": "443", "severity": "OK", "finding": "includes subdomains" }, { "id": "HSTS_preload", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.84", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.20", "port": "443", "severity": "OK", "finding": "domain IS marked for preloading" }, { "id": "HPKP", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.84", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.20", "port": "443", "severity": "INFO", "finding": "No support for HTTP Public Key Pinning" }, { "id": "banner_server", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.84", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.20", "port": "443", "severity": "INFO", "finding": "AmazonS3" }, { "id": "banner_application", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.84", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.20", "port": "443", "severity": "INFO", "finding": "No application banner found" }, { "id": "cookie_count", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.84", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.20", "port": "443", "severity": "INFO", "finding": "0 at '/'" }, { "id": "X-Frame-Options", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.84", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.20", "port": "443", "severity": "OK", "finding": "DENY" }, { "id": "X-Content-Type-Options", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.84", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.20", "port": "443", "severity": "OK", "finding": "nosniff" }, { "id": "Content-Security-Policy", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.84", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.20", "port": "443", "severity": "OK", "finding": "default-src 'self' data: https://*.gouv.fr https://openmaptiles.github.io ; font-src 'self' https://cdn.jsdelivr.net; img-src 'self' data: https://*.gouv.fr; object-src 'none'; script-src 'self' 'unsafe-inline' 'unsafe-eval' https://*.gouv.fr blob:; style-src 'self' 'unsafe-inline';" }, { "id": "Permissions-Policy", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.84", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.20", "port": "443", "severity": "OK", "finding": "accelerometer=(), camera=(), geolocation=(self), gyroscope=(), magnetometer=(), microphone=(), payment=(), usb=()" }, { "id": "X-XSS-Protection", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.84", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.20", "port": "443", "severity": "INFO", "finding": "1; mode=block" }, { "id": "Referrer-Policy", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.84", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.20", "port": "443", "severity": "INFO", "finding": "same-origin" }, { "id": "banner_reverseproxy", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.84", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.20", "port": "443", "severity": "INFO", "cwe": "CWE-200", - "finding": "X-Cache: Hit from cloudfrontVia: 1.1 32906bb872c08ff51404d826f2b8ab5e.cloudfront.net (CloudFront)" + "finding": "X-Cache: Hit from cloudfrontVia: 1.1 96f9056a06e76b2b06097885847b76f0.cloudfront.net (CloudFront)" }, { "id": "heartbleed", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.84", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.20", "port": "443", "severity": "OK", "cve": "CVE-2014-0160", @@ -34445,7 +32995,7 @@ }, { "id": "CCS", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.84", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.20", "port": "443", "severity": "OK", "cve": "CVE-2014-0224", @@ -34454,7 +33004,7 @@ }, { "id": "ticketbleed", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.84", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.20", "port": "443", "severity": "OK", "cve": "CVE-2016-9244", @@ -34463,7 +33013,7 @@ }, { "id": "ROBOT", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.84", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.20", "port": "443", "severity": "OK", "cve": "CVE-2017-17382 CVE-2017-17427 CVE-2017-17428 CVE-2017-13098 CVE-2017-1000385 CVE-2017-13099 CVE-2016-6883 CVE-2012-5081 CVE-2017-6168", @@ -34472,7 +33022,7 @@ }, { "id": "secure_renego", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.84", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.20", "port": "443", "severity": "OK", "cwe": "CWE-310", @@ -34480,7 +33030,7 @@ }, { "id": "secure_client_renego", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.84", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.20", "port": "443", "severity": "OK", "cve": "CVE-2011-1473", @@ -34489,7 +33039,7 @@ }, { "id": "CRIME_TLS", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.84", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.20", "port": "443", "severity": "OK", "cve": "CVE-2012-4929", @@ -34498,7 +33048,7 @@ }, { "id": "BREACH", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.84", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.20", "port": "443", "severity": "MEDIUM", "cve": "CVE-2013-3587", @@ -34507,7 +33057,7 @@ }, { "id": "POODLE_SSL", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.84", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.20", "port": "443", "severity": "OK", "cve": "CVE-2014-3566", @@ -34516,14 +33066,14 @@ }, { "id": "fallback_SCSV", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.84", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.20", "port": "443", "severity": "OK", "finding": "no protocol below TLS 1.2 offered" }, { "id": "SWEET32", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.84", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.20", "port": "443", "severity": "OK", "cve": "CVE-2016-2183 CVE-2016-6329", @@ -34532,7 +33082,7 @@ }, { "id": "FREAK", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.84", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.20", "port": "443", "severity": "OK", "cve": "CVE-2015-0204", @@ -34541,7 +33091,7 @@ }, { "id": "DROWN", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.84", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.20", "port": "443", "severity": "OK", "cve": "CVE-2016-0800 CVE-2016-0703", @@ -34550,7 +33100,7 @@ }, { "id": "DROWN_hint", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.84", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.20", "port": "443", "severity": "INFO", "cve": "CVE-2016-0800 CVE-2016-0703", @@ -34559,7 +33109,7 @@ }, { "id": "LOGJAM", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.84", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.20", "port": "443", "severity": "OK", "cve": "CVE-2015-4000", @@ -34568,7 +33118,7 @@ }, { "id": "LOGJAM-common_primes", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.84", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.20", "port": "443", "severity": "OK", "cve": "CVE-2015-4000", @@ -34577,7 +33127,7 @@ }, { "id": "BEAST", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.84", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.20", "port": "443", "severity": "OK", "cve": "CVE-2011-3389", @@ -34586,7 +33136,7 @@ }, { "id": "LUCKY13", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.84", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.20", "port": "443", "severity": "OK", "cve": "CVE-2013-0169", @@ -34595,7 +33145,7 @@ }, { "id": "winshock", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.84", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.20", "port": "443", "severity": "OK", "cve": "CVE-2014-6321", @@ -34604,7 +33154,7 @@ }, { "id": "RC4", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.84", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.20", "port": "443", "severity": "OK", "cve": "CVE-2013-2566 CVE-2015-2808", @@ -34613,325 +33163,325 @@ }, { "id": "clientsimulation-android_60", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.84", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.20", "port": "443", "severity": "INFO", "finding": "TLSv1.2 ECDHE-RSA-AES128-GCM-SHA256" }, { "id": "clientsimulation-android_70", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.84", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.20", "port": "443", "severity": "INFO", "finding": "TLSv1.2 ECDHE-RSA-AES128-GCM-SHA256" }, { "id": "clientsimulation-android_81", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.84", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.20", "port": "443", "severity": "INFO", "finding": "TLSv1.2 ECDHE-RSA-AES128-GCM-SHA256" }, { "id": "clientsimulation-android_90", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.84", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.20", "port": "443", "severity": "INFO", "finding": "TLSv1.3 TLS_AES_128_GCM_SHA256" }, { "id": "clientsimulation-android_X", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.84", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.20", "port": "443", "severity": "INFO", "finding": "TLSv1.3 TLS_AES_128_GCM_SHA256" }, { "id": "clientsimulation-android_11", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.84", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.20", "port": "443", "severity": "INFO", "finding": "TLSv1.3 TLS_AES_128_GCM_SHA256" }, { "id": "clientsimulation-android_12", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.84", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.20", "port": "443", "severity": "INFO", "finding": "TLSv1.3 TLS_AES_128_GCM_SHA256" }, { "id": "clientsimulation-chrome_79_win10", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.84", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.20", "port": "443", "severity": "INFO", "finding": "TLSv1.3 TLS_AES_128_GCM_SHA256" }, { "id": "clientsimulation-chrome_101_win10", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.84", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.20", "port": "443", "severity": "INFO", "finding": "TLSv1.3 TLS_AES_128_GCM_SHA256" }, { "id": "clientsimulation-firefox_66_win81", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.84", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.20", "port": "443", "severity": "INFO", "finding": "TLSv1.3 TLS_AES_128_GCM_SHA256" }, { "id": "clientsimulation-firefox_100_win10", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.84", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.20", "port": "443", "severity": "INFO", "finding": "TLSv1.3 TLS_AES_128_GCM_SHA256" }, { "id": "clientsimulation-ie_6_xp", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.84", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.20", "port": "443", "severity": "INFO", "finding": "No connection" }, { "id": "clientsimulation-ie_8_win7", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.84", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.20", "port": "443", "severity": "INFO", "finding": "No connection" }, { "id": "clientsimulation-ie_8_xp", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.84", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.20", "port": "443", "severity": "INFO", "finding": "No connection" }, { "id": "clientsimulation-ie_11_win7", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.84", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.20", "port": "443", "severity": "INFO", "finding": "No connection" }, { "id": "clientsimulation-ie_11_win81", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.84", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.20", "port": "443", "severity": "INFO", "finding": "No connection" }, { "id": "clientsimulation-ie_11_winphone81", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.84", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.20", "port": "443", "severity": "INFO", "finding": "No connection" }, { "id": "clientsimulation-ie_11_win10", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.84", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.20", "port": "443", "severity": "INFO", "finding": "TLSv1.2 ECDHE-RSA-AES128-GCM-SHA256" }, { "id": "clientsimulation-edge_15_win10", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.84", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.20", "port": "443", "severity": "INFO", "finding": "TLSv1.2 ECDHE-RSA-AES128-GCM-SHA256" }, { "id": "clientsimulation-edge_101_win10_21h2", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.84", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.20", "port": "443", "severity": "INFO", "finding": "TLSv1.3 TLS_AES_128_GCM_SHA256" }, { "id": "clientsimulation-safari_121_ios_122", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.84", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.20", "port": "443", "severity": "INFO", "finding": "TLSv1.3 TLS_AES_128_GCM_SHA256" }, { "id": "clientsimulation-safari_130_osx_10146", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.84", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.20", "port": "443", "severity": "INFO", "finding": "TLSv1.3 TLS_AES_128_GCM_SHA256" }, { "id": "clientsimulation-safari_154_osx_1231", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.84", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.20", "port": "443", "severity": "INFO", "finding": "TLSv1.3 TLS_AES_128_GCM_SHA256" }, { "id": "clientsimulation-java_7u25", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.84", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.20", "port": "443", "severity": "INFO", "finding": "No connection" }, { "id": "clientsimulation-java_8u161", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.84", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.20", "port": "443", "severity": "INFO", "finding": "TLSv1.2 ECDHE-RSA-AES128-GCM-SHA256" }, { "id": "clientsimulation-java1102", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.84", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.20", "port": "443", "severity": "INFO", "finding": "TLSv1.3 TLS_AES_128_GCM_SHA256" }, { "id": "clientsimulation-java1703", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.84", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.20", "port": "443", "severity": "INFO", "finding": "TLSv1.3 TLS_AES_128_GCM_SHA256" }, { "id": "clientsimulation-go_1178", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.84", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.20", "port": "443", "severity": "INFO", "finding": "TLSv1.3 TLS_AES_128_GCM_SHA256" }, { "id": "clientsimulation-libressl_283", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.84", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.20", "port": "443", "severity": "INFO", "finding": "TLSv1.2 ECDHE-RSA-AES128-GCM-SHA256" }, { "id": "clientsimulation-openssl_102e", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.84", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.20", "port": "443", "severity": "INFO", "finding": "TLSv1.2 ECDHE-RSA-AES128-GCM-SHA256" }, { "id": "clientsimulation-openssl_110l", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.84", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.20", "port": "443", "severity": "INFO", "finding": "TLSv1.2 ECDHE-RSA-AES128-GCM-SHA256" }, { "id": "clientsimulation-openssl_111d", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.84", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.20", "port": "443", "severity": "INFO", "finding": "TLSv1.3 TLS_AES_128_GCM_SHA256" }, { "id": "clientsimulation-openssl_303", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.84", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.20", "port": "443", "severity": "INFO", "finding": "TLSv1.3 TLS_AES_128_GCM_SHA256" }, { "id": "clientsimulation-apple_mail_16_0", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.84", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.20", "port": "443", "severity": "INFO", "finding": "TLSv1.2 ECDHE-RSA-AES128-GCM-SHA256" }, { "id": "clientsimulation-thunderbird_91_9", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.84", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.20", "port": "443", "severity": "INFO", "finding": "TLSv1.3 TLS_AES_128_GCM_SHA256" }, { "id": "rating_spec", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.84", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.20", "port": "443", "severity": "INFO", "finding": "SSL Labs's 'SSL Server Rating Guide' (version 2009q from 2020-01-30)" }, { "id": "rating_doc", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.84", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.20", "port": "443", "severity": "INFO", "finding": "https://github.com/ssllabs/research/wiki/SSL-Server-Rating-Guide" }, { "id": "protocol_support_score", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.84", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.20", "port": "443", "severity": "INFO", "finding": "100" }, { "id": "protocol_support_score_weighted", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.84", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.20", "port": "443", "severity": "INFO", "finding": "30" }, { "id": "key_exchange_score", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.84", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.20", "port": "443", "severity": "INFO", "finding": "90" }, { "id": "key_exchange_score_weighted", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.84", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.20", "port": "443", "severity": "INFO", "finding": "27" }, { "id": "cipher_strength_score", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.84", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.20", "port": "443", "severity": "INFO", "finding": "60" }, { "id": "cipher_strength_score_weighted", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.84", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.20", "port": "443", "severity": "INFO", "finding": "24" }, { "id": "final_score", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.84", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.20", "port": "443", "severity": "INFO", "finding": "81" }, { "id": "overall_grade", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.84", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.20", "port": "443", "severity": "OK", "finding": "A+" }, { "id": "scanTime", - "ip": "cartographie.societenumerique.gouv.fr/3.167.69.84", + "ip": "cartographie.societenumerique.gouv.fr/3.167.69.20", "port": "443", "severity": "INFO", - "finding": "297" + "finding": "306" } ], "thirdparties": { @@ -35015,7 +33565,7 @@ "value": "1", "domain": "cartographie.societenumerique.gouv.fr", "path": "/", - "expires": 1732414125, + "expires": 1733019457, "size": 17, "httpOnly": false, "secure": false, @@ -35027,10 +33577,10 @@ }, { "name": "_pk_id.277.9ac4", - "value": "26bf520d8637c8bf.1732412325.", + "value": "a4c7d7950f48ed5a.1733017658.", "domain": "cartographie.societenumerique.gouv.fr", "path": "/", - "expires": 1766367525, + "expires": 1766972858, "size": 43, "httpOnly": false, "secure": false, @@ -35042,11 +33592,11 @@ } ], "headers": { - "age": "5648", + "age": "1140", "content-encoding": "gzip", "content-security-policy": "default-src 'self' data: https://*.gouv.fr https://openmaptiles.github.io ; font-src 'self' https://cdn.jsdelivr.net; img-src 'self' data: https://*.gouv.fr; object-src 'none'; script-src 'self' 'unsafe-inline' 'unsafe-eval' https://*.gouv.fr blob:; style-src 'self' 'unsafe-inline';", "content-type": "text/html", - "date": "Sun, 24 Nov 2024 00:04:37 GMT", + "date": "Sun, 01 Dec 2024 01:43:24 GMT", "etag": "W/\"8751acb0225766f6b06ce0104e0cd447\"", "last-modified": "Fri, 11 Oct 2024 07:39:28 GMT", "permissions-policy": "accelerometer=(), camera=(), geolocation=(self), gyroscope=(), magnetometer=(), microphone=(), payment=(), usb=()", @@ -35054,8 +33604,8 @@ "server": "AmazonS3", "strict-transport-security": "max-age=63072000; includeSubDomains; preload", "vary": "accept-encoding", - "via": "1.1 654fa9454f8823b9a4b408142bde0d6e.cloudfront.net (CloudFront)", - "x-amz-cf-id": "IgXGnDjjJtdz8a2ci8rzFUn0MfAcKUF9q5WxZZSAP05bYBrnFsPVWw==", + "via": "1.1 554a247e2bb62ed2a3603decd985d5d6.cloudfront.net (CloudFront)", + "x-amz-cf-id": "fQXjC62GNwGZkxfOW1EO1KXR0Wvg0fdFYHueHcyxdP0_ummMc1d1vQ==", "x-amz-cf-pop": "IAD61-P6", "x-amz-server-side-encryption": "AES256", "x-cache": "Hit from cloudfront", @@ -35066,7 +33616,7 @@ "endpoints": [ { "hostname": "cartographie.societenumerique.gouv.fr", - "ip": "3.167.69.52", + "ip": "3.167.69.20", "geoip": { "continent": { "code": "NA", @@ -35120,8 +33670,59 @@ }, { "hostname": "cdn.jsdelivr.net", - "ip": "104.18.186.31", + "ip": "146.75.77.229", "geoip": { + "city": { + "geoname_id": 4887398, + "names": { + "de": "Chicago", + "en": "Chicago", + "es": "Chicago", + "fr": "Chicago", + "ja": "シカゴ", + "pt-BR": "Chicago", + "ru": "Чикаго", + "zh-CN": "芝加哥" + } + }, + "continent": { + "code": "NA", + "geoname_id": 6255149, + "names": { + "de": "Nordamerika", + "en": "North America", + "es": "Norteamérica", + "fr": "Amérique du Nord", + "ja": "北アメリカ", + "pt-BR": "América do Norte", + "ru": "Северная Америка", + "zh-CN": "北美洲" + } + }, + "country": { + "geoname_id": 6252001, + "iso_code": "US", + "names": { + "de": "USA", + "en": "United States", + "es": "Estados Unidos", + "fr": "États Unis", + "ja": "アメリカ", + "pt-BR": "EUA", + "ru": "США", + "zh-CN": "美国" + } + }, + "location": { + "accuracy_radius": 20, + "latitude": 41.8874, + "longitude": -87.6318, + "metro_code": 602, + "time_zone": "America/Chicago" + }, + "postal": { + "code": "60602" + }, "registered_country": { "geoname_id": 6252001, "iso_code": "US", @@ -35135,13 +33736,42 @@ "ru": "США", "zh-CN": "美国" } - } + }, + "subdivisions": [ + { + "geoname_id": 4896861, + "iso_code": "IL", + "names": { + "de": "Illinois", + "en": "Illinois", + "es": "Illinois", + "fr": "Illinois", + "ja": "イリノイ州", + "pt-BR": "Ilinóis", + "ru": "Иллинойс", + "zh-CN": "伊利诺伊州" + } + } + ] } }, { "hostname": "openmaptiles.github.io", - "ip": "185.199.108.153", + "ip": "185.199.109.153", "geoip": { + "city": { + "geoname_id": 5391959, + "names": { + "de": "San Francisco", + "en": "San Francisco", + "es": "San Francisco", + "fr": "San Francisco", + "ja": "サンフランシスコ", + "pt-BR": "São Francisco", + "ru": "Сан-Франциско", + "zh-CN": "旧金山" + } + }, "continent": { "code": "NA", "geoname_id": 6255149, @@ -35171,11 +33801,15 @@ } }, "location": { - "accuracy_radius": 1000, - "latitude": 34.0544, - "longitude": -118.244, + "accuracy_radius": 20, + "latitude": 37.7642, + "longitude": -122.3993, + "metro_code": 807, "time_zone": "America/Los_Angeles" }, + "postal": { + "code": "94107" + }, "registered_country": { "geoname_id": 6252001, "iso_code": "US", @@ -35519,7 +34153,7 @@ "type": "dns", "host": "cartographie.societenumerique.gouv.fr.", "matched-at": "cartographie.societenumerique.gouv.fr", - "timestamp": "2024-11-24T01:44:29.407088013Z", + "timestamp": "2024-12-01T01:53:31.499630295Z", "matcher-status": true }, { @@ -35552,12 +34186,12 @@ "host": "cartographie.societenumerique.gouv.fr.", "matched-at": "cartographie.societenumerique.gouv.fr", "extracted-results": [ - "ns-1362.awsdns-42.org.", - "ns-1869.awsdns-41.co.uk.", "ns-383.awsdns-47.com.", - "ns-677.awsdns-20.net." + "ns-677.awsdns-20.net.", + "ns-1362.awsdns-42.org.", + "ns-1869.awsdns-41.co.uk." ], - "timestamp": "2024-11-24T01:44:30.547775511Z", + "timestamp": "2024-12-01T01:53:31.596066647Z", "matcher-status": true }, { @@ -35596,8 +34230,8 @@ "extracted-results": [ "1; mode=block" ], - "ip": "3.167.69.84", - "timestamp": "2024-11-24T01:44:37.480673042Z", + "ip": "18.160.225.13", + "timestamp": "2024-12-01T01:53:39.054518943Z", "curl-command": "curl -X 'GET' -H 'Accept: */*' -H 'Accept-Language: en' -H 'User-Agent: Nuclei - Open-source project (github.com/projectdiscovery/nuclei)' 'https://cartographie.societenumerique.gouv.fr'", "matcher-status": true }, @@ -35624,8 +34258,8 @@ "type": "http", "host": "https://cartographie.societenumerique.gouv.fr", "matched-at": "https://cartographie.societenumerique.gouv.fr", - "ip": "3.167.69.84", - "timestamp": "2024-11-24T01:44:37.482496151Z", + "ip": "18.160.225.13", + "timestamp": "2024-12-01T01:53:39.056221682Z", "curl-command": "curl -X 'GET' -H 'Accept: */*' -H 'Accept-Language: en' -H 'User-Agent: Nuclei - Open-source project (github.com/projectdiscovery/nuclei)' 'https://cartographie.societenumerique.gouv.fr'", "matcher-status": true }, @@ -35653,46 +34287,8 @@ "type": "http", "host": "https://cartographie.societenumerique.gouv.fr", "matched-at": "https://cartographie.societenumerique.gouv.fr", - "ip": "3.167.69.84", - "timestamp": "2024-11-24T01:44:37.482538009Z", - "curl-command": "curl -X 'GET' -H 'Accept: */*' -H 'Accept-Language: en' -H 'User-Agent: Nuclei - Open-source project (github.com/projectdiscovery/nuclei)' 'https://cartographie.societenumerique.gouv.fr'", - "matcher-status": true - }, - { - "template": "http/misconfiguration/http-missing-security-headers.yaml", - "template-url": "https://templates.nuclei.sh/public/http-missing-security-headers", - "template-id": "http-missing-security-headers", - "template-path": "/home/runner/nuclei-templates/http/misconfiguration/http-missing-security-headers.yaml", - "info": { - "name": "HTTP Missing Security Headers", - "author": [ - "socketz", - "geeknik", - "g4l1t0", - "convisoappsec", - "kurohost", - "dawid-czarnecki", - "forgedhallpass", - "jub0bs", - "userdehghani" - ], - "tags": [ - "misconfig", - "headers", - "generic" - ], - "description": "This template searches for missing HTTP security headers. The impact of these missing headers can vary.\n", - "severity": "info", - "metadata": { - "max-request": 1 - } - }, - "matcher-name": "x-permitted-cross-domain-policies", - "type": "http", - "host": "https://cartographie.societenumerique.gouv.fr", - "matched-at": "https://cartographie.societenumerique.gouv.fr", - "ip": "3.167.69.84", - "timestamp": "2024-11-24T01:45:06.182336693Z", + "ip": "18.160.225.13", + "timestamp": "2024-12-01T01:53:39.056258951Z", "curl-command": "curl -X 'GET' -H 'Accept: */*' -H 'Accept-Language: en' -H 'User-Agent: Nuclei - Open-source project (github.com/projectdiscovery/nuclei)' 'https://cartographie.societenumerique.gouv.fr'", "matcher-status": true }, @@ -35729,8 +34325,8 @@ "type": "http", "host": "https://cartographie.societenumerique.gouv.fr", "matched-at": "https://cartographie.societenumerique.gouv.fr", - "ip": "3.167.69.84", - "timestamp": "2024-11-24T01:45:06.18238333Z", + "ip": "18.160.225.13", + "timestamp": "2024-12-01T01:54:07.711609933Z", "curl-command": "curl -X 'GET' -H 'Accept: */*' -H 'Accept-Language: en' -H 'User-Agent: Nuclei - Open-source project (github.com/projectdiscovery/nuclei)' 'https://cartographie.societenumerique.gouv.fr'", "matcher-status": true }, @@ -35767,8 +34363,8 @@ "type": "http", "host": "https://cartographie.societenumerique.gouv.fr", "matched-at": "https://cartographie.societenumerique.gouv.fr", - "ip": "3.167.69.84", - "timestamp": "2024-11-24T01:45:06.182399701Z", + "ip": "18.160.225.13", + "timestamp": "2024-12-01T01:54:07.711664925Z", "curl-command": "curl -X 'GET' -H 'Accept: */*' -H 'Accept-Language: en' -H 'User-Agent: Nuclei - Open-source project (github.com/projectdiscovery/nuclei)' 'https://cartographie.societenumerique.gouv.fr'", "matcher-status": true }, @@ -35805,8 +34401,8 @@ "type": "http", "host": "https://cartographie.societenumerique.gouv.fr", "matched-at": "https://cartographie.societenumerique.gouv.fr", - "ip": "3.167.69.84", - "timestamp": "2024-11-24T01:45:06.182413747Z", + "ip": "18.160.225.13", + "timestamp": "2024-12-01T01:54:07.711685684Z", "curl-command": "curl -X 'GET' -H 'Accept: */*' -H 'Accept-Language: en' -H 'User-Agent: Nuclei - Open-source project (github.com/projectdiscovery/nuclei)' 'https://cartographie.societenumerique.gouv.fr'", "matcher-status": true }, @@ -35819,7427 +34415,2969 @@ "name": "HTTP Missing Security Headers", "author": [ "socketz", - "geeknik", - "g4l1t0", - "convisoappsec", - "kurohost", - "dawid-czarnecki", - "forgedhallpass", - "jub0bs", - "userdehghani" - ], - "tags": [ - "misconfig", - "headers", - "generic" - ], - "description": "This template searches for missing HTTP security headers. The impact of these missing headers can vary.\n", - "severity": "info", - "metadata": { - "max-request": 1 - } - }, - "matcher-name": "cross-origin-resource-policy", - "type": "http", - "host": "https://cartographie.societenumerique.gouv.fr", - "matched-at": "https://cartographie.societenumerique.gouv.fr", - "ip": "3.167.69.84", - "timestamp": "2024-11-24T01:45:06.182434396Z", - "curl-command": "curl -X 'GET' -H 'Accept: */*' -H 'Accept-Language: en' -H 'User-Agent: Nuclei - Open-source project (github.com/projectdiscovery/nuclei)' 'https://cartographie.societenumerique.gouv.fr'", - "matcher-status": true - }, - { - "template": "http/technologies/aws/aws-detect.yaml", - "template-url": "https://templates.nuclei.sh/public/aws-detect", - "template-id": "aws-detect", - "template-path": "/home/runner/nuclei-templates/http/technologies/aws/aws-detect.yaml", - "info": { - "name": "AWS Service - Detect", - "author": [ - "6mile" - ], - "tags": [ - "tech", - "aws", - "amazon", - "alb", - "cloudfront", - "codebuild", - "gateway", - "xray", - "captcha", - "dynamodb", - "kms" - ], - "description": "Detect if AWS is being used in the application.", - "reference": [ - "https://github.com/6mile/cloud-headers" - ], - "severity": "info", - "metadata": { - "max-request": 1 - }, - "classification": { - "cve-id": null, - "cwe-id": [ - "cwe-200" - ] - } - }, - "matcher-name": "aws-cloudfront", - "type": "http", - "host": "https://cartographie.societenumerique.gouv.fr", - "matched-at": "https://cartographie.societenumerique.gouv.fr", - "ip": "3.167.69.84", - "timestamp": "2024-11-24T01:45:06.182814697Z", - "curl-command": "curl -X 'GET' -H 'Accept: */*' -H 'Accept-Language: en' -H 'User-Agent: Nuclei - Open-source project (github.com/projectdiscovery/nuclei)' 'https://cartographie.societenumerique.gouv.fr'", - "matcher-status": true - }, - { - "template": "http/technologies/aws/aws-detect.yaml", - "template-url": "https://templates.nuclei.sh/public/aws-detect", - "template-id": "aws-detect", - "template-path": "/home/runner/nuclei-templates/http/technologies/aws/aws-detect.yaml", - "info": { - "name": "AWS Service - Detect", - "author": [ - "6mile" - ], - "tags": [ - "tech", - "aws", - "amazon", - "alb", - "cloudfront", - "codebuild", - "gateway", - "xray", - "captcha", - "dynamodb", - "kms" - ], - "description": "Detect if AWS is being used in the application.", - "reference": [ - "https://github.com/6mile/cloud-headers" - ], - "severity": "info", - "metadata": { - "max-request": 1 - }, - "classification": { - "cve-id": null, - "cwe-id": [ - "cwe-200" - ] - } - }, - "matcher-name": "aws-kms", - "type": "http", - "host": "https://cartographie.societenumerique.gouv.fr", - "matched-at": "https://cartographie.societenumerique.gouv.fr", - "ip": "3.167.69.84", - "timestamp": "2024-11-24T01:45:06.182840405Z", - "curl-command": "curl -X 'GET' -H 'Accept: */*' -H 'Accept-Language: en' -H 'User-Agent: Nuclei - Open-source project (github.com/projectdiscovery/nuclei)' 'https://cartographie.societenumerique.gouv.fr'", - "matcher-status": true - }, - { - "template": "http/technologies/s3-detect.yaml", - "template-url": "https://templates.nuclei.sh/public/s3-detect", - "template-id": "s3-detect", - "template-path": "/home/runner/nuclei-templates/http/technologies/s3-detect.yaml", - "info": { - "name": "Detect Amazon-S3 Bucket", - "author": [ - "melbadry9" - ], - "tags": [ - "aws", - "s3", - "bucket", - "tech" - ], - "severity": "info", - "metadata": { - "max-request": 1 - } - }, - "type": "http", - "host": "https://cartographie.societenumerique.gouv.fr", - "matched-at": "https://cartographie.societenumerique.gouv.fr/%c0", - "ip": "3.167.69.84", - "timestamp": "2024-11-24T01:45:23.796345583Z", - "curl-command": "curl -X 'GET' -H 'Accept: */*' -H 'Accept-Language: en' -H 'User-Agent: Nuclei - Open-source project (github.com/projectdiscovery/nuclei)' 'https://cartographie.societenumerique.gouv.fr/%c0'", - "matcher-status": true - }, - { - "template": "http/technologies/waf-detect.yaml", - "template-url": "https://templates.nuclei.sh/public/waf-detect", - "template-id": "waf-detect", - "template-path": "/home/runner/nuclei-templates/http/technologies/waf-detect.yaml", - "info": { - "name": "WAF Detection", - "author": [ - "dwisiswant0", - "lu4nx" - ], - "tags": [ - "waf", - "tech", - "misc" - ], - "description": "A web application firewall was detected.", - "reference": [ - "https://github.com/ekultek/whatwaf" - ], - "severity": "info", - "metadata": { - "max-request": 1 - }, - "classification": { - "cve-id": null, - "cwe-id": [ - "cwe-200" - ] - } - }, - "matcher-name": "cloudfront", - "type": "http", - "host": "https://cartographie.societenumerique.gouv.fr", - "matched-at": "https://cartographie.societenumerique.gouv.fr/", - "ip": "3.167.69.84", - "timestamp": "2024-11-24T01:45:23.826922747Z", - "curl-command": "curl -X 'POST' -d '_=' -H 'Content-Type: application/x-www-form-urlencoded' -H 'Host: cartographie.societenumerique.gouv.fr' -H 'User-Agent: Nuclei - Open-source project (github.com/projectdiscovery/nuclei)' 'https://cartographie.societenumerique.gouv.fr/'", - "matcher-status": true - }, - { - "template": "ssl/tls-version.yaml", - "template-url": "https://templates.nuclei.sh/public/tls-version", - "template-id": "tls-version", - "template-path": "/home/runner/nuclei-templates/ssl/tls-version.yaml", - "info": { - "name": "TLS Version - Detect", - "author": [ - "pdteam", - "pussycat0x" - ], - "tags": [ - "ssl", - "tls" - ], - "description": "TLS version detection is a security process used to determine the version of the Transport Layer Security (TLS) protocol used by a computer or server.\nIt is important to detect the TLS version in order to ensure secure communication between two computers or servers.\n", - "severity": "info", - "metadata": { - "max-request": 4 - } - }, - "type": "ssl", - "host": "cartographie.societenumerique.gouv.fr", - "matched-at": "cartographie.societenumerique.gouv.fr:443", - "extracted-results": [ - "tls12" - ], - "ip": "3.167.69.84", - "timestamp": "2024-11-24T01:50:59.458856178Z", - "matcher-status": true - }, - { - "template": "ssl/detect-ssl-issuer.yaml", - "template-url": "https://templates.nuclei.sh/public/ssl-issuer", - "template-id": "ssl-issuer", - "template-path": "/home/runner/nuclei-templates/ssl/detect-ssl-issuer.yaml", - "info": { - "name": "Detect SSL Certificate Issuer", - "author": [ - "lingtren" - ], - "tags": [ - "ssl", - "tls" - ], - "description": "Extract the issuer's organization from the target's certificate. Issuers are entities which sign and distribute certificates.\n", - "severity": "info", - "metadata": { - "max-request": 1 - } - }, - "type": "ssl", - "host": "cartographie.societenumerique.gouv.fr", - "matched-at": "cartographie.societenumerique.gouv.fr:443", - "extracted-results": [ - "Amazon" - ], - "ip": "3.167.69.84", - "timestamp": "2024-11-24T01:50:59.459559455Z", - "matcher-status": true - }, - { - "template": "ssl/ssl-dns-names.yaml", - "template-url": "https://templates.nuclei.sh/public/ssl-dns-names", - "template-id": "ssl-dns-names", - "template-path": "/home/runner/nuclei-templates/ssl/ssl-dns-names.yaml", - "info": { - "name": "SSL DNS Names", - "author": [ - "pdteam" - ], - "tags": [ - "ssl", - "tls" - ], - "description": "Extract the Subject Alternative Name (SAN) from the target's certificate. SAN facilitates the usage of additional hostnames with the same certificate.\n", - "severity": "info", - "metadata": { - "max-request": 1 - } - }, - "type": "ssl", - "host": "cartographie.societenumerique.gouv.fr", - "matched-at": "cartographie.societenumerique.gouv.fr:443", - "extracted-results": [ - "cartographie.societenumerique.gouv.fr", - "*.cartographie.societenumerique.gouv.fr" - ], - "ip": "3.167.69.84", - "timestamp": "2024-11-24T01:50:59.459684398Z", - "matcher-status": true - }, - { - "template": "ssl/wildcard-tls.yaml", - "template-url": "https://templates.nuclei.sh/public/wildcard-tls", - "template-id": "wildcard-tls", - "template-path": "/home/runner/nuclei-templates/ssl/wildcard-tls.yaml", - "info": { - "name": "Wildcard TLS Certificate", - "author": [ - "lucky0x0d" - ], - "tags": [ - "ssl", - "tls", - "wildcard" - ], - "description": "Checks a sites certificate to see if there are wildcard CN or SAN entries.\n", - "reference": [ - "https://cheatsheetseries.owasp.org/cheatsheets/transport_layer_security_cheat_sheet.html#carefully-consider-the-use-of-wildcard-certificates" - ], - "severity": "info", - "metadata": { - "max-request": 1 - } - }, - "type": "ssl", - "host": "cartographie.societenumerique.gouv.fr", - "matched-at": "cartographie.societenumerique.gouv.fr:443", - "extracted-results": [ - "CN: cartographie.societenumerique.gouv.fr", - " SAN: [cartographie.societenumerique.gouv.fr *.cartographie.societenumerique.gouv.fr]" - ], - "ip": "3.167.69.84", - "timestamp": "2024-11-24T01:50:59.45973359Z", - "matcher-status": true - }, - { - "template": "ssl/tls-version.yaml", - "template-url": "https://templates.nuclei.sh/public/tls-version", - "template-id": "tls-version", - "template-path": "/home/runner/nuclei-templates/ssl/tls-version.yaml", - "info": { - "name": "TLS Version - Detect", - "author": [ - "pdteam", - "pussycat0x" - ], - "tags": [ - "ssl", - "tls" - ], - "description": "TLS version detection is a security process used to determine the version of the Transport Layer Security (TLS) protocol used by a computer or server.\nIt is important to detect the TLS version in order to ensure secure communication between two computers or servers.\n", - "severity": "info", - "metadata": { - "max-request": 4 - } - }, - "type": "ssl", - "host": "cartographie.societenumerique.gouv.fr", - "matched-at": "cartographie.societenumerique.gouv.fr:443", - "extracted-results": [ - "tls13" - ], - "ip": "3.167.69.84", - "timestamp": "2024-11-24T01:50:59.509355513Z", - "matcher-status": true - } - ], - "lhr": [ - { - "requestedUrl": "https://cartographie.societenumerique.gouv.fr/", - "finalUrl": "https://cartographie.societenumerique.gouv.fr/", - "fetchTime": "2024-11-24T01:38:17.007Z", - "runWarnings": [], - "categories": { - "performance": { - "title": "Performance", - "supportedModes": [ - "navigation", - "timespan", - "snapshot" - ], - "id": "performance", - "score": 0.14 - }, - "accessibility": { - "title": "Accessibility", - "description": "These checks highlight opportunities to [improve the accessibility of your web app](https://developers.google.com/web/fundamentals/accessibility). Only a subset of accessibility issues can be automatically detected so manual testing is also encouraged.", - "manualDescription": "These items address areas which an automated testing tool cannot cover. Learn more in our guide on [conducting an accessibility review](https://developers.google.com/web/fundamentals/accessibility/how-to-review).", - "supportedModes": [ - "navigation", - "snapshot" - ], - "id": "accessibility", - "score": 0.89 - }, - "best-practices": { - "title": "Best Practices", - "supportedModes": [ - "navigation", - "timespan", - "snapshot" - ], - "id": "best-practices", - "score": 0.92 - }, - "seo": { - "title": "SEO", - "description": "These checks ensure that your page is following basic search engine optimization advice. There are many additional factors Lighthouse does not score here that may affect your search ranking, including performance on [Core Web Vitals](https://web.dev/learn-web-vitals/). [Learn more](https://support.google.com/webmasters/answer/35769).", - "manualDescription": "Run these additional validators on your site to check additional SEO best practices.", - "supportedModes": [ - "navigation", - "snapshot" - ], - "id": "seo", - "score": 0.85 - }, - "pwa": { - "title": "PWA", - "description": "These checks validate the aspects of a Progressive Web App. [Learn more](https://developers.google.com/web/progressive-web-apps/checklist).", - "manualDescription": "These checks are required by the baseline [PWA Checklist](https://developers.google.com/web/progressive-web-apps/checklist) but are not automatically checked by Lighthouse. They do not affect your score but it's important that you verify them manually.", - "supportedModes": [ - "navigation" - ], - "id": "pwa", - "score": 0.7 - } - }, - "audits": { - "metrics": { - "id": "metrics", - "title": "Metrics", - "description": "Collects all available metrics.", - "score": null, - "scoreDisplayMode": "informative", - "numericValue": 14430, - "numericUnit": "millisecond", - "details": { - "type": "debugdata", - "items": [ - { - "firstContentfulPaint": 3841, - "firstMeaningfulPaint": 5728, - "largestContentfulPaint": 4969, - "interactive": 14430, - "speedIndex": 7049, - "totalBlockingTime": 7097, - "maxPotentialFID": 1548, - "cumulativeLayoutShift": 0.8130296745300294, - "cumulativeLayoutShiftMainFrame": 0.8130296745300294, - "totalCumulativeLayoutShift": 0.852767964506315, - "observedTimeOrigin": 0, - "observedTimeOriginTs": 422216174, - "observedNavigationStart": 0, - "observedNavigationStartTs": 422216174, - "observedFirstPaint": 206, - "observedFirstPaintTs": 422421844, - "observedFirstContentfulPaint": 206, - "observedFirstContentfulPaintTs": 422421844, - "observedFirstContentfulPaintAllFrames": 206, - "observedFirstContentfulPaintAllFramesTs": 422421844, - "observedFirstMeaningfulPaint": 2396, - "observedFirstMeaningfulPaintTs": 424611751, - "observedLargestContentfulPaint": 206, - "observedLargestContentfulPaintTs": 422421844, - "observedLargestContentfulPaintAllFrames": 206, - "observedLargestContentfulPaintAllFramesTs": 422421844, - "observedTraceEnd": 5331, - "observedTraceEndTs": 427547264, - "observedLoad": 612, - "observedLoadTs": 422828051, - "observedDomContentLoaded": 171, - "observedDomContentLoadedTs": 422387151, - "observedCumulativeLayoutShift": 0.8130296745300294, - "observedCumulativeLayoutShiftMainFrame": 0.8130296745300294, - "observedTotalCumulativeLayoutShift": 0.852767964506315, - "observedFirstVisualChange": 216, - "observedFirstVisualChangeTs": 422432174, - "observedLastVisualChange": 2687, - "observedLastVisualChangeTs": 424903174, - "observedSpeedIndex": 1798, - "observedSpeedIndexTs": 424013864 - }, - { - "lcpInvalidated": false - } - ] - } - }, - "diagnostics": { - "id": "diagnostics", - "title": "Diagnostics", - "description": "Collection of useful page vitals.", - "score": null, - "scoreDisplayMode": "informative", - "details": { - "type": "debugdata", - "items": [ - { - "numRequests": 55, - "numScripts": 10, - "numStylesheets": 1, - "numFonts": 5, - "numTasks": 1774, - "numTasksOver10ms": 18, - "numTasksOver25ms": 11, - "numTasksOver50ms": 8, - "numTasksOver100ms": 7, - "numTasksOver500ms": 0, - "rtt": 5.293, - "throughput": 150933808.71364525, - "maxRtt": 89.2, - "maxServerLatency": 15.169000000000011, - "totalByteWeight": 16002059, - "totalTaskTime": 2823.7100000000146, - "mainDocumentTransferSize": 4244 - } - ] - } - } - } - } - ], - "screenshot": true, - "stats": { - "grade": "A", - "url": "https://cartographie.societenumerique.gouv.fr", - "uri": "stats" - }, - "github_repository": null, - "budget_page": null, - "declaration-a11y": { - "mention": "Accessibilité : partiellement conforme", - "declarationUrl": "https://cartographie.societenumerique.gouv.fr/accessibilite" - }, - "declaration-rgpd": null, - "betagouv": null, - "ecoindex": [ - { - "width": 1920, - "height": 1080, - "url": "https://cartographie.societenumerique.gouv.fr", - "size": 16024.529, - "nodes": 514, - "requests": 49, - "grade": "D", - "score": 53, - "ges": 1.94, - "water": 2.91, - "ecoindex_version": "5.4.2", - "date": "2024-11-24 01:35:18.042576", - "page_type": null - } - ], - "sonarcloud": null, - "dsfr": null, - "summary": { - "404": "A+", - "uptime": 100, - "uptimeGrade": "A", - "nmapGrade": "A", - "nmapOpenPortsCount": 2, - "nmapOpenPortsGrade": "A", - "testsslExpireSoon": false, - "testsslExpireDate": "2025-06-29T23:59:00.000Z", - "testsslGrade": "A+", - "cookiesGrade": "B", - "cookiesCount": 2, - "trackersGrade": "C", - "trackersCount": 10, - "lighthouse_performance": 0.14, - "lighthouse_performanceGrade": "F", - "lighthouse_accessibility": 0.89, - "lighthouse_accessibilityGrade": "A", - "lighthouse_best-practices": 0.92, - "lighthouse_best-practicesGrade": "A", - "lighthouse_seo": 0.85, - "lighthouse_seoGrade": "A", - "lighthouse_pwa": 0.7, - "lighthouse_pwaGrade": "B", - "statsGrade": "A", - "declaration-a11y": "B", - "ecoindexGrade": "D" - } - }, - { - "404": [], - "url": "https://www.rdv-solidarites.fr", - "repositories": [ - "betagouv/rdv-solidarites.fr" - ], - "http": null, - "updownio": { - "token": "u2hh", - "url": "https://www.rdv-solidarites.fr", - "alias": "", - "last_status": 200, - "uptime": 100, - "down": false, - "down_since": null, - "up_since": "2023-02-16T14:34:25Z", - "error": null, - "period": 1800, - "apdex_t": 0.5, - "string_match": "", - "enabled": false, - "published": false, - "disabled_locations": [], - "recipients": [ - "email:3715942461" - ], - "last_check_at": "2023-03-01T03:03:51Z", - "next_check_at": null, - "created_at": "2022-10-17T12:58:01Z", - "mute_until": null, - "favicon_url": "https://www.rdv-solidarites.fr/assets/favicon/favicon-32x32-1c2ed850f778a368ff040c1d605d53c0c89156e1cc78330437ebf53454e808bd.png", - "custom_headers": {}, - "http_verb": "GET/HEAD", - "http_body": "", - "ssl": { - "tested_at": "2023-03-01T00:34:39Z", - "expires_at": "2023-04-23T15:43:07Z", - "valid": true, - "error": null - }, - "metrics": {}, - "uptimeGrade": "A" - }, - "nmap": { - "host": "www.rdv-solidarites.fr", - "protocol": "tcp", - "closed_ports": "998", - "open_ports": [ - { - "service": { - "name": "http", - "id": "80", - "vulnerabilities": [] - } - }, - { - "service": { - "name": "https", - "id": "443", - "vulnerabilities": [] - } - } - ], - "grade": "A" - }, - "dependabot": null, - "codescan": null, - "testssl": [ - { - "id": "service", - "ip": "www.rdv-solidarites.fr/185.21.194.105", - "port": "443", - "severity": "INFO", - "finding": "HTTP" - }, - { - "id": "pre_128cipher", - "ip": "www.rdv-solidarites.fr/185.21.194.105", - "port": "443", - "severity": "INFO", - "finding": "No 128 cipher limit bug" - }, - { - "id": "SSLv2", - "ip": "www.rdv-solidarites.fr/185.21.194.105", - "port": "443", - "severity": "OK", - "finding": "not offered" - }, - { - "id": "SSLv3", - "ip": "www.rdv-solidarites.fr/185.21.194.105", - "port": "443", - "severity": "OK", - "finding": "not offered" - }, - { - "id": "TLS1", - "ip": "www.rdv-solidarites.fr/185.21.194.105", - "port": "443", - "severity": "INFO", - "finding": "not offered" - }, - { - "id": "TLS1_1", - "ip": "www.rdv-solidarites.fr/185.21.194.105", - "port": "443", - "severity": "INFO", - "finding": "not offered" - }, - { - "id": "TLS1_2", - "ip": "www.rdv-solidarites.fr/185.21.194.105", - "port": "443", - "severity": "OK", - "finding": "offered" - }, - { - "id": "TLS1_3", - "ip": "www.rdv-solidarites.fr/185.21.194.105", - "port": "443", - "severity": "OK", - "finding": "offered with final" - }, - { - "id": "ALPN_HTTP2", - "ip": "www.rdv-solidarites.fr/185.21.194.105", - "port": "443", - "severity": "OK", - "finding": "h2" - }, - { - "id": "ALPN", - "ip": "www.rdv-solidarites.fr/185.21.194.105", - "port": "443", - "severity": "INFO", - "finding": "http/1.1" - }, - { - "id": "cipherlist_NULL", - "ip": "www.rdv-solidarites.fr/185.21.194.105", - "port": "443", - "severity": "OK", - "cwe": "CWE-327", - "finding": "not offered" - }, - { - "id": "cipherlist_aNULL", - "ip": "www.rdv-solidarites.fr/185.21.194.105", - "port": "443", - "severity": "OK", - "cwe": "CWE-327", - "finding": "not offered" - }, - { - "id": "cipherlist_EXPORT", - "ip": "www.rdv-solidarites.fr/185.21.194.105", - "port": "443", - "severity": "OK", - "cwe": "CWE-327", - "finding": "not offered" - }, - { - "id": "cipherlist_LOW", - "ip": "www.rdv-solidarites.fr/185.21.194.105", - "port": "443", - "severity": "OK", - "cwe": "CWE-327", - "finding": "not offered" - }, - { - "id": "cipherlist_3DES_IDEA", - "ip": "www.rdv-solidarites.fr/185.21.194.105", - "port": "443", - "severity": "INFO", - "cwe": "CWE-310", - "finding": "not offered" - }, - { - "id": "cipherlist_OBSOLETED", - "ip": "www.rdv-solidarites.fr/185.21.194.105", - "port": "443", - "severity": "INFO", - "cwe": "CWE-310", - "finding": "not offered" - }, - { - "id": "cipherlist_STRONG_NOFS", - "ip": "www.rdv-solidarites.fr/185.21.194.105", - "port": "443", - "severity": "INFO", - "finding": "not offered" - }, - { - "id": "cipherlist_STRONG_FS", - "ip": "www.rdv-solidarites.fr/185.21.194.105", - "port": "443", - "severity": "OK", - "finding": "offered" - }, - { - "id": "cipher_order-tls1_2", - "ip": "www.rdv-solidarites.fr/185.21.194.105", - "port": "443", - "severity": "OK", - "finding": "server" - }, - { - "id": "cipherorder_TLSv1_2", - "ip": "www.rdv-solidarites.fr/185.21.194.105", - "port": "443", - "severity": "INFO", - "finding": "ECDHE-RSA-AES256-GCM-SHA384" - }, - { - "id": "cipher_order", - "ip": "www.rdv-solidarites.fr/185.21.194.105", - "port": "443", - "severity": "OK", - "finding": "server" - }, - { - "id": "FS", - "ip": "www.rdv-solidarites.fr/185.21.194.105", - "port": "443", - "severity": "OK", - "finding": "offered" - }, - { - "id": "FS_ciphers", - "ip": "www.rdv-solidarites.fr/185.21.194.105", - "port": "443", - "severity": "INFO", - "finding": "DHE-RSA-AES256-GCM-SHA384 ECDHE-RSA-AES128-GCM-SHA256 ECDHE-RSA-AES256-GCM-SHA384" - }, - { - "id": "FS_ECDHE_curves", - "ip": "www.rdv-solidarites.fr/185.21.194.105", - "port": "443", - "severity": "OK", - "finding": "prime256v1 secp384r1 secp521r1" - }, - { - "id": "TLS_extensions", - "ip": "www.rdv-solidarites.fr/185.21.194.105", - "port": "443", - "severity": "INFO", - "finding": "'renegotiation info/#65281' 'server name/#0' 'EC point formats/#11' 'session ticket/#35' 'supported versions/#43' 'key share/#51' 'supported_groups/#10' 'max fragment length/#1' 'application layer protocol negotiation/#16' 'extended master secret/#23'" - }, - { - "id": "TLS_session_ticket", - "ip": "www.rdv-solidarites.fr/185.21.194.105", - "port": "443", - "severity": "INFO", - "finding": "valid for 300 seconds only (= 30 days" - }, - { - "id": "cert_notBefore", - "ip": "www.rdv-solidarites.fr/185.21.194.105", - "port": "443", - "severity": "INFO", - "finding": "2024-11-13 15:55" - }, - { - "id": "cert_notAfter", - "ip": "www.rdv-solidarites.fr/185.21.194.105", - "port": "443", - "severity": "OK", - "finding": "2025-02-11 15:55" - }, - { - "id": "cert_extlifeSpan", - "ip": "www.rdv-solidarites.fr/185.21.194.105", - "port": "443", - "severity": "OK", - "finding": "certificate has no extended life time according to browser forum" - }, - { - "id": "cert_eTLS", - "ip": "www.rdv-solidarites.fr/185.21.194.105", - "port": "443", - "severity": "INFO", - "finding": "not present" - }, - { - "id": "cert_crlDistributionPoints", - "ip": "www.rdv-solidarites.fr/185.21.194.105", - "port": "443", - "severity": "INFO", - "finding": "--" - }, - { - "id": "cert_ocspURL", - "ip": "www.rdv-solidarites.fr/185.21.194.105", - "port": "443", - "severity": "INFO", - "finding": "http://r10.o.lencr.org" - }, - { - "id": "OCSP_stapling", - "ip": "www.rdv-solidarites.fr/185.21.194.105", - "port": "443", - "severity": "LOW", - "finding": "not offered" - }, - { - "id": "cert_mustStapleExtension", - "ip": "www.rdv-solidarites.fr/185.21.194.105", - "port": "443", - "severity": "INFO", - "finding": "--" - }, - { - "id": "DNS_CAArecord", - "ip": "www.rdv-solidarites.fr/185.21.194.105", - "port": "443", - "severity": "LOW", - "finding": "--" - }, - { - "id": "certificate_transparency", - "ip": "www.rdv-solidarites.fr/185.21.194.105", - "port": "443", - "severity": "OK", - "finding": "yes (certificate extension)" - }, - { - "id": "certs_countServer", - "ip": "www.rdv-solidarites.fr/185.21.194.105", - "port": "443", - "severity": "INFO", - "finding": "2" - }, - { - "id": "certs_list_ordering_problem", - "ip": "www.rdv-solidarites.fr/185.21.194.105", - "port": "443", - "severity": "INFO", - "finding": "no" - }, - { - "id": "cert_caIssuers", - "ip": "www.rdv-solidarites.fr/185.21.194.105", - "port": "443", - "severity": "INFO", - "finding": "R10 (Let's Encrypt from US)" - }, - { - "id": "intermediate_cert <#1>", - "ip": "www.rdv-solidarites.fr/185.21.194.105", - "port": "443", - "severity": "INFO", - "finding": "-----BEGIN CERTIFICATE-----\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\n-----END CERTIFICATE-----" - }, - { - "id": "intermediate_cert_fingerprintSHA256 <#1>", - "ip": "www.rdv-solidarites.fr/185.21.194.105", - "port": "443", - "severity": "INFO", - "finding": "9D7C3F1AA6AD2B2EC0D5CF1E246F8D9AE6CBC9FD0755AD37BB974B1F2FB603F3" - }, - { - "id": "intermediate_cert_notBefore <#1>", - "ip": "www.rdv-solidarites.fr/185.21.194.105", - "port": "443", - "severity": "INFO", - "finding": "2024-03-13 00:00" - }, - { - "id": "intermediate_cert_notAfter <#1>", - "ip": "www.rdv-solidarites.fr/185.21.194.105", - "port": "443", - "severity": "OK", - "finding": "2027-03-12 23:59" - }, - { - "id": "intermediate_cert_expiration <#1>", - "ip": "www.rdv-solidarites.fr/185.21.194.105", - "port": "443", - "severity": "OK", - "finding": "ok > 40 days" - }, - { - "id": "intermediate_cert_chain <#1>", - "ip": "www.rdv-solidarites.fr/185.21.194.105", - "port": "443", - "severity": "INFO", - "finding": "R10 <-- ISRG Root X1" - }, - { - "id": "intermediate_cert_badOCSP", - "ip": "www.rdv-solidarites.fr/185.21.194.105", - "port": "443", - "severity": "OK", - "finding": "intermediate certificate(s) is/are ok" - }, - { - "id": "HTTP_status_code", - "ip": "www.rdv-solidarites.fr/185.21.194.105", - "port": "443", - "severity": "INFO", - "finding": "200 OK ('/')" - }, - { - "id": "HTTP_clock_skew", - "ip": "www.rdv-solidarites.fr/185.21.194.105", - "port": "443", - "severity": "INFO", - "finding": "0 seconds from localtime" - }, - { - "id": "HTTP_headerTime", - "ip": "www.rdv-solidarites.fr/185.21.194.105", - "port": "443", - "severity": "INFO", - "finding": "1732413103" - }, - { - "id": "HSTS_time", - "ip": "www.rdv-solidarites.fr/185.21.194.105", - "port": "443", - "severity": "OK", - "finding": "730 days (=63072000 seconds) > 15552000 seconds" - }, - { - "id": "HSTS_subdomains", - "ip": "www.rdv-solidarites.fr/185.21.194.105", - "port": "443", - "severity": "OK", - "finding": "includes subdomains" - }, - { - "id": "HSTS_preload", - "ip": "www.rdv-solidarites.fr/185.21.194.105", - "port": "443", - "severity": "INFO", - "finding": "domain is NOT marked for preloading" - }, - { - "id": "HPKP", - "ip": "www.rdv-solidarites.fr/185.21.194.105", - "port": "443", - "severity": "INFO", - "finding": "No support for HTTP Public Key Pinning" - }, - { - "id": "banner_server", - "ip": "www.rdv-solidarites.fr/185.21.194.105", - "port": "443", - "severity": "INFO", - "finding": "No Server banner line in header, interesting!" - }, - { - "id": "banner_application", - "ip": "www.rdv-solidarites.fr/185.21.194.105", - "port": "443", - "severity": "INFO", - "finding": "No application banner found" - }, - { - "id": "cookie_count", - "ip": "www.rdv-solidarites.fr/185.21.194.105", - "port": "443", - "severity": "INFO", - "finding": "1 at '/'" - }, - { - "id": "cookie_secure", - "ip": "www.rdv-solidarites.fr/185.21.194.105", - "port": "443", - "severity": "OK", - "finding": "All (1) at '/' marked as secure" - }, - { - "id": "cookie_httponly", - "ip": "www.rdv-solidarites.fr/185.21.194.105", - "port": "443", - "severity": "OK", - "finding": "All (1) at '/' marked as HttpOnly" - }, - { - "id": "X-Content-Type-Options", - "ip": "www.rdv-solidarites.fr/185.21.194.105", - "port": "443", - "severity": "OK", - "finding": "nosniff" - }, - { - "id": "Content-Security-Policy", - "ip": "www.rdv-solidarites.fr/185.21.194.105", - "port": "443", - "severity": "OK", - "finding": "default-src 'self'; font-src 'self' data:; object-src 'none'; worker-src blob:; child-src blob: 'self'; frame-src 'self' *.instatus.com headway-widget.net; media-src 'self' rdv-insertion-medias-production.s3.fr-par.scw.cloud; img-src 'self' data: voxusagers.numerique.gouv.fr; style-src 'self' 'unsafe-inline' *.bootstrapcdn.com api.mapbox.com cdn.headwayapp.co; connect-src 'self' api-adresse.data.gouv.fr etalab-tiles.fr; script-src 'self' 'unsafe-inline' api.mapbox.com cdn.headwayapp.co" - }, - { - "id": "X-XSS-Protection", - "ip": "www.rdv-solidarites.fr/185.21.194.105", - "port": "443", - "severity": "INFO", - "finding": "0" - }, - { - "id": "Referrer-Policy", - "ip": "www.rdv-solidarites.fr/185.21.194.105", - "port": "443", - "severity": "INFO", - "finding": "strict-origin-when-cross-origin" - }, - { - "id": "Cache-Control", - "ip": "www.rdv-solidarites.fr/185.21.194.105", - "port": "443", - "severity": "INFO", - "finding": "max-age=0, private, must-revalidate" - }, - { - "id": "banner_reverseproxy", - "ip": "www.rdv-solidarites.fr/185.21.194.105", - "port": "443", - "severity": "INFO", - "cwe": "CWE-200", - "finding": "--" - }, - { - "id": "heartbleed", - "ip": "www.rdv-solidarites.fr/185.21.194.105", - "port": "443", - "severity": "OK", - "cve": "CVE-2014-0160", - "cwe": "CWE-119", - "finding": "not vulnerable, no heartbeat extension" - }, - { - "id": "CCS", - "ip": "www.rdv-solidarites.fr/185.21.194.105", - "port": "443", - "severity": "OK", - "cve": "CVE-2014-0224", - "cwe": "CWE-310", - "finding": "not vulnerable" - }, - { - "id": "ticketbleed", - "ip": "www.rdv-solidarites.fr/185.21.194.105", - "port": "443", - "severity": "OK", - "cve": "CVE-2016-9244", - "cwe": "CWE-200", - "finding": "not vulnerable" - }, - { - "id": "ROBOT", - "ip": "www.rdv-solidarites.fr/185.21.194.105", - "port": "443", - "severity": "OK", - "cve": "CVE-2017-17382 CVE-2017-17427 CVE-2017-17428 CVE-2017-13098 CVE-2017-1000385 CVE-2017-13099 CVE-2016-6883 CVE-2012-5081 CVE-2017-6168", - "cwe": "CWE-203", - "finding": "not vulnerable, no RSA key transport cipher" - }, - { - "id": "secure_renego", - "ip": "www.rdv-solidarites.fr/185.21.194.105", - "port": "443", - "severity": "OK", - "cwe": "CWE-310", - "finding": "supported" - }, - { - "id": "secure_client_renego", - "ip": "www.rdv-solidarites.fr/185.21.194.105", - "port": "443", - "severity": "OK", - "cve": "CVE-2011-1473", - "cwe": "CWE-310", - "finding": "not vulnerable" - }, - { - "id": "CRIME_TLS", - "ip": "www.rdv-solidarites.fr/185.21.194.105", - "port": "443", - "severity": "OK", - "cve": "CVE-2012-4929", - "cwe": "CWE-310", - "finding": "not vulnerable" - }, - { - "id": "BREACH", - "ip": "www.rdv-solidarites.fr/185.21.194.105", - "port": "443", - "severity": "MEDIUM", - "cve": "CVE-2013-3587", - "cwe": "CWE-310", - "finding": "potentially VULNERABLE, gzip HTTP compression detected - only supplied '/' tested" - }, - { - "id": "POODLE_SSL", - "ip": "www.rdv-solidarites.fr/185.21.194.105", - "port": "443", - "severity": "OK", - "cve": "CVE-2014-3566", - "cwe": "CWE-310", - "finding": "not vulnerable, no SSLv3" - }, - { - "id": "fallback_SCSV", - "ip": "www.rdv-solidarites.fr/185.21.194.105", - "port": "443", - "severity": "OK", - "finding": "no protocol below TLS 1.2 offered" - }, - { - "id": "SWEET32", - "ip": "www.rdv-solidarites.fr/185.21.194.105", - "port": "443", - "severity": "OK", - "cve": "CVE-2016-2183 CVE-2016-6329", - "cwe": "CWE-327", - "finding": "not vulnerable" - }, - { - "id": "FREAK", - "ip": "www.rdv-solidarites.fr/185.21.194.105", - "port": "443", - "severity": "OK", - "cve": "CVE-2015-0204", - "cwe": "CWE-310", - "finding": "not vulnerable" - }, - { - "id": "DROWN", - "ip": "www.rdv-solidarites.fr/185.21.194.105", - "port": "443", - "severity": "OK", - "cve": "CVE-2016-0800 CVE-2016-0703", - "cwe": "CWE-310", - "finding": "not vulnerable on this host and port" - }, - { - "id": "DROWN_hint", - "ip": "www.rdv-solidarites.fr/185.21.194.105", - "port": "443", - "severity": "INFO", - "cve": "CVE-2016-0800 CVE-2016-0703", - "cwe": "CWE-310", - "finding": "Make sure you don't use this certificate elsewhere with SSLv2 enabled services, see https://search.censys.io/search?resource=hosts&virtual_hosts=INCLUDE&q=633BD28D00F8947E110D214024F8B8BD21CBFC0BAC0FE9ADECBB467456A886A4" - }, - { - "id": "LOGJAM", - "ip": "www.rdv-solidarites.fr/185.21.194.105", - "port": "443", - "severity": "OK", - "cve": "CVE-2015-4000", - "cwe": "CWE-310", - "finding": "not vulnerable, no DH EXPORT ciphers," - }, - { - "id": "LOGJAM-common_primes", - "ip": "www.rdv-solidarites.fr/185.21.194.105", - "port": "443", - "severity": "OK", - "cve": "CVE-2015-4000", - "cwe": "CWE-310", - "finding": "--" - }, - { - "id": "BEAST", - "ip": "www.rdv-solidarites.fr/185.21.194.105", - "port": "443", - "severity": "OK", - "cve": "CVE-2011-3389", - "cwe": "CWE-20", - "finding": "not vulnerable, no SSL3 or TLS1" - }, - { - "id": "LUCKY13", - "ip": "www.rdv-solidarites.fr/185.21.194.105", - "port": "443", - "severity": "OK", - "cve": "CVE-2013-0169", - "cwe": "CWE-310", - "finding": "not vulnerable" - }, - { - "id": "winshock", - "ip": "www.rdv-solidarites.fr/185.21.194.105", - "port": "443", - "severity": "OK", - "cve": "CVE-2014-6321", - "cwe": "CWE-94", - "finding": "not vulnerable" - }, - { - "id": "RC4", - "ip": "www.rdv-solidarites.fr/185.21.194.105", - "port": "443", - "severity": "OK", - "cve": "CVE-2013-2566 CVE-2015-2808", - "cwe": "CWE-310", - "finding": "not vulnerable" - }, - { - "id": "clientsimulation-android_60", - "ip": "www.rdv-solidarites.fr/185.21.194.105", - "port": "443", - "severity": "INFO", - "finding": "TLSv1.2 ECDHE-RSA-AES128-GCM-SHA256" - }, - { - "id": "clientsimulation-android_70", - "ip": "www.rdv-solidarites.fr/185.21.194.105", - "port": "443", - "severity": "INFO", - "finding": "TLSv1.2 ECDHE-RSA-AES256-GCM-SHA384" - }, - { - "id": "clientsimulation-android_81", - "ip": "www.rdv-solidarites.fr/185.21.194.105", - "port": "443", - "severity": "INFO", - "finding": "TLSv1.2 ECDHE-RSA-AES256-GCM-SHA384" - }, - { - "id": "clientsimulation-android_90", - "ip": "www.rdv-solidarites.fr/185.21.194.105", - "port": "443", - "severity": "INFO", - "finding": "TLSv1.3 TLS_AES_256_GCM_SHA384" - }, - { - "id": "clientsimulation-android_X", - "ip": "www.rdv-solidarites.fr/185.21.194.105", - "port": "443", - "severity": "INFO", - "finding": "TLSv1.3 TLS_AES_256_GCM_SHA384" - }, - { - "id": "clientsimulation-android_11", - "ip": "www.rdv-solidarites.fr/185.21.194.105", - "port": "443", - "severity": "INFO", - "finding": "TLSv1.3 TLS_AES_256_GCM_SHA384" - }, - { - "id": "clientsimulation-android_12", - "ip": "www.rdv-solidarites.fr/185.21.194.105", - "port": "443", - "severity": "INFO", - "finding": "TLSv1.3 TLS_AES_256_GCM_SHA384" - }, - { - "id": "clientsimulation-chrome_79_win10", - "ip": "www.rdv-solidarites.fr/185.21.194.105", - "port": "443", - "severity": "INFO", - "finding": "TLSv1.3 TLS_AES_256_GCM_SHA384" - }, - { - "id": "clientsimulation-chrome_101_win10", - "ip": "www.rdv-solidarites.fr/185.21.194.105", - "port": "443", - "severity": "INFO", - "finding": "TLSv1.3 TLS_AES_256_GCM_SHA384" - }, - { - "id": "clientsimulation-firefox_66_win81", - "ip": "www.rdv-solidarites.fr/185.21.194.105", - "port": "443", - "severity": "INFO", - "finding": "TLSv1.3 TLS_AES_256_GCM_SHA384" - }, - { - "id": "clientsimulation-firefox_100_win10", - "ip": "www.rdv-solidarites.fr/185.21.194.105", - "port": "443", - "severity": "INFO", - "finding": "TLSv1.3 TLS_AES_256_GCM_SHA384" - }, - { - "id": "clientsimulation-ie_6_xp", - "ip": "www.rdv-solidarites.fr/185.21.194.105", - "port": "443", - "severity": "INFO", - "finding": "No connection" - }, - { - "id": "clientsimulation-ie_8_win7", - "ip": "www.rdv-solidarites.fr/185.21.194.105", - "port": "443", - "severity": "INFO", - "finding": "No connection" - }, - { - "id": "clientsimulation-ie_8_xp", - "ip": "www.rdv-solidarites.fr/185.21.194.105", - "port": "443", - "severity": "INFO", - "finding": "No connection" - }, - { - "id": "clientsimulation-ie_11_win7", - "ip": "www.rdv-solidarites.fr/185.21.194.105", - "port": "443", - "severity": "INFO", - "finding": "TLSv1.2 DHE-RSA-AES256-GCM-SHA384" - }, - { - "id": "clientsimulation-ie_11_win81", - "ip": "www.rdv-solidarites.fr/185.21.194.105", - "port": "443", - "severity": "INFO", - "finding": "TLSv1.2 DHE-RSA-AES256-GCM-SHA384" - }, - { - "id": "clientsimulation-ie_11_winphone81", - "ip": "www.rdv-solidarites.fr/185.21.194.105", - "port": "443", - "severity": "INFO", - "finding": "No connection" - }, - { - "id": "clientsimulation-ie_11_win10", - "ip": "www.rdv-solidarites.fr/185.21.194.105", - "port": "443", - "severity": "INFO", - "finding": "TLSv1.2 ECDHE-RSA-AES256-GCM-SHA384" - }, - { - "id": "clientsimulation-edge_15_win10", - "ip": "www.rdv-solidarites.fr/185.21.194.105", - "port": "443", - "severity": "INFO", - "finding": "TLSv1.2 ECDHE-RSA-AES256-GCM-SHA384" - }, - { - "id": "clientsimulation-edge_101_win10_21h2", - "ip": "www.rdv-solidarites.fr/185.21.194.105", - "port": "443", - "severity": "INFO", - "finding": "TLSv1.3 TLS_AES_256_GCM_SHA384" - }, - { - "id": "clientsimulation-safari_121_ios_122", - "ip": "www.rdv-solidarites.fr/185.21.194.105", - "port": "443", - "severity": "INFO", - "finding": "TLSv1.3 TLS_AES_256_GCM_SHA384" - }, - { - "id": "clientsimulation-safari_130_osx_10146", - "ip": "www.rdv-solidarites.fr/185.21.194.105", - "port": "443", - "severity": "INFO", - "finding": "TLSv1.3 TLS_AES_256_GCM_SHA384" - }, - { - "id": "clientsimulation-safari_154_osx_1231", - "ip": "www.rdv-solidarites.fr/185.21.194.105", - "port": "443", - "severity": "INFO", - "finding": "TLSv1.3 TLS_AES_256_GCM_SHA384" - }, - { - "id": "clientsimulation-java_7u25", - "ip": "www.rdv-solidarites.fr/185.21.194.105", - "port": "443", - "severity": "INFO", - "finding": "No connection" - }, - { - "id": "clientsimulation-java_8u161", - "ip": "www.rdv-solidarites.fr/185.21.194.105", - "port": "443", - "severity": "INFO", - "finding": "TLSv1.2 ECDHE-RSA-AES256-GCM-SHA384" - }, - { - "id": "clientsimulation-java1102", - "ip": "www.rdv-solidarites.fr/185.21.194.105", - "port": "443", - "severity": "INFO", - "finding": "TLSv1.3 TLS_AES_256_GCM_SHA384" - }, - { - "id": "clientsimulation-java1703", - "ip": "www.rdv-solidarites.fr/185.21.194.105", - "port": "443", - "severity": "INFO", - "finding": "TLSv1.3 TLS_AES_256_GCM_SHA384" - }, - { - "id": "clientsimulation-go_1178", - "ip": "www.rdv-solidarites.fr/185.21.194.105", - "port": "443", - "severity": "INFO", - "finding": "TLSv1.3 TLS_AES_256_GCM_SHA384" - }, - { - "id": "clientsimulation-libressl_283", - "ip": "www.rdv-solidarites.fr/185.21.194.105", - "port": "443", - "severity": "INFO", - "finding": "TLSv1.2 ECDHE-RSA-AES256-GCM-SHA384" - }, - { - "id": "clientsimulation-openssl_102e", - "ip": "www.rdv-solidarites.fr/185.21.194.105", - "port": "443", - "severity": "INFO", - "finding": "TLSv1.2 ECDHE-RSA-AES256-GCM-SHA384" - }, - { - "id": "clientsimulation-openssl_110l", - "ip": "www.rdv-solidarites.fr/185.21.194.105", - "port": "443", - "severity": "INFO", - "finding": "TLSv1.2 ECDHE-RSA-AES256-GCM-SHA384" - }, - { - "id": "clientsimulation-openssl_111d", - "ip": "www.rdv-solidarites.fr/185.21.194.105", - "port": "443", - "severity": "INFO", - "finding": "TLSv1.3 TLS_AES_256_GCM_SHA384" - }, - { - "id": "clientsimulation-openssl_303", - "ip": "www.rdv-solidarites.fr/185.21.194.105", - "port": "443", - "severity": "INFO", - "finding": "TLSv1.3 TLS_AES_256_GCM_SHA384" - }, - { - "id": "clientsimulation-apple_mail_16_0", - "ip": "www.rdv-solidarites.fr/185.21.194.105", - "port": "443", - "severity": "INFO", - "finding": "TLSv1.2 ECDHE-RSA-AES256-GCM-SHA384" - }, - { - "id": "clientsimulation-thunderbird_91_9", - "ip": "www.rdv-solidarites.fr/185.21.194.105", - "port": "443", - "severity": "INFO", - "finding": "TLSv1.3 TLS_AES_256_GCM_SHA384" - }, - { - "id": "rating_spec", - "ip": "www.rdv-solidarites.fr/185.21.194.105", - "port": "443", - "severity": "INFO", - "finding": "SSL Labs's 'SSL Server Rating Guide' (version 2009q from 2020-01-30)" - }, - { - "id": "rating_doc", - "ip": "www.rdv-solidarites.fr/185.21.194.105", - "port": "443", - "severity": "INFO", - "finding": "https://github.com/ssllabs/research/wiki/SSL-Server-Rating-Guide" - }, - { - "id": "protocol_support_score", - "ip": "www.rdv-solidarites.fr/185.21.194.105", - "port": "443", - "severity": "INFO", - "finding": "100" - }, - { - "id": "protocol_support_score_weighted", - "ip": "www.rdv-solidarites.fr/185.21.194.105", - "port": "443", - "severity": "INFO", - "finding": "30" - }, - { - "id": "key_exchange_score", - "ip": "www.rdv-solidarites.fr/185.21.194.105", - "port": "443", - "severity": "INFO", - "finding": "90" - }, - { - "id": "key_exchange_score_weighted", - "ip": "www.rdv-solidarites.fr/185.21.194.105", - "port": "443", - "severity": "INFO", - "finding": "27" - }, - { - "id": "cipher_strength_score", - "ip": "www.rdv-solidarites.fr/185.21.194.105", - "port": "443", - "severity": "INFO", - "finding": "60" - }, - { - "id": "cipher_strength_score_weighted", - "ip": "www.rdv-solidarites.fr/185.21.194.105", - "port": "443", - "severity": "INFO", - "finding": "24" - }, - { - "id": "final_score", - "ip": "www.rdv-solidarites.fr/185.21.194.105", - "port": "443", - "severity": "INFO", - "finding": "81" - }, - { - "id": "overall_grade", - "ip": "www.rdv-solidarites.fr/185.21.194.105", - "port": "443", - "severity": "OK", - "finding": "A+" - }, - { - "id": "service", - "ip": "www.rdv-solidarites.fr/80.247.12.255", - "port": "443", - "severity": "INFO", - "finding": "HTTP" - }, - { - "id": "pre_128cipher", - "ip": "www.rdv-solidarites.fr/80.247.12.255", - "port": "443", - "severity": "INFO", - "finding": "No 128 cipher limit bug" - }, - { - "id": "SSLv2", - "ip": "www.rdv-solidarites.fr/80.247.12.255", - "port": "443", - "severity": "OK", - "finding": "not offered" - }, - { - "id": "SSLv3", - "ip": "www.rdv-solidarites.fr/80.247.12.255", - "port": "443", - "severity": "OK", - "finding": "not offered" - }, - { - "id": "TLS1", - "ip": "www.rdv-solidarites.fr/80.247.12.255", - "port": "443", - "severity": "INFO", - "finding": "not offered" - }, - { - "id": "TLS1_1", - "ip": "www.rdv-solidarites.fr/80.247.12.255", - "port": "443", - "severity": "INFO", - "finding": "not offered" - }, - { - "id": "TLS1_2", - "ip": "www.rdv-solidarites.fr/80.247.12.255", - "port": "443", - "severity": "OK", - "finding": "offered" - }, - { - "id": "TLS1_3", - "ip": "www.rdv-solidarites.fr/80.247.12.255", - "port": "443", - "severity": "OK", - "finding": "offered with final" - }, - { - "id": "ALPN_HTTP2", - "ip": "www.rdv-solidarites.fr/80.247.12.255", - "port": "443", - "severity": "OK", - "finding": "h2" - }, - { - "id": "ALPN", - "ip": "www.rdv-solidarites.fr/80.247.12.255", - "port": "443", - "severity": "INFO", - "finding": "http/1.1" - }, - { - "id": "cipherlist_NULL", - "ip": "www.rdv-solidarites.fr/80.247.12.255", - "port": "443", - "severity": "OK", - "cwe": "CWE-327", - "finding": "not offered" - }, - { - "id": "cipherlist_aNULL", - "ip": "www.rdv-solidarites.fr/80.247.12.255", - "port": "443", - "severity": "OK", - "cwe": "CWE-327", - "finding": "not offered" - }, - { - "id": "cipherlist_EXPORT", - "ip": "www.rdv-solidarites.fr/80.247.12.255", - "port": "443", - "severity": "OK", - "cwe": "CWE-327", - "finding": "not offered" - }, - { - "id": "cipherlist_LOW", - "ip": "www.rdv-solidarites.fr/80.247.12.255", - "port": "443", - "severity": "OK", - "cwe": "CWE-327", - "finding": "not offered" - }, - { - "id": "cipherlist_3DES_IDEA", - "ip": "www.rdv-solidarites.fr/80.247.12.255", - "port": "443", - "severity": "INFO", - "cwe": "CWE-310", - "finding": "not offered" - }, - { - "id": "cipherlist_OBSOLETED", - "ip": "www.rdv-solidarites.fr/80.247.12.255", - "port": "443", - "severity": "INFO", - "cwe": "CWE-310", - "finding": "not offered" - }, - { - "id": "cipherlist_STRONG_NOFS", - "ip": "www.rdv-solidarites.fr/80.247.12.255", - "port": "443", - "severity": "INFO", - "finding": "not offered" - }, - { - "id": "cipherlist_STRONG_FS", - "ip": "www.rdv-solidarites.fr/80.247.12.255", - "port": "443", - "severity": "OK", - "finding": "offered" - }, - { - "id": "cipher_order-tls1_2", - "ip": "www.rdv-solidarites.fr/80.247.12.255", - "port": "443", - "severity": "OK", - "finding": "server" - }, - { - "id": "cipherorder_TLSv1_2", - "ip": "www.rdv-solidarites.fr/80.247.12.255", - "port": "443", - "severity": "INFO", - "finding": "ECDHE-RSA-AES256-GCM-SHA384" - }, - { - "id": "cipher_order", - "ip": "www.rdv-solidarites.fr/80.247.12.255", - "port": "443", - "severity": "OK", - "finding": "server" - }, - { - "id": "FS", - "ip": "www.rdv-solidarites.fr/80.247.12.255", - "port": "443", - "severity": "OK", - "finding": "offered" - }, - { - "id": "FS_ciphers", - "ip": "www.rdv-solidarites.fr/80.247.12.255", - "port": "443", - "severity": "INFO", - "finding": "DHE-RSA-AES256-GCM-SHA384 ECDHE-RSA-AES128-GCM-SHA256 ECDHE-RSA-AES256-GCM-SHA384" - }, - { - "id": "FS_ECDHE_curves", - "ip": "www.rdv-solidarites.fr/80.247.12.255", - "port": "443", - "severity": "OK", - "finding": "prime256v1 secp384r1 secp521r1" - }, - { - "id": "TLS_extensions", - "ip": "www.rdv-solidarites.fr/80.247.12.255", - "port": "443", - "severity": "INFO", - "finding": "'renegotiation info/#65281' 'server name/#0' 'EC point formats/#11' 'session ticket/#35' 'supported versions/#43' 'key share/#51' 'supported_groups/#10' 'max fragment length/#1' 'application layer protocol negotiation/#16' 'extended master secret/#23'" - }, - { - "id": "TLS_session_ticket", - "ip": "www.rdv-solidarites.fr/80.247.12.255", - "port": "443", - "severity": "INFO", - "finding": "valid for 300 seconds only (= 30 days" - }, - { - "id": "cert_notBefore", - "ip": "www.rdv-solidarites.fr/80.247.12.255", - "port": "443", - "severity": "INFO", - "finding": "2024-11-13 15:55" - }, - { - "id": "cert_notAfter", - "ip": "www.rdv-solidarites.fr/80.247.12.255", - "port": "443", - "severity": "OK", - "finding": "2025-02-11 15:55" - }, - { - "id": "cert_extlifeSpan", - "ip": "www.rdv-solidarites.fr/80.247.12.255", - "port": "443", - "severity": "OK", - "finding": "certificate has no extended life time according to browser forum" - }, - { - "id": "cert_eTLS", - "ip": "www.rdv-solidarites.fr/80.247.12.255", - "port": "443", - "severity": "INFO", - "finding": "not present" - }, - { - "id": "cert_crlDistributionPoints", - "ip": "www.rdv-solidarites.fr/80.247.12.255", - "port": "443", - "severity": "INFO", - "finding": "--" - }, - { - "id": "cert_ocspURL", - "ip": "www.rdv-solidarites.fr/80.247.12.255", - "port": "443", - "severity": "INFO", - "finding": "http://r10.o.lencr.org" - }, - { - "id": "OCSP_stapling", - "ip": "www.rdv-solidarites.fr/80.247.12.255", - "port": "443", - "severity": "LOW", - "finding": "not offered" - }, - { - "id": "cert_mustStapleExtension", - "ip": "www.rdv-solidarites.fr/80.247.12.255", - "port": "443", - "severity": "INFO", - "finding": "--" - }, - { - "id": "DNS_CAArecord", - "ip": "www.rdv-solidarites.fr/80.247.12.255", - "port": "443", - "severity": "LOW", - "finding": "--" - }, - { - "id": "certificate_transparency", - "ip": "www.rdv-solidarites.fr/80.247.12.255", - "port": "443", - "severity": "OK", - "finding": "yes (certificate extension)" - }, - { - "id": "certs_countServer", - "ip": "www.rdv-solidarites.fr/80.247.12.255", - "port": "443", - "severity": "INFO", - "finding": "2" - }, - { - "id": "certs_list_ordering_problem", - "ip": "www.rdv-solidarites.fr/80.247.12.255", - "port": "443", - "severity": "INFO", - "finding": "no" - }, - { - "id": "cert_caIssuers", - "ip": "www.rdv-solidarites.fr/80.247.12.255", - "port": "443", - "severity": "INFO", - "finding": "R10 (Let's Encrypt from US)" - }, - { - "id": "intermediate_cert <#1>", - "ip": "www.rdv-solidarites.fr/80.247.12.255", - "port": "443", - "severity": "INFO", - "finding": "-----BEGIN CERTIFICATE-----\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\n-----END CERTIFICATE-----" - }, - { - "id": "intermediate_cert_fingerprintSHA256 <#1>", - "ip": "www.rdv-solidarites.fr/80.247.12.255", - "port": "443", - "severity": "INFO", - "finding": "9D7C3F1AA6AD2B2EC0D5CF1E246F8D9AE6CBC9FD0755AD37BB974B1F2FB603F3" - }, - { - "id": "intermediate_cert_notBefore <#1>", - "ip": "www.rdv-solidarites.fr/80.247.12.255", - "port": "443", - "severity": "INFO", - "finding": "2024-03-13 00:00" - }, - { - "id": "intermediate_cert_notAfter <#1>", - "ip": "www.rdv-solidarites.fr/80.247.12.255", - "port": "443", - "severity": "OK", - "finding": "2027-03-12 23:59" - }, - { - "id": "intermediate_cert_expiration <#1>", - "ip": "www.rdv-solidarites.fr/80.247.12.255", - "port": "443", - "severity": "OK", - "finding": "ok > 40 days" - }, - { - "id": "intermediate_cert_chain <#1>", - "ip": "www.rdv-solidarites.fr/80.247.12.255", - "port": "443", - "severity": "INFO", - "finding": "R10 <-- ISRG Root X1" - }, - { - "id": "intermediate_cert_badOCSP", - "ip": "www.rdv-solidarites.fr/80.247.12.255", - "port": "443", - "severity": "OK", - "finding": "intermediate certificate(s) is/are ok" - }, - { - "id": "HTTP_status_code", - "ip": "www.rdv-solidarites.fr/80.247.12.255", - "port": "443", - "severity": "INFO", - "finding": "200 OK ('/')" - }, - { - "id": "HTTP_clock_skew", - "ip": "www.rdv-solidarites.fr/80.247.12.255", - "port": "443", - "severity": "INFO", - "finding": "0 seconds from localtime" - }, - { - "id": "HTTP_headerTime", - "ip": "www.rdv-solidarites.fr/80.247.12.255", - "port": "443", - "severity": "INFO", - "finding": "1732413162" - }, - { - "id": "HSTS_time", - "ip": "www.rdv-solidarites.fr/80.247.12.255", - "port": "443", - "severity": "OK", - "finding": "730 days (=63072000 seconds) > 15552000 seconds" - }, - { - "id": "HSTS_subdomains", - "ip": "www.rdv-solidarites.fr/80.247.12.255", - "port": "443", - "severity": "OK", - "finding": "includes subdomains" - }, - { - "id": "HSTS_preload", - "ip": "www.rdv-solidarites.fr/80.247.12.255", - "port": "443", - "severity": "INFO", - "finding": "domain is NOT marked for preloading" - }, - { - "id": "HPKP", - "ip": "www.rdv-solidarites.fr/80.247.12.255", - "port": "443", - "severity": "INFO", - "finding": "No support for HTTP Public Key Pinning" - }, - { - "id": "banner_server", - "ip": "www.rdv-solidarites.fr/80.247.12.255", - "port": "443", - "severity": "INFO", - "finding": "No Server banner line in header, interesting!" - }, - { - "id": "banner_application", - "ip": "www.rdv-solidarites.fr/80.247.12.255", - "port": "443", - "severity": "INFO", - "finding": "No application banner found" - }, - { - "id": "cookie_count", - "ip": "www.rdv-solidarites.fr/80.247.12.255", - "port": "443", - "severity": "INFO", - "finding": "1 at '/'" - }, - { - "id": "cookie_secure", - "ip": "www.rdv-solidarites.fr/80.247.12.255", - "port": "443", - "severity": "OK", - "finding": "All (1) at '/' marked as secure" - }, - { - "id": "cookie_httponly", - "ip": "www.rdv-solidarites.fr/80.247.12.255", - "port": "443", - "severity": "OK", - "finding": "All (1) at '/' marked as HttpOnly" - }, - { - "id": "X-Content-Type-Options", - "ip": "www.rdv-solidarites.fr/80.247.12.255", - "port": "443", - "severity": "OK", - "finding": "nosniff" - }, - { - "id": "Content-Security-Policy", - "ip": "www.rdv-solidarites.fr/80.247.12.255", - "port": "443", - "severity": "OK", - "finding": "default-src 'self'; font-src 'self' data:; object-src 'none'; worker-src blob:; child-src blob: 'self'; frame-src 'self' *.instatus.com headway-widget.net; media-src 'self' rdv-insertion-medias-production.s3.fr-par.scw.cloud; img-src 'self' data: voxusagers.numerique.gouv.fr; style-src 'self' 'unsafe-inline' *.bootstrapcdn.com api.mapbox.com cdn.headwayapp.co; connect-src 'self' api-adresse.data.gouv.fr etalab-tiles.fr; script-src 'self' 'unsafe-inline' api.mapbox.com cdn.headwayapp.co" - }, - { - "id": "X-XSS-Protection", - "ip": "www.rdv-solidarites.fr/80.247.12.255", - "port": "443", - "severity": "INFO", - "finding": "0" - }, - { - "id": "Referrer-Policy", - "ip": "www.rdv-solidarites.fr/80.247.12.255", - "port": "443", - "severity": "INFO", - "finding": "strict-origin-when-cross-origin" - }, - { - "id": "Cache-Control", - "ip": "www.rdv-solidarites.fr/80.247.12.255", - "port": "443", - "severity": "INFO", - "finding": "max-age=0, private, must-revalidate" - }, - { - "id": "banner_reverseproxy", - "ip": "www.rdv-solidarites.fr/80.247.12.255", - "port": "443", - "severity": "INFO", - "cwe": "CWE-200", - "finding": "--" - }, - { - "id": "heartbleed", - "ip": "www.rdv-solidarites.fr/80.247.12.255", - "port": "443", - "severity": "OK", - "cve": "CVE-2014-0160", - "cwe": "CWE-119", - "finding": "not vulnerable, no heartbeat extension" - }, - { - "id": "CCS", - "ip": "www.rdv-solidarites.fr/80.247.12.255", - "port": "443", - "severity": "OK", - "cve": "CVE-2014-0224", - "cwe": "CWE-310", - "finding": "not vulnerable" - }, - { - "id": "ticketbleed", - "ip": "www.rdv-solidarites.fr/80.247.12.255", - "port": "443", - "severity": "OK", - "cve": "CVE-2016-9244", - "cwe": "CWE-200", - "finding": "not vulnerable" - }, - { - "id": "ROBOT", - "ip": "www.rdv-solidarites.fr/80.247.12.255", - "port": "443", - "severity": "OK", - "cve": "CVE-2017-17382 CVE-2017-17427 CVE-2017-17428 CVE-2017-13098 CVE-2017-1000385 CVE-2017-13099 CVE-2016-6883 CVE-2012-5081 CVE-2017-6168", - "cwe": "CWE-203", - "finding": "not vulnerable, no RSA key transport cipher" - }, - { - "id": "secure_renego", - "ip": "www.rdv-solidarites.fr/80.247.12.255", - "port": "443", - "severity": "OK", - "cwe": "CWE-310", - "finding": "supported" - }, - { - "id": "secure_client_renego", - "ip": "www.rdv-solidarites.fr/80.247.12.255", - "port": "443", - "severity": "OK", - "cve": "CVE-2011-1473", - "cwe": "CWE-310", - "finding": "not vulnerable" - }, - { - "id": "CRIME_TLS", - "ip": "www.rdv-solidarites.fr/80.247.12.255", - "port": "443", - "severity": "OK", - "cve": "CVE-2012-4929", - "cwe": "CWE-310", - "finding": "not vulnerable" - }, - { - "id": "BREACH", - "ip": "www.rdv-solidarites.fr/80.247.12.255", - "port": "443", - "severity": "MEDIUM", - "cve": "CVE-2013-3587", - "cwe": "CWE-310", - "finding": "potentially VULNERABLE, gzip HTTP compression detected - only supplied '/' tested" - }, - { - "id": "POODLE_SSL", - "ip": "www.rdv-solidarites.fr/80.247.12.255", - "port": "443", - "severity": "OK", - "cve": "CVE-2014-3566", - "cwe": "CWE-310", - "finding": "not vulnerable, no SSLv3" - }, - { - "id": "fallback_SCSV", - "ip": "www.rdv-solidarites.fr/80.247.12.255", - "port": "443", - "severity": "OK", - "finding": "no protocol below TLS 1.2 offered" - }, - { - "id": "SWEET32", - "ip": "www.rdv-solidarites.fr/80.247.12.255", - "port": "443", - "severity": "OK", - "cve": "CVE-2016-2183 CVE-2016-6329", - "cwe": "CWE-327", - "finding": "not vulnerable" - }, - { - "id": "FREAK", - "ip": "www.rdv-solidarites.fr/80.247.12.255", - "port": "443", - "severity": "OK", - "cve": "CVE-2015-0204", - "cwe": "CWE-310", - "finding": "not vulnerable" - }, - { - "id": "DROWN", - "ip": "www.rdv-solidarites.fr/80.247.12.255", - "port": "443", - "severity": "OK", - "cve": "CVE-2016-0800 CVE-2016-0703", - "cwe": "CWE-310", - "finding": "not vulnerable on this host and port" - }, - { - "id": "DROWN_hint", - "ip": "www.rdv-solidarites.fr/80.247.12.255", - "port": "443", - "severity": "INFO", - "cve": "CVE-2016-0800 CVE-2016-0703", - "cwe": "CWE-310", - "finding": "Make sure you don't use this certificate elsewhere with SSLv2 enabled services, see https://search.censys.io/search?resource=hosts&virtual_hosts=INCLUDE&q=633BD28D00F8947E110D214024F8B8BD21CBFC0BAC0FE9ADECBB467456A886A4" - }, - { - "id": "LOGJAM", - "ip": "www.rdv-solidarites.fr/80.247.12.255", - "port": "443", - "severity": "OK", - "cve": "CVE-2015-4000", - "cwe": "CWE-310", - "finding": "not vulnerable, no DH EXPORT ciphers," - }, - { - "id": "LOGJAM-common_primes", - "ip": "www.rdv-solidarites.fr/80.247.12.255", - "port": "443", - "severity": "OK", - "cve": "CVE-2015-4000", - "cwe": "CWE-310", - "finding": "--" - }, - { - "id": "BEAST", - "ip": "www.rdv-solidarites.fr/80.247.12.255", - "port": "443", - "severity": "OK", - "cve": "CVE-2011-3389", - "cwe": "CWE-20", - "finding": "not vulnerable, no SSL3 or TLS1" - }, - { - "id": "LUCKY13", - "ip": "www.rdv-solidarites.fr/80.247.12.255", - "port": "443", - "severity": "OK", - "cve": "CVE-2013-0169", - "cwe": "CWE-310", - "finding": "not vulnerable" - }, - { - "id": "winshock", - "ip": "www.rdv-solidarites.fr/80.247.12.255", - "port": "443", - "severity": "OK", - "cve": "CVE-2014-6321", - "cwe": "CWE-94", - "finding": "not vulnerable" - }, - { - "id": "RC4", - "ip": "www.rdv-solidarites.fr/80.247.12.255", - "port": "443", - "severity": "OK", - "cve": "CVE-2013-2566 CVE-2015-2808", - "cwe": "CWE-310", - "finding": "not vulnerable" - }, - { - "id": "clientsimulation-android_60", - "ip": "www.rdv-solidarites.fr/80.247.12.255", - "port": "443", - "severity": "INFO", - "finding": "TLSv1.2 ECDHE-RSA-AES128-GCM-SHA256" - }, - { - "id": "clientsimulation-android_70", - "ip": "www.rdv-solidarites.fr/80.247.12.255", - "port": "443", - "severity": "INFO", - "finding": "TLSv1.2 ECDHE-RSA-AES256-GCM-SHA384" - }, - { - "id": "clientsimulation-android_81", - "ip": "www.rdv-solidarites.fr/80.247.12.255", - "port": "443", - "severity": "INFO", - "finding": "TLSv1.2 ECDHE-RSA-AES256-GCM-SHA384" - }, - { - "id": "clientsimulation-android_90", - "ip": "www.rdv-solidarites.fr/80.247.12.255", - "port": "443", - "severity": "INFO", - "finding": "TLSv1.3 TLS_AES_256_GCM_SHA384" - }, - { - "id": "clientsimulation-android_X", - "ip": "www.rdv-solidarites.fr/80.247.12.255", - "port": "443", - "severity": "INFO", - "finding": "TLSv1.3 TLS_AES_256_GCM_SHA384" - }, - { - "id": "clientsimulation-android_11", - "ip": "www.rdv-solidarites.fr/80.247.12.255", - "port": "443", - "severity": "INFO", - "finding": "TLSv1.3 TLS_AES_256_GCM_SHA384" - }, - { - "id": "clientsimulation-android_12", - "ip": "www.rdv-solidarites.fr/80.247.12.255", - "port": "443", - "severity": "INFO", - "finding": "TLSv1.3 TLS_AES_256_GCM_SHA384" - }, - { - "id": "clientsimulation-chrome_79_win10", - "ip": "www.rdv-solidarites.fr/80.247.12.255", - "port": "443", - "severity": "INFO", - "finding": "TLSv1.3 TLS_AES_256_GCM_SHA384" - }, - { - "id": "clientsimulation-chrome_101_win10", - "ip": "www.rdv-solidarites.fr/80.247.12.255", - "port": "443", - "severity": "INFO", - "finding": "TLSv1.3 TLS_AES_256_GCM_SHA384" - }, - { - "id": "clientsimulation-firefox_66_win81", - "ip": "www.rdv-solidarites.fr/80.247.12.255", - "port": "443", - "severity": "INFO", - "finding": "TLSv1.3 TLS_AES_256_GCM_SHA384" - }, - { - "id": "clientsimulation-firefox_100_win10", - "ip": "www.rdv-solidarites.fr/80.247.12.255", - "port": "443", - "severity": "INFO", - "finding": "TLSv1.3 TLS_AES_256_GCM_SHA384" - }, - { - "id": "clientsimulation-ie_6_xp", - "ip": "www.rdv-solidarites.fr/80.247.12.255", - "port": "443", - "severity": "INFO", - "finding": "No connection" - }, - { - "id": "clientsimulation-ie_8_win7", - "ip": "www.rdv-solidarites.fr/80.247.12.255", - "port": "443", - "severity": "INFO", - "finding": "No connection" - }, - { - "id": "clientsimulation-ie_8_xp", - "ip": "www.rdv-solidarites.fr/80.247.12.255", - "port": "443", - "severity": "INFO", - "finding": "No connection" - }, - { - "id": "clientsimulation-ie_11_win7", - "ip": "www.rdv-solidarites.fr/80.247.12.255", - "port": "443", - "severity": "INFO", - "finding": "TLSv1.2 DHE-RSA-AES256-GCM-SHA384" - }, - { - "id": "clientsimulation-ie_11_win81", - "ip": "www.rdv-solidarites.fr/80.247.12.255", - "port": "443", - "severity": "INFO", - "finding": "TLSv1.2 DHE-RSA-AES256-GCM-SHA384" - }, - { - "id": "clientsimulation-ie_11_winphone81", - "ip": "www.rdv-solidarites.fr/80.247.12.255", - "port": "443", - "severity": "INFO", - "finding": "No connection" - }, - { - "id": "clientsimulation-ie_11_win10", - "ip": "www.rdv-solidarites.fr/80.247.12.255", - "port": "443", - "severity": "INFO", - "finding": "TLSv1.2 ECDHE-RSA-AES256-GCM-SHA384" - }, - { - "id": "clientsimulation-edge_15_win10", - "ip": "www.rdv-solidarites.fr/80.247.12.255", - "port": "443", - "severity": "INFO", - "finding": "TLSv1.2 ECDHE-RSA-AES256-GCM-SHA384" - }, - { - "id": "clientsimulation-edge_101_win10_21h2", - "ip": "www.rdv-solidarites.fr/80.247.12.255", - "port": "443", - "severity": "INFO", - "finding": "TLSv1.3 TLS_AES_256_GCM_SHA384" - }, - { - "id": "clientsimulation-safari_121_ios_122", - "ip": "www.rdv-solidarites.fr/80.247.12.255", - "port": "443", - "severity": "INFO", - "finding": "TLSv1.3 TLS_AES_256_GCM_SHA384" - }, - { - "id": "clientsimulation-safari_130_osx_10146", - "ip": "www.rdv-solidarites.fr/80.247.12.255", - "port": "443", - "severity": "INFO", - "finding": "TLSv1.3 TLS_AES_256_GCM_SHA384" - }, - { - "id": "clientsimulation-safari_154_osx_1231", - "ip": "www.rdv-solidarites.fr/80.247.12.255", - "port": "443", - "severity": "INFO", - "finding": "TLSv1.3 TLS_AES_256_GCM_SHA384" - }, - { - "id": "clientsimulation-java_7u25", - "ip": "www.rdv-solidarites.fr/80.247.12.255", - "port": "443", - "severity": "INFO", - "finding": "No connection" - }, - { - "id": "clientsimulation-java_8u161", - "ip": "www.rdv-solidarites.fr/80.247.12.255", - "port": "443", - "severity": "INFO", - "finding": "TLSv1.2 ECDHE-RSA-AES256-GCM-SHA384" - }, - { - "id": "clientsimulation-java1102", - "ip": "www.rdv-solidarites.fr/80.247.12.255", - "port": "443", - "severity": "INFO", - "finding": "TLSv1.3 TLS_AES_256_GCM_SHA384" - }, - { - "id": "clientsimulation-java1703", - "ip": "www.rdv-solidarites.fr/80.247.12.255", - "port": "443", - "severity": "INFO", - "finding": "TLSv1.3 TLS_AES_256_GCM_SHA384" - }, - { - "id": "clientsimulation-go_1178", - "ip": "www.rdv-solidarites.fr/80.247.12.255", - "port": "443", - "severity": "INFO", - "finding": "TLSv1.3 TLS_AES_256_GCM_SHA384" - }, - { - "id": "clientsimulation-libressl_283", - "ip": "www.rdv-solidarites.fr/80.247.12.255", - "port": "443", - "severity": "INFO", - "finding": "TLSv1.2 ECDHE-RSA-AES256-GCM-SHA384" - }, - { - "id": "clientsimulation-openssl_102e", - "ip": "www.rdv-solidarites.fr/80.247.12.255", - "port": "443", - "severity": "INFO", - "finding": "TLSv1.2 ECDHE-RSA-AES256-GCM-SHA384" - }, - { - "id": "clientsimulation-openssl_110l", - "ip": "www.rdv-solidarites.fr/80.247.12.255", - "port": "443", - "severity": "INFO", - "finding": "TLSv1.2 ECDHE-RSA-AES256-GCM-SHA384" - }, - { - "id": "clientsimulation-openssl_111d", - "ip": "www.rdv-solidarites.fr/80.247.12.255", - "port": "443", - "severity": "INFO", - "finding": "TLSv1.3 TLS_AES_256_GCM_SHA384" - }, - { - "id": "clientsimulation-openssl_303", - "ip": "www.rdv-solidarites.fr/80.247.12.255", - "port": "443", - "severity": "INFO", - "finding": "TLSv1.3 TLS_AES_256_GCM_SHA384" - }, - { - "id": "clientsimulation-apple_mail_16_0", - "ip": "www.rdv-solidarites.fr/80.247.12.255", - "port": "443", - "severity": "INFO", - "finding": "TLSv1.2 ECDHE-RSA-AES256-GCM-SHA384" - }, - { - "id": "clientsimulation-thunderbird_91_9", - "ip": "www.rdv-solidarites.fr/80.247.12.255", - "port": "443", - "severity": "INFO", - "finding": "TLSv1.3 TLS_AES_256_GCM_SHA384" - }, - { - "id": "rating_spec", - "ip": "www.rdv-solidarites.fr/80.247.12.255", - "port": "443", - "severity": "INFO", - "finding": "SSL Labs's 'SSL Server Rating Guide' (version 2009q from 2020-01-30)" - }, - { - "id": "rating_doc", - "ip": "www.rdv-solidarites.fr/80.247.12.255", - "port": "443", - "severity": "INFO", - "finding": "https://github.com/ssllabs/research/wiki/SSL-Server-Rating-Guide" - }, - { - "id": "protocol_support_score", - "ip": "www.rdv-solidarites.fr/80.247.12.255", - "port": "443", - "severity": "INFO", - "finding": "100" - }, - { - "id": "protocol_support_score_weighted", - "ip": "www.rdv-solidarites.fr/80.247.12.255", - "port": "443", - "severity": "INFO", - "finding": "30" - }, - { - "id": "key_exchange_score", - "ip": "www.rdv-solidarites.fr/80.247.12.255", - "port": "443", - "severity": "INFO", - "finding": "90" - }, - { - "id": "key_exchange_score_weighted", - "ip": "www.rdv-solidarites.fr/80.247.12.255", - "port": "443", - "severity": "INFO", - "finding": "27" - }, - { - "id": "cipher_strength_score", - "ip": "www.rdv-solidarites.fr/80.247.12.255", - "port": "443", - "severity": "INFO", - "finding": "60" - }, - { - "id": "cipher_strength_score_weighted", - "ip": "www.rdv-solidarites.fr/80.247.12.255", - "port": "443", - "severity": "INFO", - "finding": "24" - }, - { - "id": "final_score", - "ip": "www.rdv-solidarites.fr/80.247.12.255", - "port": "443", - "severity": "INFO", - "finding": "81" - }, - { - "id": "overall_grade", - "ip": "www.rdv-solidarites.fr/80.247.12.255", - "port": "443", - "severity": "OK", - "finding": "A+" - }, - { - "id": "service", - "ip": "www.rdv-solidarites.fr/80.247.13.145", - "port": "443", - "severity": "INFO", - "finding": "HTTP" - }, - { - "id": "pre_128cipher", - "ip": "www.rdv-solidarites.fr/80.247.13.145", - "port": "443", - "severity": "INFO", - "finding": "No 128 cipher limit bug" - }, - { - "id": "SSLv2", - "ip": "www.rdv-solidarites.fr/80.247.13.145", - "port": "443", - "severity": "OK", - "finding": "not offered" - }, - { - "id": "SSLv3", - "ip": "www.rdv-solidarites.fr/80.247.13.145", - "port": "443", - "severity": "OK", - "finding": "not offered" - }, - { - "id": "TLS1", - "ip": "www.rdv-solidarites.fr/80.247.13.145", - "port": "443", - "severity": "INFO", - "finding": "not offered" - }, - { - "id": "TLS1_1", - "ip": "www.rdv-solidarites.fr/80.247.13.145", - "port": "443", - "severity": "INFO", - "finding": "not offered" - }, - { - "id": "TLS1_2", - "ip": "www.rdv-solidarites.fr/80.247.13.145", - "port": "443", - "severity": "OK", - "finding": "offered" - }, - { - "id": "TLS1_3", - "ip": "www.rdv-solidarites.fr/80.247.13.145", - "port": "443", - "severity": "OK", - "finding": "offered with final" - }, - { - "id": "ALPN_HTTP2", - "ip": "www.rdv-solidarites.fr/80.247.13.145", - "port": "443", - "severity": "OK", - "finding": "h2" - }, - { - "id": "ALPN", - "ip": "www.rdv-solidarites.fr/80.247.13.145", - "port": "443", - "severity": "INFO", - "finding": "http/1.1" - }, - { - "id": "cipherlist_NULL", - "ip": "www.rdv-solidarites.fr/80.247.13.145", - "port": "443", - "severity": "OK", - "cwe": "CWE-327", - "finding": "not offered" - }, - { - "id": "cipherlist_aNULL", - "ip": "www.rdv-solidarites.fr/80.247.13.145", - "port": "443", - "severity": "OK", - "cwe": "CWE-327", - "finding": "not offered" - }, - { - "id": "cipherlist_EXPORT", - "ip": "www.rdv-solidarites.fr/80.247.13.145", - "port": "443", - "severity": "OK", - "cwe": "CWE-327", - "finding": "not offered" - }, - { - "id": "cipherlist_LOW", - "ip": "www.rdv-solidarites.fr/80.247.13.145", - "port": "443", - "severity": "OK", - "cwe": "CWE-327", - "finding": "not offered" - }, - { - "id": "cipherlist_3DES_IDEA", - "ip": "www.rdv-solidarites.fr/80.247.13.145", - "port": "443", - "severity": "INFO", - "cwe": "CWE-310", - "finding": "not offered" - }, - { - "id": "cipherlist_OBSOLETED", - "ip": "www.rdv-solidarites.fr/80.247.13.145", - "port": "443", - "severity": "INFO", - "cwe": "CWE-310", - "finding": "not offered" - }, - { - "id": "cipherlist_STRONG_NOFS", - "ip": "www.rdv-solidarites.fr/80.247.13.145", - "port": "443", - "severity": "INFO", - "finding": "not offered" - }, - { - "id": "cipherlist_STRONG_FS", - "ip": "www.rdv-solidarites.fr/80.247.13.145", - "port": "443", - "severity": "OK", - "finding": "offered" - }, - { - "id": "cipher_order-tls1_2", - "ip": "www.rdv-solidarites.fr/80.247.13.145", - "port": "443", - "severity": "OK", - "finding": "server" - }, - { - "id": "cipherorder_TLSv1_2", - "ip": "www.rdv-solidarites.fr/80.247.13.145", - "port": "443", - "severity": "INFO", - "finding": "ECDHE-RSA-AES256-GCM-SHA384" - }, - { - "id": "cipher_order", - "ip": "www.rdv-solidarites.fr/80.247.13.145", - "port": "443", - "severity": "OK", - "finding": "server" - }, - { - "id": "FS", - "ip": "www.rdv-solidarites.fr/80.247.13.145", - "port": "443", - "severity": "OK", - "finding": "offered" - }, - { - "id": "FS_ciphers", - "ip": "www.rdv-solidarites.fr/80.247.13.145", - "port": "443", - "severity": "INFO", - "finding": "DHE-RSA-AES256-GCM-SHA384 ECDHE-RSA-AES128-GCM-SHA256 ECDHE-RSA-AES256-GCM-SHA384" - }, - { - "id": "FS_ECDHE_curves", - "ip": "www.rdv-solidarites.fr/80.247.13.145", - "port": "443", - "severity": "OK", - "finding": "prime256v1 secp384r1 secp521r1" - }, - { - "id": "TLS_extensions", - "ip": "www.rdv-solidarites.fr/80.247.13.145", - "port": "443", - "severity": "INFO", - "finding": "'renegotiation info/#65281' 'server name/#0' 'EC point formats/#11' 'session ticket/#35' 'supported versions/#43' 'key share/#51' 'supported_groups/#10' 'max fragment length/#1' 'application layer protocol negotiation/#16' 'extended master secret/#23'" - }, - { - "id": "TLS_session_ticket", - "ip": "www.rdv-solidarites.fr/80.247.13.145", - "port": "443", - "severity": "INFO", - "finding": "valid for 300 seconds only (= 30 days" - }, - { - "id": "cert_notBefore", - "ip": "www.rdv-solidarites.fr/80.247.13.145", - "port": "443", - "severity": "INFO", - "finding": "2024-11-13 15:55" - }, - { - "id": "cert_notAfter", - "ip": "www.rdv-solidarites.fr/80.247.13.145", - "port": "443", - "severity": "OK", - "finding": "2025-02-11 15:55" - }, - { - "id": "cert_extlifeSpan", - "ip": "www.rdv-solidarites.fr/80.247.13.145", - "port": "443", - "severity": "OK", - "finding": "certificate has no extended life time according to browser forum" - }, - { - "id": "cert_eTLS", - "ip": "www.rdv-solidarites.fr/80.247.13.145", - "port": "443", - "severity": "INFO", - "finding": "not present" - }, - { - "id": "cert_crlDistributionPoints", - "ip": "www.rdv-solidarites.fr/80.247.13.145", - "port": "443", - "severity": "INFO", - "finding": "--" - }, - { - "id": "cert_ocspURL", - "ip": "www.rdv-solidarites.fr/80.247.13.145", - "port": "443", - "severity": "INFO", - "finding": "http://r10.o.lencr.org" - }, - { - "id": "OCSP_stapling", - "ip": "www.rdv-solidarites.fr/80.247.13.145", - "port": "443", - "severity": "LOW", - "finding": "not offered" - }, - { - "id": "cert_mustStapleExtension", - "ip": "www.rdv-solidarites.fr/80.247.13.145", - "port": "443", - "severity": "INFO", - "finding": "--" - }, - { - "id": "DNS_CAArecord", - "ip": "www.rdv-solidarites.fr/80.247.13.145", - "port": "443", - "severity": "LOW", - "finding": "--" + "geeknik", + "g4l1t0", + "convisoappsec", + "kurohost", + "dawid-czarnecki", + "forgedhallpass", + "jub0bs", + "userdehghani" + ], + "tags": [ + "misconfig", + "headers", + "generic" + ], + "description": "This template searches for missing HTTP security headers. The impact of these missing headers can vary.\n", + "severity": "info", + "metadata": { + "max-request": 1 + } + }, + "matcher-name": "cross-origin-resource-policy", + "type": "http", + "host": "https://cartographie.societenumerique.gouv.fr", + "matched-at": "https://cartographie.societenumerique.gouv.fr", + "ip": "18.160.225.13", + "timestamp": "2024-12-01T01:54:07.711700932Z", + "curl-command": "curl -X 'GET' -H 'Accept: */*' -H 'Accept-Language: en' -H 'User-Agent: Nuclei - Open-source project (github.com/projectdiscovery/nuclei)' 'https://cartographie.societenumerique.gouv.fr'", + "matcher-status": true }, { - "id": "certificate_transparency", - "ip": "www.rdv-solidarites.fr/80.247.13.145", - "port": "443", - "severity": "OK", - "finding": "yes (certificate extension)" + "template": "http/misconfiguration/http-missing-security-headers.yaml", + "template-url": "https://templates.nuclei.sh/public/http-missing-security-headers", + "template-id": "http-missing-security-headers", + "template-path": "/home/runner/nuclei-templates/http/misconfiguration/http-missing-security-headers.yaml", + "info": { + "name": "HTTP Missing Security Headers", + "author": [ + "socketz", + "geeknik", + "g4l1t0", + "convisoappsec", + "kurohost", + "dawid-czarnecki", + "forgedhallpass", + "jub0bs", + "userdehghani" + ], + "tags": [ + "misconfig", + "headers", + "generic" + ], + "description": "This template searches for missing HTTP security headers. The impact of these missing headers can vary.\n", + "severity": "info", + "metadata": { + "max-request": 1 + } + }, + "matcher-name": "x-permitted-cross-domain-policies", + "type": "http", + "host": "https://cartographie.societenumerique.gouv.fr", + "matched-at": "https://cartographie.societenumerique.gouv.fr", + "ip": "18.160.225.13", + "timestamp": "2024-12-01T01:54:07.711731599Z", + "curl-command": "curl -X 'GET' -H 'Accept: */*' -H 'Accept-Language: en' -H 'User-Agent: Nuclei - Open-source project (github.com/projectdiscovery/nuclei)' 'https://cartographie.societenumerique.gouv.fr'", + "matcher-status": true }, { - "id": "certs_countServer", - "ip": "www.rdv-solidarites.fr/80.247.13.145", - "port": "443", - "severity": "INFO", - "finding": "2" + "template": "http/technologies/aws/aws-detect.yaml", + "template-url": "https://templates.nuclei.sh/public/aws-detect", + "template-id": "aws-detect", + "template-path": "/home/runner/nuclei-templates/http/technologies/aws/aws-detect.yaml", + "info": { + "name": "AWS Service - Detect", + "author": [ + "6mile" + ], + "tags": [ + "tech", + "aws", + "amazon", + "alb", + "cloudfront", + "codebuild", + "gateway", + "xray", + "captcha", + "dynamodb", + "kms" + ], + "description": "Detect if AWS is being used in the application.", + "reference": [ + "https://github.com/6mile/cloud-headers" + ], + "severity": "info", + "metadata": { + "max-request": 1 + }, + "classification": { + "cve-id": null, + "cwe-id": [ + "cwe-200" + ] + } + }, + "matcher-name": "aws-cloudfront", + "type": "http", + "host": "https://cartographie.societenumerique.gouv.fr", + "matched-at": "https://cartographie.societenumerique.gouv.fr", + "ip": "18.160.225.13", + "timestamp": "2024-12-01T01:54:07.712542253Z", + "curl-command": "curl -X 'GET' -H 'Accept: */*' -H 'Accept-Language: en' -H 'User-Agent: Nuclei - Open-source project (github.com/projectdiscovery/nuclei)' 'https://cartographie.societenumerique.gouv.fr'", + "matcher-status": true }, { - "id": "certs_list_ordering_problem", - "ip": "www.rdv-solidarites.fr/80.247.13.145", - "port": "443", - "severity": "INFO", - "finding": "no" + "template": "http/technologies/aws/aws-detect.yaml", + "template-url": "https://templates.nuclei.sh/public/aws-detect", + "template-id": "aws-detect", + "template-path": "/home/runner/nuclei-templates/http/technologies/aws/aws-detect.yaml", + "info": { + "name": "AWS Service - Detect", + "author": [ + "6mile" + ], + "tags": [ + "tech", + "aws", + "amazon", + "alb", + "cloudfront", + "codebuild", + "gateway", + "xray", + "captcha", + "dynamodb", + "kms" + ], + "description": "Detect if AWS is being used in the application.", + "reference": [ + "https://github.com/6mile/cloud-headers" + ], + "severity": "info", + "metadata": { + "max-request": 1 + }, + "classification": { + "cve-id": null, + "cwe-id": [ + "cwe-200" + ] + } + }, + "matcher-name": "aws-kms", + "type": "http", + "host": "https://cartographie.societenumerique.gouv.fr", + "matched-at": "https://cartographie.societenumerique.gouv.fr", + "ip": "18.160.225.13", + "timestamp": "2024-12-01T01:54:07.712566267Z", + "curl-command": "curl -X 'GET' -H 'Accept: */*' -H 'Accept-Language: en' -H 'User-Agent: Nuclei - Open-source project (github.com/projectdiscovery/nuclei)' 'https://cartographie.societenumerique.gouv.fr'", + "matcher-status": true }, { - "id": "cert_caIssuers", - "ip": "www.rdv-solidarites.fr/80.247.13.145", - "port": "443", - "severity": "INFO", - "finding": "R10 (Let's Encrypt from US)" + "template": "http/technologies/s3-detect.yaml", + "template-url": "https://templates.nuclei.sh/public/s3-detect", + "template-id": "s3-detect", + "template-path": "/home/runner/nuclei-templates/http/technologies/s3-detect.yaml", + "info": { + "name": "Detect Amazon-S3 Bucket", + "author": [ + "melbadry9" + ], + "tags": [ + "aws", + "s3", + "bucket", + "tech" + ], + "severity": "info", + "metadata": { + "max-request": 1 + } + }, + "type": "http", + "host": "https://cartographie.societenumerique.gouv.fr", + "matched-at": "https://cartographie.societenumerique.gouv.fr/%c0", + "ip": "18.160.225.13", + "timestamp": "2024-12-01T01:54:25.412078203Z", + "curl-command": "curl -X 'GET' -H 'Accept: */*' -H 'Accept-Language: en' -H 'User-Agent: Nuclei - Open-source project (github.com/projectdiscovery/nuclei)' 'https://cartographie.societenumerique.gouv.fr/%c0'", + "matcher-status": true }, { - "id": "intermediate_cert <#1>", - "ip": "www.rdv-solidarites.fr/80.247.13.145", - "port": "443", - "severity": "INFO", - "finding": "-----BEGIN CERTIFICATE-----\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\n-----END CERTIFICATE-----" + "template": "http/technologies/waf-detect.yaml", + "template-url": "https://templates.nuclei.sh/public/waf-detect", + "template-id": "waf-detect", + "template-path": "/home/runner/nuclei-templates/http/technologies/waf-detect.yaml", + "info": { + "name": "WAF Detection", + "author": [ + "dwisiswant0", + "lu4nx" + ], + "tags": [ + "waf", + "tech", + "misc" + ], + "description": "A web application firewall was detected.", + "reference": [ + "https://github.com/ekultek/whatwaf" + ], + "severity": "info", + "metadata": { + "max-request": 1 + }, + "classification": { + "cve-id": null, + "cwe-id": [ + "cwe-200" + ] + } + }, + "matcher-name": "cloudfront", + "type": "http", + "host": "https://cartographie.societenumerique.gouv.fr", + "matched-at": "https://cartographie.societenumerique.gouv.fr/", + "ip": "18.160.225.13", + "timestamp": "2024-12-01T01:54:25.516722655Z", + "curl-command": "curl -X 'POST' -d '_=' -H 'Content-Type: application/x-www-form-urlencoded' -H 'Host: cartographie.societenumerique.gouv.fr' -H 'User-Agent: Nuclei - Open-source project (github.com/projectdiscovery/nuclei)' 'https://cartographie.societenumerique.gouv.fr/'", + "matcher-status": true }, { - "id": "intermediate_cert_fingerprintSHA256 <#1>", - "ip": "www.rdv-solidarites.fr/80.247.13.145", - "port": "443", - "severity": "INFO", - "finding": "9D7C3F1AA6AD2B2EC0D5CF1E246F8D9AE6CBC9FD0755AD37BB974B1F2FB603F3" + "template": "ssl/detect-ssl-issuer.yaml", + "template-url": "https://templates.nuclei.sh/public/ssl-issuer", + "template-id": "ssl-issuer", + "template-path": "/home/runner/nuclei-templates/ssl/detect-ssl-issuer.yaml", + "info": { + "name": "Detect SSL Certificate Issuer", + "author": [ + "lingtren" + ], + "tags": [ + "ssl", + "tls" + ], + "description": "Extract the issuer's organization from the target's certificate. Issuers are entities which sign and distribute certificates.\n", + "severity": "info", + "metadata": { + "max-request": 1 + } + }, + "type": "ssl", + "host": "cartographie.societenumerique.gouv.fr", + "matched-at": "cartographie.societenumerique.gouv.fr:443", + "extracted-results": [ + "Amazon" + ], + "ip": "18.160.225.13", + "timestamp": "2024-12-01T01:59:51.440393099Z", + "matcher-status": true }, { - "id": "intermediate_cert_notBefore <#1>", - "ip": "www.rdv-solidarites.fr/80.247.13.145", - "port": "443", - "severity": "INFO", - "finding": "2024-03-13 00:00" + "template": "ssl/ssl-dns-names.yaml", + "template-url": "https://templates.nuclei.sh/public/ssl-dns-names", + "template-id": "ssl-dns-names", + "template-path": "/home/runner/nuclei-templates/ssl/ssl-dns-names.yaml", + "info": { + "name": "SSL DNS Names", + "author": [ + "pdteam" + ], + "tags": [ + "ssl", + "tls" + ], + "description": "Extract the Subject Alternative Name (SAN) from the target's certificate. SAN facilitates the usage of additional hostnames with the same certificate.\n", + "severity": "info", + "metadata": { + "max-request": 1 + } + }, + "type": "ssl", + "host": "cartographie.societenumerique.gouv.fr", + "matched-at": "cartographie.societenumerique.gouv.fr:443", + "extracted-results": [ + "cartographie.societenumerique.gouv.fr", + "*.cartographie.societenumerique.gouv.fr" + ], + "ip": "18.160.225.13", + "timestamp": "2024-12-01T01:59:51.440570728Z", + "matcher-status": true }, { - "id": "intermediate_cert_notAfter <#1>", - "ip": "www.rdv-solidarites.fr/80.247.13.145", - "port": "443", - "severity": "OK", - "finding": "2027-03-12 23:59" + "template": "ssl/wildcard-tls.yaml", + "template-url": "https://templates.nuclei.sh/public/wildcard-tls", + "template-id": "wildcard-tls", + "template-path": "/home/runner/nuclei-templates/ssl/wildcard-tls.yaml", + "info": { + "name": "Wildcard TLS Certificate", + "author": [ + "lucky0x0d" + ], + "tags": [ + "ssl", + "tls", + "wildcard" + ], + "description": "Checks a sites certificate to see if there are wildcard CN or SAN entries.\n", + "reference": [ + "https://cheatsheetseries.owasp.org/cheatsheets/transport_layer_security_cheat_sheet.html#carefully-consider-the-use-of-wildcard-certificates" + ], + "severity": "info", + "metadata": { + "max-request": 1 + } + }, + "type": "ssl", + "host": "cartographie.societenumerique.gouv.fr", + "matched-at": "cartographie.societenumerique.gouv.fr:443", + "extracted-results": [ + "CN: cartographie.societenumerique.gouv.fr", + " SAN: [cartographie.societenumerique.gouv.fr *.cartographie.societenumerique.gouv.fr]" + ], + "ip": "18.160.225.13", + "timestamp": "2024-12-01T01:59:51.440621222Z", + "matcher-status": true }, { - "id": "intermediate_cert_expiration <#1>", - "ip": "www.rdv-solidarites.fr/80.247.13.145", - "port": "443", - "severity": "OK", - "finding": "ok > 40 days" + "template": "ssl/tls-version.yaml", + "template-url": "https://templates.nuclei.sh/public/tls-version", + "template-id": "tls-version", + "template-path": "/home/runner/nuclei-templates/ssl/tls-version.yaml", + "info": { + "name": "TLS Version - Detect", + "author": [ + "pdteam", + "pussycat0x" + ], + "tags": [ + "ssl", + "tls" + ], + "description": "TLS version detection is a security process used to determine the version of the Transport Layer Security (TLS) protocol used by a computer or server.\nIt is important to detect the TLS version in order to ensure secure communication between two computers or servers.\n", + "severity": "info", + "metadata": { + "max-request": 4 + } + }, + "type": "ssl", + "host": "cartographie.societenumerique.gouv.fr", + "matched-at": "cartographie.societenumerique.gouv.fr:443", + "extracted-results": [ + "tls12" + ], + "ip": "18.160.225.13", + "timestamp": "2024-12-01T01:59:52.131593198Z", + "matcher-status": true }, { - "id": "intermediate_cert_chain <#1>", - "ip": "www.rdv-solidarites.fr/80.247.13.145", - "port": "443", - "severity": "INFO", - "finding": "R10 <-- ISRG Root X1" - }, + "template": "ssl/tls-version.yaml", + "template-url": "https://templates.nuclei.sh/public/tls-version", + "template-id": "tls-version", + "template-path": "/home/runner/nuclei-templates/ssl/tls-version.yaml", + "info": { + "name": "TLS Version - Detect", + "author": [ + "pdteam", + "pussycat0x" + ], + "tags": [ + "ssl", + "tls" + ], + "description": "TLS version detection is a security process used to determine the version of the Transport Layer Security (TLS) protocol used by a computer or server.\nIt is important to detect the TLS version in order to ensure secure communication between two computers or servers.\n", + "severity": "info", + "metadata": { + "max-request": 4 + } + }, + "type": "ssl", + "host": "cartographie.societenumerique.gouv.fr", + "matched-at": "cartographie.societenumerique.gouv.fr:443", + "extracted-results": [ + "tls13" + ], + "ip": "18.160.225.13", + "timestamp": "2024-12-01T01:59:52.200317337Z", + "matcher-status": true + } + ], + "lhr": [ { - "id": "intermediate_cert_badOCSP", - "ip": "www.rdv-solidarites.fr/80.247.13.145", - "port": "443", - "severity": "OK", - "finding": "intermediate certificate(s) is/are ok" - }, + "requestedUrl": "https://cartographie.societenumerique.gouv.fr/", + "finalUrl": "https://cartographie.societenumerique.gouv.fr/", + "fetchTime": "2024-12-01T01:47:09.567Z", + "runWarnings": [], + "categories": { + "performance": { + "title": "Performance", + "supportedModes": [ + "navigation", + "timespan", + "snapshot" + ], + "id": "performance", + "score": 0.22 + }, + "accessibility": { + "title": "Accessibility", + "description": "These checks highlight opportunities to [improve the accessibility of your web app](https://developers.google.com/web/fundamentals/accessibility). Only a subset of accessibility issues can be automatically detected so manual testing is also encouraged.", + "manualDescription": "These items address areas which an automated testing tool cannot cover. Learn more in our guide on [conducting an accessibility review](https://developers.google.com/web/fundamentals/accessibility/how-to-review).", + "supportedModes": [ + "navigation", + "snapshot" + ], + "id": "accessibility", + "score": 0.89 + }, + "best-practices": { + "title": "Best Practices", + "supportedModes": [ + "navigation", + "timespan", + "snapshot" + ], + "id": "best-practices", + "score": 0.92 + }, + "seo": { + "title": "SEO", + "description": "These checks ensure that your page is following basic search engine optimization advice. There are many additional factors Lighthouse does not score here that may affect your search ranking, including performance on [Core Web Vitals](https://web.dev/learn-web-vitals/). [Learn more](https://support.google.com/webmasters/answer/35769).", + "manualDescription": "Run these additional validators on your site to check additional SEO best practices.", + "supportedModes": [ + "navigation", + "snapshot" + ], + "id": "seo", + "score": 0.85 + }, + "pwa": { + "title": "PWA", + "description": "These checks validate the aspects of a Progressive Web App. [Learn more](https://developers.google.com/web/progressive-web-apps/checklist).", + "manualDescription": "These checks are required by the baseline [PWA Checklist](https://developers.google.com/web/progressive-web-apps/checklist) but are not automatically checked by Lighthouse. They do not affect your score but it's important that you verify them manually.", + "supportedModes": [ + "navigation" + ], + "id": "pwa", + "score": 0.7 + } + }, + "audits": { + "metrics": { + "id": "metrics", + "title": "Metrics", + "description": "Collects all available metrics.", + "score": null, + "scoreDisplayMode": "informative", + "numericValue": 91089, + "numericUnit": "millisecond", + "details": { + "type": "debugdata", + "items": [ + { + "firstContentfulPaint": 2988, + "firstMeaningfulPaint": 5745, + "largestContentfulPaint": 3473, + "interactive": 91089, + "speedIndex": 20211, + "totalBlockingTime": 6595, + "maxPotentialFID": 1510, + "cumulativeLayoutShift": 0.8130296745300294, + "cumulativeLayoutShiftMainFrame": 0.8130296745300294, + "totalCumulativeLayoutShift": 0.8527739012913986, + "observedTimeOrigin": 0, + "observedTimeOriginTs": 335129316, + "observedNavigationStart": 0, + "observedNavigationStartTs": 335129316, + "observedFirstPaint": 349, + "observedFirstPaintTs": 335477833, + "observedFirstContentfulPaint": 349, + "observedFirstContentfulPaintTs": 335477833, + "observedFirstContentfulPaintAllFrames": 349, + "observedFirstContentfulPaintAllFramesTs": 335477833, + "observedFirstMeaningfulPaint": 2635, + "observedFirstMeaningfulPaintTs": 337764697, + "observedLargestContentfulPaint": 349, + "observedLargestContentfulPaintTs": 335477833, + "observedLargestContentfulPaintAllFrames": 349, + "observedLargestContentfulPaintAllFramesTs": 335477833, + "observedTraceEnd": 5645, + "observedTraceEndTs": 340774303, + "observedLoad": 818, + "observedLoadTs": 335947224, + "observedDomContentLoaded": 316, + "observedDomContentLoadedTs": 335445674, + "observedCumulativeLayoutShift": 0.8130296745300294, + "observedCumulativeLayoutShiftMainFrame": 0.8130296745300294, + "observedTotalCumulativeLayoutShift": 0.8527739012913986, + "observedFirstVisualChange": 357, + "observedFirstVisualChangeTs": 335486316, + "observedLastVisualChange": 2657, + "observedLastVisualChangeTs": 337786316, + "observedSpeedIndex": 1817, + "observedSpeedIndexTs": 336946022 + }, + { + "lcpInvalidated": false + } + ] + } + }, + "diagnostics": { + "id": "diagnostics", + "title": "Diagnostics", + "description": "Collection of useful page vitals.", + "score": null, + "scoreDisplayMode": "informative", + "details": { + "type": "debugdata", + "items": [ + { + "numRequests": 55, + "numScripts": 10, + "numStylesheets": 1, + "numFonts": 5, + "numTasks": 1493, + "numTasksOver10ms": 17, + "numTasksOver25ms": 13, + "numTasksOver50ms": 10, + "numTasksOver100ms": 7, + "numTasksOver500ms": 0, + "rtt": 1.9620000000000006, + "throughput": 131420396.97585659, + "maxRtt": 102.162, + "maxServerLatency": 9.950000000000003, + "totalByteWeight": 16517934, + "totalTaskTime": 2768.275000000009, + "mainDocumentTransferSize": 4244 + } + ] + } + } + } + } + ], + "screenshot": true, + "stats": { + "grade": "A", + "url": "https://cartographie.societenumerique.gouv.fr", + "uri": "stats" + }, + "github_repository": null, + "budget_page": null, + "declaration-a11y": { + "mention": "Accessibilité : partiellement conforme", + "declarationUrl": "https://cartographie.societenumerique.gouv.fr/accessibilite" + }, + "declaration-rgpd": null, + "betagouv": null, + "ecoindex": [ { - "id": "HTTP_status_code", - "ip": "www.rdv-solidarites.fr/80.247.13.145", - "port": "443", - "severity": "INFO", - "finding": "200 OK ('/')" + "width": 1920, + "height": 1080, + "url": "https://cartographie.societenumerique.gouv.fr", + "size": 16541.665, + "nodes": 514, + "requests": 49, + "grade": "D", + "score": 53, + "ges": 1.94, + "water": 2.91, + "ecoindex_version": "5.4.2", + "date": "2024-12-01 01:44:06.875950", + "page_type": null + } + ], + "sonarcloud": null, + "dsfr": null, + "summary": { + "404": "A+", + "uptime": 100, + "uptimeGrade": "A", + "nmapGrade": "A", + "nmapOpenPortsCount": 2, + "nmapOpenPortsGrade": "A", + "testsslExpireSoon": false, + "testsslExpireDate": "2025-06-29T23:59:00.000Z", + "testsslGrade": "A+", + "cookiesGrade": "B", + "cookiesCount": 2, + "trackersGrade": "C", + "trackersCount": 10, + "lighthouse_performance": 0.22, + "lighthouse_performanceGrade": "E", + "lighthouse_accessibility": 0.89, + "lighthouse_accessibilityGrade": "A", + "lighthouse_best-practices": 0.92, + "lighthouse_best-practicesGrade": "A", + "lighthouse_seo": 0.85, + "lighthouse_seoGrade": "A", + "lighthouse_pwa": 0.7, + "lighthouse_pwaGrade": "B", + "statsGrade": "A", + "declaration-a11y": "B", + "ecoindexGrade": "D" + } + }, + { + "404": [], + "url": "https://www.rdv-solidarites.fr", + "repositories": [ + "betagouv/rdv-solidarites.fr" + ], + "http": null, + "updownio": { + "token": "u2hh", + "url": "https://www.rdv-solidarites.fr", + "alias": "", + "last_status": 200, + "uptime": 100, + "down": false, + "down_since": null, + "up_since": "2023-02-16T14:34:25Z", + "error": null, + "period": 1800, + "apdex_t": 0.5, + "string_match": "", + "enabled": false, + "published": false, + "disabled_locations": [], + "recipients": [ + "email:3715942461" + ], + "last_check_at": "2023-03-01T03:03:51Z", + "next_check_at": null, + "created_at": "2022-10-17T12:58:01Z", + "mute_until": null, + "favicon_url": "https://www.rdv-solidarites.fr/assets/favicon/favicon-32x32-1c2ed850f778a368ff040c1d605d53c0c89156e1cc78330437ebf53454e808bd.png", + "custom_headers": {}, + "http_verb": "GET/HEAD", + "http_body": "", + "ssl": { + "tested_at": "2023-03-01T00:34:39Z", + "expires_at": "2023-04-23T15:43:07Z", + "valid": true, + "error": null }, + "metrics": {}, + "uptimeGrade": "A" + }, + "nmap": { + "host": "www.rdv-solidarites.fr", + "protocol": "tcp", + "closed_ports": "998", + "open_ports": [ + { + "service": { + "name": "http", + "id": "80", + "vulnerabilities": [] + } + }, + { + "service": { + "name": "https", + "id": "443", + "vulnerabilities": [] + } + } + ], + "grade": "A" + }, + "dependabot": null, + "codescan": null, + "testssl": [ { - "id": "HTTP_clock_skew", + "id": "service", "ip": "www.rdv-solidarites.fr/80.247.13.145", "port": "443", "severity": "INFO", - "finding": "0 seconds from localtime" + "finding": "HTTP" }, { - "id": "HTTP_headerTime", + "id": "pre_128cipher", "ip": "www.rdv-solidarites.fr/80.247.13.145", "port": "443", "severity": "INFO", - "finding": "1732413222" + "finding": "No 128 cipher limit bug" }, { - "id": "HSTS_time", + "id": "SSLv2", "ip": "www.rdv-solidarites.fr/80.247.13.145", "port": "443", "severity": "OK", - "finding": "730 days (=63072000 seconds) > 15552000 seconds" + "finding": "not offered" }, { - "id": "HSTS_subdomains", + "id": "SSLv3", "ip": "www.rdv-solidarites.fr/80.247.13.145", "port": "443", "severity": "OK", - "finding": "includes subdomains" - }, - { - "id": "HSTS_preload", - "ip": "www.rdv-solidarites.fr/80.247.13.145", - "port": "443", - "severity": "INFO", - "finding": "domain is NOT marked for preloading" - }, - { - "id": "HPKP", - "ip": "www.rdv-solidarites.fr/80.247.13.145", - "port": "443", - "severity": "INFO", - "finding": "No support for HTTP Public Key Pinning" - }, - { - "id": "banner_server", - "ip": "www.rdv-solidarites.fr/80.247.13.145", - "port": "443", - "severity": "INFO", - "finding": "No Server banner line in header, interesting!" + "finding": "not offered" }, { - "id": "banner_application", + "id": "TLS1", "ip": "www.rdv-solidarites.fr/80.247.13.145", "port": "443", "severity": "INFO", - "finding": "No application banner found" + "finding": "not offered" }, { - "id": "cookie_count", + "id": "TLS1_1", "ip": "www.rdv-solidarites.fr/80.247.13.145", "port": "443", "severity": "INFO", - "finding": "1 at '/'" - }, - { - "id": "cookie_secure", - "ip": "www.rdv-solidarites.fr/80.247.13.145", - "port": "443", - "severity": "OK", - "finding": "All (1) at '/' marked as secure" + "finding": "not offered" }, { - "id": "cookie_httponly", + "id": "TLS1_2", "ip": "www.rdv-solidarites.fr/80.247.13.145", "port": "443", "severity": "OK", - "finding": "All (1) at '/' marked as HttpOnly" + "finding": "offered" }, { - "id": "X-Content-Type-Options", + "id": "TLS1_3", "ip": "www.rdv-solidarites.fr/80.247.13.145", "port": "443", "severity": "OK", - "finding": "nosniff" + "finding": "offered with final" }, { - "id": "Content-Security-Policy", + "id": "ALPN_HTTP2", "ip": "www.rdv-solidarites.fr/80.247.13.145", "port": "443", "severity": "OK", - "finding": "default-src 'self'; font-src 'self' data:; object-src 'none'; worker-src blob:; child-src blob: 'self'; frame-src 'self' *.instatus.com headway-widget.net; media-src 'self' rdv-insertion-medias-production.s3.fr-par.scw.cloud; img-src 'self' data: voxusagers.numerique.gouv.fr; style-src 'self' 'unsafe-inline' *.bootstrapcdn.com api.mapbox.com cdn.headwayapp.co; connect-src 'self' api-adresse.data.gouv.fr etalab-tiles.fr; script-src 'self' 'unsafe-inline' api.mapbox.com cdn.headwayapp.co" - }, - { - "id": "X-XSS-Protection", - "ip": "www.rdv-solidarites.fr/80.247.13.145", - "port": "443", - "severity": "INFO", - "finding": "0" - }, - { - "id": "Referrer-Policy", - "ip": "www.rdv-solidarites.fr/80.247.13.145", - "port": "443", - "severity": "INFO", - "finding": "strict-origin-when-cross-origin" - }, - { - "id": "Cache-Control", - "ip": "www.rdv-solidarites.fr/80.247.13.145", - "port": "443", - "severity": "INFO", - "finding": "max-age=0, private, must-revalidate" + "finding": "h2" }, { - "id": "banner_reverseproxy", + "id": "ALPN", "ip": "www.rdv-solidarites.fr/80.247.13.145", "port": "443", "severity": "INFO", - "cwe": "CWE-200", - "finding": "--" - }, - { - "id": "heartbleed", - "ip": "www.rdv-solidarites.fr/80.247.13.145", - "port": "443", - "severity": "OK", - "cve": "CVE-2014-0160", - "cwe": "CWE-119", - "finding": "not vulnerable, no heartbeat extension" - }, - { - "id": "CCS", - "ip": "www.rdv-solidarites.fr/80.247.13.145", - "port": "443", - "severity": "OK", - "cve": "CVE-2014-0224", - "cwe": "CWE-310", - "finding": "not vulnerable" - }, - { - "id": "ticketbleed", - "ip": "www.rdv-solidarites.fr/80.247.13.145", - "port": "443", - "severity": "OK", - "cve": "CVE-2016-9244", - "cwe": "CWE-200", - "finding": "not vulnerable" + "finding": "http/1.1" }, { - "id": "ROBOT", + "id": "cipherlist_NULL", "ip": "www.rdv-solidarites.fr/80.247.13.145", "port": "443", "severity": "OK", - "cve": "CVE-2017-17382 CVE-2017-17427 CVE-2017-17428 CVE-2017-13098 CVE-2017-1000385 CVE-2017-13099 CVE-2016-6883 CVE-2012-5081 CVE-2017-6168", - "cwe": "CWE-203", - "finding": "not vulnerable, no RSA key transport cipher" + "cwe": "CWE-327", + "finding": "not offered" }, { - "id": "secure_renego", + "id": "cipherlist_aNULL", "ip": "www.rdv-solidarites.fr/80.247.13.145", "port": "443", "severity": "OK", - "cwe": "CWE-310", - "finding": "supported" + "cwe": "CWE-327", + "finding": "not offered" }, { - "id": "secure_client_renego", + "id": "cipherlist_EXPORT", "ip": "www.rdv-solidarites.fr/80.247.13.145", "port": "443", "severity": "OK", - "cve": "CVE-2011-1473", - "cwe": "CWE-310", - "finding": "not vulnerable" + "cwe": "CWE-327", + "finding": "not offered" }, { - "id": "CRIME_TLS", + "id": "cipherlist_LOW", "ip": "www.rdv-solidarites.fr/80.247.13.145", "port": "443", "severity": "OK", - "cve": "CVE-2012-4929", - "cwe": "CWE-310", - "finding": "not vulnerable" + "cwe": "CWE-327", + "finding": "not offered" }, { - "id": "BREACH", + "id": "cipherlist_3DES_IDEA", "ip": "www.rdv-solidarites.fr/80.247.13.145", "port": "443", - "severity": "MEDIUM", - "cve": "CVE-2013-3587", + "severity": "INFO", "cwe": "CWE-310", - "finding": "potentially VULNERABLE, gzip HTTP compression detected - only supplied '/' tested" + "finding": "not offered" }, { - "id": "POODLE_SSL", + "id": "cipherlist_OBSOLETED", "ip": "www.rdv-solidarites.fr/80.247.13.145", "port": "443", - "severity": "OK", - "cve": "CVE-2014-3566", + "severity": "INFO", "cwe": "CWE-310", - "finding": "not vulnerable, no SSLv3" - }, - { - "id": "fallback_SCSV", - "ip": "www.rdv-solidarites.fr/80.247.13.145", - "port": "443", - "severity": "OK", - "finding": "no protocol below TLS 1.2 offered" + "finding": "not offered" }, { - "id": "SWEET32", + "id": "cipherlist_STRONG_NOFS", "ip": "www.rdv-solidarites.fr/80.247.13.145", "port": "443", - "severity": "OK", - "cve": "CVE-2016-2183 CVE-2016-6329", - "cwe": "CWE-327", - "finding": "not vulnerable" + "severity": "INFO", + "finding": "not offered" }, { - "id": "FREAK", + "id": "cipherlist_STRONG_FS", "ip": "www.rdv-solidarites.fr/80.247.13.145", "port": "443", "severity": "OK", - "cve": "CVE-2015-0204", - "cwe": "CWE-310", - "finding": "not vulnerable" + "finding": "offered" }, { - "id": "DROWN", + "id": "cipher_order-tls1_2", "ip": "www.rdv-solidarites.fr/80.247.13.145", "port": "443", "severity": "OK", - "cve": "CVE-2016-0800 CVE-2016-0703", - "cwe": "CWE-310", - "finding": "not vulnerable on this host and port" + "finding": "server" }, { - "id": "DROWN_hint", + "id": "cipherorder_TLSv1_2", "ip": "www.rdv-solidarites.fr/80.247.13.145", "port": "443", "severity": "INFO", - "cve": "CVE-2016-0800 CVE-2016-0703", - "cwe": "CWE-310", - "finding": "Make sure you don't use this certificate elsewhere with SSLv2 enabled services, see https://search.censys.io/search?resource=hosts&virtual_hosts=INCLUDE&q=633BD28D00F8947E110D214024F8B8BD21CBFC0BAC0FE9ADECBB467456A886A4" - }, - { - "id": "LOGJAM", - "ip": "www.rdv-solidarites.fr/80.247.13.145", - "port": "443", - "severity": "OK", - "cve": "CVE-2015-4000", - "cwe": "CWE-310", - "finding": "not vulnerable, no DH EXPORT ciphers," - }, - { - "id": "LOGJAM-common_primes", - "ip": "www.rdv-solidarites.fr/80.247.13.145", - "port": "443", - "severity": "OK", - "cve": "CVE-2015-4000", - "cwe": "CWE-310", - "finding": "--" + "finding": "ECDHE-RSA-AES256-GCM-SHA384" }, { - "id": "BEAST", + "id": "cipher_order", "ip": "www.rdv-solidarites.fr/80.247.13.145", "port": "443", "severity": "OK", - "cve": "CVE-2011-3389", - "cwe": "CWE-20", - "finding": "not vulnerable, no SSL3 or TLS1" + "finding": "server" }, { - "id": "LUCKY13", + "id": "FS", "ip": "www.rdv-solidarites.fr/80.247.13.145", "port": "443", "severity": "OK", - "cve": "CVE-2013-0169", - "cwe": "CWE-310", - "finding": "not vulnerable" + "finding": "offered" }, { - "id": "winshock", + "id": "FS_ciphers", "ip": "www.rdv-solidarites.fr/80.247.13.145", "port": "443", - "severity": "OK", - "cve": "CVE-2014-6321", - "cwe": "CWE-94", - "finding": "not vulnerable" + "severity": "INFO", + "finding": "DHE-RSA-AES256-GCM-SHA384 ECDHE-RSA-AES128-GCM-SHA256 ECDHE-RSA-AES256-GCM-SHA384" }, { - "id": "RC4", + "id": "FS_ECDHE_curves", "ip": "www.rdv-solidarites.fr/80.247.13.145", "port": "443", "severity": "OK", - "cve": "CVE-2013-2566 CVE-2015-2808", - "cwe": "CWE-310", - "finding": "not vulnerable" + "finding": "prime256v1 secp384r1 secp521r1" }, { - "id": "clientsimulation-android_60", + "id": "TLS_extensions", "ip": "www.rdv-solidarites.fr/80.247.13.145", "port": "443", "severity": "INFO", - "finding": "TLSv1.2 ECDHE-RSA-AES128-GCM-SHA256" + "finding": "'renegotiation info/#65281' 'server name/#0' 'EC point formats/#11' 'session ticket/#35' 'supported versions/#43' 'key share/#51' 'supported_groups/#10' 'max fragment length/#1' 'application layer protocol negotiation/#16' 'extended master secret/#23'" }, { - "id": "clientsimulation-android_70", + "id": "TLS_session_ticket", "ip": "www.rdv-solidarites.fr/80.247.13.145", "port": "443", "severity": "INFO", - "finding": "TLSv1.2 ECDHE-RSA-AES256-GCM-SHA384" + "finding": "valid for 300 seconds only (= 30 days" }, { - "id": "clientsimulation-java1102", + "id": "cert_notBefore", "ip": "www.rdv-solidarites.fr/80.247.13.145", "port": "443", "severity": "INFO", - "finding": "TLSv1.3 TLS_AES_256_GCM_SHA384" + "finding": "2024-11-13 15:55" }, { - "id": "clientsimulation-java1703", + "id": "cert_notAfter", "ip": "www.rdv-solidarites.fr/80.247.13.145", "port": "443", - "severity": "INFO", - "finding": "TLSv1.3 TLS_AES_256_GCM_SHA384" + "severity": "OK", + "finding": "2025-02-11 15:55" }, { - "id": "clientsimulation-go_1178", + "id": "cert_extlifeSpan", "ip": "www.rdv-solidarites.fr/80.247.13.145", "port": "443", - "severity": "INFO", - "finding": "TLSv1.3 TLS_AES_256_GCM_SHA384" + "severity": "OK", + "finding": "certificate has no extended life time according to browser forum" }, { - "id": "clientsimulation-libressl_283", + "id": "cert_eTLS", "ip": "www.rdv-solidarites.fr/80.247.13.145", "port": "443", "severity": "INFO", - "finding": "TLSv1.2 ECDHE-RSA-AES256-GCM-SHA384" + "finding": "not present" }, { - "id": "clientsimulation-openssl_102e", + "id": "cert_crlDistributionPoints", "ip": "www.rdv-solidarites.fr/80.247.13.145", "port": "443", "severity": "INFO", - "finding": "TLSv1.2 ECDHE-RSA-AES256-GCM-SHA384" + "finding": "--" }, { - "id": "clientsimulation-openssl_110l", + "id": "cert_ocspURL", "ip": "www.rdv-solidarites.fr/80.247.13.145", "port": "443", "severity": "INFO", - "finding": "TLSv1.2 ECDHE-RSA-AES256-GCM-SHA384" + "finding": "http://r10.o.lencr.org" }, { - "id": "clientsimulation-openssl_111d", + "id": "OCSP_stapling", "ip": "www.rdv-solidarites.fr/80.247.13.145", "port": "443", - "severity": "INFO", - "finding": "TLSv1.3 TLS_AES_256_GCM_SHA384" + "severity": "LOW", + "finding": "not offered" }, { - "id": "clientsimulation-openssl_303", + "id": "cert_mustStapleExtension", "ip": "www.rdv-solidarites.fr/80.247.13.145", "port": "443", "severity": "INFO", - "finding": "TLSv1.3 TLS_AES_256_GCM_SHA384" + "finding": "--" }, { - "id": "clientsimulation-apple_mail_16_0", + "id": "DNS_CAArecord", "ip": "www.rdv-solidarites.fr/80.247.13.145", "port": "443", - "severity": "INFO", - "finding": "TLSv1.2 ECDHE-RSA-AES256-GCM-SHA384" + "severity": "LOW", + "finding": "--" }, { - "id": "clientsimulation-thunderbird_91_9", + "id": "certificate_transparency", "ip": "www.rdv-solidarites.fr/80.247.13.145", "port": "443", - "severity": "INFO", - "finding": "TLSv1.3 TLS_AES_256_GCM_SHA384" + "severity": "OK", + "finding": "yes (certificate extension)" }, { - "id": "rating_spec", + "id": "certs_countServer", "ip": "www.rdv-solidarites.fr/80.247.13.145", "port": "443", "severity": "INFO", - "finding": "SSL Labs's 'SSL Server Rating Guide' (version 2009q from 2020-01-30)" + "finding": "2" }, { - "id": "rating_doc", + "id": "certs_list_ordering_problem", "ip": "www.rdv-solidarites.fr/80.247.13.145", "port": "443", "severity": "INFO", - "finding": "https://github.com/ssllabs/research/wiki/SSL-Server-Rating-Guide" + "finding": "no" }, { - "id": "protocol_support_score", + "id": "cert_caIssuers", "ip": "www.rdv-solidarites.fr/80.247.13.145", "port": "443", "severity": "INFO", - "finding": "100" + "finding": "R10 (Let's Encrypt from US)" }, { - "id": "protocol_support_score_weighted", + "id": "intermediate_cert <#1>", "ip": "www.rdv-solidarites.fr/80.247.13.145", "port": "443", "severity": "INFO", - "finding": "30" + "finding": "-----BEGIN CERTIFICATE-----\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\n-----END CERTIFICATE-----" }, { - "id": "key_exchange_score", + "id": "intermediate_cert_fingerprintSHA256 <#1>", "ip": "www.rdv-solidarites.fr/80.247.13.145", "port": "443", "severity": "INFO", - "finding": "90" + "finding": "9D7C3F1AA6AD2B2EC0D5CF1E246F8D9AE6CBC9FD0755AD37BB974B1F2FB603F3" }, { - "id": "key_exchange_score_weighted", + "id": "intermediate_cert_notBefore <#1>", "ip": "www.rdv-solidarites.fr/80.247.13.145", "port": "443", "severity": "INFO", - "finding": "27" + "finding": "2024-03-13 00:00" }, { - "id": "cipher_strength_score", + "id": "intermediate_cert_notAfter <#1>", "ip": "www.rdv-solidarites.fr/80.247.13.145", "port": "443", - "severity": "INFO", - "finding": "60" + "severity": "OK", + "finding": "2027-03-12 23:59" }, { - "id": "cipher_strength_score_weighted", + "id": "intermediate_cert_expiration <#1>", "ip": "www.rdv-solidarites.fr/80.247.13.145", "port": "443", - "severity": "INFO", - "finding": "24" + "severity": "OK", + "finding": "ok > 40 days" }, { - "id": "final_score", + "id": "intermediate_cert_chain <#1>", "ip": "www.rdv-solidarites.fr/80.247.13.145", "port": "443", "severity": "INFO", - "finding": "81" + "finding": "R10 <-- ISRG Root X1" }, { - "id": "overall_grade", + "id": "intermediate_cert_badOCSP", "ip": "www.rdv-solidarites.fr/80.247.13.145", "port": "443", "severity": "OK", - "finding": "A+" + "finding": "intermediate certificate(s) is/are ok" }, { - "id": "service", - "ip": "www.rdv-solidarites.fr/148.253.96.193", + "id": "HTTP_status_code", + "ip": "www.rdv-solidarites.fr/80.247.13.145", "port": "443", "severity": "INFO", - "finding": "HTTP" + "finding": "200 OK ('/')" }, { - "id": "pre_128cipher", - "ip": "www.rdv-solidarites.fr/148.253.96.193", + "id": "HTTP_clock_skew", + "ip": "www.rdv-solidarites.fr/80.247.13.145", "port": "443", "severity": "INFO", - "finding": "No 128 cipher limit bug" + "finding": "0 seconds from localtime" }, { - "id": "SSLv2", - "ip": "www.rdv-solidarites.fr/148.253.96.193", + "id": "HTTP_headerTime", + "ip": "www.rdv-solidarites.fr/80.247.13.145", "port": "443", - "severity": "OK", - "finding": "not offered" + "severity": "INFO", + "finding": "1733018397" }, { - "id": "SSLv3", - "ip": "www.rdv-solidarites.fr/148.253.96.193", + "id": "HSTS_time", + "ip": "www.rdv-solidarites.fr/80.247.13.145", "port": "443", "severity": "OK", - "finding": "not offered" + "finding": "730 days (=63072000 seconds) > 15552000 seconds" }, { - "id": "TLS1", - "ip": "www.rdv-solidarites.fr/148.253.96.193", + "id": "HSTS_subdomains", + "ip": "www.rdv-solidarites.fr/80.247.13.145", "port": "443", - "severity": "INFO", - "finding": "not offered" + "severity": "OK", + "finding": "includes subdomains" }, { - "id": "TLS1_1", - "ip": "www.rdv-solidarites.fr/148.253.96.193", + "id": "HSTS_preload", + "ip": "www.rdv-solidarites.fr/80.247.13.145", "port": "443", "severity": "INFO", - "finding": "not offered" + "finding": "domain is NOT marked for preloading" }, { - "id": "TLS1_2", - "ip": "www.rdv-solidarites.fr/148.253.96.193", + "id": "HPKP", + "ip": "www.rdv-solidarites.fr/80.247.13.145", "port": "443", - "severity": "OK", - "finding": "offered" + "severity": "INFO", + "finding": "No support for HTTP Public Key Pinning" }, { - "id": "TLS1_3", - "ip": "www.rdv-solidarites.fr/148.253.96.193", + "id": "banner_server", + "ip": "www.rdv-solidarites.fr/80.247.13.145", "port": "443", - "severity": "OK", - "finding": "offered with final" + "severity": "INFO", + "finding": "No Server banner line in header, interesting!" }, { - "id": "ALPN_HTTP2", - "ip": "www.rdv-solidarites.fr/148.253.96.193", + "id": "banner_application", + "ip": "www.rdv-solidarites.fr/80.247.13.145", "port": "443", - "severity": "OK", - "finding": "h2" + "severity": "INFO", + "finding": "No application banner found" }, { - "id": "ALPN", - "ip": "www.rdv-solidarites.fr/148.253.96.193", + "id": "cookie_count", + "ip": "www.rdv-solidarites.fr/80.247.13.145", "port": "443", "severity": "INFO", - "finding": "http/1.1" + "finding": "1 at '/'" }, { - "id": "cipherlist_NULL", - "ip": "www.rdv-solidarites.fr/148.253.96.193", + "id": "cookie_secure", + "ip": "www.rdv-solidarites.fr/80.247.13.145", "port": "443", "severity": "OK", - "cwe": "CWE-327", - "finding": "not offered" + "finding": "All (1) at '/' marked as secure" }, { - "id": "cipherlist_aNULL", - "ip": "www.rdv-solidarites.fr/148.253.96.193", + "id": "cookie_httponly", + "ip": "www.rdv-solidarites.fr/80.247.13.145", "port": "443", "severity": "OK", - "cwe": "CWE-327", - "finding": "not offered" + "finding": "All (1) at '/' marked as HttpOnly" }, { - "id": "cipherlist_EXPORT", - "ip": "www.rdv-solidarites.fr/148.253.96.193", + "id": "X-Content-Type-Options", + "ip": "www.rdv-solidarites.fr/80.247.13.145", "port": "443", "severity": "OK", - "cwe": "CWE-327", - "finding": "not offered" + "finding": "nosniff" }, { - "id": "cipherlist_LOW", - "ip": "www.rdv-solidarites.fr/148.253.96.193", + "id": "Content-Security-Policy", + "ip": "www.rdv-solidarites.fr/80.247.13.145", "port": "443", "severity": "OK", - "cwe": "CWE-327", - "finding": "not offered" + "finding": "default-src 'self'; font-src 'self' data:; object-src 'none'; worker-src blob:; child-src blob: 'self'; frame-src 'self' *.instatus.com headway-widget.net; media-src 'self' rdv-insertion-medias-production.s3.fr-par.scw.cloud; img-src 'self' data: voxusagers.numerique.gouv.fr; style-src 'self' 'unsafe-inline' *.bootstrapcdn.com api.mapbox.com cdn.headwayapp.co; connect-src 'self' api-adresse.data.gouv.fr etalab-tiles.fr; script-src 'self' 'unsafe-inline' api.mapbox.com cdn.headwayapp.co" }, { - "id": "cipherlist_3DES_IDEA", - "ip": "www.rdv-solidarites.fr/148.253.96.193", + "id": "X-XSS-Protection", + "ip": "www.rdv-solidarites.fr/80.247.13.145", "port": "443", "severity": "INFO", - "cwe": "CWE-310", - "finding": "not offered" + "finding": "0" }, { - "id": "cipherlist_OBSOLETED", - "ip": "www.rdv-solidarites.fr/148.253.96.193", + "id": "Referrer-Policy", + "ip": "www.rdv-solidarites.fr/80.247.13.145", "port": "443", "severity": "INFO", - "cwe": "CWE-310", - "finding": "not offered" + "finding": "strict-origin-when-cross-origin" }, { - "id": "cipherlist_STRONG_NOFS", - "ip": "www.rdv-solidarites.fr/148.253.96.193", + "id": "Cache-Control", + "ip": "www.rdv-solidarites.fr/80.247.13.145", "port": "443", "severity": "INFO", - "finding": "not offered" + "finding": "max-age=0, private, must-revalidate" }, { - "id": "cipherlist_STRONG_FS", - "ip": "www.rdv-solidarites.fr/148.253.96.193", + "id": "banner_reverseproxy", + "ip": "www.rdv-solidarites.fr/80.247.13.145", "port": "443", - "severity": "OK", - "finding": "offered" + "severity": "INFO", + "cwe": "CWE-200", + "finding": "--" }, { - "id": "cipher_order-tls1_2", - "ip": "www.rdv-solidarites.fr/148.253.96.193", + "id": "heartbleed", + "ip": "www.rdv-solidarites.fr/80.247.13.145", "port": "443", "severity": "OK", - "finding": "server" + "cve": "CVE-2014-0160", + "cwe": "CWE-119", + "finding": "not vulnerable, no heartbeat extension" }, { - "id": "cipherorder_TLSv1_2", - "ip": "www.rdv-solidarites.fr/148.253.96.193", + "id": "CCS", + "ip": "www.rdv-solidarites.fr/80.247.13.145", "port": "443", - "severity": "INFO", - "finding": "ECDHE-RSA-AES256-GCM-SHA384" + "severity": "OK", + "cve": "CVE-2014-0224", + "cwe": "CWE-310", + "finding": "not vulnerable" }, { - "id": "cipher_order", - "ip": "www.rdv-solidarites.fr/148.253.96.193", + "id": "ticketbleed", + "ip": "www.rdv-solidarites.fr/80.247.13.145", "port": "443", "severity": "OK", - "finding": "server" + "cve": "CVE-2016-9244", + "cwe": "CWE-200", + "finding": "not vulnerable" }, { - "id": "FS", - "ip": "www.rdv-solidarites.fr/148.253.96.193", + "id": "ROBOT", + "ip": "www.rdv-solidarites.fr/80.247.13.145", "port": "443", "severity": "OK", - "finding": "offered" + "cve": "CVE-2017-17382 CVE-2017-17427 CVE-2017-17428 CVE-2017-13098 CVE-2017-1000385 CVE-2017-13099 CVE-2016-6883 CVE-2012-5081 CVE-2017-6168", + "cwe": "CWE-203", + "finding": "not vulnerable, no RSA key transport cipher" }, { - "id": "FS_ciphers", - "ip": "www.rdv-solidarites.fr/148.253.96.193", + "id": "secure_renego", + "ip": "www.rdv-solidarites.fr/80.247.13.145", "port": "443", - "severity": "INFO", - "finding": "DHE-RSA-AES256-GCM-SHA384 ECDHE-RSA-AES128-GCM-SHA256 ECDHE-RSA-AES256-GCM-SHA384" + "severity": "OK", + "cwe": "CWE-310", + "finding": "supported" }, { - "id": "FS_ECDHE_curves", - "ip": "www.rdv-solidarites.fr/148.253.96.193", + "id": "secure_client_renego", + "ip": "www.rdv-solidarites.fr/80.247.13.145", "port": "443", "severity": "OK", - "finding": "prime256v1 secp384r1 secp521r1" + "cve": "CVE-2011-1473", + "cwe": "CWE-310", + "finding": "not vulnerable" }, { - "id": "TLS_extensions", - "ip": "www.rdv-solidarites.fr/148.253.96.193", + "id": "CRIME_TLS", + "ip": "www.rdv-solidarites.fr/80.247.13.145", "port": "443", - "severity": "INFO", - "finding": "'renegotiation info/#65281' 'server name/#0' 'EC point formats/#11' 'session ticket/#35' 'supported versions/#43' 'key share/#51' 'supported_groups/#10' 'max fragment length/#1' 'application layer protocol negotiation/#16' 'extended master secret/#23'" + "severity": "OK", + "cve": "CVE-2012-4929", + "cwe": "CWE-310", + "finding": "not vulnerable" }, { - "id": "TLS_session_ticket", - "ip": "www.rdv-solidarites.fr/148.253.96.193", + "id": "BREACH", + "ip": "www.rdv-solidarites.fr/80.247.13.145", "port": "443", - "severity": "INFO", - "finding": "valid for 300 seconds only (= 30 days" + "severity": "INFO", + "finding": "TLSv1.3 TLS_AES_256_GCM_SHA384" }, { - "id": "cert_notBefore", - "ip": "www.rdv-solidarites.fr/148.253.96.193", + "id": "clientsimulation-firefox_66_win81", + "ip": "www.rdv-solidarites.fr/80.247.13.145", "port": "443", "severity": "INFO", - "finding": "2024-11-13 15:55" + "finding": "TLSv1.3 TLS_AES_256_GCM_SHA384" }, { - "id": "cert_notAfter", - "ip": "www.rdv-solidarites.fr/148.253.96.193", + "id": "clientsimulation-firefox_100_win10", + "ip": "www.rdv-solidarites.fr/80.247.13.145", "port": "443", - "severity": "OK", - "finding": "2025-02-11 15:55" + "severity": "INFO", + "finding": "TLSv1.3 TLS_AES_256_GCM_SHA384" }, { - "id": "cert_extlifeSpan", - "ip": "www.rdv-solidarites.fr/148.253.96.193", + "id": "clientsimulation-ie_6_xp", + "ip": "www.rdv-solidarites.fr/80.247.13.145", "port": "443", - "severity": "OK", - "finding": "certificate has no extended life time according to browser forum" + "severity": "INFO", + "finding": "No connection" }, { - "id": "cert_eTLS", - "ip": "www.rdv-solidarites.fr/148.253.96.193", + "id": "clientsimulation-ie_8_win7", + "ip": "www.rdv-solidarites.fr/80.247.13.145", "port": "443", "severity": "INFO", - "finding": "not present" + "finding": "No connection" }, { - "id": "cert_crlDistributionPoints", - "ip": "www.rdv-solidarites.fr/148.253.96.193", + "id": "clientsimulation-ie_8_xp", + "ip": "www.rdv-solidarites.fr/80.247.13.145", "port": "443", "severity": "INFO", - "finding": "--" + "finding": "No connection" }, { - "id": "cert_ocspURL", - "ip": "www.rdv-solidarites.fr/148.253.96.193", + "id": "clientsimulation-ie_11_win7", + "ip": "www.rdv-solidarites.fr/80.247.13.145", "port": "443", "severity": "INFO", - "finding": "http://r10.o.lencr.org" + "finding": "TLSv1.2 DHE-RSA-AES256-GCM-SHA384" }, { - "id": "OCSP_stapling", - "ip": "www.rdv-solidarites.fr/148.253.96.193", + "id": "clientsimulation-ie_11_win81", + "ip": "www.rdv-solidarites.fr/80.247.13.145", "port": "443", - "severity": "LOW", - "finding": "not offered" + "severity": "INFO", + "finding": "TLSv1.2 DHE-RSA-AES256-GCM-SHA384" }, { - "id": "cert_mustStapleExtension", - "ip": "www.rdv-solidarites.fr/148.253.96.193", + "id": "clientsimulation-ie_11_winphone81", + "ip": "www.rdv-solidarites.fr/80.247.13.145", "port": "443", "severity": "INFO", - "finding": "--" + "finding": "No connection" }, { - "id": "DNS_CAArecord", - "ip": "www.rdv-solidarites.fr/148.253.96.193", + "id": "clientsimulation-ie_11_win10", + "ip": "www.rdv-solidarites.fr/80.247.13.145", "port": "443", - "severity": "LOW", - "finding": "--" + "severity": "INFO", + "finding": "TLSv1.2 ECDHE-RSA-AES256-GCM-SHA384" }, { - "id": "certificate_transparency", - "ip": "www.rdv-solidarites.fr/148.253.96.193", + "id": "clientsimulation-edge_15_win10", + "ip": "www.rdv-solidarites.fr/80.247.13.145", "port": "443", - "severity": "OK", - "finding": "yes (certificate extension)" + "severity": "INFO", + "finding": "TLSv1.2 ECDHE-RSA-AES256-GCM-SHA384" }, { - "id": "certs_countServer", - "ip": "www.rdv-solidarites.fr/148.253.96.193", + "id": "clientsimulation-edge_101_win10_21h2", + "ip": "www.rdv-solidarites.fr/80.247.13.145", "port": "443", "severity": "INFO", - "finding": "2" + "finding": "TLSv1.3 TLS_AES_256_GCM_SHA384" }, { - "id": "certs_list_ordering_problem", - "ip": "www.rdv-solidarites.fr/148.253.96.193", + "id": "clientsimulation-safari_121_ios_122", + "ip": "www.rdv-solidarites.fr/80.247.13.145", "port": "443", "severity": "INFO", - "finding": "no" + "finding": "TLSv1.3 TLS_AES_256_GCM_SHA384" }, { - "id": "cert_caIssuers", - "ip": "www.rdv-solidarites.fr/148.253.96.193", + "id": "clientsimulation-safari_130_osx_10146", + "ip": "www.rdv-solidarites.fr/80.247.13.145", "port": "443", "severity": "INFO", - "finding": "R10 (Let's Encrypt from US)" + "finding": "TLSv1.3 TLS_AES_256_GCM_SHA384" }, { - "id": "intermediate_cert <#1>", - "ip": "www.rdv-solidarites.fr/148.253.96.193", + "id": "clientsimulation-safari_154_osx_1231", + "ip": "www.rdv-solidarites.fr/80.247.13.145", "port": "443", "severity": "INFO", - "finding": "-----BEGIN CERTIFICATE-----\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\n-----END CERTIFICATE-----" + "finding": "TLSv1.3 TLS_AES_256_GCM_SHA384" }, { - "id": "intermediate_cert_fingerprintSHA256 <#1>", - "ip": "www.rdv-solidarites.fr/148.253.96.193", + "id": "clientsimulation-java_7u25", + "ip": "www.rdv-solidarites.fr/80.247.13.145", "port": "443", "severity": "INFO", - "finding": "9D7C3F1AA6AD2B2EC0D5CF1E246F8D9AE6CBC9FD0755AD37BB974B1F2FB603F3" + "finding": "No connection" }, { - "id": "intermediate_cert_notBefore <#1>", - "ip": "www.rdv-solidarites.fr/148.253.96.193", + "id": "clientsimulation-java_8u161", + "ip": "www.rdv-solidarites.fr/80.247.13.145", "port": "443", "severity": "INFO", - "finding": "2024-03-13 00:00" + "finding": "TLSv1.2 ECDHE-RSA-AES256-GCM-SHA384" }, { - "id": "intermediate_cert_notAfter <#1>", - "ip": "www.rdv-solidarites.fr/148.253.96.193", + "id": "clientsimulation-java1102", + "ip": "www.rdv-solidarites.fr/80.247.13.145", "port": "443", - "severity": "OK", - "finding": "2027-03-12 23:59" + "severity": "INFO", + "finding": "TLSv1.3 TLS_AES_256_GCM_SHA384" }, { - "id": "intermediate_cert_expiration <#1>", - "ip": "www.rdv-solidarites.fr/148.253.96.193", + "id": "clientsimulation-java1703", + "ip": "www.rdv-solidarites.fr/80.247.13.145", "port": "443", - "severity": "OK", - "finding": "ok > 40 days" + "severity": "INFO", + "finding": "TLSv1.3 TLS_AES_256_GCM_SHA384" }, { - "id": "intermediate_cert_chain <#1>", - "ip": "www.rdv-solidarites.fr/148.253.96.193", + "id": "clientsimulation-go_1178", + "ip": "www.rdv-solidarites.fr/80.247.13.145", "port": "443", "severity": "INFO", - "finding": "R10 <-- ISRG Root X1" + "finding": "TLSv1.3 TLS_AES_256_GCM_SHA384" }, { - "id": "intermediate_cert_badOCSP", - "ip": "www.rdv-solidarites.fr/148.253.96.193", + "id": "clientsimulation-libressl_283", + "ip": "www.rdv-solidarites.fr/80.247.13.145", "port": "443", - "severity": "OK", - "finding": "intermediate certificate(s) is/are ok" + "severity": "INFO", + "finding": "TLSv1.2 ECDHE-RSA-AES256-GCM-SHA384" }, { - "id": "HTTP_status_code", - "ip": "www.rdv-solidarites.fr/148.253.96.193", + "id": "clientsimulation-openssl_102e", + "ip": "www.rdv-solidarites.fr/80.247.13.145", "port": "443", "severity": "INFO", - "finding": "200 OK ('/')" + "finding": "TLSv1.2 ECDHE-RSA-AES256-GCM-SHA384" }, { - "id": "HTTP_clock_skew", - "ip": "www.rdv-solidarites.fr/148.253.96.193", + "id": "clientsimulation-openssl_110l", + "ip": "www.rdv-solidarites.fr/80.247.13.145", "port": "443", "severity": "INFO", - "finding": "0 seconds from localtime" + "finding": "TLSv1.2 ECDHE-RSA-AES256-GCM-SHA384" }, { - "id": "HTTP_headerTime", - "ip": "www.rdv-solidarites.fr/148.253.96.193", + "id": "clientsimulation-openssl_111d", + "ip": "www.rdv-solidarites.fr/80.247.13.145", "port": "443", "severity": "INFO", - "finding": "1732413281" + "finding": "TLSv1.3 TLS_AES_256_GCM_SHA384" }, { - "id": "HSTS_time", - "ip": "www.rdv-solidarites.fr/148.253.96.193", + "id": "clientsimulation-openssl_303", + "ip": "www.rdv-solidarites.fr/80.247.13.145", "port": "443", - "severity": "OK", - "finding": "730 days (=63072000 seconds) > 15552000 seconds" + "severity": "INFO", + "finding": "TLSv1.3 TLS_AES_256_GCM_SHA384" }, { - "id": "HSTS_subdomains", - "ip": "www.rdv-solidarites.fr/148.253.96.193", + "id": "clientsimulation-apple_mail_16_0", + "ip": "www.rdv-solidarites.fr/80.247.13.145", "port": "443", - "severity": "OK", - "finding": "includes subdomains" + "severity": "INFO", + "finding": "TLSv1.2 ECDHE-RSA-AES256-GCM-SHA384" }, { - "id": "HSTS_preload", - "ip": "www.rdv-solidarites.fr/148.253.96.193", + "id": "clientsimulation-thunderbird_91_9", + "ip": "www.rdv-solidarites.fr/80.247.13.145", "port": "443", "severity": "INFO", - "finding": "domain is NOT marked for preloading" + "finding": "TLSv1.3 TLS_AES_256_GCM_SHA384" }, { - "id": "HPKP", - "ip": "www.rdv-solidarites.fr/148.253.96.193", + "id": "rating_spec", + "ip": "www.rdv-solidarites.fr/80.247.13.145", "port": "443", "severity": "INFO", - "finding": "No support for HTTP Public Key Pinning" + "finding": "SSL Labs's 'SSL Server Rating Guide' (version 2009q from 2020-01-30)" }, { - "id": "banner_server", - "ip": "www.rdv-solidarites.fr/148.253.96.193", + "id": "rating_doc", + "ip": "www.rdv-solidarites.fr/80.247.13.145", "port": "443", "severity": "INFO", - "finding": "No Server banner line in header, interesting!" + "finding": "https://github.com/ssllabs/research/wiki/SSL-Server-Rating-Guide" }, { - "id": "banner_application", - "ip": "www.rdv-solidarites.fr/148.253.96.193", + "id": "protocol_support_score", + "ip": "www.rdv-solidarites.fr/80.247.13.145", "port": "443", "severity": "INFO", - "finding": "No application banner found" + "finding": "100" }, { - "id": "cookie_count", - "ip": "www.rdv-solidarites.fr/148.253.96.193", + "id": "protocol_support_score_weighted", + "ip": "www.rdv-solidarites.fr/80.247.13.145", "port": "443", "severity": "INFO", - "finding": "1 at '/'" + "finding": "30" }, { - "id": "cookie_secure", - "ip": "www.rdv-solidarites.fr/148.253.96.193", + "id": "key_exchange_score", + "ip": "www.rdv-solidarites.fr/80.247.13.145", "port": "443", - "severity": "OK", - "finding": "All (1) at '/' marked as secure" + "severity": "INFO", + "finding": "90" }, { - "id": "cookie_httponly", - "ip": "www.rdv-solidarites.fr/148.253.96.193", + "id": "key_exchange_score_weighted", + "ip": "www.rdv-solidarites.fr/80.247.13.145", "port": "443", - "severity": "OK", - "finding": "All (1) at '/' marked as HttpOnly" + "severity": "INFO", + "finding": "27" }, { - "id": "X-Content-Type-Options", - "ip": "www.rdv-solidarites.fr/148.253.96.193", + "id": "cipher_strength_score", + "ip": "www.rdv-solidarites.fr/80.247.13.145", "port": "443", - "severity": "OK", - "finding": "nosniff" + "severity": "INFO", + "finding": "60" }, { - "id": "Content-Security-Policy", - "ip": "www.rdv-solidarites.fr/148.253.96.193", + "id": "cipher_strength_score_weighted", + "ip": "www.rdv-solidarites.fr/80.247.13.145", "port": "443", - "severity": "OK", - "finding": "default-src 'self'; font-src 'self' data:; object-src 'none'; worker-src blob:; child-src blob: 'self'; frame-src 'self' *.instatus.com headway-widget.net; media-src 'self' rdv-insertion-medias-production.s3.fr-par.scw.cloud; img-src 'self' data: voxusagers.numerique.gouv.fr; style-src 'self' 'unsafe-inline' *.bootstrapcdn.com api.mapbox.com cdn.headwayapp.co; connect-src 'self' api-adresse.data.gouv.fr etalab-tiles.fr; script-src 'self' 'unsafe-inline' api.mapbox.com cdn.headwayapp.co" + "severity": "INFO", + "finding": "24" }, { - "id": "X-XSS-Protection", - "ip": "www.rdv-solidarites.fr/148.253.96.193", + "id": "final_score", + "ip": "www.rdv-solidarites.fr/80.247.13.145", "port": "443", "severity": "INFO", - "finding": "0" + "finding": "81" }, { - "id": "Referrer-Policy", - "ip": "www.rdv-solidarites.fr/148.253.96.193", + "id": "overall_grade", + "ip": "www.rdv-solidarites.fr/80.247.13.145", "port": "443", - "severity": "INFO", - "finding": "strict-origin-when-cross-origin" + "severity": "OK", + "finding": "A+" }, { - "id": "Cache-Control", - "ip": "www.rdv-solidarites.fr/148.253.96.193", + "id": "service", + "ip": "www.rdv-solidarites.fr/185.21.194.105", "port": "443", "severity": "INFO", - "finding": "max-age=0, private, must-revalidate" + "finding": "HTTP" }, { - "id": "banner_reverseproxy", - "ip": "www.rdv-solidarites.fr/148.253.96.193", + "id": "pre_128cipher", + "ip": "www.rdv-solidarites.fr/185.21.194.105", "port": "443", "severity": "INFO", - "cwe": "CWE-200", - "finding": "--" + "finding": "No 128 cipher limit bug" }, { - "id": "heartbleed", - "ip": "www.rdv-solidarites.fr/148.253.96.193", + "id": "SSLv2", + "ip": "www.rdv-solidarites.fr/185.21.194.105", "port": "443", "severity": "OK", - "cve": "CVE-2014-0160", - "cwe": "CWE-119", - "finding": "not vulnerable, no heartbeat extension" + "finding": "not offered" }, { - "id": "CCS", - "ip": "www.rdv-solidarites.fr/148.253.96.193", + "id": "SSLv3", + "ip": "www.rdv-solidarites.fr/185.21.194.105", "port": "443", "severity": "OK", - "cve": "CVE-2014-0224", - "cwe": "CWE-310", - "finding": "not vulnerable" + "finding": "not offered" }, { - "id": "ticketbleed", - "ip": "www.rdv-solidarites.fr/148.253.96.193", + "id": "TLS1", + "ip": "www.rdv-solidarites.fr/185.21.194.105", "port": "443", - "severity": "OK", - "cve": "CVE-2016-9244", - "cwe": "CWE-200", - "finding": "not vulnerable" + "severity": "INFO", + "finding": "not offered" }, { - "id": "ROBOT", - "ip": "www.rdv-solidarites.fr/148.253.96.193", + "id": "TLS1_1", + "ip": "www.rdv-solidarites.fr/185.21.194.105", "port": "443", - "severity": "OK", - "cve": "CVE-2017-17382 CVE-2017-17427 CVE-2017-17428 CVE-2017-13098 CVE-2017-1000385 CVE-2017-13099 CVE-2016-6883 CVE-2012-5081 CVE-2017-6168", - "cwe": "CWE-203", - "finding": "not vulnerable, no RSA key transport cipher" + "severity": "INFO", + "finding": "not offered" }, { - "id": "secure_renego", - "ip": "www.rdv-solidarites.fr/148.253.96.193", + "id": "TLS1_2", + "ip": "www.rdv-solidarites.fr/185.21.194.105", "port": "443", "severity": "OK", - "cwe": "CWE-310", - "finding": "supported" + "finding": "offered" }, { - "id": "secure_client_renego", - "ip": "www.rdv-solidarites.fr/148.253.96.193", + "id": "TLS1_3", + "ip": "www.rdv-solidarites.fr/185.21.194.105", "port": "443", "severity": "OK", - "cve": "CVE-2011-1473", - "cwe": "CWE-310", - "finding": "not vulnerable" + "finding": "offered with final" }, { - "id": "CRIME_TLS", - "ip": "www.rdv-solidarites.fr/148.253.96.193", + "id": "ALPN_HTTP2", + "ip": "www.rdv-solidarites.fr/185.21.194.105", "port": "443", "severity": "OK", - "cve": "CVE-2012-4929", - "cwe": "CWE-310", - "finding": "not vulnerable" + "finding": "h2" }, { - "id": "BREACH", - "ip": "www.rdv-solidarites.fr/148.253.96.193", + "id": "ALPN", + "ip": "www.rdv-solidarites.fr/185.21.194.105", "port": "443", - "severity": "MEDIUM", - "cve": "CVE-2013-3587", - "cwe": "CWE-310", - "finding": "potentially VULNERABLE, gzip HTTP compression detected - only supplied '/' tested" + "severity": "INFO", + "finding": "http/1.1" }, { - "id": "POODLE_SSL", - "ip": "www.rdv-solidarites.fr/148.253.96.193", + "id": "cipherlist_NULL", + "ip": "www.rdv-solidarites.fr/185.21.194.105", "port": "443", "severity": "OK", - "cve": "CVE-2014-3566", - "cwe": "CWE-310", - "finding": "not vulnerable, no SSLv3" + "cwe": "CWE-327", + "finding": "not offered" }, { - "id": "fallback_SCSV", - "ip": "www.rdv-solidarites.fr/148.253.96.193", + "id": "cipherlist_aNULL", + "ip": "www.rdv-solidarites.fr/185.21.194.105", "port": "443", "severity": "OK", - "finding": "no protocol below TLS 1.2 offered" + "cwe": "CWE-327", + "finding": "not offered" }, { - "id": "SWEET32", - "ip": "www.rdv-solidarites.fr/148.253.96.193", + "id": "cipherlist_EXPORT", + "ip": "www.rdv-solidarites.fr/185.21.194.105", "port": "443", "severity": "OK", - "cve": "CVE-2016-2183 CVE-2016-6329", "cwe": "CWE-327", - "finding": "not vulnerable" + "finding": "not offered" }, { - "id": "FREAK", - "ip": "www.rdv-solidarites.fr/148.253.96.193", + "id": "cipherlist_LOW", + "ip": "www.rdv-solidarites.fr/185.21.194.105", "port": "443", "severity": "OK", - "cve": "CVE-2015-0204", - "cwe": "CWE-310", - "finding": "not vulnerable" + "cwe": "CWE-327", + "finding": "not offered" }, { - "id": "DROWN", - "ip": "www.rdv-solidarites.fr/148.253.96.193", + "id": "cipherlist_3DES_IDEA", + "ip": "www.rdv-solidarites.fr/185.21.194.105", "port": "443", - "severity": "OK", - "cve": "CVE-2016-0800 CVE-2016-0703", + "severity": "INFO", "cwe": "CWE-310", - "finding": "not vulnerable on this host and port" + "finding": "not offered" }, { - "id": "DROWN_hint", - "ip": "www.rdv-solidarites.fr/148.253.96.193", + "id": "cipherlist_OBSOLETED", + "ip": "www.rdv-solidarites.fr/185.21.194.105", "port": "443", "severity": "INFO", - "cve": "CVE-2016-0800 CVE-2016-0703", "cwe": "CWE-310", - "finding": "Make sure you don't use this certificate elsewhere with SSLv2 enabled services, see https://search.censys.io/search?resource=hosts&virtual_hosts=INCLUDE&q=633BD28D00F8947E110D214024F8B8BD21CBFC0BAC0FE9ADECBB467456A886A4" + "finding": "not offered" }, { - "id": "LOGJAM", - "ip": "www.rdv-solidarites.fr/148.253.96.193", + "id": "cipherlist_STRONG_NOFS", + "ip": "www.rdv-solidarites.fr/185.21.194.105", "port": "443", - "severity": "OK", - "cve": "CVE-2015-4000", - "cwe": "CWE-310", - "finding": "not vulnerable, no DH EXPORT ciphers," + "severity": "INFO", + "finding": "not offered" }, { - "id": "LOGJAM-common_primes", - "ip": "www.rdv-solidarites.fr/148.253.96.193", + "id": "cipherlist_STRONG_FS", + "ip": "www.rdv-solidarites.fr/185.21.194.105", "port": "443", "severity": "OK", - "cve": "CVE-2015-4000", - "cwe": "CWE-310", - "finding": "--" + "finding": "offered" }, { - "id": "BEAST", - "ip": "www.rdv-solidarites.fr/148.253.96.193", + "id": "cipher_order-tls1_2", + "ip": "www.rdv-solidarites.fr/185.21.194.105", "port": "443", "severity": "OK", - "cve": "CVE-2011-3389", - "cwe": "CWE-20", - "finding": "not vulnerable, no SSL3 or TLS1" + "finding": "server" }, { - "id": "LUCKY13", - "ip": "www.rdv-solidarites.fr/148.253.96.193", + "id": "cipherorder_TLSv1_2", + "ip": "www.rdv-solidarites.fr/185.21.194.105", "port": "443", - "severity": "OK", - "cve": "CVE-2013-0169", - "cwe": "CWE-310", - "finding": "not vulnerable" + "severity": "INFO", + "finding": "ECDHE-RSA-AES256-GCM-SHA384" }, { - "id": "winshock", - "ip": "www.rdv-solidarites.fr/148.253.96.193", + "id": "cipher_order", + "ip": "www.rdv-solidarites.fr/185.21.194.105", "port": "443", "severity": "OK", - "cve": "CVE-2014-6321", - "cwe": "CWE-94", - "finding": "not vulnerable" + "finding": "server" }, { - "id": "RC4", - "ip": "www.rdv-solidarites.fr/148.253.96.193", + "id": "FS", + "ip": "www.rdv-solidarites.fr/185.21.194.105", "port": "443", "severity": "OK", - "cve": "CVE-2013-2566 CVE-2015-2808", - "cwe": "CWE-310", - "finding": "not vulnerable" + "finding": "offered" }, { - "id": "clientsimulation-android_60", - "ip": "www.rdv-solidarites.fr/148.253.96.193", + "id": "FS_ciphers", + "ip": "www.rdv-solidarites.fr/185.21.194.105", "port": "443", "severity": "INFO", - "finding": "TLSv1.2 ECDHE-RSA-AES128-GCM-SHA256" + "finding": "DHE-RSA-AES256-GCM-SHA384 ECDHE-RSA-AES128-GCM-SHA256 ECDHE-RSA-AES256-GCM-SHA384" }, { - "id": "clientsimulation-android_70", - "ip": "www.rdv-solidarites.fr/148.253.96.193", + "id": "FS_ECDHE_curves", + "ip": "www.rdv-solidarites.fr/185.21.194.105", "port": "443", - "severity": "INFO", - "finding": "TLSv1.2 ECDHE-RSA-AES256-GCM-SHA384" + "severity": "OK", + "finding": "prime256v1 secp384r1 secp521r1" }, { - "id": "clientsimulation-android_81", - "ip": "www.rdv-solidarites.fr/148.253.96.193", + "id": "TLS_extensions", + "ip": "www.rdv-solidarites.fr/185.21.194.105", "port": "443", "severity": "INFO", - "finding": "TLSv1.2 ECDHE-RSA-AES256-GCM-SHA384" + "finding": "'renegotiation info/#65281' 'server name/#0' 'EC point formats/#11' 'session ticket/#35' 'supported versions/#43' 'key share/#51' 'supported_groups/#10' 'max fragment length/#1' 'application layer protocol negotiation/#16' 'extended master secret/#23'" }, { - "id": "clientsimulation-android_90", - "ip": "www.rdv-solidarites.fr/148.253.96.193", + "id": "TLS_session_ticket", + "ip": "www.rdv-solidarites.fr/185.21.194.105", "port": "443", "severity": "INFO", - "finding": "TLSv1.3 TLS_AES_256_GCM_SHA384" + "finding": "valid for 300 seconds only (= 30 days" }, { - "id": "clientsimulation-go_1178", - "ip": "www.rdv-solidarites.fr/148.253.96.193", + "id": "cert_notBefore", + "ip": "www.rdv-solidarites.fr/185.21.194.105", "port": "443", "severity": "INFO", - "finding": "TLSv1.3 TLS_AES_256_GCM_SHA384" + "finding": "2024-11-13 15:55" }, { - "id": "clientsimulation-libressl_283", - "ip": "www.rdv-solidarites.fr/148.253.96.193", + "id": "cert_notAfter", + "ip": "www.rdv-solidarites.fr/185.21.194.105", "port": "443", - "severity": "INFO", - "finding": "TLSv1.2 ECDHE-RSA-AES256-GCM-SHA384" + "severity": "OK", + "finding": "2025-02-11 15:55" }, { - "id": "clientsimulation-openssl_102e", - "ip": "www.rdv-solidarites.fr/148.253.96.193", + "id": "cert_extlifeSpan", + "ip": "www.rdv-solidarites.fr/185.21.194.105", "port": "443", - "severity": "INFO", - "finding": "TLSv1.2 ECDHE-RSA-AES256-GCM-SHA384" + "severity": "OK", + "finding": "certificate has no extended life time according to browser forum" }, { - "id": "clientsimulation-openssl_110l", - "ip": "www.rdv-solidarites.fr/148.253.96.193", + "id": "cert_eTLS", + "ip": "www.rdv-solidarites.fr/185.21.194.105", "port": "443", "severity": "INFO", - "finding": "TLSv1.2 ECDHE-RSA-AES256-GCM-SHA384" + "finding": "not present" }, { - "id": "clientsimulation-openssl_111d", - "ip": "www.rdv-solidarites.fr/148.253.96.193", + "id": "cert_crlDistributionPoints", + "ip": "www.rdv-solidarites.fr/185.21.194.105", "port": "443", "severity": "INFO", - "finding": "TLSv1.3 TLS_AES_256_GCM_SHA384" + "finding": "--" }, { - "id": "clientsimulation-openssl_303", - "ip": "www.rdv-solidarites.fr/148.253.96.193", + "id": "cert_ocspURL", + "ip": "www.rdv-solidarites.fr/185.21.194.105", "port": "443", "severity": "INFO", - "finding": "TLSv1.3 TLS_AES_256_GCM_SHA384" + "finding": "http://r10.o.lencr.org" }, { - "id": "clientsimulation-apple_mail_16_0", - "ip": "www.rdv-solidarites.fr/148.253.96.193", + "id": "OCSP_stapling", + "ip": "www.rdv-solidarites.fr/185.21.194.105", "port": "443", - "severity": "INFO", - "finding": "TLSv1.2 ECDHE-RSA-AES256-GCM-SHA384" + "severity": "LOW", + "finding": "not offered" }, { - "id": "clientsimulation-thunderbird_91_9", - "ip": "www.rdv-solidarites.fr/148.253.96.193", + "id": "cert_mustStapleExtension", + "ip": "www.rdv-solidarites.fr/185.21.194.105", "port": "443", "severity": "INFO", - "finding": "TLSv1.3 TLS_AES_256_GCM_SHA384" + "finding": "--" }, { - "id": "rating_spec", - "ip": "www.rdv-solidarites.fr/148.253.96.193", + "id": "DNS_CAArecord", + "ip": "www.rdv-solidarites.fr/185.21.194.105", "port": "443", - "severity": "INFO", - "finding": "SSL Labs's 'SSL Server Rating Guide' (version 2009q from 2020-01-30)" + "severity": "LOW", + "finding": "--" }, { - "id": "rating_doc", - "ip": "www.rdv-solidarites.fr/148.253.96.193", + "id": "certificate_transparency", + "ip": "www.rdv-solidarites.fr/185.21.194.105", "port": "443", - "severity": "INFO", - "finding": "https://github.com/ssllabs/research/wiki/SSL-Server-Rating-Guide" + "severity": "OK", + "finding": "yes (certificate extension)" }, { - "id": "protocol_support_score", - "ip": "www.rdv-solidarites.fr/148.253.96.193", + "id": "certs_countServer", + "ip": "www.rdv-solidarites.fr/185.21.194.105", "port": "443", "severity": "INFO", - "finding": "100" + "finding": "2" }, { - "id": "protocol_support_score_weighted", - "ip": "www.rdv-solidarites.fr/148.253.96.193", + "id": "certs_list_ordering_problem", + "ip": "www.rdv-solidarites.fr/185.21.194.105", "port": "443", "severity": "INFO", - "finding": "30" + "finding": "no" }, { - "id": "key_exchange_score", - "ip": "www.rdv-solidarites.fr/148.253.96.193", + "id": "cert_caIssuers", + "ip": "www.rdv-solidarites.fr/185.21.194.105", "port": "443", "severity": "INFO", - "finding": "90" + "finding": "R10 (Let's Encrypt from US)" }, { - "id": "key_exchange_score_weighted", - "ip": "www.rdv-solidarites.fr/148.253.96.193", + "id": "intermediate_cert <#1>", + "ip": "www.rdv-solidarites.fr/185.21.194.105", "port": "443", "severity": "INFO", - "finding": "27" + "finding": "-----BEGIN CERTIFICATE-----\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\n-----END CERTIFICATE-----" }, { - "id": "cipher_strength_score", - "ip": "www.rdv-solidarites.fr/148.253.96.193", + "id": "intermediate_cert_fingerprintSHA256 <#1>", + "ip": "www.rdv-solidarites.fr/185.21.194.105", "port": "443", "severity": "INFO", - "finding": "60" + "finding": "9D7C3F1AA6AD2B2EC0D5CF1E246F8D9AE6CBC9FD0755AD37BB974B1F2FB603F3" }, { - "id": "cipher_strength_score_weighted", - "ip": "www.rdv-solidarites.fr/148.253.96.193", + "id": "intermediate_cert_notBefore <#1>", + "ip": "www.rdv-solidarites.fr/185.21.194.105", "port": "443", "severity": "INFO", - "finding": "24" + "finding": "2024-03-13 00:00" }, { - "id": "final_score", - "ip": "www.rdv-solidarites.fr/148.253.96.193", + "id": "intermediate_cert_notAfter <#1>", + "ip": "www.rdv-solidarites.fr/185.21.194.105", "port": "443", - "severity": "INFO", - "finding": "81" + "severity": "OK", + "finding": "2027-03-12 23:59" }, { - "id": "overall_grade", - "ip": "www.rdv-solidarites.fr/148.253.96.193", + "id": "intermediate_cert_expiration <#1>", + "ip": "www.rdv-solidarites.fr/185.21.194.105", "port": "443", "severity": "OK", - "finding": "A+" + "finding": "ok > 40 days" }, { - "id": "scanTime", - "ip": "www.rdv-solidarites.fr/148.253.96.193", + "id": "intermediate_cert_chain <#1>", + "ip": "www.rdv-solidarites.fr/185.21.194.105", "port": "443", "severity": "INFO", - "finding": "240" - } - ], - "thirdparties": { - "trackers": [], - "cookies": [ - { - "name": "_rdv_sp_session", - "value": "6tT0G9el4x9Xi7TxwV2f1p4wHMpNHvX%2Bf8I%2BPmWkSKMPG40L3WRiNJL9zIbiDcJ7iS%2BzCzvTjTAGW7zHLq9FNRo3EI1z%2BZiA%2BVNhXH%2FPyKZSvhqr4b7Dgg9e9PVZShO56pDUR42TugrD0WgQJnYhsMtWlb3KRyeoaIcAPLFrMXEWejMisfJGIrH5DYLJR08Ji%2FkfYJIpjQ9hsJ77rw3YsUbug8nGHj%2ByUSYCh0Adqtd1gPCmejyDZ9kv7bFKtdSS%2FdxORKKVYDnfowkDssYgK9edZTVk%2Ftvij5o4oeZuiMHY25U5c87DP0U%2FWOPD--0gSUdnlU7laV0ko4--VqcjWORsVU0PRbdpboDfbw%3D%3D", - "domain": "www.rdv-solidarites.fr", - "path": "/", - "expires": 1732441864.244924, - "size": 401, - "httpOnly": true, - "secure": true, - "session": false, - "sameSite": "Lax", - "sameParty": false, - "sourceScheme": "Secure", - "sourcePort": 443 - } - ], - "headers": { - "cache-control": "max-age=0, private, must-revalidate", - "content-encoding": "gzip", - "content-security-policy": "default-src 'self'; font-src 'self' data:; object-src 'none'; worker-src blob:; child-src blob: 'self'; frame-src 'self' *.instatus.com headway-widget.net; media-src 'self' rdv-insertion-medias-production.s3.fr-par.scw.cloud; img-src 'self' data: voxusagers.numerique.gouv.fr; style-src 'self' 'unsafe-inline' *.bootstrapcdn.com api.mapbox.com cdn.headwayapp.co; connect-src 'self' api-adresse.data.gouv.fr etalab-tiles.fr; script-src 'self' 'unsafe-inline' api.mapbox.com cdn.headwayapp.co", - "content-type": "text/html; charset=utf-8", - "date": "Sun, 24 Nov 2024 01:51:04 GMT", - "etag": "W/\"e97905cf7c37b5f69b8361a89ea2cbc8\"", - "link": "; rel=preload; as=style; nopush,; rel=preload; as=style; nopush,; rel=preload; as=style; nopush,; rel=preload; as=script; nopush", - "referrer-policy": "strict-origin-when-cross-origin", - "set-cookie": "_rdv_sp_session=6tT0G9el4x9Xi7TxwV2f1p4wHMpNHvX%2Bf8I%2BPmWkSKMPG40L3WRiNJL9zIbiDcJ7iS%2BzCzvTjTAGW7zHLq9FNRo3EI1z%2BZiA%2BVNhXH%2FPyKZSvhqr4b7Dgg9e9PVZShO56pDUR42TugrD0WgQJnYhsMtWlb3KRyeoaIcAPLFrMXEWejMisfJGIrH5DYLJR08Ji%2FkfYJIpjQ9hsJ77rw3YsUbug8nGHj%2ByUSYCh0Adqtd1gPCmejyDZ9kv7bFKtdSS%2FdxORKKVYDnfowkDssYgK9edZTVk%2Ftvij5o4oeZuiMHY25U5c87DP0U%2FWOPD--0gSUdnlU7laV0ko4--VqcjWORsVU0PRbdpboDfbw%3D%3D; path=/; expires=Sun, 24 Nov 2024 09:51:04 GMT; secure; HttpOnly; SameSite=Lax", - "strict-transport-security": "max-age=63072000; includeSubDomains", - "x-content-type-options": "nosniff", - "x-download-options": "noopen", - "x-permitted-cross-domain-policies": "none", - "x-request-id": "73668165-35fb-421d-9e33-03cbf000237a\n73668165-35fb-421d-9e33-03cbf000237a", - "x-runtime": "0.012890", - "x-xss-protection": "0" - }, - "endpoints": [ - { - "hostname": "www.rdv-solidarites.fr", - "ip": "80.247.13.145", - "geoip": { - "continent": { - "code": "EU", - "geoname_id": 6255148, - "names": { - "de": "Europa", - "en": "Europe", - "es": "Europa", - "fr": "Europe", - "ja": "ヨーロッパ", - "pt-BR": "Europa", - "ru": "Европа", - "zh-CN": "欧洲" - } - }, - "country": { - "geoname_id": 3017382, - "is_in_european_union": true, - "iso_code": "FR", - "names": { - "de": "Frankreich", - "en": "France", - "es": "Francia", - "fr": "France", - "ja": "フランス共和国", - "pt-BR": "França", - "ru": "Франция", - "zh-CN": "法国" - } - }, - "location": { - "accuracy_radius": 500, - "latitude": 48.8582, - "longitude": 2.3387, - "time_zone": "Europe/Paris" - }, - "registered_country": { - "geoname_id": 3017382, - "is_in_european_union": true, - "iso_code": "FR", - "names": { - "de": "Frankreich", - "en": "France", - "es": "Francia", - "fr": "France", - "ja": "フランス共和国", - "pt-BR": "França", - "ru": "Франция", - "zh-CN": "法国" - } - } - } - } - ] - }, - "wappalyzer": { - "urls": { - "https://www.rdv-solidarites.fr/": { - "status": 200 - } + "finding": "R10 <-- ISRG Root X1" }, - "technologies": [ - { - "slug": "ruby", - "name": "Ruby", - "description": "Ruby is an open-source object-oriented programming language.", - "confidence": 100, - "version": null, - "icon": "Ruby.png", - "website": "https://ruby-lang.org", - "cpe": "cpe:2.3:a:ruby-lang:ruby:*:*:*:*:*:*:*:*", - "categories": [ - { - "id": 27, - "slug": "programming-languages", - "name": "Programming languages" - } - ] - }, - { - "slug": "ruby-on-rails", - "name": "Ruby on Rails", - "description": "Ruby on Rails is a server-side web application framework written in Ruby under the MIT License.", - "confidence": 100, - "version": null, - "icon": "Ruby on Rails.svg", - "website": "https://rubyonrails.org", - "cpe": "cpe:2.3:a:rubyonrails:rails:*:*:*:*:*:*:*:*", - "categories": [ - { - "id": 18, - "slug": "web-frameworks", - "name": "Web frameworks" - } - ], - "rootPath": true - }, - { - "slug": "turbolinks", - "name": "Turbolinks", - "description": "Turbolinks is a Rails feature, available as a gem and enabled by default in new Rails apps. It is intended to speed up navigating between pages of your application.", - "confidence": 100, - "version": null, - "icon": "default.svg", - "website": "https://github.com/turbolinks/turbolinks", - "cpe": null, - "categories": [ - { - "id": 92, - "slug": "performance", - "name": "Performance" - } - ], - "rootPath": true - }, - { - "slug": "sendinblue", - "name": "Sendinblue", - "description": "Sendinblue is an email marketing solution for small and medium-sized businesses that want to send and automate email marketing campaigns.", - "confidence": 100, - "version": null, - "icon": "Sendinblue.svg", - "website": "https://www.sendinblue.com", - "cpe": null, - "categories": [ - { - "id": 32, - "slug": "marketing-automation", - "name": "Marketing automation" - }, - { - "id": 75, - "slug": "email", - "name": "Email" - } - ], - "rootPath": true - }, - { - "slug": "hsts", - "name": "HSTS", - "description": "HTTP Strict Transport Security (HSTS) informs browsers that the site should only be accessed using HTTPS.", - "confidence": 100, - "version": null, - "icon": "default.svg", - "website": "https://www.rfc-editor.org/rfc/rfc6797#section-6.1", - "cpe": null, - "categories": [ - { - "id": 16, - "slug": "security", - "name": "Security" - } - ], - "rootPath": true - } - ] - }, - "zap": null, - "nuclei": [ { - "template": "dns/dns-saas-service-detection.yaml", - "template-url": "https://templates.nuclei.sh/public/dns-saas-service-detection", - "template-id": "dns-saas-service-detection", - "template-path": "/home/runner/nuclei-templates/dns/dns-saas-service-detection.yaml", - "info": { - "name": "DNS SaaS Service Detection", - "author": [ - "noah @thesubtlety", - "pdteam" - ], - "tags": [ - "dns", - "service" - ], - "description": "A CNAME DNS record was discovered", - "reference": [ - "https://ns1.com/resources/cname", - "https://www.theregister.com/2021/02/24/dns_cname_tracking/", - "https://www.ionos.com/digitalguide/hosting/technical-matters/cname-record/" - ], - "severity": "info", - "metadata": { - "max-request": 1 - } - }, - "type": "dns", - "host": "www.rdv-solidarites.fr.", - "matched-at": "www.rdv-solidarites.fr", - "extracted-results": [ - "production-rdv-solidarites.osc-secnum-fr1.scalingo.io." - ], - "timestamp": "2024-11-24T01:56:14.588393448Z", - "matcher-status": true + "id": "intermediate_cert_badOCSP", + "ip": "www.rdv-solidarites.fr/185.21.194.105", + "port": "443", + "severity": "OK", + "finding": "intermediate certificate(s) is/are ok" }, { - "template": "dns/caa-fingerprint.yaml", - "template-url": "https://templates.nuclei.sh/public/caa-fingerprint", - "template-id": "caa-fingerprint", - "template-path": "/home/runner/nuclei-templates/dns/caa-fingerprint.yaml", - "info": { - "name": "CAA Record", - "author": [ - "pdteam" - ], - "tags": [ - "dns", - "caa" - ], - "description": "A CAA record was discovered. A CAA record is used to specify which certificate authorities (CAs) are allowed to issue certificates for a domain.", - "reference": [ - "https://support.dnsimple.com/articles/caa-record/#whats-a-caa-record" - ], - "severity": "info", - "metadata": { - "max-request": 1 - }, - "classification": { - "cve-id": null, - "cwe-id": [ - "cwe-200" - ] - } - }, - "type": "dns", - "host": "www.rdv-solidarites.fr.", - "matched-at": "www.rdv-solidarites.fr", - "timestamp": "2024-11-24T01:56:14.8510447Z", - "matcher-status": true + "id": "HTTP_status_code", + "ip": "www.rdv-solidarites.fr/185.21.194.105", + "port": "443", + "severity": "INFO", + "finding": "200 OK ('/')" }, { - "template": "http/miscellaneous/form-detection.yaml", - "template-url": "https://templates.nuclei.sh/public/form-detection", - "template-id": "form-detection", - "template-path": "/home/runner/nuclei-templates/http/miscellaneous/form-detection.yaml", - "info": { - "name": "Form Detection", - "author": [ - "pdteam" - ], - "tags": [ - "form", - "misc", - "miscellaneous" - ], - "description": "A template to detect HTML Forms in page response.\n", - "reference": [ - "https://github.com/dirtycoder0124/formcrawler" - ], - "severity": "info", - "metadata": { - "max-request": 1 - } - }, - "type": "http", - "host": "https://www.rdv-solidarites.fr", - "matched-at": "https://www.rdv-solidarites.fr", - "ip": "185.21.194.105", - "timestamp": "2024-11-24T01:57:15.358885923Z", - "curl-command": "curl -X 'GET' -H 'Accept: */*' -H 'Accept-Language: en' -H 'User-Agent: Nuclei - Open-source project (github.com/projectdiscovery/nuclei)' 'https://www.rdv-solidarites.fr'", - "matcher-status": true + "id": "HTTP_clock_skew", + "ip": "www.rdv-solidarites.fr/185.21.194.105", + "port": "443", + "severity": "INFO", + "finding": "0 seconds from localtime" }, { - "template": "http/misconfiguration/http-missing-security-headers.yaml", - "template-url": "https://templates.nuclei.sh/public/http-missing-security-headers", - "template-id": "http-missing-security-headers", - "template-path": "/home/runner/nuclei-templates/http/misconfiguration/http-missing-security-headers.yaml", - "info": { - "name": "HTTP Missing Security Headers", - "author": [ - "socketz", - "geeknik", - "g4l1t0", - "convisoappsec", - "kurohost", - "dawid-czarnecki", - "forgedhallpass", - "jub0bs", - "userdehghani" - ], - "tags": [ - "misconfig", - "headers", - "generic" - ], - "description": "This template searches for missing HTTP security headers. The impact of these missing headers can vary.\n", - "severity": "info", - "metadata": { - "max-request": 1 - } - }, - "matcher-name": "cross-origin-opener-policy", - "type": "http", - "host": "https://www.rdv-solidarites.fr", - "matched-at": "https://www.rdv-solidarites.fr", - "ip": "185.21.194.105", - "timestamp": "2024-11-24T01:57:20.5451992Z", - "curl-command": "curl -X 'GET' -H 'Accept: */*' -H 'Accept-Language: en' -H 'User-Agent: Nuclei - Open-source project (github.com/projectdiscovery/nuclei)' 'https://www.rdv-solidarites.fr'", - "matcher-status": true + "id": "HTTP_headerTime", + "ip": "www.rdv-solidarites.fr/185.21.194.105", + "port": "443", + "severity": "INFO", + "finding": "1733018451" }, { - "template": "http/misconfiguration/http-missing-security-headers.yaml", - "template-url": "https://templates.nuclei.sh/public/http-missing-security-headers", - "template-id": "http-missing-security-headers", - "template-path": "/home/runner/nuclei-templates/http/misconfiguration/http-missing-security-headers.yaml", - "info": { - "name": "HTTP Missing Security Headers", - "author": [ - "socketz", - "geeknik", - "g4l1t0", - "convisoappsec", - "kurohost", - "dawid-czarnecki", - "forgedhallpass", - "jub0bs", - "userdehghani" - ], - "tags": [ - "misconfig", - "headers", - "generic" - ], - "description": "This template searches for missing HTTP security headers. The impact of these missing headers can vary.\n", - "severity": "info", - "metadata": { - "max-request": 1 - } - }, - "matcher-name": "cross-origin-resource-policy", - "type": "http", - "host": "https://www.rdv-solidarites.fr", - "matched-at": "https://www.rdv-solidarites.fr", - "ip": "185.21.194.105", - "timestamp": "2024-11-24T01:57:20.545242842Z", - "curl-command": "curl -X 'GET' -H 'Accept: */*' -H 'Accept-Language: en' -H 'User-Agent: Nuclei - Open-source project (github.com/projectdiscovery/nuclei)' 'https://www.rdv-solidarites.fr'", - "matcher-status": true + "id": "HSTS_time", + "ip": "www.rdv-solidarites.fr/185.21.194.105", + "port": "443", + "severity": "OK", + "finding": "730 days (=63072000 seconds) > 15552000 seconds" }, { - "template": "http/misconfiguration/http-missing-security-headers.yaml", - "template-url": "https://templates.nuclei.sh/public/http-missing-security-headers", - "template-id": "http-missing-security-headers", - "template-path": "/home/runner/nuclei-templates/http/misconfiguration/http-missing-security-headers.yaml", - "info": { - "name": "HTTP Missing Security Headers", - "author": [ - "socketz", - "geeknik", - "g4l1t0", - "convisoappsec", - "kurohost", - "dawid-czarnecki", - "forgedhallpass", - "jub0bs", - "userdehghani" - ], - "tags": [ - "misconfig", - "headers", - "generic" - ], - "description": "This template searches for missing HTTP security headers. The impact of these missing headers can vary.\n", - "severity": "info", - "metadata": { - "max-request": 1 - } - }, - "matcher-name": "permissions-policy", - "type": "http", - "host": "https://www.rdv-solidarites.fr", - "matched-at": "https://www.rdv-solidarites.fr", - "ip": "185.21.194.105", - "timestamp": "2024-11-24T01:57:20.545261997Z", - "curl-command": "curl -X 'GET' -H 'Accept: */*' -H 'Accept-Language: en' -H 'User-Agent: Nuclei - Open-source project (github.com/projectdiscovery/nuclei)' 'https://www.rdv-solidarites.fr'", - "matcher-status": true + "id": "HSTS_subdomains", + "ip": "www.rdv-solidarites.fr/185.21.194.105", + "port": "443", + "severity": "OK", + "finding": "includes subdomains" }, { - "template": "http/misconfiguration/http-missing-security-headers.yaml", - "template-url": "https://templates.nuclei.sh/public/http-missing-security-headers", - "template-id": "http-missing-security-headers", - "template-path": "/home/runner/nuclei-templates/http/misconfiguration/http-missing-security-headers.yaml", - "info": { - "name": "HTTP Missing Security Headers", - "author": [ - "socketz", - "geeknik", - "g4l1t0", - "convisoappsec", - "kurohost", - "dawid-czarnecki", - "forgedhallpass", - "jub0bs", - "userdehghani" - ], - "tags": [ - "misconfig", - "headers", - "generic" - ], - "description": "This template searches for missing HTTP security headers. The impact of these missing headers can vary.\n", - "severity": "info", - "metadata": { - "max-request": 1 - } - }, - "matcher-name": "x-frame-options", - "type": "http", - "host": "https://www.rdv-solidarites.fr", - "matched-at": "https://www.rdv-solidarites.fr", - "ip": "185.21.194.105", - "timestamp": "2024-11-24T01:57:20.545275592Z", - "curl-command": "curl -X 'GET' -H 'Accept: */*' -H 'Accept-Language: en' -H 'User-Agent: Nuclei - Open-source project (github.com/projectdiscovery/nuclei)' 'https://www.rdv-solidarites.fr'", - "matcher-status": true + "id": "HSTS_preload", + "ip": "www.rdv-solidarites.fr/185.21.194.105", + "port": "443", + "severity": "INFO", + "finding": "domain is NOT marked for preloading" }, { - "template": "http/misconfiguration/http-missing-security-headers.yaml", - "template-url": "https://templates.nuclei.sh/public/http-missing-security-headers", - "template-id": "http-missing-security-headers", - "template-path": "/home/runner/nuclei-templates/http/misconfiguration/http-missing-security-headers.yaml", - "info": { - "name": "HTTP Missing Security Headers", - "author": [ - "socketz", - "geeknik", - "g4l1t0", - "convisoappsec", - "kurohost", - "dawid-czarnecki", - "forgedhallpass", - "jub0bs", - "userdehghani" - ], - "tags": [ - "misconfig", - "headers", - "generic" - ], - "description": "This template searches for missing HTTP security headers. The impact of these missing headers can vary.\n", - "severity": "info", - "metadata": { - "max-request": 1 - } - }, - "matcher-name": "clear-site-data", - "type": "http", - "host": "https://www.rdv-solidarites.fr", - "matched-at": "https://www.rdv-solidarites.fr", - "ip": "185.21.194.105", - "timestamp": "2024-11-24T01:57:20.545289549Z", - "curl-command": "curl -X 'GET' -H 'Accept: */*' -H 'Accept-Language: en' -H 'User-Agent: Nuclei - Open-source project (github.com/projectdiscovery/nuclei)' 'https://www.rdv-solidarites.fr'", - "matcher-status": true + "id": "HPKP", + "ip": "www.rdv-solidarites.fr/185.21.194.105", + "port": "443", + "severity": "INFO", + "finding": "No support for HTTP Public Key Pinning" }, { - "template": "http/misconfiguration/http-missing-security-headers.yaml", - "template-url": "https://templates.nuclei.sh/public/http-missing-security-headers", - "template-id": "http-missing-security-headers", - "template-path": "/home/runner/nuclei-templates/http/misconfiguration/http-missing-security-headers.yaml", - "info": { - "name": "HTTP Missing Security Headers", - "author": [ - "socketz", - "geeknik", - "g4l1t0", - "convisoappsec", - "kurohost", - "dawid-czarnecki", - "forgedhallpass", - "jub0bs", - "userdehghani" - ], - "tags": [ - "misconfig", - "headers", - "generic" - ], - "description": "This template searches for missing HTTP security headers. The impact of these missing headers can vary.\n", - "severity": "info", - "metadata": { - "max-request": 1 - } - }, - "matcher-name": "cross-origin-embedder-policy", - "type": "http", - "host": "https://www.rdv-solidarites.fr", - "matched-at": "https://www.rdv-solidarites.fr", - "ip": "185.21.194.105", - "timestamp": "2024-11-24T01:57:20.545310628Z", - "curl-command": "curl -X 'GET' -H 'Accept: */*' -H 'Accept-Language: en' -H 'User-Agent: Nuclei - Open-source project (github.com/projectdiscovery/nuclei)' 'https://www.rdv-solidarites.fr'", - "matcher-status": true + "id": "banner_server", + "ip": "www.rdv-solidarites.fr/185.21.194.105", + "port": "443", + "severity": "INFO", + "finding": "No Server banner line in header, interesting!" }, { - "template": "http/miscellaneous/robots-txt-endpoint.yaml", - "template-url": "https://templates.nuclei.sh/public/robots-txt-endpoint", - "template-id": "robots-txt-endpoint", - "template-path": "/home/runner/nuclei-templates/http/miscellaneous/robots-txt-endpoint.yaml", - "info": { - "name": "robots.txt endpoint prober", - "author": [ - "caspergn", - "pdteam" - ], - "tags": [ - "miscellaneous", - "misc", - "generic" - ], - "severity": "info", - "metadata": { - "max-request": 2 - } - }, - "type": "http", - "host": "https://www.rdv-solidarites.fr", - "matched-at": "https://www.rdv-solidarites.fr/robots.txt", - "ip": "185.21.194.105", - "timestamp": "2024-11-24T01:57:34.230149129Z", - "curl-command": "curl -X 'GET' -H 'Accept: */*' -H 'Accept-Language: en' -H 'User-Agent: Nuclei - Open-source project (github.com/projectdiscovery/nuclei)' 'https://www.rdv-solidarites.fr/robots.txt'", - "matcher-status": true + "id": "banner_application", + "ip": "www.rdv-solidarites.fr/185.21.194.105", + "port": "443", + "severity": "INFO", + "finding": "No application banner found" }, { - "template": "http/miscellaneous/robots-txt.yaml", - "template-url": "https://templates.nuclei.sh/public/robots-txt", - "template-id": "robots-txt", - "template-path": "/home/runner/nuclei-templates/http/miscellaneous/robots-txt.yaml", - "info": { - "name": "robots.txt file", - "author": [ - "caspergn", - "thezakman" - ], - "tags": [ - "miscellaneous", - "misc", - "generic" - ], - "severity": "info", - "metadata": { - "max-request": 1 - } - }, - "type": "http", - "host": "https://www.rdv-solidarites.fr", - "matched-at": "https://www.rdv-solidarites.fr/robots.txt", - "ip": "185.21.194.105", - "timestamp": "2024-11-24T01:57:34.30359305Z", - "curl-command": "curl -X 'GET' -H 'Accept: */*' -H 'Accept-Language: en' -H 'User-Agent: Nuclei - Open-source project (github.com/projectdiscovery/nuclei)' 'https://www.rdv-solidarites.fr/robots.txt'", - "matcher-status": true + "id": "cookie_count", + "ip": "www.rdv-solidarites.fr/185.21.194.105", + "port": "443", + "severity": "INFO", + "finding": "1 at '/'" }, { - "template": "http/miscellaneous/security-txt.yaml", - "template-url": "https://templates.nuclei.sh/public/security-txt", - "template-id": "security-txt", - "template-path": "/home/runner/nuclei-templates/http/miscellaneous/security-txt.yaml", - "info": { - "name": "security.txt File", - "author": [ - "bad5ect0r", - "noraj" - ], - "tags": [ - "miscellaneous", - "misc", - "generic" - ], - "description": "File similar to robots.txt but intended to be read by humans wishing to contact a website’s owner about security issues. Often defines a security policy and contact details.\n", - "reference": [ - "https://securitytxt.org/", - "https://community.turgensec.com/security-txt-progress-in-ethical-security-research/" - ], - "severity": "info", - "metadata": { - "max-request": 2, - "shodan-query": "http.securitytxt:contact http.status:200", - "verified": true - } - }, - "type": "http", - "host": "https://www.rdv-solidarites.fr", - "matched-at": "https://www.rdv-solidarites.fr/.well-known/security.txt", - "extracted-results": [ - " mailto:contact@rdv-solidarites.fr" - ], - "ip": "185.21.194.105", - "timestamp": "2024-11-24T01:57:34.309546242Z", - "curl-command": "curl -X 'GET' -H 'Accept: */*' -H 'Accept-Language: en' -H 'User-Agent: Nuclei - Open-source project (github.com/projectdiscovery/nuclei)' 'https://www.rdv-solidarites.fr/.well-known/security.txt'", - "matcher-status": true + "id": "cookie_secure", + "ip": "www.rdv-solidarites.fr/185.21.194.105", + "port": "443", + "severity": "OK", + "finding": "All (1) at '/' marked as secure" }, { - "template": "ssl/detect-ssl-issuer.yaml", - "template-url": "https://templates.nuclei.sh/public/ssl-issuer", - "template-id": "ssl-issuer", - "template-path": "/home/runner/nuclei-templates/ssl/detect-ssl-issuer.yaml", - "info": { - "name": "Detect SSL Certificate Issuer", - "author": [ - "lingtren" - ], - "tags": [ - "ssl", - "tls" - ], - "description": "Extract the issuer's organization from the target's certificate. Issuers are entities which sign and distribute certificates.\n", - "severity": "info", - "metadata": { - "max-request": 1 - } - }, - "type": "ssl", - "host": "www.rdv-solidarites.fr", - "matched-at": "www.rdv-solidarites.fr:443", - "extracted-results": [ - "Let's Encrypt" - ], - "ip": "185.21.194.105", - "timestamp": "2024-11-24T02:03:40.654578572Z", - "matcher-status": true + "id": "cookie_httponly", + "ip": "www.rdv-solidarites.fr/185.21.194.105", + "port": "443", + "severity": "OK", + "finding": "All (1) at '/' marked as HttpOnly" }, { - "template": "ssl/ssl-dns-names.yaml", - "template-url": "https://templates.nuclei.sh/public/ssl-dns-names", - "template-id": "ssl-dns-names", - "template-path": "/home/runner/nuclei-templates/ssl/ssl-dns-names.yaml", - "info": { - "name": "SSL DNS Names", - "author": [ - "pdteam" - ], - "tags": [ - "ssl", - "tls" - ], - "description": "Extract the Subject Alternative Name (SAN) from the target's certificate. SAN facilitates the usage of additional hostnames with the same certificate.\n", - "severity": "info", - "metadata": { - "max-request": 1 - } - }, - "type": "ssl", - "host": "www.rdv-solidarites.fr", - "matched-at": "www.rdv-solidarites.fr:443", - "extracted-results": [ - "www.rdv-solidarites.fr" - ], - "ip": "185.21.194.105", - "timestamp": "2024-11-24T02:03:40.654692715Z", - "matcher-status": true + "id": "X-Content-Type-Options", + "ip": "www.rdv-solidarites.fr/185.21.194.105", + "port": "443", + "severity": "OK", + "finding": "nosniff" }, { - "template": "ssl/tls-version.yaml", - "template-url": "https://templates.nuclei.sh/public/tls-version", - "template-id": "tls-version", - "template-path": "/home/runner/nuclei-templates/ssl/tls-version.yaml", - "info": { - "name": "TLS Version - Detect", - "author": [ - "pdteam", - "pussycat0x" - ], - "tags": [ - "ssl", - "tls" - ], - "description": "TLS version detection is a security process used to determine the version of the Transport Layer Security (TLS) protocol used by a computer or server.\nIt is important to detect the TLS version in order to ensure secure communication between two computers or servers.\n", - "severity": "info", - "metadata": { - "max-request": 4 - } - }, - "type": "ssl", - "host": "www.rdv-solidarites.fr", - "matched-at": "www.rdv-solidarites.fr:443", - "extracted-results": [ - "tls12" - ], - "ip": "185.21.194.105", - "timestamp": "2024-11-24T02:03:42.166803148Z", - "matcher-status": true + "id": "Content-Security-Policy", + "ip": "www.rdv-solidarites.fr/185.21.194.105", + "port": "443", + "severity": "OK", + "finding": "default-src 'self'; font-src 'self' data:; object-src 'none'; worker-src blob:; child-src blob: 'self'; frame-src 'self' *.instatus.com headway-widget.net; media-src 'self' rdv-insertion-medias-production.s3.fr-par.scw.cloud; img-src 'self' data: voxusagers.numerique.gouv.fr; style-src 'self' 'unsafe-inline' *.bootstrapcdn.com api.mapbox.com cdn.headwayapp.co; connect-src 'self' api-adresse.data.gouv.fr etalab-tiles.fr; script-src 'self' 'unsafe-inline' api.mapbox.com cdn.headwayapp.co" }, { - "template": "ssl/tls-version.yaml", - "template-url": "https://templates.nuclei.sh/public/tls-version", - "template-id": "tls-version", - "template-path": "/home/runner/nuclei-templates/ssl/tls-version.yaml", - "info": { - "name": "TLS Version - Detect", - "author": [ - "pdteam", - "pussycat0x" - ], - "tags": [ - "ssl", - "tls" - ], - "description": "TLS version detection is a security process used to determine the version of the Transport Layer Security (TLS) protocol used by a computer or server.\nIt is important to detect the TLS version in order to ensure secure communication between two computers or servers.\n", - "severity": "info", - "metadata": { - "max-request": 4 - } - }, - "type": "ssl", - "host": "www.rdv-solidarites.fr", - "matched-at": "www.rdv-solidarites.fr:443", - "extracted-results": [ - "tls13" - ], - "ip": "185.21.194.105", - "timestamp": "2024-11-24T02:03:42.382899596Z", - "matcher-status": true - } - ], - "lhr": [ + "id": "X-XSS-Protection", + "ip": "www.rdv-solidarites.fr/185.21.194.105", + "port": "443", + "severity": "INFO", + "finding": "0" + }, { - "requestedUrl": "https://www.rdv-solidarites.fr/", - "finalUrl": "https://www.rdv-solidarites.fr/", - "fetchTime": "2024-11-24T01:50:40.201Z", - "runWarnings": [], - "categories": { - "performance": { - "title": "Performance", - "supportedModes": [ - "navigation", - "timespan", - "snapshot" - ], - "id": "performance", - "score": 0.9 - }, - "accessibility": { - "title": "Accessibility", - "description": "These checks highlight opportunities to [improve the accessibility of your web app](https://developers.google.com/web/fundamentals/accessibility). Only a subset of accessibility issues can be automatically detected so manual testing is also encouraged.", - "manualDescription": "These items address areas which an automated testing tool cannot cover. Learn more in our guide on [conducting an accessibility review](https://developers.google.com/web/fundamentals/accessibility/how-to-review).", - "supportedModes": [ - "navigation", - "snapshot" - ], - "id": "accessibility", - "score": 1 - }, - "best-practices": { - "title": "Best Practices", - "supportedModes": [ - "navigation", - "timespan", - "snapshot" - ], - "id": "best-practices", - "score": 1 - }, - "seo": { - "title": "SEO", - "description": "These checks ensure that your page is following basic search engine optimization advice. There are many additional factors Lighthouse does not score here that may affect your search ranking, including performance on [Core Web Vitals](https://web.dev/learn-web-vitals/). [Learn more](https://support.google.com/webmasters/answer/35769).", - "manualDescription": "Run these additional validators on your site to check additional SEO best practices.", - "supportedModes": [ - "navigation", - "snapshot" - ], - "id": "seo", - "score": 0.92 - }, - "pwa": { - "title": "PWA", - "description": "These checks validate the aspects of a Progressive Web App. [Learn more](https://developers.google.com/web/progressive-web-apps/checklist).", - "manualDescription": "These checks are required by the baseline [PWA Checklist](https://developers.google.com/web/progressive-web-apps/checklist) but are not automatically checked by Lighthouse. They do not affect your score but it's important that you verify them manually.", - "supportedModes": [ - "navigation" - ], - "id": "pwa", - "score": 0.4 - } - }, - "audits": { - "metrics": { - "id": "metrics", - "title": "Metrics", - "description": "Collects all available metrics.", - "score": null, - "scoreDisplayMode": "informative", - "numericValue": 2779, - "numericUnit": "millisecond", - "details": { - "type": "debugdata", - "items": [ - { - "firstContentfulPaint": 2717, - "firstMeaningfulPaint": 2717, - "largestContentfulPaint": 2942, - "interactive": 2779, - "speedIndex": 2765, - "totalBlockingTime": 13, - "maxPotentialFID": 72, - "cumulativeLayoutShift": 0.004009085125393337, - "cumulativeLayoutShiftMainFrame": 0.004009085125393337, - "totalCumulativeLayoutShift": 0.004009085125393337, - "observedTimeOrigin": 0, - "observedTimeOriginTs": 940249802, - "observedNavigationStart": 0, - "observedNavigationStartTs": 940249802, - "observedFirstPaint": 827, - "observedFirstPaintTs": 941076625, - "observedFirstContentfulPaint": 827, - "observedFirstContentfulPaintTs": 941076625, - "observedFirstContentfulPaintAllFrames": 827, - "observedFirstContentfulPaintAllFramesTs": 941076625, - "observedFirstMeaningfulPaint": 827, - "observedFirstMeaningfulPaintTs": 941076625, - "observedLargestContentfulPaint": 827, - "observedLargestContentfulPaintTs": 941076625, - "observedLargestContentfulPaintAllFrames": 827, - "observedLargestContentfulPaintAllFramesTs": 941076625, - "observedTraceEnd": 3427, - "observedTraceEndTs": 943677135, - "observedLoad": 1008, - "observedLoadTs": 941257873, - "observedDomContentLoaded": 832, - "observedDomContentLoadedTs": 941082033, - "observedCumulativeLayoutShift": 0.004009085125393337, - "observedCumulativeLayoutShiftMainFrame": 0.004009085125393337, - "observedTotalCumulativeLayoutShift": 0.004009085125393337, - "observedFirstVisualChange": 829, - "observedFirstVisualChangeTs": 941078802, - "observedLastVisualChange": 1029, - "observedLastVisualChangeTs": 941278802, - "observedSpeedIndex": 839, - "observedSpeedIndexTs": 941089188 - }, - { - "lcpInvalidated": false - } - ] - } - }, - "diagnostics": { - "id": "diagnostics", - "title": "Diagnostics", - "description": "Collection of useful page vitals.", - "score": null, - "scoreDisplayMode": "informative", - "details": { - "type": "debugdata", - "items": [ - { - "numRequests": 26, - "numScripts": 2, - "numStylesheets": 3, - "numFonts": 5, - "numTasks": 1046, - "numTasksOver10ms": 4, - "numTasksOver25ms": 2, - "numTasksOver50ms": 0, - "numTasksOver100ms": 0, - "numTasksOver500ms": 0, - "rtt": 102.398, - "throughput": 16842785.13454337, - "maxRtt": 102.398, - "maxServerLatency": 16.644999999999982, - "totalByteWeight": 739293, - "totalTaskTime": 193.7899999999978, - "mainDocumentTransferSize": 5661 - } - ] - } - } - } - } - ], - "screenshot": true, - "stats": { - "grade": "A", - "url": "https://www.rdv-solidarites.fr", - "uri": "stats" - }, - "github_repository": null, - "budget_page": null, - "declaration-a11y": { - "mention": "Accessibilité : non conforme", - "declarationUrl": "https://www.rdv-solidarites.fr/accessibility" - }, - "declaration-rgpd": null, - "betagouv": null, - "ecoindex": [ + "id": "Referrer-Policy", + "ip": "www.rdv-solidarites.fr/185.21.194.105", + "port": "443", + "severity": "INFO", + "finding": "strict-origin-when-cross-origin" + }, { - "width": 1920, - "height": 1080, - "url": "https://www.rdv-solidarites.fr", - "size": 764.28, - "nodes": 163, - "requests": 22, - "grade": "A", - "score": 83, - "ges": 1.34, - "water": 2.01, - "ecoindex_version": "5.4.2", - "date": "2024-11-24 01:39:43.907403", - "page_type": null - } - ], - "sonarcloud": null, - "dsfr": null, - "summary": { - "404": "A+", - "uptime": 100, - "uptimeGrade": "A", - "nmapGrade": "A", - "nmapOpenPortsCount": 2, - "nmapOpenPortsGrade": "A", - "testsslExpireSoon": false, - "testsslExpireDate": "2025-02-11T15:55:00.000Z", - "testsslGrade": "A+", - "cookiesGrade": "B", - "cookiesCount": 1, - "trackersGrade": "A", - "trackersCount": 0, - "lighthouse_performance": 0.9, - "lighthouse_performanceGrade": "A", - "lighthouse_accessibility": 1, - "lighthouse_accessibilityGrade": "A", - "lighthouse_best-practices": 1, - "lighthouse_best-practicesGrade": "A", - "lighthouse_seo": 0.92, - "lighthouse_seoGrade": "A", - "lighthouse_pwa": 0.4, - "lighthouse_pwaGrade": "D", - "statsGrade": "A", - "declaration-a11y": "C", - "ecoindexGrade": "A" - } - }, - { - "404": [ + "id": "Cache-Control", + "ip": "www.rdv-solidarites.fr/185.21.194.105", + "port": "443", + "severity": "INFO", + "finding": "max-age=0, private, must-revalidate" + }, { - "url": { - "protocol": "https:", - "slashes": true, - "auth": null, - "host": "aidantsconnect.beta.gouv.fr", - "port": null, - "hostname": "aidantsconnect.beta.gouv.fr", - "hash": null, - "search": null, - "query": null, - "pathname": "/static/dsfr/dist/fonts/Spectral-Regular.woff", - "path": "/static/dsfr/dist/fonts/Spectral-Regular.woff", - "href": "https://aidantsconnect.beta.gouv.fr/static/dsfr/dist/fonts/Spectral-Regular.woff" - }, - "link": "https://aidantsconnect.beta.gouv.fr/static/dsfr/dist/fonts/Spectral-Regular.woff", - "line": "https://aidantsconnect.beta.gouv.fr/static/dsfr/dist/fonts/Spectral-Regular.woff", - "broken": true + "id": "banner_reverseproxy", + "ip": "www.rdv-solidarites.fr/185.21.194.105", + "port": "443", + "severity": "INFO", + "cwe": "CWE-200", + "finding": "--" }, { - "url": { - "protocol": "https:", - "slashes": true, - "auth": null, - "host": "aidantsconnect.beta.gouv.fr", - "port": null, - "hostname": "aidantsconnect.beta.gouv.fr", - "hash": null, - "search": null, - "query": null, - "pathname": "/static/dsfr/dist/fonts/Spectral-ExtraBold.woff", - "path": "/static/dsfr/dist/fonts/Spectral-ExtraBold.woff", - "href": "https://aidantsconnect.beta.gouv.fr/static/dsfr/dist/fonts/Spectral-ExtraBold.woff" - }, - "link": "https://aidantsconnect.beta.gouv.fr/static/dsfr/dist/fonts/Spectral-ExtraBold.woff", - "line": "https://aidantsconnect.beta.gouv.fr/static/dsfr/dist/fonts/Spectral-ExtraBold.woff", - "broken": true + "id": "heartbleed", + "ip": "www.rdv-solidarites.fr/185.21.194.105", + "port": "443", + "severity": "OK", + "cve": "CVE-2014-0160", + "cwe": "CWE-119", + "finding": "not vulnerable, no heartbeat extension" }, { - "url": { - "protocol": "https:", - "slashes": true, - "auth": null, - "host": "aidantsconnect.beta.gouv.fr", - "port": null, - "hostname": "aidantsconnect.beta.gouv.fr", - "hash": null, - "search": null, - "query": null, - "pathname": "/static/dsfr/dist/icons/system/external-link-line.svg", - "path": "/static/dsfr/dist/icons/system/external-link-line.svg", - "href": "https://aidantsconnect.beta.gouv.fr/static/dsfr/dist/icons/system/external-link-line.svg" - }, - "link": "https://aidantsconnect.beta.gouv.fr/static/dsfr/dist/icons/system/external-link-line.svg", - "line": "https://aidantsconnect.beta.gouv.fr/static/dsfr/dist/icons/system/external-link-line.svg", - "broken": true + "id": "CCS", + "ip": "www.rdv-solidarites.fr/185.21.194.105", + "port": "443", + "severity": "OK", + "cve": "CVE-2014-0224", + "cwe": "CWE-310", + "finding": "not vulnerable" }, { - "url": { - "protocol": "https:", - "slashes": true, - "auth": null, - "host": "aidantsconnect.beta.gouv.fr", - "port": null, - "hostname": "aidantsconnect.beta.gouv.fr", - "hash": null, - "search": null, - "query": null, - "pathname": "/static/dsfr/dist/icons/system/fr--error-fill.svg", - "path": "/static/dsfr/dist/icons/system/fr--error-fill.svg", - "href": "https://aidantsconnect.beta.gouv.fr/static/dsfr/dist/icons/system/fr--error-fill.svg" - }, - "link": "https://aidantsconnect.beta.gouv.fr/static/dsfr/dist/icons/system/fr--error-fill.svg", - "line": "https://aidantsconnect.beta.gouv.fr/static/dsfr/dist/icons/system/fr--error-fill.svg", - "broken": true + "id": "ticketbleed", + "ip": "www.rdv-solidarites.fr/185.21.194.105", + "port": "443", + "severity": "OK", + "cve": "CVE-2016-9244", + "cwe": "CWE-200", + "finding": "not vulnerable" }, { - "url": { - "protocol": "https:", - "slashes": true, - "auth": null, - "host": "aidantsconnect.beta.gouv.fr", - "port": null, - "hostname": "aidantsconnect.beta.gouv.fr", - "hash": null, - "search": null, - "query": null, - "pathname": "/mentions-legales", - "path": "/mentions-legales", - "href": "https://aidantsconnect.beta.gouv.fr/mentions-legales" - }, - "link": "https://aidantsconnect.beta.gouv.fr/mentions-legales", - "line": "https://aidantsconnect.beta.gouv.fr/mentions-legales", - "broken": true + "id": "ROBOT", + "ip": "www.rdv-solidarites.fr/185.21.194.105", + "port": "443", + "severity": "OK", + "cve": "CVE-2017-17382 CVE-2017-17427 CVE-2017-17428 CVE-2017-13098 CVE-2017-1000385 CVE-2017-13099 CVE-2016-6883 CVE-2012-5081 CVE-2017-6168", + "cwe": "CWE-203", + "finding": "not vulnerable, no RSA key transport cipher" }, { - "url": { - "protocol": "https:", - "slashes": true, - "auth": null, - "host": "aidantsconnect.beta.gouv.fr", - "port": null, - "hostname": "aidantsconnect.beta.gouv.fr", - "hash": null, - "search": null, - "query": null, - "pathname": "/politique_confidentialite", - "path": "/politique_confidentialite", - "href": "https://aidantsconnect.beta.gouv.fr/politique_confidentialite" - }, - "link": "https://aidantsconnect.beta.gouv.fr/politique_confidentialite", - "line": "https://aidantsconnect.beta.gouv.fr/politique_confidentialite", - "broken": true + "id": "secure_renego", + "ip": "www.rdv-solidarites.fr/185.21.194.105", + "port": "443", + "severity": "OK", + "cwe": "CWE-310", + "finding": "supported" }, { - "url": { - "protocol": "https:", - "slashes": true, - "auth": null, - "host": "aidantsconnect.beta.gouv.fr", - "port": null, - "hostname": "aidantsconnect.beta.gouv.fr", - "hash": null, - "search": null, - "query": null, - "pathname": "/static/js/youtube-cookie.js", - "path": "/static/js/youtube-cookie.js", - "href": "https://aidantsconnect.beta.gouv.fr/static/js/youtube-cookie.js" - }, - "link": "https://aidantsconnect.beta.gouv.fr/static/js/youtube-cookie.js", - "line": "https://aidantsconnect.beta.gouv.fr/static/js/youtube-cookie.js", - "broken": true + "id": "secure_client_renego", + "ip": "www.rdv-solidarites.fr/185.21.194.105", + "port": "443", + "severity": "OK", + "cve": "CVE-2011-1473", + "cwe": "CWE-310", + "finding": "not vulnerable" }, { - "url": { - "protocol": "https:", - "slashes": true, - "auth": null, - "host": "aidantsconnect.beta.gouv.fr", - "port": null, - "hostname": "aidantsconnect.beta.gouv.fr", - "hash": null, - "search": null, - "query": null, - "pathname": "/static/dsfr/dist/fonts/Marianne-Regular.woff", - "path": "/static/dsfr/dist/fonts/Marianne-Regular.woff", - "href": "https://aidantsconnect.beta.gouv.fr/static/dsfr/dist/fonts/Marianne-Regular.woff" - }, - "link": "https://aidantsconnect.beta.gouv.fr/static/dsfr/dist/fonts/Marianne-Regular.woff", - "line": "https://aidantsconnect.beta.gouv.fr/static/dsfr/dist/fonts/Marianne-Regular.woff", - "broken": true + "id": "CRIME_TLS", + "ip": "www.rdv-solidarites.fr/185.21.194.105", + "port": "443", + "severity": "OK", + "cve": "CVE-2012-4929", + "cwe": "CWE-310", + "finding": "not vulnerable" }, { - "url": { - "protocol": "https:", - "slashes": true, - "auth": null, - "host": "aidantsconnect.beta.gouv.fr", - "port": null, - "hostname": "aidantsconnect.beta.gouv.fr", - "hash": null, - "search": null, - "query": null, - "pathname": "/static/dsfr/dist/fonts/Marianne-Regular_Italic.woff2", - "path": "/static/dsfr/dist/fonts/Marianne-Regular_Italic.woff2", - "href": "https://aidantsconnect.beta.gouv.fr/static/dsfr/dist/fonts/Marianne-Regular_Italic.woff2" - }, - "link": "https://aidantsconnect.beta.gouv.fr/static/dsfr/dist/fonts/Marianne-Regular_Italic.woff2", - "line": "https://aidantsconnect.beta.gouv.fr/static/dsfr/dist/fonts/Marianne-Regular_Italic.woff2", - "broken": true + "id": "BREACH", + "ip": "www.rdv-solidarites.fr/185.21.194.105", + "port": "443", + "severity": "MEDIUM", + "cve": "CVE-2013-3587", + "cwe": "CWE-310", + "finding": "potentially VULNERABLE, gzip HTTP compression detected - only supplied '/' tested" }, { - "url": { - "protocol": "https:", - "slashes": true, - "auth": null, - "host": "aidantsconnect.beta.gouv.fr", - "port": null, - "hostname": "aidantsconnect.beta.gouv.fr", - "hash": null, - "search": null, - "query": null, - "pathname": "/static/images/logo-aidants.svg", - "path": "/static/images/logo-aidants.svg", - "href": "https://aidantsconnect.beta.gouv.fr/static/images/logo-aidants.svg" - }, - "link": "https://aidantsconnect.beta.gouv.fr/static/images/logo-aidants.svg", - "line": "https://aidantsconnect.beta.gouv.fr/static/images/logo-aidants.svg", - "broken": true + "id": "POODLE_SSL", + "ip": "www.rdv-solidarites.fr/185.21.194.105", + "port": "443", + "severity": "OK", + "cve": "CVE-2014-3566", + "cwe": "CWE-310", + "finding": "not vulnerable, no SSLv3" }, { - "url": { - "protocol": "https:", - "slashes": true, - "auth": null, - "host": "aidantsconnect.beta.gouv.fr", - "port": null, - "hostname": "aidantsconnect.beta.gouv.fr", - "hash": null, - "search": null, - "query": null, - "pathname": "/static/js/newsletter-form.js", - "path": "/static/js/newsletter-form.js", - "href": "https://aidantsconnect.beta.gouv.fr/static/js/newsletter-form.js" - }, - "link": "https://aidantsconnect.beta.gouv.fr/static/js/newsletter-form.js", - "line": "https://aidantsconnect.beta.gouv.fr/static/js/newsletter-form.js", - "broken": true + "id": "fallback_SCSV", + "ip": "www.rdv-solidarites.fr/185.21.194.105", + "port": "443", + "severity": "OK", + "finding": "no protocol below TLS 1.2 offered" }, { - "url": { - "protocol": "https:", - "slashes": true, - "auth": null, - "host": "aidantsconnect.beta.gouv.fr", - "port": null, - "hostname": "aidantsconnect.beta.gouv.fr", - "hash": null, - "search": null, - "query": null, - "pathname": "/static/images/logo-fc-v2.png", - "path": "/static/images/logo-fc-v2.png", - "href": "https://aidantsconnect.beta.gouv.fr/static/images/logo-fc-v2.png" - }, - "link": "https://aidantsconnect.beta.gouv.fr/static/images/logo-fc-v2.png", - "line": "https://aidantsconnect.beta.gouv.fr/static/images/logo-fc-v2.png", - "broken": true + "id": "SWEET32", + "ip": "www.rdv-solidarites.fr/185.21.194.105", + "port": "443", + "severity": "OK", + "cve": "CVE-2016-2183 CVE-2016-6329", + "cwe": "CWE-327", + "finding": "not vulnerable" }, { - "url": { - "protocol": "https:", - "slashes": true, - "auth": null, - "host": "aidantsconnect.beta.gouv.fr", - "port": null, - "hostname": "aidantsconnect.beta.gouv.fr", - "hash": null, - "search": null, - "query": null, - "pathname": "/temoignages/magalie-bouet/", - "path": "/temoignages/magalie-bouet/", - "href": "https://aidantsconnect.beta.gouv.fr/temoignages/magalie-bouet/" - }, - "link": "https://aidantsconnect.beta.gouv.fr/temoignages/magalie-bouet/", - "line": "https://aidantsconnect.beta.gouv.fr/temoignages/magalie-bouet/", - "broken": true + "id": "FREAK", + "ip": "www.rdv-solidarites.fr/185.21.194.105", + "port": "443", + "severity": "OK", + "cve": "CVE-2015-0204", + "cwe": "CWE-310", + "finding": "not vulnerable" }, { - "url": { - "protocol": "https:", - "slashes": true, - "auth": null, - "host": "aidantsconnect.beta.gouv.fr", - "port": null, - "hostname": "aidantsconnect.beta.gouv.fr", - "hash": null, - "search": null, - "query": null, - "pathname": "/static/dsfr/dist/fonts/Marianne-Regular_Italic.woff", - "path": "/static/dsfr/dist/fonts/Marianne-Regular_Italic.woff", - "href": "https://aidantsconnect.beta.gouv.fr/static/dsfr/dist/fonts/Marianne-Regular_Italic.woff" - }, - "link": "https://aidantsconnect.beta.gouv.fr/static/dsfr/dist/fonts/Marianne-Regular_Italic.woff", - "line": "https://aidantsconnect.beta.gouv.fr/static/dsfr/dist/fonts/Marianne-Regular_Italic.woff", - "broken": true + "id": "DROWN", + "ip": "www.rdv-solidarites.fr/185.21.194.105", + "port": "443", + "severity": "OK", + "cve": "CVE-2016-0800 CVE-2016-0703", + "cwe": "CWE-310", + "finding": "not vulnerable on this host and port" }, { - "url": { - "protocol": "https:", - "slashes": true, - "auth": null, - "host": "aidantsconnect.beta.gouv.fr", - "port": null, - "hostname": "aidantsconnect.beta.gouv.fr", - "hash": null, - "search": null, - "query": null, - "pathname": "/static/images/outil.svg", - "path": "/static/images/outil.svg", - "href": "https://aidantsconnect.beta.gouv.fr/static/images/outil.svg" - }, - "link": "https://aidantsconnect.beta.gouv.fr/static/images/outil.svg", - "line": "https://aidantsconnect.beta.gouv.fr/static/images/outil.svg", - "broken": true + "id": "DROWN_hint", + "ip": "www.rdv-solidarites.fr/185.21.194.105", + "port": "443", + "severity": "INFO", + "cve": "CVE-2016-0800 CVE-2016-0703", + "cwe": "CWE-310", + "finding": "Make sure you don't use this certificate elsewhere with SSLv2 enabled services, see https://search.censys.io/search?resource=hosts&virtual_hosts=INCLUDE&q=633BD28D00F8947E110D214024F8B8BD21CBFC0BAC0FE9ADECBB467456A886A4" }, { - "url": { - "protocol": "https:", - "slashes": true, - "auth": null, - "host": "aidantsconnect.beta.gouv.fr", - "port": null, - "hostname": "aidantsconnect.beta.gouv.fr", - "hash": null, - "search": null, - "query": null, - "pathname": "/ressources/", - "path": "/ressources/", - "href": "https://aidantsconnect.beta.gouv.fr/ressources/" - }, - "link": "https://aidantsconnect.beta.gouv.fr/ressources/", - "line": "https://aidantsconnect.beta.gouv.fr/ressources/", - "broken": true + "id": "LOGJAM", + "ip": "www.rdv-solidarites.fr/185.21.194.105", + "port": "443", + "severity": "OK", + "cve": "CVE-2015-4000", + "cwe": "CWE-310", + "finding": "not vulnerable, no DH EXPORT ciphers," }, { - "url": { - "protocol": "https:", - "slashes": true, - "auth": null, - "host": "aidantsconnect.beta.gouv.fr", - "port": null, - "hostname": "aidantsconnect.beta.gouv.fr", - "hash": null, - "search": null, - "query": null, - "pathname": "/temoignages/temoignages/", - "path": "/temoignages/temoignages/", - "href": "https://aidantsconnect.beta.gouv.fr/temoignages/temoignages/" - }, - "link": "https://aidantsconnect.beta.gouv.fr/temoignages/temoignages/", - "line": "https://aidantsconnect.beta.gouv.fr/temoignages/temoignages/", - "broken": true + "id": "LOGJAM-common_primes", + "ip": "www.rdv-solidarites.fr/185.21.194.105", + "port": "443", + "severity": "OK", + "cve": "CVE-2015-4000", + "cwe": "CWE-310", + "finding": "--" }, { - "url": { - "protocol": "https:", - "slashes": true, - "auth": null, - "host": "aidantsconnect.beta.gouv.fr", - "port": null, - "hostname": "aidantsconnect.beta.gouv.fr", - "hash": null, - "search": null, - "query": null, - "pathname": "/static/dsfr/dist/fonts/Marianne-Bold.woff2", - "path": "/static/dsfr/dist/fonts/Marianne-Bold.woff2", - "href": "https://aidantsconnect.beta.gouv.fr/static/dsfr/dist/fonts/Marianne-Bold.woff2" - }, - "link": "https://aidantsconnect.beta.gouv.fr/static/dsfr/dist/fonts/Marianne-Bold.woff2", - "line": "https://aidantsconnect.beta.gouv.fr/static/dsfr/dist/fonts/Marianne-Bold.woff2", - "broken": true + "id": "BEAST", + "ip": "www.rdv-solidarites.fr/185.21.194.105", + "port": "443", + "severity": "OK", + "cve": "CVE-2011-3389", + "cwe": "CWE-20", + "finding": "not vulnerable, no SSL3 or TLS1" }, { - "url": { - "protocol": "https:", - "slashes": true, - "auth": null, - "host": "aidantsconnect.beta.gouv.fr", - "port": null, - "hostname": "aidantsconnect.beta.gouv.fr", - "hash": null, - "search": null, - "query": null, - "pathname": "/static/images/logo_ANCT.svg", - "path": "/static/images/logo_ANCT.svg", - "href": "https://aidantsconnect.beta.gouv.fr/static/images/logo_ANCT.svg" - }, - "link": "https://aidantsconnect.beta.gouv.fr/static/images/logo_ANCT.svg", - "line": "https://aidantsconnect.beta.gouv.fr/static/images/logo_ANCT.svg", - "broken": true + "id": "LUCKY13", + "ip": "www.rdv-solidarites.fr/185.21.194.105", + "port": "443", + "severity": "OK", + "cve": "CVE-2013-0169", + "cwe": "CWE-310", + "finding": "not vulnerable" }, { - "url": { - "protocol": "https:", - "slashes": true, - "auth": null, - "host": "aidantsconnect.beta.gouv.fr", - "port": null, - "hostname": "aidantsconnect.beta.gouv.fr", - "hash": null, - "search": null, - "query": null, - "pathname": "/static/dsfr/dist/fonts/Marianne-Light_Italic.woff2", - "path": "/static/dsfr/dist/fonts/Marianne-Light_Italic.woff2", - "href": "https://aidantsconnect.beta.gouv.fr/static/dsfr/dist/fonts/Marianne-Light_Italic.woff2" - }, - "link": "https://aidantsconnect.beta.gouv.fr/static/dsfr/dist/fonts/Marianne-Light_Italic.woff2", - "line": "https://aidantsconnect.beta.gouv.fr/static/dsfr/dist/fonts/Marianne-Light_Italic.woff2", - "broken": true + "id": "winshock", + "ip": "www.rdv-solidarites.fr/185.21.194.105", + "port": "443", + "severity": "OK", + "cve": "CVE-2014-6321", + "cwe": "CWE-94", + "finding": "not vulnerable" }, { - "url": { - "protocol": "https:", - "slashes": true, - "auth": null, - "host": "aidantsconnect.beta.gouv.fr", - "port": null, - "hostname": "aidantsconnect.beta.gouv.fr", - "hash": null, - "search": null, - "query": null, - "pathname": "/static/dsfr/dist/icons/weather/flashlight-fill.svg", - "path": "/static/dsfr/dist/icons/weather/flashlight-fill.svg", - "href": "https://aidantsconnect.beta.gouv.fr/static/dsfr/dist/icons/weather/flashlight-fill.svg" - }, - "link": "https://aidantsconnect.beta.gouv.fr/static/dsfr/dist/icons/weather/flashlight-fill.svg", - "line": "https://aidantsconnect.beta.gouv.fr/static/dsfr/dist/icons/weather/flashlight-fill.svg", - "broken": true + "id": "RC4", + "ip": "www.rdv-solidarites.fr/185.21.194.105", + "port": "443", + "severity": "OK", + "cve": "CVE-2013-2566 CVE-2015-2808", + "cwe": "CWE-310", + "finding": "not vulnerable" }, { - "url": { - "protocol": "https:", - "slashes": true, - "auth": null, - "host": "aidantsconnect.beta.gouv.fr", - "port": null, - "hostname": "aidantsconnect.beta.gouv.fr", - "hash": null, - "search": null, - "query": null, - "pathname": "/static/dsfr/dist/fonts/Marianne-Medium_Italic.woff2", - "path": "/static/dsfr/dist/fonts/Marianne-Medium_Italic.woff2", - "href": "https://aidantsconnect.beta.gouv.fr/static/dsfr/dist/fonts/Marianne-Medium_Italic.woff2" - }, - "link": "https://aidantsconnect.beta.gouv.fr/static/dsfr/dist/fonts/Marianne-Medium_Italic.woff2", - "line": "https://aidantsconnect.beta.gouv.fr/static/dsfr/dist/fonts/Marianne-Medium_Italic.woff2", - "broken": true + "id": "clientsimulation-android_60", + "ip": "www.rdv-solidarites.fr/185.21.194.105", + "port": "443", + "severity": "INFO", + "finding": "TLSv1.2 ECDHE-RSA-AES128-GCM-SHA256" }, { - "url": { - "protocol": "https:", - "slashes": true, - "auth": null, - "host": "aidantsconnect.beta.gouv.fr", - "port": null, - "hostname": "aidantsconnect.beta.gouv.fr", - "hash": null, - "search": null, - "query": null, - "pathname": "/static/images/logo-ANLCI.png", - "path": "/static/images/logo-ANLCI.png", - "href": "https://aidantsconnect.beta.gouv.fr/static/images/logo-ANLCI.png" - }, - "link": "https://aidantsconnect.beta.gouv.fr/static/images/logo-ANLCI.png", - "line": "https://aidantsconnect.beta.gouv.fr/static/images/logo-ANLCI.png", - "broken": true + "id": "clientsimulation-android_70", + "ip": "www.rdv-solidarites.fr/185.21.194.105", + "port": "443", + "severity": "INFO", + "finding": "TLSv1.2 ECDHE-RSA-AES256-GCM-SHA384" }, { - "url": { - "protocol": "https:", - "slashes": true, - "auth": null, - "host": "aidantsconnect.beta.gouv.fr", - "port": null, - "hostname": "aidantsconnect.beta.gouv.fr", - "hash": null, - "search": null, - "query": null, - "pathname": "/stats", - "path": "/stats", - "href": "https://aidantsconnect.beta.gouv.fr/stats" - }, - "link": "https://aidantsconnect.beta.gouv.fr/stats", - "line": "https://aidantsconnect.beta.gouv.fr/stats", - "broken": true + "id": "clientsimulation-android_81", + "ip": "www.rdv-solidarites.fr/185.21.194.105", + "port": "443", + "severity": "INFO", + "finding": "TLSv1.2 ECDHE-RSA-AES256-GCM-SHA384" }, { - "url": { - "protocol": "https:", - "slashes": true, - "auth": null, - "host": "aidantsconnect.beta.gouv.fr", - "port": null, - "hostname": "aidantsconnect.beta.gouv.fr", - "hash": null, - "search": null, - "query": null, - "pathname": "/static/images/securisation.svg", - "path": "/static/images/securisation.svg", - "href": "https://aidantsconnect.beta.gouv.fr/static/images/securisation.svg" - }, - "link": "https://aidantsconnect.beta.gouv.fr/static/images/securisation.svg", - "line": "https://aidantsconnect.beta.gouv.fr/static/images/securisation.svg", - "broken": true + "id": "clientsimulation-android_90", + "ip": "www.rdv-solidarites.fr/185.21.194.105", + "port": "443", + "severity": "INFO", + "finding": "TLSv1.3 TLS_AES_256_GCM_SHA384" }, { - "url": { - "protocol": "https:", - "slashes": true, - "auth": null, - "host": "aidantsconnect.beta.gouv.fr", - "port": null, - "hostname": "aidantsconnect.beta.gouv.fr", - "hash": null, - "search": null, - "query": null, - "pathname": "/static/dsfr/dist/icons/system/fr--info-fill.svg", - "path": "/static/dsfr/dist/icons/system/fr--info-fill.svg", - "href": "https://aidantsconnect.beta.gouv.fr/static/dsfr/dist/icons/system/fr--info-fill.svg" - }, - "link": "https://aidantsconnect.beta.gouv.fr/static/dsfr/dist/icons/system/fr--info-fill.svg", - "line": "https://aidantsconnect.beta.gouv.fr/static/dsfr/dist/icons/system/fr--info-fill.svg", - "broken": true + "id": "clientsimulation-android_X", + "ip": "www.rdv-solidarites.fr/185.21.194.105", + "port": "443", + "severity": "INFO", + "finding": "TLSv1.3 TLS_AES_256_GCM_SHA384" + }, + { + "id": "clientsimulation-android_11", + "ip": "www.rdv-solidarites.fr/185.21.194.105", + "port": "443", + "severity": "INFO", + "finding": "TLSv1.3 TLS_AES_256_GCM_SHA384" }, { - "url": { - "protocol": "https:", - "slashes": true, - "auth": null, - "host": "aidantsconnect.beta.gouv.fr", - "port": null, - "hostname": "aidantsconnect.beta.gouv.fr", - "hash": null, - "search": null, - "query": null, - "pathname": "/accessibilite", - "path": "/accessibilite", - "href": "https://aidantsconnect.beta.gouv.fr/accessibilite" - }, - "link": "https://aidantsconnect.beta.gouv.fr/accessibilite", - "line": "https://aidantsconnect.beta.gouv.fr/accessibilite", - "broken": true + "id": "clientsimulation-android_12", + "ip": "www.rdv-solidarites.fr/185.21.194.105", + "port": "443", + "severity": "INFO", + "finding": "TLSv1.3 TLS_AES_256_GCM_SHA384" }, { - "url": { - "protocol": "https:", - "slashes": true, - "auth": null, - "host": "aidantsconnect.beta.gouv.fr", - "port": null, - "hostname": "aidantsconnect.beta.gouv.fr", - "hash": null, - "search": null, - "query": null, - "pathname": "/stats/", - "path": "/stats/", - "href": "https://aidantsconnect.beta.gouv.fr/stats/" - }, - "link": "https://aidantsconnect.beta.gouv.fr/stats/", - "line": "https://aidantsconnect.beta.gouv.fr/stats/", - "broken": true + "id": "clientsimulation-chrome_79_win10", + "ip": "www.rdv-solidarites.fr/185.21.194.105", + "port": "443", + "severity": "INFO", + "finding": "TLSv1.3 TLS_AES_256_GCM_SHA384" }, { - "url": { - "protocol": "https:", - "slashes": true, - "auth": null, - "host": "aidantsconnect.beta.gouv.fr", - "port": null, - "hostname": "aidantsconnect.beta.gouv.fr", - "hash": null, - "search": null, - "query": null, - "pathname": "/static/dsfr/dist/icons/system/close-line.svg", - "path": "/static/dsfr/dist/icons/system/close-line.svg", - "href": "https://aidantsconnect.beta.gouv.fr/static/dsfr/dist/icons/system/close-line.svg" - }, - "link": "https://aidantsconnect.beta.gouv.fr/static/dsfr/dist/icons/system/close-line.svg", - "line": "https://aidantsconnect.beta.gouv.fr/static/dsfr/dist/icons/system/close-line.svg", - "broken": true + "id": "clientsimulation-chrome_101_win10", + "ip": "www.rdv-solidarites.fr/185.21.194.105", + "port": "443", + "severity": "INFO", + "finding": "TLSv1.3 TLS_AES_256_GCM_SHA384" }, { - "url": { - "protocol": "https:", - "slashes": true, - "auth": null, - "host": "aidantsconnect.beta.gouv.fr", - "port": null, - "hostname": "aidantsconnect.beta.gouv.fr", - "hash": null, - "search": null, - "query": null, - "pathname": "/static/js/basicLightbox.min.js", - "path": "/static/js/basicLightbox.min.js", - "href": "https://aidantsconnect.beta.gouv.fr/static/js/basicLightbox.min.js" - }, - "link": "https://aidantsconnect.beta.gouv.fr/static/js/basicLightbox.min.js", - "line": "https://aidantsconnect.beta.gouv.fr/static/js/basicLightbox.min.js", - "broken": true + "id": "clientsimulation-firefox_66_win81", + "ip": "www.rdv-solidarites.fr/185.21.194.105", + "port": "443", + "severity": "INFO", + "finding": "TLSv1.3 TLS_AES_256_GCM_SHA384" }, { - "url": { - "protocol": "https:", - "slashes": true, - "auth": null, - "host": "aidantsconnect.beta.gouv.fr", - "port": null, - "hostname": "aidantsconnect.beta.gouv.fr", - "hash": null, - "search": null, - "query": null, - "pathname": "/static/dsfr/dist/fonts/Spectral-ExtraBold.woff2", - "path": "/static/dsfr/dist/fonts/Spectral-ExtraBold.woff2", - "href": "https://aidantsconnect.beta.gouv.fr/static/dsfr/dist/fonts/Spectral-ExtraBold.woff2" - }, - "link": "https://aidantsconnect.beta.gouv.fr/static/dsfr/dist/fonts/Spectral-ExtraBold.woff2", - "line": "https://aidantsconnect.beta.gouv.fr/static/dsfr/dist/fonts/Spectral-ExtraBold.woff2", - "broken": true + "id": "clientsimulation-firefox_100_win10", + "ip": "www.rdv-solidarites.fr/185.21.194.105", + "port": "443", + "severity": "INFO", + "finding": "TLSv1.3 TLS_AES_256_GCM_SHA384" }, { - "url": { - "protocol": "https:", - "slashes": true, - "auth": null, - "host": "aidantsconnect.beta.gouv.fr", - "port": null, - "hostname": "aidantsconnect.beta.gouv.fr", - "hash": null, - "search": null, - "query": null, - "pathname": "/static/dsfr/dist/icons/user/team-line.svg", - "path": "/static/dsfr/dist/icons/user/team-line.svg", - "href": "https://aidantsconnect.beta.gouv.fr/static/dsfr/dist/icons/user/team-line.svg" - }, - "link": "https://aidantsconnect.beta.gouv.fr/static/dsfr/dist/icons/user/team-line.svg", - "line": "https://aidantsconnect.beta.gouv.fr/static/dsfr/dist/icons/user/team-line.svg", - "broken": true + "id": "clientsimulation-ie_6_xp", + "ip": "www.rdv-solidarites.fr/185.21.194.105", + "port": "443", + "severity": "INFO", + "finding": "No connection" }, { - "url": { - "protocol": "https:", - "slashes": true, - "auth": null, - "host": "aidantsconnect.beta.gouv.fr", - "port": null, - "hostname": "aidantsconnect.beta.gouv.fr", - "hash": null, - "search": null, - "query": null, - "pathname": "/static/dsfr/dist/icons/business/briefcase-fill.svg", - "path": "/static/dsfr/dist/icons/business/briefcase-fill.svg", - "href": "https://aidantsconnect.beta.gouv.fr/static/dsfr/dist/icons/business/briefcase-fill.svg" - }, - "link": "https://aidantsconnect.beta.gouv.fr/static/dsfr/dist/icons/business/briefcase-fill.svg", - "line": "https://aidantsconnect.beta.gouv.fr/static/dsfr/dist/icons/business/briefcase-fill.svg", - "broken": true + "id": "clientsimulation-ie_8_win7", + "ip": "www.rdv-solidarites.fr/185.21.194.105", + "port": "443", + "severity": "INFO", + "finding": "No connection" }, { - "url": { - "protocol": "https:", - "slashes": true, - "auth": null, - "host": "aidantsconnect.beta.gouv.fr", - "port": null, - "hostname": "aidantsconnect.beta.gouv.fr", - "hash": null, - "search": null, - "query": null, - "pathname": "/static/dsfr/dist/icons/system/fr--warning-fill.svg", - "path": "/static/dsfr/dist/icons/system/fr--warning-fill.svg", - "href": "https://aidantsconnect.beta.gouv.fr/static/dsfr/dist/icons/system/fr--warning-fill.svg" - }, - "link": "https://aidantsconnect.beta.gouv.fr/static/dsfr/dist/icons/system/fr--warning-fill.svg", - "line": "https://aidantsconnect.beta.gouv.fr/static/dsfr/dist/icons/system/fr--warning-fill.svg", - "broken": true + "id": "clientsimulation-ie_8_xp", + "ip": "www.rdv-solidarites.fr/185.21.194.105", + "port": "443", + "severity": "INFO", + "finding": "No connection" }, { - "url": { - "protocol": "https:", - "slashes": true, - "auth": null, - "host": "aidantsconnect.beta.gouv.fr", - "port": null, - "hostname": "aidantsconnect.beta.gouv.fr", - "hash": null, - "search": null, - "query": null, - "pathname": "/static/dsfr/dist/fonts/Marianne-Medium_Italic.woff", - "path": "/static/dsfr/dist/fonts/Marianne-Medium_Italic.woff", - "href": "https://aidantsconnect.beta.gouv.fr/static/dsfr/dist/fonts/Marianne-Medium_Italic.woff" - }, - "link": "https://aidantsconnect.beta.gouv.fr/static/dsfr/dist/fonts/Marianne-Medium_Italic.woff", - "line": "https://aidantsconnect.beta.gouv.fr/static/dsfr/dist/fonts/Marianne-Medium_Italic.woff", - "broken": true + "id": "clientsimulation-ie_11_win7", + "ip": "www.rdv-solidarites.fr/185.21.194.105", + "port": "443", + "severity": "INFO", + "finding": "TLSv1.2 DHE-RSA-AES256-GCM-SHA384" }, { - "url": { - "protocol": "https:", - "slashes": true, - "auth": null, - "host": "aidantsconnect.beta.gouv.fr", - "port": null, - "hostname": "aidantsconnect.beta.gouv.fr", - "hash": null, - "search": null, - "query": null, - "pathname": "/static/dsfr/dist/fonts/Spectral-Regular.woff2", - "path": "/static/dsfr/dist/fonts/Spectral-Regular.woff2", - "href": "https://aidantsconnect.beta.gouv.fr/static/dsfr/dist/fonts/Spectral-Regular.woff2" - }, - "link": "https://aidantsconnect.beta.gouv.fr/static/dsfr/dist/fonts/Spectral-Regular.woff2", - "line": "https://aidantsconnect.beta.gouv.fr/static/dsfr/dist/fonts/Spectral-Regular.woff2", - "broken": true + "id": "clientsimulation-ie_11_win81", + "ip": "www.rdv-solidarites.fr/185.21.194.105", + "port": "443", + "severity": "INFO", + "finding": "TLSv1.2 DHE-RSA-AES256-GCM-SHA384" }, { - "url": { - "protocol": "https:", - "slashes": true, - "auth": null, - "host": "aidantsconnect.beta.gouv.fr", - "port": null, - "hostname": "aidantsconnect.beta.gouv.fr", - "hash": null, - "search": null, - "query": null, - "pathname": "/cgu/aidantsconnect.beta.gouv.fr", - "path": "/cgu/aidantsconnect.beta.gouv.fr", - "href": "https://aidantsconnect.beta.gouv.fr/cgu/aidantsconnect.beta.gouv.fr" - }, - "link": "https://aidantsconnect.beta.gouv.fr/cgu/aidantsconnect.beta.gouv.fr", - "line": "https://aidantsconnect.beta.gouv.fr/cgu/aidantsconnect.beta.gouv.fr", - "broken": true + "id": "clientsimulation-ie_11_winphone81", + "ip": "www.rdv-solidarites.fr/185.21.194.105", + "port": "443", + "severity": "INFO", + "finding": "No connection" }, { - "url": { - "protocol": "https:", - "slashes": true, - "auth": null, - "host": "aidantsconnect.beta.gouv.fr", - "port": null, - "hostname": "aidantsconnect.beta.gouv.fr", - "hash": null, - "search": null, - "query": null, - "pathname": "/static/dsfr/dist/dsfr/dsfr.module.min.js", - "path": "/static/dsfr/dist/dsfr/dsfr.module.min.js", - "href": "https://aidantsconnect.beta.gouv.fr/static/dsfr/dist/dsfr/dsfr.module.min.js" - }, - "link": "https://aidantsconnect.beta.gouv.fr/static/dsfr/dist/dsfr/dsfr.module.min.js", - "line": "https://aidantsconnect.beta.gouv.fr/static/dsfr/dist/dsfr/dsfr.module.min.js", - "broken": true + "id": "clientsimulation-ie_11_win10", + "ip": "www.rdv-solidarites.fr/185.21.194.105", + "port": "443", + "severity": "INFO", + "finding": "TLSv1.2 ECDHE-RSA-AES256-GCM-SHA384" }, { - "url": { - "protocol": "https:", - "slashes": true, - "auth": null, - "host": "aidantsconnect.beta.gouv.fr", - "port": null, - "hostname": "aidantsconnect.beta.gouv.fr", - "hash": null, - "search": null, - "query": null, - "pathname": "/static/dsfr/dist/icons/system/question-line.svg", - "path": "/static/dsfr/dist/icons/system/question-line.svg", - "href": "https://aidantsconnect.beta.gouv.fr/static/dsfr/dist/icons/system/question-line.svg" - }, - "link": "https://aidantsconnect.beta.gouv.fr/static/dsfr/dist/icons/system/question-line.svg", - "line": "https://aidantsconnect.beta.gouv.fr/static/dsfr/dist/icons/system/question-line.svg", - "broken": true + "id": "clientsimulation-edge_15_win10", + "ip": "www.rdv-solidarites.fr/185.21.194.105", + "port": "443", + "severity": "INFO", + "finding": "TLSv1.2 ECDHE-RSA-AES256-GCM-SHA384" }, { - "url": { - "protocol": "https:", - "slashes": true, - "auth": null, - "host": "aidantsconnect.beta.gouv.fr", - "port": null, - "hostname": "aidantsconnect.beta.gouv.fr", - "hash": null, - "search": null, - "query": null, - "pathname": "/static/images/default-profile-picture.png", - "path": "/static/images/default-profile-picture.png", - "href": "https://aidantsconnect.beta.gouv.fr/static/images/default-profile-picture.png" - }, - "link": "https://aidantsconnect.beta.gouv.fr/static/images/default-profile-picture.png", - "line": "https://aidantsconnect.beta.gouv.fr/static/images/default-profile-picture.png", - "broken": true + "id": "clientsimulation-edge_101_win10_21h2", + "ip": "www.rdv-solidarites.fr/185.21.194.105", + "port": "443", + "severity": "INFO", + "finding": "TLSv1.3 TLS_AES_256_GCM_SHA384" }, { - "url": { - "protocol": "https:", - "slashes": true, - "auth": null, - "host": "aidantsconnect.beta.gouv.fr", - "port": null, - "hostname": "aidantsconnect.beta.gouv.fr", - "hash": null, - "search": null, - "query": null, - "pathname": "/static/images/accompagnement.svg", - "path": "/static/images/accompagnement.svg", - "href": "https://aidantsconnect.beta.gouv.fr/static/images/accompagnement.svg" - }, - "link": "https://aidantsconnect.beta.gouv.fr/static/images/accompagnement.svg", - "line": "https://aidantsconnect.beta.gouv.fr/static/images/accompagnement.svg", - "broken": true + "id": "clientsimulation-safari_121_ios_122", + "ip": "www.rdv-solidarites.fr/185.21.194.105", + "port": "443", + "severity": "INFO", + "finding": "TLSv1.3 TLS_AES_256_GCM_SHA384" }, { - "url": { - "protocol": "https:", - "slashes": true, - "auth": null, - "host": "aidantsconnect.beta.gouv.fr", - "port": null, - "hostname": "aidantsconnect.beta.gouv.fr", - "hash": null, - "search": null, - "query": null, - "pathname": "/static/dsfr/dist/fonts/Marianne-Light_Italic.woff", - "path": "/static/dsfr/dist/fonts/Marianne-Light_Italic.woff", - "href": "https://aidantsconnect.beta.gouv.fr/static/dsfr/dist/fonts/Marianne-Light_Italic.woff" - }, - "link": "https://aidantsconnect.beta.gouv.fr/static/dsfr/dist/fonts/Marianne-Light_Italic.woff", - "line": "https://aidantsconnect.beta.gouv.fr/static/dsfr/dist/fonts/Marianne-Light_Italic.woff", - "broken": true + "id": "clientsimulation-safari_130_osx_10146", + "ip": "www.rdv-solidarites.fr/185.21.194.105", + "port": "443", + "severity": "INFO", + "finding": "TLSv1.3 TLS_AES_256_GCM_SHA384" }, { - "url": { - "protocol": "https:", - "slashes": true, - "auth": null, - "host": "aidantsconnect.beta.gouv.fr", - "port": null, - "hostname": "aidantsconnect.beta.gouv.fr", - "hash": null, - "search": null, - "query": null, - "pathname": "/static/dsfr/dist/fonts/Marianne-Bold_Italic.woff2", - "path": "/static/dsfr/dist/fonts/Marianne-Bold_Italic.woff2", - "href": "https://aidantsconnect.beta.gouv.fr/static/dsfr/dist/fonts/Marianne-Bold_Italic.woff2" - }, - "link": "https://aidantsconnect.beta.gouv.fr/static/dsfr/dist/fonts/Marianne-Bold_Italic.woff2", - "line": "https://aidantsconnect.beta.gouv.fr/static/dsfr/dist/fonts/Marianne-Bold_Italic.woff2", - "broken": true + "id": "clientsimulation-safari_154_osx_1231", + "ip": "www.rdv-solidarites.fr/185.21.194.105", + "port": "443", + "severity": "INFO", + "finding": "TLSv1.3 TLS_AES_256_GCM_SHA384" }, { - "url": { - "protocol": "https:", - "slashes": true, - "auth": null, - "host": "aidantsconnect.beta.gouv.fr", - "port": null, - "hostname": "aidantsconnect.beta.gouv.fr", - "hash": null, - "search": null, - "query": null, - "pathname": "/static/dsfr/dist/dsfr/dsfr.nomodule.min.js", - "path": "/static/dsfr/dist/dsfr/dsfr.nomodule.min.js", - "href": "https://aidantsconnect.beta.gouv.fr/static/dsfr/dist/dsfr/dsfr.nomodule.min.js" - }, - "link": "https://aidantsconnect.beta.gouv.fr/static/dsfr/dist/dsfr/dsfr.nomodule.min.js", - "line": "https://aidantsconnect.beta.gouv.fr/static/dsfr/dist/dsfr/dsfr.nomodule.min.js", - "broken": true + "id": "clientsimulation-java_7u25", + "ip": "www.rdv-solidarites.fr/185.21.194.105", + "port": "443", + "severity": "INFO", + "finding": "No connection" }, { - "url": { - "protocol": "https:", - "slashes": true, - "auth": null, - "host": "aidantsconnect.beta.gouv.fr", - "port": null, - "hostname": "aidantsconnect.beta.gouv.fr", - "hash": null, - "search": null, - "query": null, - "pathname": "/static/dsfr/dist/fonts/Marianne-Bold.woff", - "path": "/static/dsfr/dist/fonts/Marianne-Bold.woff", - "href": "https://aidantsconnect.beta.gouv.fr/static/dsfr/dist/fonts/Marianne-Bold.woff" - }, - "link": "https://aidantsconnect.beta.gouv.fr/static/dsfr/dist/fonts/Marianne-Bold.woff", - "line": "https://aidantsconnect.beta.gouv.fr/static/dsfr/dist/fonts/Marianne-Bold.woff", - "broken": true + "id": "clientsimulation-java_8u161", + "ip": "www.rdv-solidarites.fr/185.21.194.105", + "port": "443", + "severity": "INFO", + "finding": "TLSv1.2 ECDHE-RSA-AES256-GCM-SHA384" }, { - "url": { - "protocol": "https:", - "slashes": true, - "auth": null, - "host": "aidantsconnect.beta.gouv.fr", - "port": null, - "hostname": "aidantsconnect.beta.gouv.fr", - "hash": null, - "search": null, - "query": null, - "pathname": "/faq/", - "path": "/faq/", - "href": "https://aidantsconnect.beta.gouv.fr/faq/" - }, - "link": "https://aidantsconnect.beta.gouv.fr/faq/", - "line": "https://aidantsconnect.beta.gouv.fr/faq/", - "broken": true + "id": "clientsimulation-java1102", + "ip": "www.rdv-solidarites.fr/185.21.194.105", + "port": "443", + "severity": "INFO", + "finding": "TLSv1.3 TLS_AES_256_GCM_SHA384" }, { - "url": { - "protocol": "https:", - "slashes": true, - "auth": null, - "host": "aidantsconnect.beta.gouv.fr", - "port": null, - "hostname": "aidantsconnect.beta.gouv.fr", - "hash": null, - "search": null, - "query": null, - "pathname": "/static/dsfr/dist/icons/user/account-circle-fill.svg", - "path": "/static/dsfr/dist/icons/user/account-circle-fill.svg", - "href": "https://aidantsconnect.beta.gouv.fr/static/dsfr/dist/icons/user/account-circle-fill.svg" - }, - "link": "https://aidantsconnect.beta.gouv.fr/static/dsfr/dist/icons/user/account-circle-fill.svg", - "line": "https://aidantsconnect.beta.gouv.fr/static/dsfr/dist/icons/user/account-circle-fill.svg", - "broken": true + "id": "clientsimulation-java1703", + "ip": "www.rdv-solidarites.fr/185.21.194.105", + "port": "443", + "severity": "INFO", + "finding": "TLSv1.3 TLS_AES_256_GCM_SHA384" }, { - "url": { - "protocol": "https:", - "slashes": true, - "auth": null, - "host": "aidantsconnect.beta.gouv.fr", - "port": null, - "hostname": "aidantsconnect.beta.gouv.fr", - "hash": null, - "search": null, - "query": null, - "pathname": "/static/dsfr/dist/fonts/Marianne-Medium.woff", - "path": "/static/dsfr/dist/fonts/Marianne-Medium.woff", - "href": "https://aidantsconnect.beta.gouv.fr/static/dsfr/dist/fonts/Marianne-Medium.woff" - }, - "link": "https://aidantsconnect.beta.gouv.fr/static/dsfr/dist/fonts/Marianne-Medium.woff", - "line": "https://aidantsconnect.beta.gouv.fr/static/dsfr/dist/fonts/Marianne-Medium.woff", - "broken": true + "id": "clientsimulation-go_1178", + "ip": "www.rdv-solidarites.fr/185.21.194.105", + "port": "443", + "severity": "INFO", + "finding": "TLSv1.3 TLS_AES_256_GCM_SHA384" }, { - "url": { - "protocol": "https:", - "slashes": true, - "auth": null, - "host": "aidantsconnect.beta.gouv.fr", - "port": null, - "hostname": "aidantsconnect.beta.gouv.fr", - "hash": null, - "search": null, - "query": null, - "pathname": "/static/js/lightbox-video.js", - "path": "/static/js/lightbox-video.js", - "href": "https://aidantsconnect.beta.gouv.fr/static/js/lightbox-video.js" - }, - "link": "https://aidantsconnect.beta.gouv.fr/static/js/lightbox-video.js", - "line": "https://aidantsconnect.beta.gouv.fr/static/js/lightbox-video.js", - "broken": true + "id": "clientsimulation-libressl_283", + "ip": "www.rdv-solidarites.fr/185.21.194.105", + "port": "443", + "severity": "INFO", + "finding": "TLSv1.2 ECDHE-RSA-AES256-GCM-SHA384" }, { - "url": { - "protocol": "https:", - "slashes": true, - "auth": null, - "host": "aidantsconnect.beta.gouv.fr", - "port": null, - "hostname": "aidantsconnect.beta.gouv.fr", - "hash": null, - "search": null, - "query": null, - "pathname": "/cgu", - "path": "/cgu", - "href": "https://aidantsconnect.beta.gouv.fr/cgu" - }, - "link": "https://aidantsconnect.beta.gouv.fr/cgu", - "line": "https://aidantsconnect.beta.gouv.fr/cgu", - "broken": true + "id": "clientsimulation-openssl_102e", + "ip": "www.rdv-solidarites.fr/185.21.194.105", + "port": "443", + "severity": "INFO", + "finding": "TLSv1.2 ECDHE-RSA-AES256-GCM-SHA384" }, { - "url": { - "protocol": "https:", - "slashes": true, - "auth": null, - "host": "aidantsconnect.beta.gouv.fr", - "port": null, - "hostname": "aidantsconnect.beta.gouv.fr", - "hash": null, - "search": null, - "query": null, - "pathname": "/static/images/more-testimonies.png", - "path": "/static/images/more-testimonies.png", - "href": "https://aidantsconnect.beta.gouv.fr/static/images/more-testimonies.png" - }, - "link": "https://aidantsconnect.beta.gouv.fr/static/images/more-testimonies.png", - "line": "https://aidantsconnect.beta.gouv.fr/static/images/more-testimonies.png", - "broken": true + "id": "clientsimulation-openssl_110l", + "ip": "www.rdv-solidarites.fr/185.21.194.105", + "port": "443", + "severity": "INFO", + "finding": "TLSv1.2 ECDHE-RSA-AES256-GCM-SHA384" }, { - "url": { - "protocol": "https:", - "slashes": true, - "auth": null, - "host": "aidantsconnect.beta.gouv.fr", - "port": null, - "hostname": "aidantsconnect.beta.gouv.fr", - "hash": null, - "search": null, - "query": null, - "pathname": "/static/dsfr/dist/icons/system/fr--success-fill.svg", - "path": "/static/dsfr/dist/icons/system/fr--success-fill.svg", - "href": "https://aidantsconnect.beta.gouv.fr/static/dsfr/dist/icons/system/fr--success-fill.svg" - }, - "link": "https://aidantsconnect.beta.gouv.fr/static/dsfr/dist/icons/system/fr--success-fill.svg", - "line": "https://aidantsconnect.beta.gouv.fr/static/dsfr/dist/icons/system/fr--success-fill.svg", - "broken": true + "id": "clientsimulation-openssl_111d", + "ip": "www.rdv-solidarites.fr/185.21.194.105", + "port": "443", + "severity": "INFO", + "finding": "TLSv1.3 TLS_AES_256_GCM_SHA384" }, { - "url": { - "protocol": "https:", - "slashes": true, - "auth": null, - "host": "aidantsconnect.beta.gouv.fr", - "port": null, - "hostname": "aidantsconnect.beta.gouv.fr", - "hash": null, - "search": null, - "query": null, - "pathname": "/static/images/aidants.svg", - "path": "/static/images/aidants.svg", - "href": "https://aidantsconnect.beta.gouv.fr/static/images/aidants.svg" - }, - "link": "https://aidantsconnect.beta.gouv.fr/static/images/aidants.svg", - "line": "https://aidantsconnect.beta.gouv.fr/static/images/aidants.svg", - "broken": true + "id": "clientsimulation-openssl_303", + "ip": "www.rdv-solidarites.fr/185.21.194.105", + "port": "443", + "severity": "INFO", + "finding": "TLSv1.3 TLS_AES_256_GCM_SHA384" }, { - "url": { - "protocol": "https:", - "slashes": true, - "auth": null, - "host": "aidantsconnect.beta.gouv.fr", - "port": null, - "hostname": "aidantsconnect.beta.gouv.fr", - "hash": null, - "search": null, - "query": null, - "pathname": "/temoignages/", - "path": "/temoignages/", - "href": "https://aidantsconnect.beta.gouv.fr/temoignages/" - }, - "link": "https://aidantsconnect.beta.gouv.fr/temoignages/", - "line": "https://aidantsconnect.beta.gouv.fr/temoignages/", - "broken": true + "id": "clientsimulation-apple_mail_16_0", + "ip": "www.rdv-solidarites.fr/185.21.194.105", + "port": "443", + "severity": "INFO", + "finding": "TLSv1.2 ECDHE-RSA-AES256-GCM-SHA384" }, { - "url": { - "protocol": "https:", - "slashes": true, - "auth": null, - "host": "aidantsconnect.beta.gouv.fr", - "port": null, - "hostname": "aidantsconnect.beta.gouv.fr", - "hash": null, - "search": null, - "query": null, - "pathname": "/static/dsfr/dist/icons/media/fullscreen-line.svg", - "path": "/static/dsfr/dist/icons/media/fullscreen-line.svg", - "href": "https://aidantsconnect.beta.gouv.fr/static/dsfr/dist/icons/media/fullscreen-line.svg" - }, - "link": "https://aidantsconnect.beta.gouv.fr/static/dsfr/dist/icons/media/fullscreen-line.svg", - "line": "https://aidantsconnect.beta.gouv.fr/static/dsfr/dist/icons/media/fullscreen-line.svg", - "broken": true + "id": "clientsimulation-thunderbird_91_9", + "ip": "www.rdv-solidarites.fr/185.21.194.105", + "port": "443", + "severity": "INFO", + "finding": "TLSv1.3 TLS_AES_256_GCM_SHA384" }, { - "url": { - "protocol": "https:", - "slashes": true, - "auth": null, - "host": "aidantsconnect.beta.gouv.fr", - "port": null, - "hostname": "aidantsconnect.beta.gouv.fr", - "hash": null, - "search": null, - "query": null, - "pathname": "/static/js/cookie-banner.js", - "path": "/static/js/cookie-banner.js", - "href": "https://aidantsconnect.beta.gouv.fr/static/js/cookie-banner.js" - }, - "link": "https://aidantsconnect.beta.gouv.fr/static/js/cookie-banner.js", - "line": "https://aidantsconnect.beta.gouv.fr/static/js/cookie-banner.js", - "broken": true + "id": "rating_spec", + "ip": "www.rdv-solidarites.fr/185.21.194.105", + "port": "443", + "severity": "INFO", + "finding": "SSL Labs's 'SSL Server Rating Guide' (version 2009q from 2020-01-30)" }, { - "url": { - "protocol": "https:", - "slashes": true, - "auth": null, - "host": "aidantsconnect.beta.gouv.fr", - "port": null, - "hostname": "aidantsconnect.beta.gouv.fr", - "hash": null, - "search": null, - "query": null, - "pathname": "/faq", - "path": "/faq", - "href": "https://aidantsconnect.beta.gouv.fr/faq" - }, - "link": "https://aidantsconnect.beta.gouv.fr/faq", - "line": "https://aidantsconnect.beta.gouv.fr/faq", - "broken": true + "id": "rating_doc", + "ip": "www.rdv-solidarites.fr/185.21.194.105", + "port": "443", + "severity": "INFO", + "finding": "https://github.com/ssllabs/research/wiki/SSL-Server-Rating-Guide" }, { - "url": { - "protocol": "https:", - "slashes": true, - "auth": null, - "host": "aidantsconnect.beta.gouv.fr", - "port": null, - "hostname": "aidantsconnect.beta.gouv.fr", - "hash": null, - "search": null, - "query": null, - "pathname": "/static/dsfr/dist/fonts/Marianne-Regular.woff2", - "path": "/static/dsfr/dist/fonts/Marianne-Regular.woff2", - "href": "https://aidantsconnect.beta.gouv.fr/static/dsfr/dist/fonts/Marianne-Regular.woff2" - }, - "link": "https://aidantsconnect.beta.gouv.fr/static/dsfr/dist/fonts/Marianne-Regular.woff2", - "line": "https://aidantsconnect.beta.gouv.fr/static/dsfr/dist/fonts/Marianne-Regular.woff2", - "broken": true + "id": "protocol_support_score", + "ip": "www.rdv-solidarites.fr/185.21.194.105", + "port": "443", + "severity": "INFO", + "finding": "100" }, { - "url": { - "protocol": "https:", - "slashes": true, - "auth": null, - "host": "aidantsconnect.beta.gouv.fr", - "port": null, - "hostname": "aidantsconnect.beta.gouv.fr", - "hash": null, - "search": null, - "query": null, - "pathname": "/static/dsfr/dist/icons/system/arrow-down-s-line.svg", - "path": "/static/dsfr/dist/icons/system/arrow-down-s-line.svg", - "href": "https://aidantsconnect.beta.gouv.fr/static/dsfr/dist/icons/system/arrow-down-s-line.svg" - }, - "link": "https://aidantsconnect.beta.gouv.fr/static/dsfr/dist/icons/system/arrow-down-s-line.svg", - "line": "https://aidantsconnect.beta.gouv.fr/static/dsfr/dist/icons/system/arrow-down-s-line.svg", - "broken": true + "id": "protocol_support_score_weighted", + "ip": "www.rdv-solidarites.fr/185.21.194.105", + "port": "443", + "severity": "INFO", + "finding": "30" }, { - "url": { - "protocol": "https:", - "slashes": true, - "auth": null, - "host": "aidantsconnect.beta.gouv.fr", - "port": null, - "hostname": "aidantsconnect.beta.gouv.fr", - "hash": null, - "search": null, - "query": null, - "pathname": "/static/dsfr/dist/icons/system/fr--theme-fill.svg", - "path": "/static/dsfr/dist/icons/system/fr--theme-fill.svg", - "href": "https://aidantsconnect.beta.gouv.fr/static/dsfr/dist/icons/system/fr--theme-fill.svg" - }, - "link": "https://aidantsconnect.beta.gouv.fr/static/dsfr/dist/icons/system/fr--theme-fill.svg", - "line": "https://aidantsconnect.beta.gouv.fr/static/dsfr/dist/icons/system/fr--theme-fill.svg", - "broken": true + "id": "key_exchange_score", + "ip": "www.rdv-solidarites.fr/185.21.194.105", + "port": "443", + "severity": "INFO", + "finding": "90" }, { - "url": { - "protocol": "https:", - "slashes": true, - "auth": null, - "host": "aidantsconnect.beta.gouv.fr", - "port": null, - "hostname": "aidantsconnect.beta.gouv.fr", - "hash": null, - "search": null, - "query": null, - "pathname": "/static/dsfr/dist/fonts/Marianne-Medium.woff2", - "path": "/static/dsfr/dist/fonts/Marianne-Medium.woff2", - "href": "https://aidantsconnect.beta.gouv.fr/static/dsfr/dist/fonts/Marianne-Medium.woff2" - }, - "link": "https://aidantsconnect.beta.gouv.fr/static/dsfr/dist/fonts/Marianne-Medium.woff2", - "line": "https://aidantsconnect.beta.gouv.fr/static/dsfr/dist/fonts/Marianne-Medium.woff2", - "broken": true + "id": "key_exchange_score_weighted", + "ip": "www.rdv-solidarites.fr/185.21.194.105", + "port": "443", + "severity": "INFO", + "finding": "27" }, { - "url": { - "protocol": "https:", - "slashes": true, - "auth": null, - "host": "aidantsconnect.beta.gouv.fr", - "port": null, - "hostname": "aidantsconnect.beta.gouv.fr", - "hash": null, - "search": null, - "query": null, - "pathname": "/static/dsfr/dist/fonts/Marianne-Light.woff", - "path": "/static/dsfr/dist/fonts/Marianne-Light.woff", - "href": "https://aidantsconnect.beta.gouv.fr/static/dsfr/dist/fonts/Marianne-Light.woff" - }, - "link": "https://aidantsconnect.beta.gouv.fr/static/dsfr/dist/fonts/Marianne-Light.woff", - "line": "https://aidantsconnect.beta.gouv.fr/static/dsfr/dist/fonts/Marianne-Light.woff", - "broken": true + "id": "cipher_strength_score", + "ip": "www.rdv-solidarites.fr/185.21.194.105", + "port": "443", + "severity": "INFO", + "finding": "60" }, { - "url": { - "protocol": "https:", - "slashes": true, - "auth": null, - "host": "aidantsconnect.beta.gouv.fr", - "port": null, - "hostname": "aidantsconnect.beta.gouv.fr", - "hash": null, - "search": null, - "query": null, - "pathname": "/static/dsfr/dist/fonts/Marianne-Light.woff2", - "path": "/static/dsfr/dist/fonts/Marianne-Light.woff2", - "href": "https://aidantsconnect.beta.gouv.fr/static/dsfr/dist/fonts/Marianne-Light.woff2" - }, - "link": "https://aidantsconnect.beta.gouv.fr/static/dsfr/dist/fonts/Marianne-Light.woff2", - "line": "https://aidantsconnect.beta.gouv.fr/static/dsfr/dist/fonts/Marianne-Light.woff2", - "broken": true + "id": "cipher_strength_score_weighted", + "ip": "www.rdv-solidarites.fr/185.21.194.105", + "port": "443", + "severity": "INFO", + "finding": "24" }, { - "url": { - "protocol": "https:", - "slashes": true, - "auth": null, - "host": "aidantsconnect.beta.gouv.fr", - "port": null, - "hostname": "aidantsconnect.beta.gouv.fr", - "hash": null, - "search": null, - "query": null, - "pathname": "/temoignages/Temoignages/", - "path": "/temoignages/Temoignages/", - "href": "https://aidantsconnect.beta.gouv.fr/temoignages/Temoignages/" - }, - "link": "https://aidantsconnect.beta.gouv.fr/temoignages/Temoignages/", - "line": "https://aidantsconnect.beta.gouv.fr/temoignages/Temoignages/", - "broken": true + "id": "final_score", + "ip": "www.rdv-solidarites.fr/185.21.194.105", + "port": "443", + "severity": "INFO", + "finding": "81" }, { - "url": { - "protocol": "https:", - "slashes": true, - "auth": null, - "host": "aidantsconnect.beta.gouv.fr", - "port": null, - "hostname": "aidantsconnect.beta.gouv.fr", - "hash": null, - "search": null, - "query": null, - "pathname": "/static/dsfr/dist/fonts/Marianne-Bold_Italic.woff", - "path": "/static/dsfr/dist/fonts/Marianne-Bold_Italic.woff", - "href": "https://aidantsconnect.beta.gouv.fr/static/dsfr/dist/fonts/Marianne-Bold_Italic.woff" - }, - "link": "https://aidantsconnect.beta.gouv.fr/static/dsfr/dist/fonts/Marianne-Bold_Italic.woff", - "line": "https://aidantsconnect.beta.gouv.fr/static/dsfr/dist/fonts/Marianne-Bold_Italic.woff", - "broken": true - } - ], - "url": "https://aidantsconnect.beta.gouv.fr", - "repositories": [ - "betagouv/Aidants_Connect" - ], - "http": null, - "updownio": { - "token": "4wuz", - "url": "https://aidantsconnect.beta.gouv.fr", - "alias": "", - "last_status": 200, - "uptime": 100, - "down": false, - "down_since": null, - "up_since": "2022-12-09T02:08:04Z", - "error": null, - "period": 1800, - "apdex_t": 0.5, - "string_match": "", - "enabled": false, - "published": false, - "disabled_locations": [], - "recipients": [ - "email:3715942461" - ], - "last_check_at": "2023-03-01T03:25:04Z", - "next_check_at": null, - "created_at": "2022-10-17T12:58:07Z", - "mute_until": null, - "favicon_url": "https://aidantsconnect.beta.gouv.fr/static/images/favicons/favicon-16x16.png", - "custom_headers": {}, - "http_verb": "GET/HEAD", - "http_body": "", - "ssl": { - "tested_at": "2023-03-01T02:25:11Z", - "expires_at": "2023-05-12T18:39:10Z", - "valid": true, - "error": null + "id": "overall_grade", + "ip": "www.rdv-solidarites.fr/185.21.194.105", + "port": "443", + "severity": "OK", + "finding": "A+" }, - "metrics": {}, - "uptimeGrade": "A" - }, - "nmap": { - "host": "aidantsconnect.beta.gouv.fr", - "protocol": "tcp", - "closed_ports": "998", - "open_ports": [ - { - "service": { - "name": "http", - "id": "80", - "vulnerabilities": [] - } - }, - { - "service": { - "name": "https", - "id": "443", - "vulnerabilities": [] - } - } - ], - "grade": "A" - }, - "dependabot": null, - "codescan": null, - "testssl": [ { "id": "service", - "ip": "aidantsconnect.beta.gouv.fr/80.247.13.145", + "ip": "www.rdv-solidarites.fr/80.247.12.255", "port": "443", "severity": "INFO", "finding": "HTTP" }, { "id": "pre_128cipher", - "ip": "aidantsconnect.beta.gouv.fr/80.247.13.145", + "ip": "www.rdv-solidarites.fr/80.247.12.255", "port": "443", "severity": "INFO", "finding": "No 128 cipher limit bug" }, { "id": "SSLv2", - "ip": "aidantsconnect.beta.gouv.fr/80.247.13.145", + "ip": "www.rdv-solidarites.fr/80.247.12.255", "port": "443", "severity": "OK", "finding": "not offered" }, { "id": "SSLv3", - "ip": "aidantsconnect.beta.gouv.fr/80.247.13.145", + "ip": "www.rdv-solidarites.fr/80.247.12.255", "port": "443", "severity": "OK", "finding": "not offered" }, { "id": "TLS1", - "ip": "aidantsconnect.beta.gouv.fr/80.247.13.145", + "ip": "www.rdv-solidarites.fr/80.247.12.255", "port": "443", "severity": "INFO", "finding": "not offered" }, { "id": "TLS1_1", - "ip": "aidantsconnect.beta.gouv.fr/80.247.13.145", + "ip": "www.rdv-solidarites.fr/80.247.12.255", "port": "443", "severity": "INFO", "finding": "not offered" }, { "id": "TLS1_2", - "ip": "aidantsconnect.beta.gouv.fr/80.247.13.145", + "ip": "www.rdv-solidarites.fr/80.247.12.255", "port": "443", "severity": "OK", "finding": "offered" }, { "id": "TLS1_3", - "ip": "aidantsconnect.beta.gouv.fr/80.247.13.145", + "ip": "www.rdv-solidarites.fr/80.247.12.255", "port": "443", "severity": "OK", "finding": "offered with final" }, { "id": "ALPN_HTTP2", - "ip": "aidantsconnect.beta.gouv.fr/80.247.13.145", + "ip": "www.rdv-solidarites.fr/80.247.12.255", "port": "443", "severity": "OK", "finding": "h2" }, { "id": "ALPN", - "ip": "aidantsconnect.beta.gouv.fr/80.247.13.145", + "ip": "www.rdv-solidarites.fr/80.247.12.255", "port": "443", "severity": "INFO", "finding": "http/1.1" }, { "id": "cipherlist_NULL", - "ip": "aidantsconnect.beta.gouv.fr/80.247.13.145", + "ip": "www.rdv-solidarites.fr/80.247.12.255", "port": "443", "severity": "OK", "cwe": "CWE-327", @@ -43247,7 +37385,7 @@ }, { "id": "cipherlist_aNULL", - "ip": "aidantsconnect.beta.gouv.fr/80.247.13.145", + "ip": "www.rdv-solidarites.fr/80.247.12.255", "port": "443", "severity": "OK", "cwe": "CWE-327", @@ -43255,7 +37393,7 @@ }, { "id": "cipherlist_EXPORT", - "ip": "aidantsconnect.beta.gouv.fr/80.247.13.145", + "ip": "www.rdv-solidarites.fr/80.247.12.255", "port": "443", "severity": "OK", "cwe": "CWE-327", @@ -43263,7 +37401,7 @@ }, { "id": "cipherlist_LOW", - "ip": "aidantsconnect.beta.gouv.fr/80.247.13.145", + "ip": "www.rdv-solidarites.fr/80.247.12.255", "port": "443", "severity": "OK", "cwe": "CWE-327", @@ -43271,7 +37409,7 @@ }, { "id": "cipherlist_3DES_IDEA", - "ip": "aidantsconnect.beta.gouv.fr/80.247.13.145", + "ip": "www.rdv-solidarites.fr/80.247.12.255", "port": "443", "severity": "INFO", "cwe": "CWE-310", @@ -43279,7 +37417,7 @@ }, { "id": "cipherlist_OBSOLETED", - "ip": "aidantsconnect.beta.gouv.fr/80.247.13.145", + "ip": "www.rdv-solidarites.fr/80.247.12.255", "port": "443", "severity": "INFO", "cwe": "CWE-310", @@ -43287,476 +37425,497 @@ }, { "id": "cipherlist_STRONG_NOFS", - "ip": "aidantsconnect.beta.gouv.fr/80.247.13.145", + "ip": "www.rdv-solidarites.fr/80.247.12.255", "port": "443", "severity": "INFO", "finding": "not offered" }, { "id": "cipherlist_STRONG_FS", - "ip": "aidantsconnect.beta.gouv.fr/80.247.13.145", + "ip": "www.rdv-solidarites.fr/80.247.12.255", "port": "443", "severity": "OK", "finding": "offered" }, { "id": "cipher_order-tls1_2", - "ip": "aidantsconnect.beta.gouv.fr/80.247.13.145", + "ip": "www.rdv-solidarites.fr/80.247.12.255", "port": "443", "severity": "OK", "finding": "server" }, { "id": "cipherorder_TLSv1_2", - "ip": "aidantsconnect.beta.gouv.fr/80.247.13.145", + "ip": "www.rdv-solidarites.fr/80.247.12.255", "port": "443", "severity": "INFO", "finding": "ECDHE-RSA-AES256-GCM-SHA384" }, { "id": "cipher_order", - "ip": "aidantsconnect.beta.gouv.fr/80.247.13.145", + "ip": "www.rdv-solidarites.fr/80.247.12.255", "port": "443", "severity": "OK", "finding": "server" }, { "id": "FS", - "ip": "aidantsconnect.beta.gouv.fr/80.247.13.145", + "ip": "www.rdv-solidarites.fr/80.247.12.255", "port": "443", "severity": "OK", "finding": "offered" }, { "id": "FS_ciphers", - "ip": "aidantsconnect.beta.gouv.fr/80.247.13.145", + "ip": "www.rdv-solidarites.fr/80.247.12.255", "port": "443", "severity": "INFO", "finding": "DHE-RSA-AES256-GCM-SHA384 ECDHE-RSA-AES128-GCM-SHA256 ECDHE-RSA-AES256-GCM-SHA384" }, { "id": "FS_ECDHE_curves", - "ip": "aidantsconnect.beta.gouv.fr/80.247.13.145", + "ip": "www.rdv-solidarites.fr/80.247.12.255", "port": "443", "severity": "OK", "finding": "prime256v1 secp384r1 secp521r1" }, { "id": "TLS_extensions", - "ip": "aidantsconnect.beta.gouv.fr/80.247.13.145", + "ip": "www.rdv-solidarites.fr/80.247.12.255", "port": "443", "severity": "INFO", "finding": "'renegotiation info/#65281' 'server name/#0' 'EC point formats/#11' 'session ticket/#35' 'supported versions/#43' 'key share/#51' 'supported_groups/#10' 'max fragment length/#1' 'application layer protocol negotiation/#16' 'extended master secret/#23'" }, { "id": "TLS_session_ticket", - "ip": "aidantsconnect.beta.gouv.fr/80.247.13.145", + "ip": "www.rdv-solidarites.fr/80.247.12.255", "port": "443", "severity": "INFO", "finding": "valid for 300 seconds only (= 30 days" + "finding": "72 >= 30 days" }, { "id": "cert_notBefore", - "ip": "aidantsconnect.beta.gouv.fr/80.247.13.145", + "ip": "www.rdv-solidarites.fr/80.247.12.255", "port": "443", "severity": "INFO", - "finding": "2024-10-06 01:05" + "finding": "2024-11-13 15:55" }, { "id": "cert_notAfter", - "ip": "aidantsconnect.beta.gouv.fr/80.247.13.145", + "ip": "www.rdv-solidarites.fr/80.247.12.255", "port": "443", "severity": "OK", - "finding": "2025-01-04 01:05" + "finding": "2025-02-11 15:55" }, { "id": "cert_extlifeSpan", - "ip": "aidantsconnect.beta.gouv.fr/80.247.13.145", + "ip": "www.rdv-solidarites.fr/80.247.12.255", "port": "443", "severity": "OK", "finding": "certificate has no extended life time according to browser forum" }, { "id": "cert_eTLS", - "ip": "aidantsconnect.beta.gouv.fr/80.247.13.145", + "ip": "www.rdv-solidarites.fr/80.247.12.255", "port": "443", "severity": "INFO", "finding": "not present" }, { "id": "cert_crlDistributionPoints", - "ip": "aidantsconnect.beta.gouv.fr/80.247.13.145", + "ip": "www.rdv-solidarites.fr/80.247.12.255", "port": "443", "severity": "INFO", "finding": "--" }, { "id": "cert_ocspURL", - "ip": "aidantsconnect.beta.gouv.fr/80.247.13.145", + "ip": "www.rdv-solidarites.fr/80.247.12.255", "port": "443", "severity": "INFO", - "finding": "http://r11.o.lencr.org" + "finding": "http://r10.o.lencr.org" }, { "id": "OCSP_stapling", - "ip": "aidantsconnect.beta.gouv.fr/80.247.13.145", + "ip": "www.rdv-solidarites.fr/80.247.12.255", "port": "443", "severity": "LOW", "finding": "not offered" }, { "id": "cert_mustStapleExtension", - "ip": "aidantsconnect.beta.gouv.fr/80.247.13.145", + "ip": "www.rdv-solidarites.fr/80.247.12.255", "port": "443", "severity": "INFO", "finding": "--" }, { "id": "DNS_CAArecord", - "ip": "aidantsconnect.beta.gouv.fr/80.247.13.145", + "ip": "www.rdv-solidarites.fr/80.247.12.255", "port": "443", "severity": "LOW", "finding": "--" }, { "id": "certificate_transparency", - "ip": "aidantsconnect.beta.gouv.fr/80.247.13.145", + "ip": "www.rdv-solidarites.fr/80.247.12.255", "port": "443", "severity": "OK", "finding": "yes (certificate extension)" }, { "id": "certs_countServer", - "ip": "aidantsconnect.beta.gouv.fr/80.247.13.145", + "ip": "www.rdv-solidarites.fr/80.247.12.255", "port": "443", "severity": "INFO", "finding": "2" }, { "id": "certs_list_ordering_problem", - "ip": "aidantsconnect.beta.gouv.fr/80.247.13.145", + "ip": "www.rdv-solidarites.fr/80.247.12.255", "port": "443", "severity": "INFO", "finding": "no" }, { "id": "cert_caIssuers", - "ip": "aidantsconnect.beta.gouv.fr/80.247.13.145", + "ip": "www.rdv-solidarites.fr/80.247.12.255", "port": "443", "severity": "INFO", - "finding": "R11 (Let's Encrypt from US)" + "finding": "R10 (Let's Encrypt from US)" }, { "id": "intermediate_cert <#1>", - "ip": "aidantsconnect.beta.gouv.fr/80.247.13.145", + "ip": "www.rdv-solidarites.fr/80.247.12.255", "port": "443", "severity": "INFO", - "finding": "-----BEGIN CERTIFICATE-----\nMIIFBjCCAu6gAwIBAgIRAIp9PhPWLzDvI4a9KQdrNPgwDQYJKoZIhvcNAQELBQAwTzELMAkGA1UEBhMCVVMxKTAnBgNVBAoTIEludGVybmV0IFNlY3VyaXR5IFJlc2VhcmNoIEdyb3VwMRUwEwYDVQQDEwxJU1JHIFJvb3QgWDEwHhcNMjQwMzEzMDAwMDAwWhcNMjcwMzEyMjM1OTU5WjAzMQswCQYDVQQGEwJVUzEWMBQGA1UEChMNTGV0J3MgRW5jcnlwdDEMMAoGA1UEAxMDUjExMIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAuoe8XBsAOcvKCs3UZxD5ATylTqVhyybKUvsVAbe5KPUoHu0nsyQYOWcJDAjs4DqwO3cOvfPlOVRBDE6uQdaZdN5R2+97/1i9qLcT9t4x1fJyyXJqC4N0lZxGAGQUmfOx2SLZzaiSqhwmej/+71gFewiVgdtxD4774zEJuwm+UE1fj5F2PVqdnoPy6cRms+EGZkNIGIBloDcYmpuEMpexsr3E+BUAnSeI++JjF5ZsmydnS8TbKF5pwnnwSVzgJFDhxLyhBax7QG0AtMJBP6dYuC/FXJuluwme8f7rsIU5/agK70XEeOtlKsLPXzze41xNG/cLJyuqC0J3U095ah2H2QIDAQABo4H4MIH1MA4GA1UdDwEB/wQEAwIBhjAdBgNVHSUEFjAUBggrBgEFBQcDAgYIKwYBBQUHAwEwEgYDVR0TAQH/BAgwBgEB/wIBADAdBgNVHQ4EFgQUxc9GpOr0w8B6bJXELbBeki8m47kwHwYDVR0jBBgwFoAUebRZ5nu25eQBc4AIiMgaWPbpm24wMgYIKwYBBQUHAQEEJjAkMCIGCCsGAQUFBzAChhZodHRwOi8veDEuaS5sZW5jci5vcmcvMBMGA1UdIAQMMAowCAYGZ4EMAQIBMCcGA1UdHwQgMB4wHKAaoBiGFmh0dHA6Ly94MS5jLmxlbmNyLm9yZy8wDQYJKoZIhvcNAQELBQADggIBAE7iiV0KAxyQOND1H/lxXPjDj7I3iHpvsCUf7b632IYGjukJhM1yv4Hz/MrPU0jtvfZpQtSlET41yBOykh0FX+ou1Nj4ScOt9ZmWnO8m2OG0JAtIIE3801S0qcYhyOE2G/93ZCkXufBL713qzXnQv5C/viOykNpKqUgxdKlEC+Hi9i2DcaR1e9KUwQUZRhy5j/PEdEglKg3l9dtD4tuTm7kZtB8v32oOjzHTYw+7KdzdZiw/sBtnUfhBPORNuay4pJxmY/WrhSMdzFO2q3Gu3MUBcdo27goYKjL9CTF8j/Zz55yctUoVaneCWs/ajUX+HypkBTA+c8LGDLnWO2NKq0YD/pnARkAnYGPfUDoHR9gVSp/qRx+ZWghiDLZsMwhN1zjtSC0uBWiugF3vTNzYIEFfaPG7Ws3jDrAMMYebQ95JQ+HIBD/RPBuHRTBpqKlyDnkSHDHYPiNX3adPoPAcgdF3H2/W0rmoswMWgTlLn1Wu0mrks7/qpdWfS6PJ1jty80r2VKsM/Dj3YIDfbjXKdaFU5C+8bhfJGqU3taKauuz0wHVGT3eo6FlWkWYtbt4pgdamlwVeZEW+LM7qZEJEsMNPrfC03APKmZsJgpWCDWOKZvkZcvjVuYkQ4omYCTX5ohy+knMjdOmdH9c7SpqEWBDC86fiNex+O0XOMEZSa8DA\n-----END CERTIFICATE-----" + "finding": "-----BEGIN CERTIFICATE-----\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\n-----END CERTIFICATE-----" }, { "id": "intermediate_cert_fingerprintSHA256 <#1>", - "ip": "aidantsconnect.beta.gouv.fr/80.247.13.145", + "ip": "www.rdv-solidarites.fr/80.247.12.255", "port": "443", "severity": "INFO", - "finding": "591E9CE6C863D3A079E9FABE1478C7339A26B21269DDE795211361024AE31A44" + "finding": "9D7C3F1AA6AD2B2EC0D5CF1E246F8D9AE6CBC9FD0755AD37BB974B1F2FB603F3" }, { "id": "intermediate_cert_notBefore <#1>", - "ip": "aidantsconnect.beta.gouv.fr/80.247.13.145", + "ip": "www.rdv-solidarites.fr/80.247.12.255", "port": "443", "severity": "INFO", "finding": "2024-03-13 00:00" }, { "id": "intermediate_cert_notAfter <#1>", - "ip": "aidantsconnect.beta.gouv.fr/80.247.13.145", + "ip": "www.rdv-solidarites.fr/80.247.12.255", "port": "443", "severity": "OK", "finding": "2027-03-12 23:59" }, { "id": "intermediate_cert_expiration <#1>", - "ip": "aidantsconnect.beta.gouv.fr/80.247.13.145", + "ip": "www.rdv-solidarites.fr/80.247.12.255", "port": "443", "severity": "OK", "finding": "ok > 40 days" }, { "id": "intermediate_cert_chain <#1>", - "ip": "aidantsconnect.beta.gouv.fr/80.247.13.145", + "ip": "www.rdv-solidarites.fr/80.247.12.255", "port": "443", "severity": "INFO", - "finding": "R11 <-- ISRG Root X1" + "finding": "R10 <-- ISRG Root X1" }, { "id": "intermediate_cert_badOCSP", - "ip": "aidantsconnect.beta.gouv.fr/80.247.13.145", + "ip": "www.rdv-solidarites.fr/80.247.12.255", "port": "443", "severity": "OK", "finding": "intermediate certificate(s) is/are ok" }, { "id": "HTTP_status_code", - "ip": "aidantsconnect.beta.gouv.fr/80.247.13.145", + "ip": "www.rdv-solidarites.fr/80.247.12.255", "port": "443", "severity": "INFO", "finding": "200 OK ('/')" }, { "id": "HTTP_clock_skew", - "ip": "aidantsconnect.beta.gouv.fr/80.247.13.145", + "ip": "www.rdv-solidarites.fr/80.247.12.255", "port": "443", "severity": "INFO", "finding": "0 seconds from localtime" }, { "id": "HTTP_headerTime", - "ip": "aidantsconnect.beta.gouv.fr/80.247.13.145", + "ip": "www.rdv-solidarites.fr/80.247.12.255", "port": "443", "severity": "INFO", - "finding": "1732413645" + "finding": "1733018505" }, { "id": "HSTS_time", - "ip": "aidantsconnect.beta.gouv.fr/80.247.13.145", + "ip": "www.rdv-solidarites.fr/80.247.12.255", "port": "443", - "severity": "MEDIUM", - "finding": "max-age too short. 0 days (=60 seconds) < 15552000 seconds" + "severity": "OK", + "finding": "730 days (=63072000 seconds) > 15552000 seconds" }, { "id": "HSTS_subdomains", - "ip": "aidantsconnect.beta.gouv.fr/80.247.13.145", + "ip": "www.rdv-solidarites.fr/80.247.12.255", "port": "443", - "severity": "INFO", - "finding": "only for this domain" + "severity": "OK", + "finding": "includes subdomains" }, { "id": "HSTS_preload", - "ip": "aidantsconnect.beta.gouv.fr/80.247.13.145", + "ip": "www.rdv-solidarites.fr/80.247.12.255", "port": "443", "severity": "INFO", "finding": "domain is NOT marked for preloading" }, { "id": "HPKP", - "ip": "aidantsconnect.beta.gouv.fr/80.247.13.145", + "ip": "www.rdv-solidarites.fr/80.247.12.255", "port": "443", "severity": "INFO", "finding": "No support for HTTP Public Key Pinning" }, { "id": "banner_server", - "ip": "aidantsconnect.beta.gouv.fr/80.247.13.145", + "ip": "www.rdv-solidarites.fr/80.247.12.255", "port": "443", "severity": "INFO", "finding": "No Server banner line in header, interesting!" }, { "id": "banner_application", - "ip": "aidantsconnect.beta.gouv.fr/80.247.13.145", + "ip": "www.rdv-solidarites.fr/80.247.12.255", "port": "443", "severity": "INFO", "finding": "No application banner found" }, { "id": "cookie_count", - "ip": "aidantsconnect.beta.gouv.fr/80.247.13.145", + "ip": "www.rdv-solidarites.fr/80.247.12.255", "port": "443", "severity": "INFO", - "finding": "0 at '/'" + "finding": "1 at '/'" }, { - "id": "X-Frame-Options", - "ip": "aidantsconnect.beta.gouv.fr/80.247.13.145", + "id": "cookie_secure", + "ip": "www.rdv-solidarites.fr/80.247.12.255", "port": "443", "severity": "OK", - "finding": "DENY" + "finding": "All (1) at '/' marked as secure" + }, + { + "id": "cookie_httponly", + "ip": "www.rdv-solidarites.fr/80.247.12.255", + "port": "443", + "severity": "OK", + "finding": "All (1) at '/' marked as HttpOnly" }, { "id": "X-Content-Type-Options", - "ip": "aidantsconnect.beta.gouv.fr/80.247.13.145", + "ip": "www.rdv-solidarites.fr/80.247.12.255", "port": "443", "severity": "OK", "finding": "nosniff" }, { "id": "Content-Security-Policy", - "ip": "aidantsconnect.beta.gouv.fr/80.247.13.145", + "ip": "www.rdv-solidarites.fr/80.247.12.255", "port": "443", "severity": "OK", - "finding": "style-src-attr 'unsafe-hashes' 'sha256-I/4Jcdrg5KNFrU0X4p2nNmjeGh9aI+9ac0cUllI5SwY=' 'sha256-vYd+FsML43MBXhP+pXOhW9h0Cdq43hkCe4Im/yyvhss='; object-src 'none'; img-src 'self' data: https://www.service-public.fr/resources/v-5cf79a7acf/web/css/img/png/; default-src 'self'; style-src 'self' https://unpkg.com/easymde/dist/easymde.min.css; connect-src 'self' https://stats.beta.gouv.fr/matomo.php https://stats.beta.gouv.fr/piwik.php https://api.sarbacane.com/v1/forms/contacts/upsert https://api-adresse.data.gouv.fr/search/; frame-src https://www.youtube.com/embed/hATrqHG4zYQ https://www.youtube-nocookie.com/embed/hATrqHG4zYQ http://www.youtube.com/embed/hATrqHG4zYQ http://www.youtube-nocookie.com/embed/hATrqHG4zYQ https://www.youtube.com/embed/WTHj_kQXnzs https://www.youtube-nocookie.com/embed/WTHj_kQXnzs http://www.youtube.com/embed/WTHj_kQXnzs http://www.youtube-nocookie.com/embed/WTHj_kQXnzs https://www.youtube.com/embed/ihsm-36I-fE https://www.youtube-nocookie.com/embed/ihsm-36I-fE http://www.youtube.com/embed/ihsm-36I-fE http://www.youtube-nocookie.com/embed/ihsm-36I-fE https://www.youtube.com/embed/AJGo6bydQss https://www.youtube-nocookie.com/embed/AJGo6bydQss http://www.youtube.com/embed/AJGo6bydQss http://www.youtube-nocookie.com/embed/AJGo6bydQss; script-src 'self' https://unpkg.com/stimulus@3.2.2/dist/stimulus.umd.js https://unpkg.com/stimulus@3.2.2/dist/stimulus.js https://unpkg.com/easymde/dist/easymde.min.js https://forms.sbc29.com/form.js https://unpkg.com/tarteaucitronjs@1.15.0/tarteaucitron.js https://unpkg.com/tarteaucitronjs@1.15.0/lang/tarteaucitron.fr.js https://unpkg.com/tarteaucitronjs@1.15.0/tarteaucitron.services.js https://cdn.jsdelivr.net/npm/chart.js@3.7.1/dist/chart.min.js https://cdnjs.cloudflare.com/ajax/libs/chartjs-plugin-datalabels/2.0.0/chartjs-plugin-datalabels.min.js https://code.jquery.com/jquery-3.6.1.js https://code.jquery.com/ui/1.13.1/jquery-ui.js https://cdn.jsdelivr.net/npm/@tarekraafat/autocomplete.js@10.2.7/dist/autoComplete.min.js https://stats.beta.gouv.fr/matomo.js https://stats.beta.gouv.fr/piwik.js 'nonce-UEmty1vltYYCR5A7c13ViQ=='" + "finding": "default-src 'self'; font-src 'self' data:; object-src 'none'; worker-src blob:; child-src blob: 'self'; frame-src 'self' *.instatus.com headway-widget.net; media-src 'self' rdv-insertion-medias-production.s3.fr-par.scw.cloud; img-src 'self' data: voxusagers.numerique.gouv.fr; style-src 'self' 'unsafe-inline' *.bootstrapcdn.com api.mapbox.com cdn.headwayapp.co; connect-src 'self' api-adresse.data.gouv.fr etalab-tiles.fr; script-src 'self' 'unsafe-inline' api.mapbox.com cdn.headwayapp.co" + }, + { + "id": "X-XSS-Protection", + "ip": "www.rdv-solidarites.fr/80.247.12.255", + "port": "443", + "severity": "INFO", + "finding": "0" }, { "id": "Referrer-Policy", - "ip": "aidantsconnect.beta.gouv.fr/80.247.13.145", + "ip": "www.rdv-solidarites.fr/80.247.12.255", "port": "443", "severity": "INFO", - "finding": "strict-origin" + "finding": "strict-origin-when-cross-origin" + }, + { + "id": "Cache-Control", + "ip": "www.rdv-solidarites.fr/80.247.12.255", + "port": "443", + "severity": "INFO", + "finding": "max-age=0, private, must-revalidate" }, { "id": "banner_reverseproxy", - "ip": "aidantsconnect.beta.gouv.fr/80.247.13.145", + "ip": "www.rdv-solidarites.fr/80.247.12.255", "port": "443", "severity": "INFO", "cwe": "CWE-200", @@ -43764,7 +37923,7 @@ }, { "id": "heartbleed", - "ip": "aidantsconnect.beta.gouv.fr/80.247.13.145", + "ip": "www.rdv-solidarites.fr/80.247.12.255", "port": "443", "severity": "OK", "cve": "CVE-2014-0160", @@ -43773,7 +37932,7 @@ }, { "id": "CCS", - "ip": "aidantsconnect.beta.gouv.fr/80.247.13.145", + "ip": "www.rdv-solidarites.fr/80.247.12.255", "port": "443", "severity": "OK", "cve": "CVE-2014-0224", @@ -43782,7 +37941,7 @@ }, { "id": "ticketbleed", - "ip": "aidantsconnect.beta.gouv.fr/80.247.13.145", + "ip": "www.rdv-solidarites.fr/80.247.12.255", "port": "443", "severity": "OK", "cve": "CVE-2016-9244", @@ -43791,7 +37950,7 @@ }, { "id": "ROBOT", - "ip": "aidantsconnect.beta.gouv.fr/80.247.13.145", + "ip": "www.rdv-solidarites.fr/80.247.12.255", "port": "443", "severity": "OK", "cve": "CVE-2017-17382 CVE-2017-17427 CVE-2017-17428 CVE-2017-13098 CVE-2017-1000385 CVE-2017-13099 CVE-2016-6883 CVE-2012-5081 CVE-2017-6168", @@ -43800,7 +37959,7 @@ }, { "id": "secure_renego", - "ip": "aidantsconnect.beta.gouv.fr/80.247.13.145", + "ip": "www.rdv-solidarites.fr/80.247.12.255", "port": "443", "severity": "OK", "cwe": "CWE-310", @@ -43808,7 +37967,7 @@ }, { "id": "secure_client_renego", - "ip": "aidantsconnect.beta.gouv.fr/80.247.13.145", + "ip": "www.rdv-solidarites.fr/80.247.12.255", "port": "443", "severity": "OK", "cve": "CVE-2011-1473", @@ -43817,7 +37976,7 @@ }, { "id": "CRIME_TLS", - "ip": "aidantsconnect.beta.gouv.fr/80.247.13.145", + "ip": "www.rdv-solidarites.fr/80.247.12.255", "port": "443", "severity": "OK", "cve": "CVE-2012-4929", @@ -43826,7 +37985,7 @@ }, { "id": "BREACH", - "ip": "aidantsconnect.beta.gouv.fr/80.247.13.145", + "ip": "www.rdv-solidarites.fr/80.247.12.255", "port": "443", "severity": "MEDIUM", "cve": "CVE-2013-3587", @@ -43835,7 +37994,7 @@ }, { "id": "POODLE_SSL", - "ip": "aidantsconnect.beta.gouv.fr/80.247.13.145", + "ip": "www.rdv-solidarites.fr/80.247.12.255", "port": "443", "severity": "OK", "cve": "CVE-2014-3566", @@ -43844,14 +38003,14 @@ }, { "id": "fallback_SCSV", - "ip": "aidantsconnect.beta.gouv.fr/80.247.13.145", + "ip": "www.rdv-solidarites.fr/80.247.12.255", "port": "443", "severity": "OK", "finding": "no protocol below TLS 1.2 offered" }, { "id": "SWEET32", - "ip": "aidantsconnect.beta.gouv.fr/80.247.13.145", + "ip": "www.rdv-solidarites.fr/80.247.12.255", "port": "443", "severity": "OK", "cve": "CVE-2016-2183 CVE-2016-6329", @@ -43860,7 +38019,7 @@ }, { "id": "FREAK", - "ip": "aidantsconnect.beta.gouv.fr/80.247.13.145", + "ip": "www.rdv-solidarites.fr/80.247.12.255", "port": "443", "severity": "OK", "cve": "CVE-2015-0204", @@ -43869,7 +38028,7 @@ }, { "id": "DROWN", - "ip": "aidantsconnect.beta.gouv.fr/80.247.13.145", + "ip": "www.rdv-solidarites.fr/80.247.12.255", "port": "443", "severity": "OK", "cve": "CVE-2016-0800 CVE-2016-0703", @@ -43878,16 +38037,16 @@ }, { "id": "DROWN_hint", - "ip": "aidantsconnect.beta.gouv.fr/80.247.13.145", + "ip": "www.rdv-solidarites.fr/80.247.12.255", "port": "443", "severity": "INFO", "cve": "CVE-2016-0800 CVE-2016-0703", "cwe": "CWE-310", - "finding": "Make sure you don't use this certificate elsewhere with SSLv2 enabled services, see https://search.censys.io/search?resource=hosts&virtual_hosts=INCLUDE&q=59126599AF7C805639C3824349AFFE188DA8226D59D843E5D63EB5D650244762" + "finding": "Make sure you don't use this certificate elsewhere with SSLv2 enabled services, see https://search.censys.io/search?resource=hosts&virtual_hosts=INCLUDE&q=633BD28D00F8947E110D214024F8B8BD21CBFC0BAC0FE9ADECBB467456A886A4" }, { "id": "LOGJAM", - "ip": "aidantsconnect.beta.gouv.fr/80.247.13.145", + "ip": "www.rdv-solidarites.fr/80.247.12.255", "port": "443", "severity": "OK", "cve": "CVE-2015-4000", @@ -43896,7 +38055,7 @@ }, { "id": "LOGJAM-common_primes", - "ip": "aidantsconnect.beta.gouv.fr/80.247.13.145", + "ip": "www.rdv-solidarites.fr/80.247.12.255", "port": "443", "severity": "OK", "cve": "CVE-2015-4000", @@ -43905,7 +38064,7 @@ }, { "id": "BEAST", - "ip": "aidantsconnect.beta.gouv.fr/80.247.13.145", + "ip": "www.rdv-solidarites.fr/80.247.12.255", "port": "443", "severity": "OK", "cve": "CVE-2011-3389", @@ -43914,7 +38073,7 @@ }, { "id": "LUCKY13", - "ip": "aidantsconnect.beta.gouv.fr/80.247.13.145", + "ip": "www.rdv-solidarites.fr/80.247.12.255", "port": "443", "severity": "OK", "cve": "CVE-2013-0169", @@ -43923,7 +38082,7 @@ }, { "id": "winshock", - "ip": "aidantsconnect.beta.gouv.fr/80.247.13.145", + "ip": "www.rdv-solidarites.fr/80.247.12.255", "port": "443", "severity": "OK", "cve": "CVE-2014-6321", @@ -43932,7 +38091,7 @@ }, { "id": "RC4", - "ip": "aidantsconnect.beta.gouv.fr/80.247.13.145", + "ip": "www.rdv-solidarites.fr/80.247.12.255", "port": "443", "severity": "OK", "cve": "CVE-2013-2566 CVE-2015-2808", @@ -43941,399 +38100,392 @@ }, { "id": "clientsimulation-android_60", - "ip": "aidantsconnect.beta.gouv.fr/80.247.13.145", + "ip": "www.rdv-solidarites.fr/80.247.12.255", "port": "443", "severity": "INFO", "finding": "TLSv1.2 ECDHE-RSA-AES128-GCM-SHA256" }, { "id": "clientsimulation-android_70", - "ip": "aidantsconnect.beta.gouv.fr/80.247.13.145", + "ip": "www.rdv-solidarites.fr/80.247.12.255", "port": "443", "severity": "INFO", "finding": "TLSv1.2 ECDHE-RSA-AES256-GCM-SHA384" }, { "id": "clientsimulation-android_81", - "ip": "aidantsconnect.beta.gouv.fr/80.247.13.145", + "ip": "www.rdv-solidarites.fr/80.247.12.255", "port": "443", "severity": "INFO", "finding": "TLSv1.2 ECDHE-RSA-AES256-GCM-SHA384" }, { "id": "clientsimulation-android_90", - "ip": "aidantsconnect.beta.gouv.fr/80.247.13.145", + "ip": "www.rdv-solidarites.fr/80.247.12.255", "port": "443", "severity": "INFO", "finding": "TLSv1.3 TLS_AES_256_GCM_SHA384" }, { "id": "clientsimulation-android_X", - "ip": "aidantsconnect.beta.gouv.fr/80.247.13.145", + "ip": "www.rdv-solidarites.fr/80.247.12.255", "port": "443", "severity": "INFO", "finding": "TLSv1.3 TLS_AES_256_GCM_SHA384" }, { "id": "clientsimulation-android_11", - "ip": "aidantsconnect.beta.gouv.fr/80.247.13.145", + "ip": "www.rdv-solidarites.fr/80.247.12.255", "port": "443", "severity": "INFO", "finding": "TLSv1.3 TLS_AES_256_GCM_SHA384" }, { "id": "clientsimulation-android_12", - "ip": "aidantsconnect.beta.gouv.fr/80.247.13.145", + "ip": "www.rdv-solidarites.fr/80.247.12.255", "port": "443", "severity": "INFO", "finding": "TLSv1.3 TLS_AES_256_GCM_SHA384" }, { "id": "clientsimulation-chrome_79_win10", - "ip": "aidantsconnect.beta.gouv.fr/80.247.13.145", + "ip": "www.rdv-solidarites.fr/80.247.12.255", "port": "443", "severity": "INFO", "finding": "TLSv1.3 TLS_AES_256_GCM_SHA384" }, { "id": "clientsimulation-chrome_101_win10", - "ip": "aidantsconnect.beta.gouv.fr/80.247.13.145", + "ip": "www.rdv-solidarites.fr/80.247.12.255", "port": "443", "severity": "INFO", "finding": "TLSv1.3 TLS_AES_256_GCM_SHA384" }, { "id": "clientsimulation-firefox_66_win81", - "ip": "aidantsconnect.beta.gouv.fr/80.247.13.145", + "ip": "www.rdv-solidarites.fr/80.247.12.255", "port": "443", "severity": "INFO", "finding": "TLSv1.3 TLS_AES_256_GCM_SHA384" }, { "id": "clientsimulation-firefox_100_win10", - "ip": "aidantsconnect.beta.gouv.fr/80.247.13.145", + "ip": "www.rdv-solidarites.fr/80.247.12.255", "port": "443", "severity": "INFO", "finding": "TLSv1.3 TLS_AES_256_GCM_SHA384" }, { "id": "clientsimulation-ie_6_xp", - "ip": "aidantsconnect.beta.gouv.fr/80.247.13.145", + "ip": "www.rdv-solidarites.fr/80.247.12.255", "port": "443", "severity": "INFO", "finding": "No connection" }, { "id": "clientsimulation-ie_8_win7", - "ip": "aidantsconnect.beta.gouv.fr/80.247.13.145", + "ip": "www.rdv-solidarites.fr/80.247.12.255", "port": "443", "severity": "INFO", "finding": "No connection" }, { "id": "clientsimulation-ie_8_xp", - "ip": "aidantsconnect.beta.gouv.fr/80.247.13.145", + "ip": "www.rdv-solidarites.fr/80.247.12.255", "port": "443", "severity": "INFO", "finding": "No connection" }, { "id": "clientsimulation-ie_11_win7", - "ip": "aidantsconnect.beta.gouv.fr/80.247.13.145", + "ip": "www.rdv-solidarites.fr/80.247.12.255", "port": "443", "severity": "INFO", "finding": "TLSv1.2 DHE-RSA-AES256-GCM-SHA384" }, { "id": "clientsimulation-ie_11_win81", - "ip": "aidantsconnect.beta.gouv.fr/80.247.13.145", + "ip": "www.rdv-solidarites.fr/80.247.12.255", "port": "443", "severity": "INFO", "finding": "TLSv1.2 DHE-RSA-AES256-GCM-SHA384" }, { "id": "clientsimulation-ie_11_winphone81", - "ip": "aidantsconnect.beta.gouv.fr/80.247.13.145", + "ip": "www.rdv-solidarites.fr/80.247.12.255", "port": "443", "severity": "INFO", "finding": "No connection" }, { "id": "clientsimulation-ie_11_win10", - "ip": "aidantsconnect.beta.gouv.fr/80.247.13.145", + "ip": "www.rdv-solidarites.fr/80.247.12.255", "port": "443", "severity": "INFO", "finding": "TLSv1.2 ECDHE-RSA-AES256-GCM-SHA384" }, { "id": "clientsimulation-edge_15_win10", - "ip": "aidantsconnect.beta.gouv.fr/80.247.13.145", + "ip": "www.rdv-solidarites.fr/80.247.12.255", "port": "443", "severity": "INFO", "finding": "TLSv1.2 ECDHE-RSA-AES256-GCM-SHA384" }, { "id": "clientsimulation-edge_101_win10_21h2", - "ip": "aidantsconnect.beta.gouv.fr/80.247.13.145", + "ip": "www.rdv-solidarites.fr/80.247.12.255", "port": "443", "severity": "INFO", "finding": "TLSv1.3 TLS_AES_256_GCM_SHA384" }, { "id": "clientsimulation-safari_121_ios_122", - "ip": "aidantsconnect.beta.gouv.fr/80.247.13.145", + "ip": "www.rdv-solidarites.fr/80.247.12.255", "port": "443", "severity": "INFO", "finding": "TLSv1.3 TLS_AES_256_GCM_SHA384" }, { "id": "clientsimulation-safari_130_osx_10146", - "ip": "aidantsconnect.beta.gouv.fr/80.247.13.145", + "ip": "www.rdv-solidarites.fr/80.247.12.255", "port": "443", "severity": "INFO", "finding": "TLSv1.3 TLS_AES_256_GCM_SHA384" }, { "id": "clientsimulation-safari_154_osx_1231", - "ip": "aidantsconnect.beta.gouv.fr/80.247.13.145", + "ip": "www.rdv-solidarites.fr/80.247.12.255", "port": "443", "severity": "INFO", "finding": "TLSv1.3 TLS_AES_256_GCM_SHA384" }, { "id": "clientsimulation-java_7u25", - "ip": "aidantsconnect.beta.gouv.fr/80.247.13.145", + "ip": "www.rdv-solidarites.fr/80.247.12.255", "port": "443", "severity": "INFO", "finding": "No connection" }, { "id": "clientsimulation-java_8u161", - "ip": "aidantsconnect.beta.gouv.fr/80.247.13.145", + "ip": "www.rdv-solidarites.fr/80.247.12.255", "port": "443", "severity": "INFO", "finding": "TLSv1.2 ECDHE-RSA-AES256-GCM-SHA384" }, { "id": "clientsimulation-java1102", - "ip": "aidantsconnect.beta.gouv.fr/80.247.13.145", + "ip": "www.rdv-solidarites.fr/80.247.12.255", "port": "443", "severity": "INFO", "finding": "TLSv1.3 TLS_AES_256_GCM_SHA384" }, { "id": "clientsimulation-java1703", - "ip": "aidantsconnect.beta.gouv.fr/80.247.13.145", + "ip": "www.rdv-solidarites.fr/80.247.12.255", "port": "443", "severity": "INFO", "finding": "TLSv1.3 TLS_AES_256_GCM_SHA384" }, { "id": "clientsimulation-go_1178", - "ip": "aidantsconnect.beta.gouv.fr/80.247.13.145", + "ip": "www.rdv-solidarites.fr/80.247.12.255", "port": "443", "severity": "INFO", "finding": "TLSv1.3 TLS_AES_256_GCM_SHA384" }, { "id": "clientsimulation-libressl_283", - "ip": "aidantsconnect.beta.gouv.fr/80.247.13.145", + "ip": "www.rdv-solidarites.fr/80.247.12.255", "port": "443", "severity": "INFO", "finding": "TLSv1.2 ECDHE-RSA-AES256-GCM-SHA384" }, { "id": "clientsimulation-openssl_102e", - "ip": "aidantsconnect.beta.gouv.fr/80.247.13.145", + "ip": "www.rdv-solidarites.fr/80.247.12.255", "port": "443", "severity": "INFO", "finding": "TLSv1.2 ECDHE-RSA-AES256-GCM-SHA384" }, { "id": "clientsimulation-openssl_110l", - "ip": "aidantsconnect.beta.gouv.fr/80.247.13.145", + "ip": "www.rdv-solidarites.fr/80.247.12.255", "port": "443", "severity": "INFO", "finding": "TLSv1.2 ECDHE-RSA-AES256-GCM-SHA384" }, { "id": "clientsimulation-openssl_111d", - "ip": "aidantsconnect.beta.gouv.fr/80.247.13.145", + "ip": "www.rdv-solidarites.fr/80.247.12.255", "port": "443", "severity": "INFO", "finding": "TLSv1.3 TLS_AES_256_GCM_SHA384" }, { "id": "clientsimulation-openssl_303", - "ip": "aidantsconnect.beta.gouv.fr/80.247.13.145", + "ip": "www.rdv-solidarites.fr/80.247.12.255", "port": "443", "severity": "INFO", "finding": "TLSv1.3 TLS_AES_256_GCM_SHA384" }, { "id": "clientsimulation-apple_mail_16_0", - "ip": "aidantsconnect.beta.gouv.fr/80.247.13.145", + "ip": "www.rdv-solidarites.fr/80.247.12.255", "port": "443", "severity": "INFO", "finding": "TLSv1.2 ECDHE-RSA-AES256-GCM-SHA384" }, { "id": "clientsimulation-thunderbird_91_9", - "ip": "aidantsconnect.beta.gouv.fr/80.247.13.145", + "ip": "www.rdv-solidarites.fr/80.247.12.255", "port": "443", "severity": "INFO", "finding": "TLSv1.3 TLS_AES_256_GCM_SHA384" }, { "id": "rating_spec", - "ip": "aidantsconnect.beta.gouv.fr/80.247.13.145", + "ip": "www.rdv-solidarites.fr/80.247.12.255", "port": "443", "severity": "INFO", "finding": "SSL Labs's 'SSL Server Rating Guide' (version 2009q from 2020-01-30)" }, { "id": "rating_doc", - "ip": "aidantsconnect.beta.gouv.fr/80.247.13.145", + "ip": "www.rdv-solidarites.fr/80.247.12.255", "port": "443", "severity": "INFO", "finding": "https://github.com/ssllabs/research/wiki/SSL-Server-Rating-Guide" }, { "id": "protocol_support_score", - "ip": "aidantsconnect.beta.gouv.fr/80.247.13.145", + "ip": "www.rdv-solidarites.fr/80.247.12.255", "port": "443", "severity": "INFO", "finding": "100" }, { "id": "protocol_support_score_weighted", - "ip": "aidantsconnect.beta.gouv.fr/80.247.13.145", + "ip": "www.rdv-solidarites.fr/80.247.12.255", "port": "443", "severity": "INFO", "finding": "30" }, { "id": "key_exchange_score", - "ip": "aidantsconnect.beta.gouv.fr/80.247.13.145", + "ip": "www.rdv-solidarites.fr/80.247.12.255", "port": "443", "severity": "INFO", "finding": "90" }, { "id": "key_exchange_score_weighted", - "ip": "aidantsconnect.beta.gouv.fr/80.247.13.145", + "ip": "www.rdv-solidarites.fr/80.247.12.255", "port": "443", "severity": "INFO", "finding": "27" }, { "id": "cipher_strength_score", - "ip": "aidantsconnect.beta.gouv.fr/80.247.13.145", + "ip": "www.rdv-solidarites.fr/80.247.12.255", "port": "443", "severity": "INFO", "finding": "60" }, { "id": "cipher_strength_score_weighted", - "ip": "aidantsconnect.beta.gouv.fr/80.247.13.145", + "ip": "www.rdv-solidarites.fr/80.247.12.255", "port": "443", "severity": "INFO", "finding": "24" }, { "id": "final_score", - "ip": "aidantsconnect.beta.gouv.fr/80.247.13.145", + "ip": "www.rdv-solidarites.fr/80.247.12.255", "port": "443", "severity": "INFO", "finding": "81" }, { "id": "overall_grade", - "ip": "aidantsconnect.beta.gouv.fr/80.247.13.145", + "ip": "www.rdv-solidarites.fr/80.247.12.255", "port": "443", "severity": "OK", - "finding": "A" - }, - { - "id": "grade_cap_reason_1", - "ip": "aidantsconnect.beta.gouv.fr/80.247.13.145", - "port": "443", - "severity": "INFO", - "finding": "Grade capped to A. HSTS max-age is too short" + "finding": "A+" }, { "id": "service", - "ip": "aidantsconnect.beta.gouv.fr/185.21.194.105", + "ip": "www.rdv-solidarites.fr/148.253.96.193", "port": "443", "severity": "INFO", "finding": "HTTP" }, { "id": "pre_128cipher", - "ip": "aidantsconnect.beta.gouv.fr/185.21.194.105", + "ip": "www.rdv-solidarites.fr/148.253.96.193", "port": "443", "severity": "INFO", "finding": "No 128 cipher limit bug" }, { "id": "SSLv2", - "ip": "aidantsconnect.beta.gouv.fr/185.21.194.105", + "ip": "www.rdv-solidarites.fr/148.253.96.193", "port": "443", "severity": "OK", "finding": "not offered" }, { "id": "SSLv3", - "ip": "aidantsconnect.beta.gouv.fr/185.21.194.105", + "ip": "www.rdv-solidarites.fr/148.253.96.193", "port": "443", "severity": "OK", "finding": "not offered" }, { "id": "TLS1", - "ip": "aidantsconnect.beta.gouv.fr/185.21.194.105", + "ip": "www.rdv-solidarites.fr/148.253.96.193", "port": "443", "severity": "INFO", "finding": "not offered" }, { "id": "TLS1_1", - "ip": "aidantsconnect.beta.gouv.fr/185.21.194.105", + "ip": "www.rdv-solidarites.fr/148.253.96.193", "port": "443", "severity": "INFO", "finding": "not offered" }, { "id": "TLS1_2", - "ip": "aidantsconnect.beta.gouv.fr/185.21.194.105", + "ip": "www.rdv-solidarites.fr/148.253.96.193", "port": "443", "severity": "OK", "finding": "offered" }, { "id": "TLS1_3", - "ip": "aidantsconnect.beta.gouv.fr/185.21.194.105", + "ip": "www.rdv-solidarites.fr/148.253.96.193", "port": "443", "severity": "OK", "finding": "offered with final" }, { "id": "ALPN_HTTP2", - "ip": "aidantsconnect.beta.gouv.fr/185.21.194.105", + "ip": "www.rdv-solidarites.fr/148.253.96.193", "port": "443", "severity": "OK", "finding": "h2" }, { "id": "ALPN", - "ip": "aidantsconnect.beta.gouv.fr/185.21.194.105", + "ip": "www.rdv-solidarites.fr/148.253.96.193", "port": "443", "severity": "INFO", "finding": "http/1.1" }, { "id": "cipherlist_NULL", - "ip": "aidantsconnect.beta.gouv.fr/185.21.194.105", + "ip": "www.rdv-solidarites.fr/148.253.96.193", "port": "443", "severity": "OK", "cwe": "CWE-327", @@ -44341,7 +38493,7 @@ }, { "id": "cipherlist_aNULL", - "ip": "aidantsconnect.beta.gouv.fr/185.21.194.105", + "ip": "www.rdv-solidarites.fr/148.253.96.193", "port": "443", "severity": "OK", "cwe": "CWE-327", @@ -44349,7 +38501,7 @@ }, { "id": "cipherlist_EXPORT", - "ip": "aidantsconnect.beta.gouv.fr/185.21.194.105", + "ip": "www.rdv-solidarites.fr/148.253.96.193", "port": "443", "severity": "OK", "cwe": "CWE-327", @@ -44357,7 +38509,7 @@ }, { "id": "cipherlist_LOW", - "ip": "aidantsconnect.beta.gouv.fr/185.21.194.105", + "ip": "www.rdv-solidarites.fr/148.253.96.193", "port": "443", "severity": "OK", "cwe": "CWE-327", @@ -44365,7 +38517,7 @@ }, { "id": "cipherlist_3DES_IDEA", - "ip": "aidantsconnect.beta.gouv.fr/185.21.194.105", + "ip": "www.rdv-solidarites.fr/148.253.96.193", "port": "443", "severity": "INFO", "cwe": "CWE-310", @@ -44373,7 +38525,7 @@ }, { "id": "cipherlist_OBSOLETED", - "ip": "aidantsconnect.beta.gouv.fr/185.21.194.105", + "ip": "www.rdv-solidarites.fr/148.253.96.193", "port": "443", "severity": "INFO", "cwe": "CWE-310", @@ -44381,476 +38533,497 @@ }, { "id": "cipherlist_STRONG_NOFS", - "ip": "aidantsconnect.beta.gouv.fr/185.21.194.105", + "ip": "www.rdv-solidarites.fr/148.253.96.193", "port": "443", "severity": "INFO", "finding": "not offered" }, { "id": "cipherlist_STRONG_FS", - "ip": "aidantsconnect.beta.gouv.fr/185.21.194.105", + "ip": "www.rdv-solidarites.fr/148.253.96.193", "port": "443", "severity": "OK", "finding": "offered" }, { "id": "cipher_order-tls1_2", - "ip": "aidantsconnect.beta.gouv.fr/185.21.194.105", + "ip": "www.rdv-solidarites.fr/148.253.96.193", "port": "443", "severity": "OK", "finding": "server" }, { "id": "cipherorder_TLSv1_2", - "ip": "aidantsconnect.beta.gouv.fr/185.21.194.105", + "ip": "www.rdv-solidarites.fr/148.253.96.193", "port": "443", "severity": "INFO", "finding": "ECDHE-RSA-AES256-GCM-SHA384" }, { "id": "cipher_order", - "ip": "aidantsconnect.beta.gouv.fr/185.21.194.105", + "ip": "www.rdv-solidarites.fr/148.253.96.193", "port": "443", "severity": "OK", "finding": "server" }, { "id": "FS", - "ip": "aidantsconnect.beta.gouv.fr/185.21.194.105", + "ip": "www.rdv-solidarites.fr/148.253.96.193", "port": "443", "severity": "OK", "finding": "offered" }, { "id": "FS_ciphers", - "ip": "aidantsconnect.beta.gouv.fr/185.21.194.105", + "ip": "www.rdv-solidarites.fr/148.253.96.193", "port": "443", "severity": "INFO", "finding": "DHE-RSA-AES256-GCM-SHA384 ECDHE-RSA-AES128-GCM-SHA256 ECDHE-RSA-AES256-GCM-SHA384" }, { "id": "FS_ECDHE_curves", - "ip": "aidantsconnect.beta.gouv.fr/185.21.194.105", + "ip": "www.rdv-solidarites.fr/148.253.96.193", "port": "443", "severity": "OK", "finding": "prime256v1 secp384r1 secp521r1" }, { "id": "TLS_extensions", - "ip": "aidantsconnect.beta.gouv.fr/185.21.194.105", + "ip": "www.rdv-solidarites.fr/148.253.96.193", "port": "443", "severity": "INFO", "finding": "'renegotiation info/#65281' 'server name/#0' 'EC point formats/#11' 'session ticket/#35' 'supported versions/#43' 'key share/#51' 'supported_groups/#10' 'max fragment length/#1' 'application layer protocol negotiation/#16' 'extended master secret/#23'" }, { "id": "TLS_session_ticket", - "ip": "aidantsconnect.beta.gouv.fr/185.21.194.105", + "ip": "www.rdv-solidarites.fr/148.253.96.193", "port": "443", "severity": "INFO", "finding": "valid for 300 seconds only (= 30 days" + "finding": "72 >= 30 days" }, { "id": "cert_notBefore", - "ip": "aidantsconnect.beta.gouv.fr/185.21.194.105", + "ip": "www.rdv-solidarites.fr/148.253.96.193", "port": "443", "severity": "INFO", - "finding": "2024-10-06 01:05" + "finding": "2024-11-13 15:55" }, { "id": "cert_notAfter", - "ip": "aidantsconnect.beta.gouv.fr/185.21.194.105", + "ip": "www.rdv-solidarites.fr/148.253.96.193", "port": "443", "severity": "OK", - "finding": "2025-01-04 01:05" + "finding": "2025-02-11 15:55" }, { "id": "cert_extlifeSpan", - "ip": "aidantsconnect.beta.gouv.fr/185.21.194.105", + "ip": "www.rdv-solidarites.fr/148.253.96.193", "port": "443", "severity": "OK", "finding": "certificate has no extended life time according to browser forum" }, { "id": "cert_eTLS", - "ip": "aidantsconnect.beta.gouv.fr/185.21.194.105", + "ip": "www.rdv-solidarites.fr/148.253.96.193", "port": "443", "severity": "INFO", "finding": "not present" }, { "id": "cert_crlDistributionPoints", - "ip": "aidantsconnect.beta.gouv.fr/185.21.194.105", + "ip": "www.rdv-solidarites.fr/148.253.96.193", "port": "443", "severity": "INFO", "finding": "--" }, { "id": "cert_ocspURL", - "ip": "aidantsconnect.beta.gouv.fr/185.21.194.105", + "ip": "www.rdv-solidarites.fr/148.253.96.193", "port": "443", "severity": "INFO", - "finding": "http://r11.o.lencr.org" + "finding": "http://r10.o.lencr.org" }, { "id": "OCSP_stapling", - "ip": "aidantsconnect.beta.gouv.fr/185.21.194.105", + "ip": "www.rdv-solidarites.fr/148.253.96.193", "port": "443", "severity": "LOW", "finding": "not offered" }, { "id": "cert_mustStapleExtension", - "ip": "aidantsconnect.beta.gouv.fr/185.21.194.105", + "ip": "www.rdv-solidarites.fr/148.253.96.193", "port": "443", "severity": "INFO", "finding": "--" }, { "id": "DNS_CAArecord", - "ip": "aidantsconnect.beta.gouv.fr/185.21.194.105", + "ip": "www.rdv-solidarites.fr/148.253.96.193", "port": "443", "severity": "LOW", "finding": "--" }, { "id": "certificate_transparency", - "ip": "aidantsconnect.beta.gouv.fr/185.21.194.105", + "ip": "www.rdv-solidarites.fr/148.253.96.193", "port": "443", "severity": "OK", "finding": "yes (certificate extension)" }, { "id": "certs_countServer", - "ip": "aidantsconnect.beta.gouv.fr/185.21.194.105", + "ip": "www.rdv-solidarites.fr/148.253.96.193", "port": "443", "severity": "INFO", "finding": "2" }, { "id": "certs_list_ordering_problem", - "ip": "aidantsconnect.beta.gouv.fr/185.21.194.105", + "ip": "www.rdv-solidarites.fr/148.253.96.193", "port": "443", "severity": "INFO", "finding": "no" }, { "id": "cert_caIssuers", - "ip": "aidantsconnect.beta.gouv.fr/185.21.194.105", + "ip": "www.rdv-solidarites.fr/148.253.96.193", "port": "443", "severity": "INFO", - "finding": "R11 (Let's Encrypt from US)" + "finding": "R10 (Let's Encrypt from US)" }, { "id": "intermediate_cert <#1>", - "ip": "aidantsconnect.beta.gouv.fr/185.21.194.105", + "ip": "www.rdv-solidarites.fr/148.253.96.193", "port": "443", "severity": "INFO", - "finding": "-----BEGIN CERTIFICATE-----\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\n-----END CERTIFICATE-----" + "finding": "-----BEGIN CERTIFICATE-----\nMIIFBTCCAu2gAwIBAgIQS6hSk/eaL6JzBkuoBI110DANBgkqhkiG9w0BAQsFADBPMQswCQYDVQQGEwJVUzEpMCcGA1UEChMgSW50ZXJuZXQgU2VjdXJpdHkgUmVzZWFyY2ggR3JvdXAxFTATBgNVBAMTDElTUkcgUm9vdCBYMTAeFw0yNDAzMTMwMDAwMDBaFw0yNzAzMTIyMzU5NTlaMDMxCzAJBgNVBAYTAlVTMRYwFAYDVQQKEw1MZXQncyBFbmNyeXB0MQwwCgYDVQQDEwNSMTAwggEiMA0GCSqGSIb3DQEBAQUAA4IBDwAwggEKAoIBAQDPV+XmxFQS7bRH/sknWHZGUCiMHT6I3wWd1bUYKb3dtVq/+vbOo76vACFLYlpaPAEvxVgD9on/jhFD68G14BQHlo9vH9fnuoE5CXVlt8KvGFs3Jijno/QHK20a/6tYvJWuQP/py1fEtVt/eA0YYbwX51TGu0mRzW4Y0YCF7qZlNrx06rxQTOr8IfM4FpOUurDTazgGzRYSespSdcitdrLCnF2YRVxvYXvGLe48E1KGAdlX5jgc3421H5KRmudKHMxFqHJV8LDmowfs/acbZp4/SItxhHFYyTr6717yW0QrPHTnj7JHwQdqzZq3DZb3EoEmUVQK7GH29/Xi8orIlQ2NAgMBAAGjgfgwgfUwDgYDVR0PAQH/BAQDAgGGMB0GA1UdJQQWMBQGCCsGAQUFBwMCBggrBgEFBQcDATASBgNVHRMBAf8ECDAGAQH/AgEAMB0GA1UdDgQWBBS7vMNHpeS8qcbDpHIMEI2iNeHI6DAfBgNVHSMEGDAWgBR5tFnme7bl5AFzgAiIyBpY9umbbjAyBggrBgEFBQcBAQQmMCQwIgYIKwYBBQUHMAKGFmh0dHA6Ly94MS5pLmxlbmNyLm9yZy8wEwYDVR0gBAwwCjAIBgZngQwBAgEwJwYDVR0fBCAwHjAcoBqgGIYWaHR0cDovL3gxLmMubGVuY3Iub3JnLzANBgkqhkiG9w0BAQsFAAOCAgEAkrHnQTfreZ2B5s3iJeE6IOmQRJWjgVzPw139vaBw1bGWKCIL0vIozwzn1OZDjCQiHcFCktEJr59L9MhwTyAWsVrdAfYf+B9haxQnsHKNY67u4s5Lzzfdu6PUzeetUK29v+PsPmI2cJkxp+iN3epi4hKu9ZzUPSwMqtCceb7qPVxEbpYxY1p91n5PJKBLBX9eb9LU6l8zSxPWV7bK3lG4XaMJgnT9x3ies7msFtpKK5bDtotij/l0GaKeA97pb5uwD9KgWvaFXMIEt8jVTjLEvwRdvCn294GPDF08U8lAkIv7tghluaQh1QnlE4SEN4LOECj8dsIGJXpGUk3aU3KkJz9icKy+aUgA+2cP21uh6NcDIS3XyfaZQjmDQ993ChII8SXWupQZVBiIpcWO4RqZk3lr7Bz5MUCwzDIA359e57SSq5CCkY0N4B6Vulk7LktfwrdGNVI5BsC9qqxSwSKgRJeZ9wygIaehbHFHFhcBaMDKpiZlBHyzrsnnlFXCb5s8HKn5LsUgGvB24L7sGNZP2CX7dhHov+YhD+jozLW2p9W4959Bz2EiRmqDtmiXLnzqTpXbI+suyCsohKRg6Un0RC47+cpiVwHiXZAW+cn8eiNIjqbVgXLxKPpdzvvtTnOPlC7SQZSYmdunr3Bf9b77AiC/ZidstK36dRILKz7OA54=\n-----END CERTIFICATE-----" }, { "id": "intermediate_cert_fingerprintSHA256 <#1>", - "ip": "aidantsconnect.beta.gouv.fr/185.21.194.105", + "ip": "www.rdv-solidarites.fr/148.253.96.193", "port": "443", "severity": "INFO", - "finding": "591E9CE6C863D3A079E9FABE1478C7339A26B21269DDE795211361024AE31A44" + "finding": "9D7C3F1AA6AD2B2EC0D5CF1E246F8D9AE6CBC9FD0755AD37BB974B1F2FB603F3" }, { "id": "intermediate_cert_notBefore <#1>", - "ip": "aidantsconnect.beta.gouv.fr/185.21.194.105", + "ip": "www.rdv-solidarites.fr/148.253.96.193", "port": "443", "severity": "INFO", "finding": "2024-03-13 00:00" }, { "id": "intermediate_cert_notAfter <#1>", - "ip": "aidantsconnect.beta.gouv.fr/185.21.194.105", + "ip": "www.rdv-solidarites.fr/148.253.96.193", "port": "443", "severity": "OK", "finding": "2027-03-12 23:59" }, { "id": "intermediate_cert_expiration <#1>", - "ip": "aidantsconnect.beta.gouv.fr/185.21.194.105", + "ip": "www.rdv-solidarites.fr/148.253.96.193", "port": "443", "severity": "OK", "finding": "ok > 40 days" }, { "id": "intermediate_cert_chain <#1>", - "ip": "aidantsconnect.beta.gouv.fr/185.21.194.105", + "ip": "www.rdv-solidarites.fr/148.253.96.193", "port": "443", "severity": "INFO", - "finding": "R11 <-- ISRG Root X1" + "finding": "R10 <-- ISRG Root X1" }, { "id": "intermediate_cert_badOCSP", - "ip": "aidantsconnect.beta.gouv.fr/185.21.194.105", + "ip": "www.rdv-solidarites.fr/148.253.96.193", "port": "443", "severity": "OK", "finding": "intermediate certificate(s) is/are ok" }, { "id": "HTTP_status_code", - "ip": "aidantsconnect.beta.gouv.fr/185.21.194.105", + "ip": "www.rdv-solidarites.fr/148.253.96.193", "port": "443", "severity": "INFO", "finding": "200 OK ('/')" }, { "id": "HTTP_clock_skew", - "ip": "aidantsconnect.beta.gouv.fr/185.21.194.105", + "ip": "www.rdv-solidarites.fr/148.253.96.193", "port": "443", "severity": "INFO", "finding": "0 seconds from localtime" }, { "id": "HTTP_headerTime", - "ip": "aidantsconnect.beta.gouv.fr/185.21.194.105", + "ip": "www.rdv-solidarites.fr/148.253.96.193", "port": "443", "severity": "INFO", - "finding": "1732413703" + "finding": "1733018559" }, { "id": "HSTS_time", - "ip": "aidantsconnect.beta.gouv.fr/185.21.194.105", + "ip": "www.rdv-solidarites.fr/148.253.96.193", "port": "443", - "severity": "MEDIUM", - "finding": "max-age too short. 0 days (=60 seconds) < 15552000 seconds" + "severity": "OK", + "finding": "730 days (=63072000 seconds) > 15552000 seconds" }, { "id": "HSTS_subdomains", - "ip": "aidantsconnect.beta.gouv.fr/185.21.194.105", + "ip": "www.rdv-solidarites.fr/148.253.96.193", "port": "443", - "severity": "INFO", - "finding": "only for this domain" + "severity": "OK", + "finding": "includes subdomains" }, { "id": "HSTS_preload", - "ip": "aidantsconnect.beta.gouv.fr/185.21.194.105", + "ip": "www.rdv-solidarites.fr/148.253.96.193", "port": "443", "severity": "INFO", "finding": "domain is NOT marked for preloading" }, { "id": "HPKP", - "ip": "aidantsconnect.beta.gouv.fr/185.21.194.105", + "ip": "www.rdv-solidarites.fr/148.253.96.193", "port": "443", "severity": "INFO", "finding": "No support for HTTP Public Key Pinning" }, { "id": "banner_server", - "ip": "aidantsconnect.beta.gouv.fr/185.21.194.105", + "ip": "www.rdv-solidarites.fr/148.253.96.193", "port": "443", "severity": "INFO", "finding": "No Server banner line in header, interesting!" }, { "id": "banner_application", - "ip": "aidantsconnect.beta.gouv.fr/185.21.194.105", + "ip": "www.rdv-solidarites.fr/148.253.96.193", "port": "443", "severity": "INFO", "finding": "No application banner found" }, { "id": "cookie_count", - "ip": "aidantsconnect.beta.gouv.fr/185.21.194.105", + "ip": "www.rdv-solidarites.fr/148.253.96.193", "port": "443", "severity": "INFO", - "finding": "0 at '/'" + "finding": "1 at '/'" }, { - "id": "X-Frame-Options", - "ip": "aidantsconnect.beta.gouv.fr/185.21.194.105", + "id": "cookie_secure", + "ip": "www.rdv-solidarites.fr/148.253.96.193", "port": "443", "severity": "OK", - "finding": "DENY" + "finding": "All (1) at '/' marked as secure" + }, + { + "id": "cookie_httponly", + "ip": "www.rdv-solidarites.fr/148.253.96.193", + "port": "443", + "severity": "OK", + "finding": "All (1) at '/' marked as HttpOnly" }, { "id": "X-Content-Type-Options", - "ip": "aidantsconnect.beta.gouv.fr/185.21.194.105", + "ip": "www.rdv-solidarites.fr/148.253.96.193", "port": "443", "severity": "OK", "finding": "nosniff" }, { "id": "Content-Security-Policy", - "ip": "aidantsconnect.beta.gouv.fr/185.21.194.105", + "ip": "www.rdv-solidarites.fr/148.253.96.193", "port": "443", "severity": "OK", - "finding": "style-src-attr 'unsafe-hashes' 'sha256-I/4Jcdrg5KNFrU0X4p2nNmjeGh9aI+9ac0cUllI5SwY=' 'sha256-vYd+FsML43MBXhP+pXOhW9h0Cdq43hkCe4Im/yyvhss='; object-src 'none'; img-src 'self' data: https://www.service-public.fr/resources/v-5cf79a7acf/web/css/img/png/; default-src 'self'; style-src 'self' https://unpkg.com/easymde/dist/easymde.min.css; connect-src 'self' https://stats.beta.gouv.fr/matomo.php https://stats.beta.gouv.fr/piwik.php https://api.sarbacane.com/v1/forms/contacts/upsert https://api-adresse.data.gouv.fr/search/; frame-src https://www.youtube.com/embed/hATrqHG4zYQ https://www.youtube-nocookie.com/embed/hATrqHG4zYQ http://www.youtube.com/embed/hATrqHG4zYQ http://www.youtube-nocookie.com/embed/hATrqHG4zYQ https://www.youtube.com/embed/WTHj_kQXnzs https://www.youtube-nocookie.com/embed/WTHj_kQXnzs http://www.youtube.com/embed/WTHj_kQXnzs http://www.youtube-nocookie.com/embed/WTHj_kQXnzs https://www.youtube.com/embed/ihsm-36I-fE https://www.youtube-nocookie.com/embed/ihsm-36I-fE http://www.youtube.com/embed/ihsm-36I-fE http://www.youtube-nocookie.com/embed/ihsm-36I-fE https://www.youtube.com/embed/AJGo6bydQss https://www.youtube-nocookie.com/embed/AJGo6bydQss http://www.youtube.com/embed/AJGo6bydQss http://www.youtube-nocookie.com/embed/AJGo6bydQss; script-src 'self' https://unpkg.com/stimulus@3.2.2/dist/stimulus.umd.js https://unpkg.com/stimulus@3.2.2/dist/stimulus.js https://unpkg.com/easymde/dist/easymde.min.js https://forms.sbc29.com/form.js https://unpkg.com/tarteaucitronjs@1.15.0/tarteaucitron.js https://unpkg.com/tarteaucitronjs@1.15.0/lang/tarteaucitron.fr.js https://unpkg.com/tarteaucitronjs@1.15.0/tarteaucitron.services.js https://cdn.jsdelivr.net/npm/chart.js@3.7.1/dist/chart.min.js https://cdnjs.cloudflare.com/ajax/libs/chartjs-plugin-datalabels/2.0.0/chartjs-plugin-datalabels.min.js https://code.jquery.com/jquery-3.6.1.js https://code.jquery.com/ui/1.13.1/jquery-ui.js https://cdn.jsdelivr.net/npm/@tarekraafat/autocomplete.js@10.2.7/dist/autoComplete.min.js https://stats.beta.gouv.fr/matomo.js https://stats.beta.gouv.fr/piwik.js 'nonce-JXdFXAOVvS/N4D/pSK0nTg=='" + "finding": "default-src 'self'; font-src 'self' data:; object-src 'none'; worker-src blob:; child-src blob: 'self'; frame-src 'self' *.instatus.com headway-widget.net; media-src 'self' rdv-insertion-medias-production.s3.fr-par.scw.cloud; img-src 'self' data: voxusagers.numerique.gouv.fr; style-src 'self' 'unsafe-inline' *.bootstrapcdn.com api.mapbox.com cdn.headwayapp.co; connect-src 'self' api-adresse.data.gouv.fr etalab-tiles.fr; script-src 'self' 'unsafe-inline' api.mapbox.com cdn.headwayapp.co" + }, + { + "id": "X-XSS-Protection", + "ip": "www.rdv-solidarites.fr/148.253.96.193", + "port": "443", + "severity": "INFO", + "finding": "0" }, { "id": "Referrer-Policy", - "ip": "aidantsconnect.beta.gouv.fr/185.21.194.105", + "ip": "www.rdv-solidarites.fr/148.253.96.193", "port": "443", "severity": "INFO", - "finding": "strict-origin" + "finding": "strict-origin-when-cross-origin" + }, + { + "id": "Cache-Control", + "ip": "www.rdv-solidarites.fr/148.253.96.193", + "port": "443", + "severity": "INFO", + "finding": "max-age=0, private, must-revalidate" }, { "id": "banner_reverseproxy", - "ip": "aidantsconnect.beta.gouv.fr/185.21.194.105", + "ip": "www.rdv-solidarites.fr/148.253.96.193", "port": "443", "severity": "INFO", "cwe": "CWE-200", @@ -44858,7 +39031,7 @@ }, { "id": "heartbleed", - "ip": "aidantsconnect.beta.gouv.fr/185.21.194.105", + "ip": "www.rdv-solidarites.fr/148.253.96.193", "port": "443", "severity": "OK", "cve": "CVE-2014-0160", @@ -44867,7 +39040,7 @@ }, { "id": "CCS", - "ip": "aidantsconnect.beta.gouv.fr/185.21.194.105", + "ip": "www.rdv-solidarites.fr/148.253.96.193", "port": "443", "severity": "OK", "cve": "CVE-2014-0224", @@ -44876,7 +39049,7 @@ }, { "id": "ticketbleed", - "ip": "aidantsconnect.beta.gouv.fr/185.21.194.105", + "ip": "www.rdv-solidarites.fr/148.253.96.193", "port": "443", "severity": "OK", "cve": "CVE-2016-9244", @@ -44885,7 +39058,7 @@ }, { "id": "ROBOT", - "ip": "aidantsconnect.beta.gouv.fr/185.21.194.105", + "ip": "www.rdv-solidarites.fr/148.253.96.193", "port": "443", "severity": "OK", "cve": "CVE-2017-17382 CVE-2017-17427 CVE-2017-17428 CVE-2017-13098 CVE-2017-1000385 CVE-2017-13099 CVE-2016-6883 CVE-2012-5081 CVE-2017-6168", @@ -44894,7 +39067,7 @@ }, { "id": "secure_renego", - "ip": "aidantsconnect.beta.gouv.fr/185.21.194.105", + "ip": "www.rdv-solidarites.fr/148.253.96.193", "port": "443", "severity": "OK", "cwe": "CWE-310", @@ -44902,7 +39075,7 @@ }, { "id": "secure_client_renego", - "ip": "aidantsconnect.beta.gouv.fr/185.21.194.105", + "ip": "www.rdv-solidarites.fr/148.253.96.193", "port": "443", "severity": "OK", "cve": "CVE-2011-1473", @@ -44911,7 +39084,7 @@ }, { "id": "CRIME_TLS", - "ip": "aidantsconnect.beta.gouv.fr/185.21.194.105", + "ip": "www.rdv-solidarites.fr/148.253.96.193", "port": "443", "severity": "OK", "cve": "CVE-2012-4929", @@ -44920,7 +39093,7 @@ }, { "id": "BREACH", - "ip": "aidantsconnect.beta.gouv.fr/185.21.194.105", + "ip": "www.rdv-solidarites.fr/148.253.96.193", "port": "443", "severity": "MEDIUM", "cve": "CVE-2013-3587", @@ -44929,7 +39102,7 @@ }, { "id": "POODLE_SSL", - "ip": "aidantsconnect.beta.gouv.fr/185.21.194.105", + "ip": "www.rdv-solidarites.fr/148.253.96.193", "port": "443", "severity": "OK", "cve": "CVE-2014-3566", @@ -44938,14 +39111,14 @@ }, { "id": "fallback_SCSV", - "ip": "aidantsconnect.beta.gouv.fr/185.21.194.105", + "ip": "www.rdv-solidarites.fr/148.253.96.193", "port": "443", "severity": "OK", "finding": "no protocol below TLS 1.2 offered" }, { "id": "SWEET32", - "ip": "aidantsconnect.beta.gouv.fr/185.21.194.105", + "ip": "www.rdv-solidarites.fr/148.253.96.193", "port": "443", "severity": "OK", "cve": "CVE-2016-2183 CVE-2016-6329", @@ -44954,7 +39127,7 @@ }, { "id": "FREAK", - "ip": "aidantsconnect.beta.gouv.fr/185.21.194.105", + "ip": "www.rdv-solidarites.fr/148.253.96.193", "port": "443", "severity": "OK", "cve": "CVE-2015-0204", @@ -44963,7 +39136,7 @@ }, { "id": "DROWN", - "ip": "aidantsconnect.beta.gouv.fr/185.21.194.105", + "ip": "www.rdv-solidarites.fr/148.253.96.193", "port": "443", "severity": "OK", "cve": "CVE-2016-0800 CVE-2016-0703", @@ -44972,16 +39145,16 @@ }, { "id": "DROWN_hint", - "ip": "aidantsconnect.beta.gouv.fr/185.21.194.105", + "ip": "www.rdv-solidarites.fr/148.253.96.193", "port": "443", "severity": "INFO", "cve": "CVE-2016-0800 CVE-2016-0703", "cwe": "CWE-310", - "finding": "Make sure you don't use this certificate elsewhere with SSLv2 enabled services, see https://search.censys.io/search?resource=hosts&virtual_hosts=INCLUDE&q=59126599AF7C805639C3824349AFFE188DA8226D59D843E5D63EB5D650244762" + "finding": "Make sure you don't use this certificate elsewhere with SSLv2 enabled services, see https://search.censys.io/search?resource=hosts&virtual_hosts=INCLUDE&q=633BD28D00F8947E110D214024F8B8BD21CBFC0BAC0FE9ADECBB467456A886A4" }, { "id": "LOGJAM", - "ip": "aidantsconnect.beta.gouv.fr/185.21.194.105", + "ip": "www.rdv-solidarites.fr/148.253.96.193", "port": "443", "severity": "OK", "cve": "CVE-2015-4000", @@ -44990,7 +39163,7 @@ }, { "id": "LOGJAM-common_primes", - "ip": "aidantsconnect.beta.gouv.fr/185.21.194.105", + "ip": "www.rdv-solidarites.fr/148.253.96.193", "port": "443", "severity": "OK", "cve": "CVE-2015-4000", @@ -44999,7 +39172,7 @@ }, { "id": "BEAST", - "ip": "aidantsconnect.beta.gouv.fr/185.21.194.105", + "ip": "www.rdv-solidarites.fr/148.253.96.193", "port": "443", "severity": "OK", "cve": "CVE-2011-3389", @@ -45008,7 +39181,7 @@ }, { "id": "LUCKY13", - "ip": "aidantsconnect.beta.gouv.fr/185.21.194.105", + "ip": "www.rdv-solidarites.fr/148.253.96.193", "port": "443", "severity": "OK", "cve": "CVE-2013-0169", @@ -45017,7 +39190,7 @@ }, { "id": "winshock", - "ip": "aidantsconnect.beta.gouv.fr/185.21.194.105", + "ip": "www.rdv-solidarites.fr/148.253.96.193", "port": "443", "severity": "OK", "cve": "CVE-2014-6321", @@ -45026,7 +39199,7 @@ }, { "id": "RC4", - "ip": "aidantsconnect.beta.gouv.fr/185.21.194.105", + "ip": "www.rdv-solidarites.fr/148.253.96.193", "port": "443", "severity": "OK", "cve": "CVE-2013-2566 CVE-2015-2808", @@ -45035,399 +39208,1436 @@ }, { "id": "clientsimulation-android_60", - "ip": "aidantsconnect.beta.gouv.fr/185.21.194.105", + "ip": "www.rdv-solidarites.fr/148.253.96.193", "port": "443", "severity": "INFO", "finding": "TLSv1.2 ECDHE-RSA-AES128-GCM-SHA256" }, { "id": "clientsimulation-android_70", - "ip": "aidantsconnect.beta.gouv.fr/185.21.194.105", + "ip": "www.rdv-solidarites.fr/148.253.96.193", "port": "443", "severity": "INFO", "finding": "TLSv1.2 ECDHE-RSA-AES256-GCM-SHA384" }, { "id": "clientsimulation-android_81", - "ip": "aidantsconnect.beta.gouv.fr/185.21.194.105", + "ip": "www.rdv-solidarites.fr/148.253.96.193", "port": "443", "severity": "INFO", "finding": "TLSv1.2 ECDHE-RSA-AES256-GCM-SHA384" }, { "id": "clientsimulation-android_90", - "ip": "aidantsconnect.beta.gouv.fr/185.21.194.105", + "ip": "www.rdv-solidarites.fr/148.253.96.193", "port": "443", "severity": "INFO", "finding": "TLSv1.3 TLS_AES_256_GCM_SHA384" }, { "id": "clientsimulation-android_X", - "ip": "aidantsconnect.beta.gouv.fr/185.21.194.105", + "ip": "www.rdv-solidarites.fr/148.253.96.193", "port": "443", "severity": "INFO", "finding": "TLSv1.3 TLS_AES_256_GCM_SHA384" }, { "id": "clientsimulation-android_11", - "ip": "aidantsconnect.beta.gouv.fr/185.21.194.105", + "ip": "www.rdv-solidarites.fr/148.253.96.193", "port": "443", "severity": "INFO", "finding": "TLSv1.3 TLS_AES_256_GCM_SHA384" }, { "id": "clientsimulation-android_12", - "ip": "aidantsconnect.beta.gouv.fr/185.21.194.105", + "ip": "www.rdv-solidarites.fr/148.253.96.193", "port": "443", "severity": "INFO", "finding": "TLSv1.3 TLS_AES_256_GCM_SHA384" }, { "id": "clientsimulation-chrome_79_win10", - "ip": "aidantsconnect.beta.gouv.fr/185.21.194.105", + "ip": "www.rdv-solidarites.fr/148.253.96.193", "port": "443", "severity": "INFO", "finding": "TLSv1.3 TLS_AES_256_GCM_SHA384" }, { "id": "clientsimulation-chrome_101_win10", - "ip": "aidantsconnect.beta.gouv.fr/185.21.194.105", + "ip": "www.rdv-solidarites.fr/148.253.96.193", "port": "443", "severity": "INFO", "finding": "TLSv1.3 TLS_AES_256_GCM_SHA384" }, { "id": "clientsimulation-firefox_66_win81", - "ip": "aidantsconnect.beta.gouv.fr/185.21.194.105", + "ip": "www.rdv-solidarites.fr/148.253.96.193", "port": "443", "severity": "INFO", "finding": "TLSv1.3 TLS_AES_256_GCM_SHA384" }, { "id": "clientsimulation-firefox_100_win10", - "ip": "aidantsconnect.beta.gouv.fr/185.21.194.105", + "ip": "www.rdv-solidarites.fr/148.253.96.193", "port": "443", "severity": "INFO", "finding": "TLSv1.3 TLS_AES_256_GCM_SHA384" }, { "id": "clientsimulation-ie_6_xp", - "ip": "aidantsconnect.beta.gouv.fr/185.21.194.105", + "ip": "www.rdv-solidarites.fr/148.253.96.193", "port": "443", "severity": "INFO", "finding": "No connection" }, { "id": "clientsimulation-ie_8_win7", - "ip": "aidantsconnect.beta.gouv.fr/185.21.194.105", + "ip": "www.rdv-solidarites.fr/148.253.96.193", "port": "443", "severity": "INFO", "finding": "No connection" }, { "id": "clientsimulation-ie_8_xp", - "ip": "aidantsconnect.beta.gouv.fr/185.21.194.105", + "ip": "www.rdv-solidarites.fr/148.253.96.193", "port": "443", "severity": "INFO", "finding": "No connection" }, { "id": "clientsimulation-ie_11_win7", - "ip": "aidantsconnect.beta.gouv.fr/185.21.194.105", + "ip": "www.rdv-solidarites.fr/148.253.96.193", "port": "443", "severity": "INFO", "finding": "TLSv1.2 DHE-RSA-AES256-GCM-SHA384" }, { "id": "clientsimulation-ie_11_win81", - "ip": "aidantsconnect.beta.gouv.fr/185.21.194.105", + "ip": "www.rdv-solidarites.fr/148.253.96.193", "port": "443", "severity": "INFO", "finding": "TLSv1.2 DHE-RSA-AES256-GCM-SHA384" }, { "id": "clientsimulation-ie_11_winphone81", - "ip": "aidantsconnect.beta.gouv.fr/185.21.194.105", + "ip": "www.rdv-solidarites.fr/148.253.96.193", "port": "443", "severity": "INFO", "finding": "No connection" }, { "id": "clientsimulation-ie_11_win10", - "ip": "aidantsconnect.beta.gouv.fr/185.21.194.105", + "ip": "www.rdv-solidarites.fr/148.253.96.193", "port": "443", "severity": "INFO", "finding": "TLSv1.2 ECDHE-RSA-AES256-GCM-SHA384" }, { "id": "clientsimulation-edge_15_win10", - "ip": "aidantsconnect.beta.gouv.fr/185.21.194.105", + "ip": "www.rdv-solidarites.fr/148.253.96.193", "port": "443", "severity": "INFO", "finding": "TLSv1.2 ECDHE-RSA-AES256-GCM-SHA384" }, { "id": "clientsimulation-edge_101_win10_21h2", - "ip": "aidantsconnect.beta.gouv.fr/185.21.194.105", + "ip": "www.rdv-solidarites.fr/148.253.96.193", "port": "443", "severity": "INFO", "finding": "TLSv1.3 TLS_AES_256_GCM_SHA384" }, { "id": "clientsimulation-safari_121_ios_122", - "ip": "aidantsconnect.beta.gouv.fr/185.21.194.105", + "ip": "www.rdv-solidarites.fr/148.253.96.193", "port": "443", "severity": "INFO", "finding": "TLSv1.3 TLS_AES_256_GCM_SHA384" }, { "id": "clientsimulation-safari_130_osx_10146", - "ip": "aidantsconnect.beta.gouv.fr/185.21.194.105", + "ip": "www.rdv-solidarites.fr/148.253.96.193", "port": "443", "severity": "INFO", "finding": "TLSv1.3 TLS_AES_256_GCM_SHA384" }, { "id": "clientsimulation-safari_154_osx_1231", - "ip": "aidantsconnect.beta.gouv.fr/185.21.194.105", + "ip": "www.rdv-solidarites.fr/148.253.96.193", "port": "443", "severity": "INFO", "finding": "TLSv1.3 TLS_AES_256_GCM_SHA384" }, { "id": "clientsimulation-java_7u25", - "ip": "aidantsconnect.beta.gouv.fr/185.21.194.105", + "ip": "www.rdv-solidarites.fr/148.253.96.193", "port": "443", "severity": "INFO", "finding": "No connection" }, { "id": "clientsimulation-java_8u161", - "ip": "aidantsconnect.beta.gouv.fr/185.21.194.105", + "ip": "www.rdv-solidarites.fr/148.253.96.193", "port": "443", "severity": "INFO", "finding": "TLSv1.2 ECDHE-RSA-AES256-GCM-SHA384" }, { "id": "clientsimulation-java1102", - "ip": "aidantsconnect.beta.gouv.fr/185.21.194.105", + "ip": "www.rdv-solidarites.fr/148.253.96.193", "port": "443", "severity": "INFO", "finding": "TLSv1.3 TLS_AES_256_GCM_SHA384" }, { "id": "clientsimulation-java1703", - "ip": "aidantsconnect.beta.gouv.fr/185.21.194.105", + "ip": "www.rdv-solidarites.fr/148.253.96.193", "port": "443", "severity": "INFO", "finding": "TLSv1.3 TLS_AES_256_GCM_SHA384" }, { "id": "clientsimulation-go_1178", - "ip": "aidantsconnect.beta.gouv.fr/185.21.194.105", + "ip": "www.rdv-solidarites.fr/148.253.96.193", + "port": "443", + "severity": "INFO", + "finding": "TLSv1.3 TLS_AES_256_GCM_SHA384" + }, + { + "id": "clientsimulation-libressl_283", + "ip": "www.rdv-solidarites.fr/148.253.96.193", + "port": "443", + "severity": "INFO", + "finding": "TLSv1.2 ECDHE-RSA-AES256-GCM-SHA384" + }, + { + "id": "clientsimulation-openssl_102e", + "ip": "www.rdv-solidarites.fr/148.253.96.193", + "port": "443", + "severity": "INFO", + "finding": "TLSv1.2 ECDHE-RSA-AES256-GCM-SHA384" + }, + { + "id": "clientsimulation-openssl_110l", + "ip": "www.rdv-solidarites.fr/148.253.96.193", + "port": "443", + "severity": "INFO", + "finding": "TLSv1.2 ECDHE-RSA-AES256-GCM-SHA384" + }, + { + "id": "clientsimulation-openssl_111d", + "ip": "www.rdv-solidarites.fr/148.253.96.193", + "port": "443", + "severity": "INFO", + "finding": "TLSv1.3 TLS_AES_256_GCM_SHA384" + }, + { + "id": "clientsimulation-openssl_303", + "ip": "www.rdv-solidarites.fr/148.253.96.193", "port": "443", "severity": "INFO", "finding": "TLSv1.3 TLS_AES_256_GCM_SHA384" }, { - "id": "clientsimulation-libressl_283", - "ip": "aidantsconnect.beta.gouv.fr/185.21.194.105", - "port": "443", - "severity": "INFO", - "finding": "TLSv1.2 ECDHE-RSA-AES256-GCM-SHA384" + "id": "clientsimulation-apple_mail_16_0", + "ip": "www.rdv-solidarites.fr/148.253.96.193", + "port": "443", + "severity": "INFO", + "finding": "TLSv1.2 ECDHE-RSA-AES256-GCM-SHA384" + }, + { + "id": "clientsimulation-thunderbird_91_9", + "ip": "www.rdv-solidarites.fr/148.253.96.193", + "port": "443", + "severity": "INFO", + "finding": "TLSv1.3 TLS_AES_256_GCM_SHA384" + }, + { + "id": "rating_spec", + "ip": "www.rdv-solidarites.fr/148.253.96.193", + "port": "443", + "severity": "INFO", + "finding": "SSL Labs's 'SSL Server Rating Guide' (version 2009q from 2020-01-30)" + }, + { + "id": "rating_doc", + "ip": "www.rdv-solidarites.fr/148.253.96.193", + "port": "443", + "severity": "INFO", + "finding": "https://github.com/ssllabs/research/wiki/SSL-Server-Rating-Guide" + }, + { + "id": "protocol_support_score", + "ip": "www.rdv-solidarites.fr/148.253.96.193", + "port": "443", + "severity": "INFO", + "finding": "100" + }, + { + "id": "protocol_support_score_weighted", + "ip": "www.rdv-solidarites.fr/148.253.96.193", + "port": "443", + "severity": "INFO", + "finding": "30" + }, + { + "id": "key_exchange_score", + "ip": "www.rdv-solidarites.fr/148.253.96.193", + "port": "443", + "severity": "INFO", + "finding": "90" + }, + { + "id": "key_exchange_score_weighted", + "ip": "www.rdv-solidarites.fr/148.253.96.193", + "port": "443", + "severity": "INFO", + "finding": "27" + }, + { + "id": "cipher_strength_score", + "ip": "www.rdv-solidarites.fr/148.253.96.193", + "port": "443", + "severity": "INFO", + "finding": "60" + }, + { + "id": "cipher_strength_score_weighted", + "ip": "www.rdv-solidarites.fr/148.253.96.193", + "port": "443", + "severity": "INFO", + "finding": "24" + }, + { + "id": "final_score", + "ip": "www.rdv-solidarites.fr/148.253.96.193", + "port": "443", + "severity": "INFO", + "finding": "81" + }, + { + "id": "overall_grade", + "ip": "www.rdv-solidarites.fr/148.253.96.193", + "port": "443", + "severity": "OK", + "finding": "A+" + }, + { + "id": "scanTime", + "ip": "www.rdv-solidarites.fr/148.253.96.193", + "port": "443", + "severity": "INFO", + "finding": "219" + } + ], + "thirdparties": { + "trackers": [], + "cookies": [ + { + "name": "_rdv_sp_session", + "value": "1OimICdPGGBdx1HCki9F4bGycL7%2BJHMnkh%2BWV1aeBAvg9EaA1emmH5U12mZyRrz0Uh9kFQrsbKN8XgfMhomHXLfanTL1r2nB%2FrV%2B%2BGho6fZDusZoX2b98TTY5k4fdql3h4%2FP8WzPUVl1DvX705YLgKkPjxxEkvPPmQbwutYvIVo%2Fr3yAplHj1mFO6PyYJBe6C4RoUUdbq4ey4r0ewbY9EydqqNAGwa2%2ByStluGhw6fe5XCh4kkVfsynvaHyIrSHSg9yULQdD1BOs3M2YiLXTIrSZPEhqBR36%2F7CXXxRCioyPv8DFAn8TF3ElG%2Fia--Tw629IEstkgh8su5--FTDOzNf8GSF2dFgWX5UugA%3D%3D", + "domain": "www.rdv-solidarites.fr", + "path": "/", + "expires": 1733047162.406671, + "size": 399, + "httpOnly": true, + "secure": true, + "session": false, + "sameSite": "Lax", + "sameParty": false, + "sourceScheme": "Secure", + "sourcePort": 443 + } + ], + "headers": { + "cache-control": "max-age=0, private, must-revalidate", + "content-encoding": "gzip", + "content-security-policy": "default-src 'self'; font-src 'self' data:; object-src 'none'; worker-src blob:; child-src blob: 'self'; frame-src 'self' *.instatus.com headway-widget.net; media-src 'self' rdv-insertion-medias-production.s3.fr-par.scw.cloud; img-src 'self' data: voxusagers.numerique.gouv.fr; style-src 'self' 'unsafe-inline' *.bootstrapcdn.com api.mapbox.com cdn.headwayapp.co; connect-src 'self' api-adresse.data.gouv.fr etalab-tiles.fr; script-src 'self' 'unsafe-inline' api.mapbox.com cdn.headwayapp.co", + "content-type": "text/html; charset=utf-8", + "date": "Sun, 01 Dec 2024 01:59:22 GMT", + "etag": "W/\"7460c902d0c9cae561bca6d292455c6f\"", + "link": "; rel=preload; as=style; nopush,; rel=preload; as=style; nopush,; rel=preload; as=style; nopush,; rel=preload; as=script; nopush", + "referrer-policy": "strict-origin-when-cross-origin", + "set-cookie": "_rdv_sp_session=1OimICdPGGBdx1HCki9F4bGycL7%2BJHMnkh%2BWV1aeBAvg9EaA1emmH5U12mZyRrz0Uh9kFQrsbKN8XgfMhomHXLfanTL1r2nB%2FrV%2B%2BGho6fZDusZoX2b98TTY5k4fdql3h4%2FP8WzPUVl1DvX705YLgKkPjxxEkvPPmQbwutYvIVo%2Fr3yAplHj1mFO6PyYJBe6C4RoUUdbq4ey4r0ewbY9EydqqNAGwa2%2ByStluGhw6fe5XCh4kkVfsynvaHyIrSHSg9yULQdD1BOs3M2YiLXTIrSZPEhqBR36%2F7CXXxRCioyPv8DFAn8TF3ElG%2Fia--Tw629IEstkgh8su5--FTDOzNf8GSF2dFgWX5UugA%3D%3D; path=/; expires=Sun, 01 Dec 2024 09:59:22 GMT; secure; HttpOnly; SameSite=Lax", + "strict-transport-security": "max-age=63072000; includeSubDomains", + "x-content-type-options": "nosniff", + "x-download-options": "noopen", + "x-permitted-cross-domain-policies": "none", + "x-request-id": "0d5ce11b-5e56-42d6-a602-d83d59d4b6ef\n0d5ce11b-5e56-42d6-a602-d83d59d4b6ef", + "x-runtime": "0.018836", + "x-xss-protection": "0" + }, + "endpoints": [ + { + "hostname": "www.rdv-solidarites.fr", + "ip": "148.253.96.193", + "geoip": { + "continent": { + "code": "EU", + "geoname_id": 6255148, + "names": { + "de": "Europa", + "en": "Europe", + "es": "Europa", + "fr": "Europe", + "ja": "ヨーロッパ", + "pt-BR": "Europa", + "ru": "Европа", + "zh-CN": "欧洲" + } + }, + "country": { + "geoname_id": 3017382, + "is_in_european_union": true, + "iso_code": "FR", + "names": { + "de": "Frankreich", + "en": "France", + "es": "Francia", + "fr": "France", + "ja": "フランス共和国", + "pt-BR": "França", + "ru": "Франция", + "zh-CN": "法国" + } + }, + "location": { + "accuracy_radius": 500, + "latitude": 48.8582, + "longitude": 2.3387, + "time_zone": "Europe/Paris" + }, + "registered_country": { + "geoname_id": 3017382, + "is_in_european_union": true, + "iso_code": "FR", + "names": { + "de": "Frankreich", + "en": "France", + "es": "Francia", + "fr": "France", + "ja": "フランス共和国", + "pt-BR": "França", + "ru": "Франция", + "zh-CN": "法国" + } + } + } + } + ] + }, + "wappalyzer": { + "urls": { + "https://www.rdv-solidarites.fr/": { + "status": 200 + } + }, + "technologies": [ + { + "slug": "ruby", + "name": "Ruby", + "description": "Ruby is an open-source object-oriented programming language.", + "confidence": 100, + "version": null, + "icon": "Ruby.png", + "website": "https://ruby-lang.org", + "cpe": "cpe:2.3:a:ruby-lang:ruby:*:*:*:*:*:*:*:*", + "categories": [ + { + "id": 27, + "slug": "programming-languages", + "name": "Programming languages" + } + ] + }, + { + "slug": "ruby-on-rails", + "name": "Ruby on Rails", + "description": "Ruby on Rails is a server-side web application framework written in Ruby under the MIT License.", + "confidence": 100, + "version": null, + "icon": "Ruby on Rails.svg", + "website": "https://rubyonrails.org", + "cpe": "cpe:2.3:a:rubyonrails:rails:*:*:*:*:*:*:*:*", + "categories": [ + { + "id": 18, + "slug": "web-frameworks", + "name": "Web frameworks" + } + ], + "rootPath": true + }, + { + "slug": "turbolinks", + "name": "Turbolinks", + "description": "Turbolinks is a Rails feature, available as a gem and enabled by default in new Rails apps. It is intended to speed up navigating between pages of your application.", + "confidence": 100, + "version": null, + "icon": "default.svg", + "website": "https://github.com/turbolinks/turbolinks", + "cpe": null, + "categories": [ + { + "id": 92, + "slug": "performance", + "name": "Performance" + } + ], + "rootPath": true + }, + { + "slug": "sendinblue", + "name": "Sendinblue", + "description": "Sendinblue is an email marketing solution for small and medium-sized businesses that want to send and automate email marketing campaigns.", + "confidence": 100, + "version": null, + "icon": "Sendinblue.svg", + "website": "https://www.sendinblue.com", + "cpe": null, + "categories": [ + { + "id": 32, + "slug": "marketing-automation", + "name": "Marketing automation" + }, + { + "id": 75, + "slug": "email", + "name": "Email" + } + ], + "rootPath": true + }, + { + "slug": "hsts", + "name": "HSTS", + "description": "HTTP Strict Transport Security (HSTS) informs browsers that the site should only be accessed using HTTPS.", + "confidence": 100, + "version": null, + "icon": "default.svg", + "website": "https://www.rfc-editor.org/rfc/rfc6797#section-6.1", + "cpe": null, + "categories": [ + { + "id": 16, + "slug": "security", + "name": "Security" + } + ], + "rootPath": true + } + ] + }, + "zap": null, + "nuclei": [ + { + "template": "dns/dns-saas-service-detection.yaml", + "template-url": "https://templates.nuclei.sh/public/dns-saas-service-detection", + "template-id": "dns-saas-service-detection", + "template-path": "/home/runner/nuclei-templates/dns/dns-saas-service-detection.yaml", + "info": { + "name": "DNS SaaS Service Detection", + "author": [ + "noah @thesubtlety", + "pdteam" + ], + "tags": [ + "dns", + "service" + ], + "description": "A CNAME DNS record was discovered", + "reference": [ + "https://ns1.com/resources/cname", + "https://www.theregister.com/2021/02/24/dns_cname_tracking/", + "https://www.ionos.com/digitalguide/hosting/technical-matters/cname-record/" + ], + "severity": "info", + "metadata": { + "max-request": 1 + } + }, + "type": "dns", + "host": "www.rdv-solidarites.fr.", + "matched-at": "www.rdv-solidarites.fr", + "extracted-results": [ + "production-rdv-solidarites.osc-secnum-fr1.scalingo.io." + ], + "timestamp": "2024-12-01T02:04:04.578468652Z", + "matcher-status": true }, { - "id": "clientsimulation-openssl_102e", - "ip": "aidantsconnect.beta.gouv.fr/185.21.194.105", - "port": "443", - "severity": "INFO", - "finding": "TLSv1.2 ECDHE-RSA-AES256-GCM-SHA384" + "template": "dns/caa-fingerprint.yaml", + "template-url": "https://templates.nuclei.sh/public/caa-fingerprint", + "template-id": "caa-fingerprint", + "template-path": "/home/runner/nuclei-templates/dns/caa-fingerprint.yaml", + "info": { + "name": "CAA Record", + "author": [ + "pdteam" + ], + "tags": [ + "dns", + "caa" + ], + "description": "A CAA record was discovered. A CAA record is used to specify which certificate authorities (CAs) are allowed to issue certificates for a domain.", + "reference": [ + "https://support.dnsimple.com/articles/caa-record/#whats-a-caa-record" + ], + "severity": "info", + "metadata": { + "max-request": 1 + }, + "classification": { + "cve-id": null, + "cwe-id": [ + "cwe-200" + ] + } + }, + "type": "dns", + "host": "www.rdv-solidarites.fr.", + "matched-at": "www.rdv-solidarites.fr", + "timestamp": "2024-12-01T02:04:05.72896453Z", + "matcher-status": true }, { - "id": "clientsimulation-openssl_110l", - "ip": "aidantsconnect.beta.gouv.fr/185.21.194.105", - "port": "443", - "severity": "INFO", - "finding": "TLSv1.2 ECDHE-RSA-AES256-GCM-SHA384" + "template": "http/miscellaneous/form-detection.yaml", + "template-url": "https://templates.nuclei.sh/public/form-detection", + "template-id": "form-detection", + "template-path": "/home/runner/nuclei-templates/http/miscellaneous/form-detection.yaml", + "info": { + "name": "Form Detection", + "author": [ + "pdteam" + ], + "tags": [ + "form", + "misc", + "miscellaneous" + ], + "description": "A template to detect HTML Forms in page response.\n", + "reference": [ + "https://github.com/dirtycoder0124/formcrawler" + ], + "severity": "info", + "metadata": { + "max-request": 1 + } + }, + "type": "http", + "host": "https://www.rdv-solidarites.fr", + "matched-at": "https://www.rdv-solidarites.fr", + "ip": "80.247.13.145", + "timestamp": "2024-12-01T02:04:54.757336371Z", + "curl-command": "curl -X 'GET' -H 'Accept: */*' -H 'Accept-Language: en' -H 'User-Agent: Nuclei - Open-source project (github.com/projectdiscovery/nuclei)' 'https://www.rdv-solidarites.fr'", + "matcher-status": true }, { - "id": "clientsimulation-openssl_111d", - "ip": "aidantsconnect.beta.gouv.fr/185.21.194.105", - "port": "443", - "severity": "INFO", - "finding": "TLSv1.3 TLS_AES_256_GCM_SHA384" + "template": "http/misconfiguration/http-missing-security-headers.yaml", + "template-url": "https://templates.nuclei.sh/public/http-missing-security-headers", + "template-id": "http-missing-security-headers", + "template-path": "/home/runner/nuclei-templates/http/misconfiguration/http-missing-security-headers.yaml", + "info": { + "name": "HTTP Missing Security Headers", + "author": [ + "socketz", + "geeknik", + "g4l1t0", + "convisoappsec", + "kurohost", + "dawid-czarnecki", + "forgedhallpass", + "jub0bs", + "userdehghani" + ], + "tags": [ + "misconfig", + "headers", + "generic" + ], + "description": "This template searches for missing HTTP security headers. The impact of these missing headers can vary.\n", + "severity": "info", + "metadata": { + "max-request": 1 + } + }, + "matcher-name": "cross-origin-opener-policy", + "type": "http", + "host": "https://www.rdv-solidarites.fr", + "matched-at": "https://www.rdv-solidarites.fr", + "ip": "80.247.13.145", + "timestamp": "2024-12-01T02:04:58.962000346Z", + "curl-command": "curl -X 'GET' -H 'Accept: */*' -H 'Accept-Language: en' -H 'User-Agent: Nuclei - Open-source project (github.com/projectdiscovery/nuclei)' 'https://www.rdv-solidarites.fr'", + "matcher-status": true }, { - "id": "clientsimulation-openssl_303", - "ip": "aidantsconnect.beta.gouv.fr/185.21.194.105", - "port": "443", - "severity": "INFO", - "finding": "TLSv1.3 TLS_AES_256_GCM_SHA384" + "template": "http/misconfiguration/http-missing-security-headers.yaml", + "template-url": "https://templates.nuclei.sh/public/http-missing-security-headers", + "template-id": "http-missing-security-headers", + "template-path": "/home/runner/nuclei-templates/http/misconfiguration/http-missing-security-headers.yaml", + "info": { + "name": "HTTP Missing Security Headers", + "author": [ + "socketz", + "geeknik", + "g4l1t0", + "convisoappsec", + "kurohost", + "dawid-czarnecki", + "forgedhallpass", + "jub0bs", + "userdehghani" + ], + "tags": [ + "misconfig", + "headers", + "generic" + ], + "description": "This template searches for missing HTTP security headers. The impact of these missing headers can vary.\n", + "severity": "info", + "metadata": { + "max-request": 1 + } + }, + "matcher-name": "cross-origin-resource-policy", + "type": "http", + "host": "https://www.rdv-solidarites.fr", + "matched-at": "https://www.rdv-solidarites.fr", + "ip": "80.247.13.145", + "timestamp": "2024-12-01T02:04:58.962039599Z", + "curl-command": "curl -X 'GET' -H 'Accept: */*' -H 'Accept-Language: en' -H 'User-Agent: Nuclei - Open-source project (github.com/projectdiscovery/nuclei)' 'https://www.rdv-solidarites.fr'", + "matcher-status": true }, { - "id": "clientsimulation-apple_mail_16_0", - "ip": "aidantsconnect.beta.gouv.fr/185.21.194.105", - "port": "443", - "severity": "INFO", - "finding": "TLSv1.2 ECDHE-RSA-AES256-GCM-SHA384" + "template": "http/misconfiguration/http-missing-security-headers.yaml", + "template-url": "https://templates.nuclei.sh/public/http-missing-security-headers", + "template-id": "http-missing-security-headers", + "template-path": "/home/runner/nuclei-templates/http/misconfiguration/http-missing-security-headers.yaml", + "info": { + "name": "HTTP Missing Security Headers", + "author": [ + "socketz", + "geeknik", + "g4l1t0", + "convisoappsec", + "kurohost", + "dawid-czarnecki", + "forgedhallpass", + "jub0bs", + "userdehghani" + ], + "tags": [ + "misconfig", + "headers", + "generic" + ], + "description": "This template searches for missing HTTP security headers. The impact of these missing headers can vary.\n", + "severity": "info", + "metadata": { + "max-request": 1 + } + }, + "matcher-name": "permissions-policy", + "type": "http", + "host": "https://www.rdv-solidarites.fr", + "matched-at": "https://www.rdv-solidarites.fr", + "ip": "80.247.13.145", + "timestamp": "2024-12-01T02:04:58.962053345Z", + "curl-command": "curl -X 'GET' -H 'Accept: */*' -H 'Accept-Language: en' -H 'User-Agent: Nuclei - Open-source project (github.com/projectdiscovery/nuclei)' 'https://www.rdv-solidarites.fr'", + "matcher-status": true }, { - "id": "clientsimulation-thunderbird_91_9", - "ip": "aidantsconnect.beta.gouv.fr/185.21.194.105", - "port": "443", - "severity": "INFO", - "finding": "TLSv1.3 TLS_AES_256_GCM_SHA384" + "template": "http/misconfiguration/http-missing-security-headers.yaml", + "template-url": "https://templates.nuclei.sh/public/http-missing-security-headers", + "template-id": "http-missing-security-headers", + "template-path": "/home/runner/nuclei-templates/http/misconfiguration/http-missing-security-headers.yaml", + "info": { + "name": "HTTP Missing Security Headers", + "author": [ + "socketz", + "geeknik", + "g4l1t0", + "convisoappsec", + "kurohost", + "dawid-czarnecki", + "forgedhallpass", + "jub0bs", + "userdehghani" + ], + "tags": [ + "misconfig", + "headers", + "generic" + ], + "description": "This template searches for missing HTTP security headers. The impact of these missing headers can vary.\n", + "severity": "info", + "metadata": { + "max-request": 1 + } + }, + "matcher-name": "x-frame-options", + "type": "http", + "host": "https://www.rdv-solidarites.fr", + "matched-at": "https://www.rdv-solidarites.fr", + "ip": "80.247.13.145", + "timestamp": "2024-12-01T02:04:58.9620667Z", + "curl-command": "curl -X 'GET' -H 'Accept: */*' -H 'Accept-Language: en' -H 'User-Agent: Nuclei - Open-source project (github.com/projectdiscovery/nuclei)' 'https://www.rdv-solidarites.fr'", + "matcher-status": true }, { - "id": "rating_spec", - "ip": "aidantsconnect.beta.gouv.fr/185.21.194.105", - "port": "443", - "severity": "INFO", - "finding": "SSL Labs's 'SSL Server Rating Guide' (version 2009q from 2020-01-30)" + "template": "http/misconfiguration/http-missing-security-headers.yaml", + "template-url": "https://templates.nuclei.sh/public/http-missing-security-headers", + "template-id": "http-missing-security-headers", + "template-path": "/home/runner/nuclei-templates/http/misconfiguration/http-missing-security-headers.yaml", + "info": { + "name": "HTTP Missing Security Headers", + "author": [ + "socketz", + "geeknik", + "g4l1t0", + "convisoappsec", + "kurohost", + "dawid-czarnecki", + "forgedhallpass", + "jub0bs", + "userdehghani" + ], + "tags": [ + "misconfig", + "headers", + "generic" + ], + "description": "This template searches for missing HTTP security headers. The impact of these missing headers can vary.\n", + "severity": "info", + "metadata": { + "max-request": 1 + } + }, + "matcher-name": "clear-site-data", + "type": "http", + "host": "https://www.rdv-solidarites.fr", + "matched-at": "https://www.rdv-solidarites.fr", + "ip": "80.247.13.145", + "timestamp": "2024-12-01T02:04:58.962079684Z", + "curl-command": "curl -X 'GET' -H 'Accept: */*' -H 'Accept-Language: en' -H 'User-Agent: Nuclei - Open-source project (github.com/projectdiscovery/nuclei)' 'https://www.rdv-solidarites.fr'", + "matcher-status": true }, { - "id": "rating_doc", - "ip": "aidantsconnect.beta.gouv.fr/185.21.194.105", - "port": "443", - "severity": "INFO", - "finding": "https://github.com/ssllabs/research/wiki/SSL-Server-Rating-Guide" + "template": "http/misconfiguration/http-missing-security-headers.yaml", + "template-url": "https://templates.nuclei.sh/public/http-missing-security-headers", + "template-id": "http-missing-security-headers", + "template-path": "/home/runner/nuclei-templates/http/misconfiguration/http-missing-security-headers.yaml", + "info": { + "name": "HTTP Missing Security Headers", + "author": [ + "socketz", + "geeknik", + "g4l1t0", + "convisoappsec", + "kurohost", + "dawid-czarnecki", + "forgedhallpass", + "jub0bs", + "userdehghani" + ], + "tags": [ + "misconfig", + "headers", + "generic" + ], + "description": "This template searches for missing HTTP security headers. The impact of these missing headers can vary.\n", + "severity": "info", + "metadata": { + "max-request": 1 + } + }, + "matcher-name": "cross-origin-embedder-policy", + "type": "http", + "host": "https://www.rdv-solidarites.fr", + "matched-at": "https://www.rdv-solidarites.fr", + "ip": "80.247.13.145", + "timestamp": "2024-12-01T02:04:58.962092869Z", + "curl-command": "curl -X 'GET' -H 'Accept: */*' -H 'Accept-Language: en' -H 'User-Agent: Nuclei - Open-source project (github.com/projectdiscovery/nuclei)' 'https://www.rdv-solidarites.fr'", + "matcher-status": true }, { - "id": "protocol_support_score", - "ip": "aidantsconnect.beta.gouv.fr/185.21.194.105", - "port": "443", - "severity": "INFO", - "finding": "100" + "template": "http/miscellaneous/robots-txt-endpoint.yaml", + "template-url": "https://templates.nuclei.sh/public/robots-txt-endpoint", + "template-id": "robots-txt-endpoint", + "template-path": "/home/runner/nuclei-templates/http/miscellaneous/robots-txt-endpoint.yaml", + "info": { + "name": "robots.txt endpoint prober", + "author": [ + "caspergn", + "pdteam" + ], + "tags": [ + "miscellaneous", + "misc", + "generic" + ], + "severity": "info", + "metadata": { + "max-request": 2 + } + }, + "type": "http", + "host": "https://www.rdv-solidarites.fr", + "matched-at": "https://www.rdv-solidarites.fr/robots.txt", + "ip": "80.247.13.145", + "timestamp": "2024-12-01T02:05:10.221425444Z", + "curl-command": "curl -X 'GET' -H 'Accept: */*' -H 'Accept-Language: en' -H 'User-Agent: Nuclei - Open-source project (github.com/projectdiscovery/nuclei)' 'https://www.rdv-solidarites.fr/robots.txt'", + "matcher-status": true }, { - "id": "protocol_support_score_weighted", - "ip": "aidantsconnect.beta.gouv.fr/185.21.194.105", - "port": "443", - "severity": "INFO", - "finding": "30" + "template": "http/miscellaneous/robots-txt.yaml", + "template-url": "https://templates.nuclei.sh/public/robots-txt", + "template-id": "robots-txt", + "template-path": "/home/runner/nuclei-templates/http/miscellaneous/robots-txt.yaml", + "info": { + "name": "robots.txt file", + "author": [ + "caspergn", + "thezakman" + ], + "tags": [ + "miscellaneous", + "misc", + "generic" + ], + "severity": "info", + "metadata": { + "max-request": 1 + } + }, + "type": "http", + "host": "https://www.rdv-solidarites.fr", + "matched-at": "https://www.rdv-solidarites.fr/robots.txt", + "ip": "80.247.13.145", + "timestamp": "2024-12-01T02:05:10.279296926Z", + "curl-command": "curl -X 'GET' -H 'Accept: */*' -H 'Accept-Language: en' -H 'User-Agent: Nuclei - Open-source project (github.com/projectdiscovery/nuclei)' 'https://www.rdv-solidarites.fr/robots.txt'", + "matcher-status": true }, { - "id": "key_exchange_score", - "ip": "aidantsconnect.beta.gouv.fr/185.21.194.105", - "port": "443", - "severity": "INFO", - "finding": "90" + "template": "http/miscellaneous/security-txt.yaml", + "template-url": "https://templates.nuclei.sh/public/security-txt", + "template-id": "security-txt", + "template-path": "/home/runner/nuclei-templates/http/miscellaneous/security-txt.yaml", + "info": { + "name": "security.txt File", + "author": [ + "bad5ect0r", + "noraj" + ], + "tags": [ + "miscellaneous", + "misc", + "generic" + ], + "description": "File similar to robots.txt but intended to be read by humans wishing to contact a website’s owner about security issues. Often defines a security policy and contact details.\n", + "reference": [ + "https://securitytxt.org/", + "https://community.turgensec.com/security-txt-progress-in-ethical-security-research/" + ], + "severity": "info", + "metadata": { + "max-request": 2, + "shodan-query": "http.securitytxt:contact http.status:200", + "verified": true + } + }, + "type": "http", + "host": "https://www.rdv-solidarites.fr", + "matched-at": "https://www.rdv-solidarites.fr/.well-known/security.txt", + "extracted-results": [ + " mailto:contact@rdv-solidarites.fr" + ], + "ip": "80.247.13.145", + "timestamp": "2024-12-01T02:05:10.311218237Z", + "curl-command": "curl -X 'GET' -H 'Accept: */*' -H 'Accept-Language: en' -H 'User-Agent: Nuclei - Open-source project (github.com/projectdiscovery/nuclei)' 'https://www.rdv-solidarites.fr/.well-known/security.txt'", + "matcher-status": true }, { - "id": "key_exchange_score_weighted", - "ip": "aidantsconnect.beta.gouv.fr/185.21.194.105", - "port": "443", - "severity": "INFO", - "finding": "27" + "template": "ssl/detect-ssl-issuer.yaml", + "template-url": "https://templates.nuclei.sh/public/ssl-issuer", + "template-id": "ssl-issuer", + "template-path": "/home/runner/nuclei-templates/ssl/detect-ssl-issuer.yaml", + "info": { + "name": "Detect SSL Certificate Issuer", + "author": [ + "lingtren" + ], + "tags": [ + "ssl", + "tls" + ], + "description": "Extract the issuer's organization from the target's certificate. Issuers are entities which sign and distribute certificates.\n", + "severity": "info", + "metadata": { + "max-request": 1 + } + }, + "type": "ssl", + "host": "www.rdv-solidarites.fr", + "matched-at": "www.rdv-solidarites.fr:443", + "extracted-results": [ + "Let's Encrypt" + ], + "ip": "80.247.13.145", + "timestamp": "2024-12-01T02:11:08.59382638Z", + "matcher-status": true }, { - "id": "cipher_strength_score", - "ip": "aidantsconnect.beta.gouv.fr/185.21.194.105", - "port": "443", - "severity": "INFO", - "finding": "60" + "template": "ssl/ssl-dns-names.yaml", + "template-url": "https://templates.nuclei.sh/public/ssl-dns-names", + "template-id": "ssl-dns-names", + "template-path": "/home/runner/nuclei-templates/ssl/ssl-dns-names.yaml", + "info": { + "name": "SSL DNS Names", + "author": [ + "pdteam" + ], + "tags": [ + "ssl", + "tls" + ], + "description": "Extract the Subject Alternative Name (SAN) from the target's certificate. SAN facilitates the usage of additional hostnames with the same certificate.\n", + "severity": "info", + "metadata": { + "max-request": 1 + } + }, + "type": "ssl", + "host": "www.rdv-solidarites.fr", + "matched-at": "www.rdv-solidarites.fr:443", + "extracted-results": [ + "www.rdv-solidarites.fr" + ], + "ip": "80.247.13.145", + "timestamp": "2024-12-01T02:11:08.593974808Z", + "matcher-status": true }, { - "id": "cipher_strength_score_weighted", - "ip": "aidantsconnect.beta.gouv.fr/185.21.194.105", - "port": "443", - "severity": "INFO", - "finding": "24" + "template": "ssl/tls-version.yaml", + "template-url": "https://templates.nuclei.sh/public/tls-version", + "template-id": "tls-version", + "template-path": "/home/runner/nuclei-templates/ssl/tls-version.yaml", + "info": { + "name": "TLS Version - Detect", + "author": [ + "pdteam", + "pussycat0x" + ], + "tags": [ + "ssl", + "tls" + ], + "description": "TLS version detection is a security process used to determine the version of the Transport Layer Security (TLS) protocol used by a computer or server.\nIt is important to detect the TLS version in order to ensure secure communication between two computers or servers.\n", + "severity": "info", + "metadata": { + "max-request": 4 + } + }, + "type": "ssl", + "host": "www.rdv-solidarites.fr", + "matched-at": "www.rdv-solidarites.fr:443", + "extracted-results": [ + "tls12" + ], + "ip": "80.247.13.145", + "timestamp": "2024-12-01T02:11:09.817627809Z", + "matcher-status": true }, { - "id": "final_score", - "ip": "aidantsconnect.beta.gouv.fr/185.21.194.105", - "port": "443", - "severity": "INFO", - "finding": "81" - }, + "template": "ssl/tls-version.yaml", + "template-url": "https://templates.nuclei.sh/public/tls-version", + "template-id": "tls-version", + "template-path": "/home/runner/nuclei-templates/ssl/tls-version.yaml", + "info": { + "name": "TLS Version - Detect", + "author": [ + "pdteam", + "pussycat0x" + ], + "tags": [ + "ssl", + "tls" + ], + "description": "TLS version detection is a security process used to determine the version of the Transport Layer Security (TLS) protocol used by a computer or server.\nIt is important to detect the TLS version in order to ensure secure communication between two computers or servers.\n", + "severity": "info", + "metadata": { + "max-request": 4 + } + }, + "type": "ssl", + "host": "www.rdv-solidarites.fr", + "matched-at": "www.rdv-solidarites.fr:443", + "extracted-results": [ + "tls13" + ], + "ip": "80.247.13.145", + "timestamp": "2024-12-01T02:11:10.007128827Z", + "matcher-status": true + } + ], + "lhr": [ { - "id": "overall_grade", - "ip": "aidantsconnect.beta.gouv.fr/185.21.194.105", - "port": "443", - "severity": "OK", - "finding": "A" - }, + "requestedUrl": "https://www.rdv-solidarites.fr/", + "finalUrl": "https://www.rdv-solidarites.fr/", + "fetchTime": "2024-12-01T01:58:58.292Z", + "runWarnings": [], + "categories": { + "performance": { + "title": "Performance", + "supportedModes": [ + "navigation", + "timespan", + "snapshot" + ], + "id": "performance", + "score": 0.9 + }, + "accessibility": { + "title": "Accessibility", + "description": "These checks highlight opportunities to [improve the accessibility of your web app](https://developers.google.com/web/fundamentals/accessibility). Only a subset of accessibility issues can be automatically detected so manual testing is also encouraged.", + "manualDescription": "These items address areas which an automated testing tool cannot cover. Learn more in our guide on [conducting an accessibility review](https://developers.google.com/web/fundamentals/accessibility/how-to-review).", + "supportedModes": [ + "navigation", + "snapshot" + ], + "id": "accessibility", + "score": 1 + }, + "best-practices": { + "title": "Best Practices", + "supportedModes": [ + "navigation", + "timespan", + "snapshot" + ], + "id": "best-practices", + "score": 1 + }, + "seo": { + "title": "SEO", + "description": "These checks ensure that your page is following basic search engine optimization advice. There are many additional factors Lighthouse does not score here that may affect your search ranking, including performance on [Core Web Vitals](https://web.dev/learn-web-vitals/). [Learn more](https://support.google.com/webmasters/answer/35769).", + "manualDescription": "Run these additional validators on your site to check additional SEO best practices.", + "supportedModes": [ + "navigation", + "snapshot" + ], + "id": "seo", + "score": 0.92 + }, + "pwa": { + "title": "PWA", + "description": "These checks validate the aspects of a Progressive Web App. [Learn more](https://developers.google.com/web/progressive-web-apps/checklist).", + "manualDescription": "These checks are required by the baseline [PWA Checklist](https://developers.google.com/web/progressive-web-apps/checklist) but are not automatically checked by Lighthouse. They do not affect your score but it's important that you verify them manually.", + "supportedModes": [ + "navigation" + ], + "id": "pwa", + "score": 0.4 + } + }, + "audits": { + "metrics": { + "id": "metrics", + "title": "Metrics", + "description": "Collects all available metrics.", + "score": null, + "scoreDisplayMode": "informative", + "numericValue": 2881, + "numericUnit": "millisecond", + "details": { + "type": "debugdata", + "items": [ + { + "firstContentfulPaint": 2716, + "firstMeaningfulPaint": 2791, + "largestContentfulPaint": 2941, + "interactive": 2881, + "speedIndex": 2716, + "totalBlockingTime": 46, + "maxPotentialFID": 86, + "cumulativeLayoutShift": 0.004098124186197916, + "cumulativeLayoutShiftMainFrame": 0.004098124186197916, + "totalCumulativeLayoutShift": 0.004098124186197916, + "observedTimeOrigin": 0, + "observedTimeOriginTs": 781585289, + "observedNavigationStart": 0, + "observedNavigationStartTs": 781585289, + "observedFirstPaint": 687, + "observedFirstPaintTs": 782272423, + "observedFirstContentfulPaint": 687, + "observedFirstContentfulPaintTs": 782272423, + "observedFirstContentfulPaintAllFrames": 687, + "observedFirstContentfulPaintAllFramesTs": 782272423, + "observedFirstMeaningfulPaint": 687, + "observedFirstMeaningfulPaintTs": 782272423, + "observedLargestContentfulPaint": 687, + "observedLargestContentfulPaintTs": 782272423, + "observedLargestContentfulPaintAllFrames": 687, + "observedLargestContentfulPaintAllFramesTs": 782272423, + "observedTraceEnd": 3262, + "observedTraceEndTs": 784847419, + "observedLoad": 862, + "observedLoadTs": 782447779, + "observedDomContentLoaded": 692, + "observedDomContentLoadedTs": 782277172, + "observedCumulativeLayoutShift": 0.004098124186197916, + "observedCumulativeLayoutShiftMainFrame": 0.004098124186197916, + "observedTotalCumulativeLayoutShift": 0.004098124186197916, + "observedFirstVisualChange": 700, + "observedFirstVisualChangeTs": 782285289, + "observedLastVisualChange": 1300, + "observedLastVisualChangeTs": 782885289, + "observedSpeedIndex": 715, + "observedSpeedIndexTs": 782300373 + }, + { + "lcpInvalidated": false + } + ] + } + }, + "diagnostics": { + "id": "diagnostics", + "title": "Diagnostics", + "description": "Collection of useful page vitals.", + "score": null, + "scoreDisplayMode": "informative", + "details": { + "type": "debugdata", + "items": [ + { + "numRequests": 26, + "numScripts": 2, + "numStylesheets": 3, + "numFonts": 5, + "numTasks": 1027, + "numTasksOver10ms": 6, + "numTasksOver25ms": 2, + "numTasksOver50ms": 0, + "numTasksOver100ms": 0, + "numTasksOver500ms": 0, + "rtt": 81.384, + "throughput": 21087465.999287408, + "maxRtt": 81.384, + "maxServerLatency": 16.189000000000007, + "totalByteWeight": 739403, + "totalTaskTime": 225.17699999999803, + "mainDocumentTransferSize": 5662 + } + ] + } + } + } + } + ], + "screenshot": true, + "stats": { + "grade": "A", + "url": "https://www.rdv-solidarites.fr", + "uri": "stats" + }, + "github_repository": null, + "budget_page": null, + "declaration-a11y": { + "mention": "Accessibilité : non conforme", + "declarationUrl": "https://www.rdv-solidarites.fr/accessibility" + }, + "declaration-rgpd": null, + "betagouv": null, + "ecoindex": [ { - "id": "grade_cap_reason_1", - "ip": "aidantsconnect.beta.gouv.fr/185.21.194.105", - "port": "443", - "severity": "INFO", - "finding": "Grade capped to A. HSTS max-age is too short" + "width": 1920, + "height": 1080, + "url": "https://www.rdv-solidarites.fr", + "size": 764.413, + "nodes": 163, + "requests": 22, + "grade": "A", + "score": 83, + "ges": 1.34, + "water": 2.01, + "ecoindex_version": "5.4.2", + "date": "2024-12-01 01:48:30.330272", + "page_type": null + } + ], + "sonarcloud": null, + "dsfr": null, + "summary": { + "404": "A+", + "uptime": 100, + "uptimeGrade": "A", + "nmapGrade": "A", + "nmapOpenPortsCount": 2, + "nmapOpenPortsGrade": "A", + "testsslExpireSoon": false, + "testsslExpireDate": "2025-02-11T15:55:00.000Z", + "testsslGrade": "A+", + "cookiesGrade": "B", + "cookiesCount": 1, + "trackersGrade": "A", + "trackersCount": 0, + "lighthouse_performance": 0.9, + "lighthouse_performanceGrade": "A", + "lighthouse_accessibility": 1, + "lighthouse_accessibilityGrade": "A", + "lighthouse_best-practices": 1, + "lighthouse_best-practicesGrade": "A", + "lighthouse_seo": 0.92, + "lighthouse_seoGrade": "A", + "lighthouse_pwa": 0.4, + "lighthouse_pwaGrade": "D", + "statsGrade": "A", + "declaration-a11y": "C", + "ecoindexGrade": "A" + } + }, + { + "404": [], + "url": "https://aidantsconnect.beta.gouv.fr", + "repositories": [ + "betagouv/Aidants_Connect" + ], + "http": null, + "updownio": { + "token": "4wuz", + "url": "https://aidantsconnect.beta.gouv.fr", + "alias": "", + "last_status": 200, + "uptime": 100, + "down": false, + "down_since": null, + "up_since": "2022-12-09T02:08:04Z", + "error": null, + "period": 1800, + "apdex_t": 0.5, + "string_match": "", + "enabled": false, + "published": false, + "disabled_locations": [], + "recipients": [ + "email:3715942461" + ], + "last_check_at": "2023-03-01T03:25:04Z", + "next_check_at": null, + "created_at": "2022-10-17T12:58:07Z", + "mute_until": null, + "favicon_url": "https://aidantsconnect.beta.gouv.fr/static/images/favicons/favicon-16x16.png", + "custom_headers": {}, + "http_verb": "GET/HEAD", + "http_body": "", + "ssl": { + "tested_at": "2023-03-01T02:25:11Z", + "expires_at": "2023-05-12T18:39:10Z", + "valid": true, + "error": null }, + "metrics": {}, + "uptimeGrade": "A" + }, + "nmap": { + "host": "aidantsconnect.beta.gouv.fr", + "protocol": "tcp", + "closed_ports": "998", + "open_ports": [ + { + "service": { + "name": "http", + "id": "80", + "vulnerabilities": [] + } + }, + { + "service": { + "name": "https", + "id": "443", + "vulnerabilities": [] + } + } + ], + "grade": "A" + }, + "dependabot": null, + "codescan": null, + "testssl": [ { "id": "service", - "ip": "aidantsconnect.beta.gouv.fr/80.247.12.255", + "ip": "aidantsconnect.beta.gouv.fr/185.21.194.105", "port": "443", "severity": "INFO", "finding": "HTTP" }, { "id": "pre_128cipher", - "ip": "aidantsconnect.beta.gouv.fr/80.247.12.255", + "ip": "aidantsconnect.beta.gouv.fr/185.21.194.105", "port": "443", "severity": "INFO", "finding": "No 128 cipher limit bug" }, { "id": "SSLv2", - "ip": "aidantsconnect.beta.gouv.fr/80.247.12.255", + "ip": "aidantsconnect.beta.gouv.fr/185.21.194.105", "port": "443", "severity": "OK", "finding": "not offered" }, { "id": "SSLv3", - "ip": "aidantsconnect.beta.gouv.fr/80.247.12.255", + "ip": "aidantsconnect.beta.gouv.fr/185.21.194.105", "port": "443", "severity": "OK", "finding": "not offered" }, { "id": "TLS1", - "ip": "aidantsconnect.beta.gouv.fr/80.247.12.255", + "ip": "aidantsconnect.beta.gouv.fr/185.21.194.105", "port": "443", "severity": "INFO", "finding": "not offered" }, { "id": "TLS1_1", - "ip": "aidantsconnect.beta.gouv.fr/80.247.12.255", + "ip": "aidantsconnect.beta.gouv.fr/185.21.194.105", "port": "443", "severity": "INFO", "finding": "not offered" }, { "id": "TLS1_2", - "ip": "aidantsconnect.beta.gouv.fr/80.247.12.255", + "ip": "aidantsconnect.beta.gouv.fr/185.21.194.105", "port": "443", "severity": "OK", "finding": "offered" }, { "id": "TLS1_3", - "ip": "aidantsconnect.beta.gouv.fr/80.247.12.255", + "ip": "aidantsconnect.beta.gouv.fr/185.21.194.105", "port": "443", "severity": "OK", "finding": "offered with final" }, { "id": "ALPN_HTTP2", - "ip": "aidantsconnect.beta.gouv.fr/80.247.12.255", + "ip": "aidantsconnect.beta.gouv.fr/185.21.194.105", "port": "443", "severity": "OK", "finding": "h2" }, { "id": "ALPN", - "ip": "aidantsconnect.beta.gouv.fr/80.247.12.255", + "ip": "aidantsconnect.beta.gouv.fr/185.21.194.105", "port": "443", "severity": "INFO", "finding": "http/1.1" }, { "id": "cipherlist_NULL", - "ip": "aidantsconnect.beta.gouv.fr/80.247.12.255", + "ip": "aidantsconnect.beta.gouv.fr/185.21.194.105", "port": "443", "severity": "OK", "cwe": "CWE-327", @@ -45435,7 +40645,7 @@ }, { "id": "cipherlist_aNULL", - "ip": "aidantsconnect.beta.gouv.fr/80.247.12.255", + "ip": "aidantsconnect.beta.gouv.fr/185.21.194.105", "port": "443", "severity": "OK", "cwe": "CWE-327", @@ -45443,7 +40653,7 @@ }, { "id": "cipherlist_EXPORT", - "ip": "aidantsconnect.beta.gouv.fr/80.247.12.255", + "ip": "aidantsconnect.beta.gouv.fr/185.21.194.105", "port": "443", "severity": "OK", "cwe": "CWE-327", @@ -45451,7 +40661,7 @@ }, { "id": "cipherlist_LOW", - "ip": "aidantsconnect.beta.gouv.fr/80.247.12.255", + "ip": "aidantsconnect.beta.gouv.fr/185.21.194.105", "port": "443", "severity": "OK", "cwe": "CWE-327", @@ -45459,7 +40669,7 @@ }, { "id": "cipherlist_3DES_IDEA", - "ip": "aidantsconnect.beta.gouv.fr/80.247.12.255", + "ip": "aidantsconnect.beta.gouv.fr/185.21.194.105", "port": "443", "severity": "INFO", "cwe": "CWE-310", @@ -45467,7 +40677,7 @@ }, { "id": "cipherlist_OBSOLETED", - "ip": "aidantsconnect.beta.gouv.fr/80.247.12.255", + "ip": "aidantsconnect.beta.gouv.fr/185.21.194.105", "port": "443", "severity": "INFO", "cwe": "CWE-310", @@ -45475,476 +40685,476 @@ }, { "id": "cipherlist_STRONG_NOFS", - "ip": "aidantsconnect.beta.gouv.fr/80.247.12.255", + "ip": "aidantsconnect.beta.gouv.fr/185.21.194.105", "port": "443", "severity": "INFO", "finding": "not offered" }, { "id": "cipherlist_STRONG_FS", - "ip": "aidantsconnect.beta.gouv.fr/80.247.12.255", + "ip": "aidantsconnect.beta.gouv.fr/185.21.194.105", "port": "443", "severity": "OK", "finding": "offered" }, { "id": "cipher_order-tls1_2", - "ip": "aidantsconnect.beta.gouv.fr/80.247.12.255", + "ip": "aidantsconnect.beta.gouv.fr/185.21.194.105", "port": "443", "severity": "OK", "finding": "server" }, { "id": "cipherorder_TLSv1_2", - "ip": "aidantsconnect.beta.gouv.fr/80.247.12.255", + "ip": "aidantsconnect.beta.gouv.fr/185.21.194.105", "port": "443", "severity": "INFO", "finding": "ECDHE-RSA-AES256-GCM-SHA384" }, { "id": "cipher_order", - "ip": "aidantsconnect.beta.gouv.fr/80.247.12.255", + "ip": "aidantsconnect.beta.gouv.fr/185.21.194.105", "port": "443", "severity": "OK", "finding": "server" }, { "id": "FS", - "ip": "aidantsconnect.beta.gouv.fr/80.247.12.255", + "ip": "aidantsconnect.beta.gouv.fr/185.21.194.105", "port": "443", "severity": "OK", "finding": "offered" }, { "id": "FS_ciphers", - "ip": "aidantsconnect.beta.gouv.fr/80.247.12.255", + "ip": "aidantsconnect.beta.gouv.fr/185.21.194.105", "port": "443", "severity": "INFO", "finding": "DHE-RSA-AES256-GCM-SHA384 ECDHE-RSA-AES128-GCM-SHA256 ECDHE-RSA-AES256-GCM-SHA384" }, { "id": "FS_ECDHE_curves", - "ip": "aidantsconnect.beta.gouv.fr/80.247.12.255", + "ip": "aidantsconnect.beta.gouv.fr/185.21.194.105", "port": "443", "severity": "OK", "finding": "prime256v1 secp384r1 secp521r1" }, { "id": "TLS_extensions", - "ip": "aidantsconnect.beta.gouv.fr/80.247.12.255", + "ip": "aidantsconnect.beta.gouv.fr/185.21.194.105", "port": "443", "severity": "INFO", "finding": "'renegotiation info/#65281' 'server name/#0' 'EC point formats/#11' 'session ticket/#35' 'supported versions/#43' 'key share/#51' 'supported_groups/#10' 'max fragment length/#1' 'application layer protocol negotiation/#16' 'extended master secret/#23'" }, { "id": "TLS_session_ticket", - "ip": "aidantsconnect.beta.gouv.fr/80.247.12.255", + "ip": "aidantsconnect.beta.gouv.fr/185.21.194.105", "port": "443", "severity": "INFO", "finding": "valid for 300 seconds only (= 30 days" + "finding": "33 >= 30 days" }, { "id": "cert_notBefore", - "ip": "aidantsconnect.beta.gouv.fr/80.247.12.255", + "ip": "aidantsconnect.beta.gouv.fr/185.21.194.105", "port": "443", "severity": "INFO", "finding": "2024-10-06 01:05" }, { "id": "cert_notAfter", - "ip": "aidantsconnect.beta.gouv.fr/80.247.12.255", + "ip": "aidantsconnect.beta.gouv.fr/185.21.194.105", "port": "443", "severity": "OK", "finding": "2025-01-04 01:05" }, { "id": "cert_extlifeSpan", - "ip": "aidantsconnect.beta.gouv.fr/80.247.12.255", + "ip": "aidantsconnect.beta.gouv.fr/185.21.194.105", "port": "443", "severity": "OK", "finding": "certificate has no extended life time according to browser forum" }, { "id": "cert_eTLS", - "ip": "aidantsconnect.beta.gouv.fr/80.247.12.255", + "ip": "aidantsconnect.beta.gouv.fr/185.21.194.105", "port": "443", "severity": "INFO", "finding": "not present" }, { "id": "cert_crlDistributionPoints", - "ip": "aidantsconnect.beta.gouv.fr/80.247.12.255", + "ip": "aidantsconnect.beta.gouv.fr/185.21.194.105", "port": "443", "severity": "INFO", "finding": "--" }, { "id": "cert_ocspURL", - "ip": "aidantsconnect.beta.gouv.fr/80.247.12.255", + "ip": "aidantsconnect.beta.gouv.fr/185.21.194.105", "port": "443", "severity": "INFO", "finding": "http://r11.o.lencr.org" }, { "id": "OCSP_stapling", - "ip": "aidantsconnect.beta.gouv.fr/80.247.12.255", + "ip": "aidantsconnect.beta.gouv.fr/185.21.194.105", "port": "443", "severity": "LOW", "finding": "not offered" }, { "id": "cert_mustStapleExtension", - "ip": "aidantsconnect.beta.gouv.fr/80.247.12.255", + "ip": "aidantsconnect.beta.gouv.fr/185.21.194.105", "port": "443", "severity": "INFO", "finding": "--" }, { "id": "DNS_CAArecord", - "ip": "aidantsconnect.beta.gouv.fr/80.247.12.255", + "ip": "aidantsconnect.beta.gouv.fr/185.21.194.105", "port": "443", "severity": "LOW", "finding": "--" }, { "id": "certificate_transparency", - "ip": "aidantsconnect.beta.gouv.fr/80.247.12.255", + "ip": "aidantsconnect.beta.gouv.fr/185.21.194.105", "port": "443", "severity": "OK", "finding": "yes (certificate extension)" }, { "id": "certs_countServer", - "ip": "aidantsconnect.beta.gouv.fr/80.247.12.255", + "ip": "aidantsconnect.beta.gouv.fr/185.21.194.105", "port": "443", "severity": "INFO", "finding": "2" }, { "id": "certs_list_ordering_problem", - "ip": "aidantsconnect.beta.gouv.fr/80.247.12.255", + "ip": "aidantsconnect.beta.gouv.fr/185.21.194.105", "port": "443", "severity": "INFO", "finding": "no" }, { "id": "cert_caIssuers", - "ip": "aidantsconnect.beta.gouv.fr/80.247.12.255", + "ip": "aidantsconnect.beta.gouv.fr/185.21.194.105", "port": "443", "severity": "INFO", "finding": "R11 (Let's Encrypt from US)" }, { "id": "intermediate_cert <#1>", - "ip": "aidantsconnect.beta.gouv.fr/80.247.12.255", + "ip": "aidantsconnect.beta.gouv.fr/185.21.194.105", "port": "443", "severity": "INFO", "finding": "-----BEGIN CERTIFICATE-----\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\n-----END CERTIFICATE-----" }, { "id": "intermediate_cert_fingerprintSHA256 <#1>", - "ip": "aidantsconnect.beta.gouv.fr/80.247.12.255", + "ip": "aidantsconnect.beta.gouv.fr/185.21.194.105", "port": "443", "severity": "INFO", "finding": "591E9CE6C863D3A079E9FABE1478C7339A26B21269DDE795211361024AE31A44" }, { "id": "intermediate_cert_notBefore <#1>", - "ip": "aidantsconnect.beta.gouv.fr/80.247.12.255", + "ip": "aidantsconnect.beta.gouv.fr/185.21.194.105", "port": "443", "severity": "INFO", "finding": "2024-03-13 00:00" }, { "id": "intermediate_cert_notAfter <#1>", - "ip": "aidantsconnect.beta.gouv.fr/80.247.12.255", + "ip": "aidantsconnect.beta.gouv.fr/185.21.194.105", "port": "443", "severity": "OK", "finding": "2027-03-12 23:59" }, { "id": "intermediate_cert_expiration <#1>", - "ip": "aidantsconnect.beta.gouv.fr/80.247.12.255", + "ip": "aidantsconnect.beta.gouv.fr/185.21.194.105", "port": "443", "severity": "OK", "finding": "ok > 40 days" }, { "id": "intermediate_cert_chain <#1>", - "ip": "aidantsconnect.beta.gouv.fr/80.247.12.255", + "ip": "aidantsconnect.beta.gouv.fr/185.21.194.105", "port": "443", "severity": "INFO", "finding": "R11 <-- ISRG Root X1" }, { "id": "intermediate_cert_badOCSP", - "ip": "aidantsconnect.beta.gouv.fr/80.247.12.255", + "ip": "aidantsconnect.beta.gouv.fr/185.21.194.105", "port": "443", "severity": "OK", "finding": "intermediate certificate(s) is/are ok" }, { "id": "HTTP_status_code", - "ip": "aidantsconnect.beta.gouv.fr/80.247.12.255", + "ip": "aidantsconnect.beta.gouv.fr/185.21.194.105", "port": "443", "severity": "INFO", "finding": "200 OK ('/')" }, { "id": "HTTP_clock_skew", - "ip": "aidantsconnect.beta.gouv.fr/80.247.12.255", + "ip": "aidantsconnect.beta.gouv.fr/185.21.194.105", "port": "443", "severity": "INFO", "finding": "-1 seconds from localtime" }, { "id": "HTTP_headerTime", - "ip": "aidantsconnect.beta.gouv.fr/80.247.12.255", + "ip": "aidantsconnect.beta.gouv.fr/185.21.194.105", "port": "443", "severity": "INFO", - "finding": "1732413755" + "finding": "1733019047" }, { "id": "HSTS_time", - "ip": "aidantsconnect.beta.gouv.fr/80.247.12.255", + "ip": "aidantsconnect.beta.gouv.fr/185.21.194.105", "port": "443", "severity": "MEDIUM", "finding": "max-age too short. 0 days (=60 seconds) < 15552000 seconds" }, { "id": "HSTS_subdomains", - "ip": "aidantsconnect.beta.gouv.fr/80.247.12.255", + "ip": "aidantsconnect.beta.gouv.fr/185.21.194.105", "port": "443", "severity": "INFO", "finding": "only for this domain" }, { "id": "HSTS_preload", - "ip": "aidantsconnect.beta.gouv.fr/80.247.12.255", + "ip": "aidantsconnect.beta.gouv.fr/185.21.194.105", "port": "443", "severity": "INFO", "finding": "domain is NOT marked for preloading" }, { "id": "HPKP", - "ip": "aidantsconnect.beta.gouv.fr/80.247.12.255", + "ip": "aidantsconnect.beta.gouv.fr/185.21.194.105", "port": "443", "severity": "INFO", "finding": "No support for HTTP Public Key Pinning" }, { "id": "banner_server", - "ip": "aidantsconnect.beta.gouv.fr/80.247.12.255", + "ip": "aidantsconnect.beta.gouv.fr/185.21.194.105", "port": "443", "severity": "INFO", "finding": "No Server banner line in header, interesting!" }, { "id": "banner_application", - "ip": "aidantsconnect.beta.gouv.fr/80.247.12.255", + "ip": "aidantsconnect.beta.gouv.fr/185.21.194.105", "port": "443", "severity": "INFO", "finding": "No application banner found" }, { "id": "cookie_count", - "ip": "aidantsconnect.beta.gouv.fr/80.247.12.255", + "ip": "aidantsconnect.beta.gouv.fr/185.21.194.105", "port": "443", "severity": "INFO", "finding": "0 at '/'" }, { "id": "X-Frame-Options", - "ip": "aidantsconnect.beta.gouv.fr/80.247.12.255", + "ip": "aidantsconnect.beta.gouv.fr/185.21.194.105", "port": "443", "severity": "OK", "finding": "DENY" }, { "id": "X-Content-Type-Options", - "ip": "aidantsconnect.beta.gouv.fr/80.247.12.255", + "ip": "aidantsconnect.beta.gouv.fr/185.21.194.105", "port": "443", "severity": "OK", "finding": "nosniff" }, { "id": "Content-Security-Policy", - "ip": "aidantsconnect.beta.gouv.fr/80.247.12.255", + "ip": "aidantsconnect.beta.gouv.fr/185.21.194.105", "port": "443", "severity": "OK", - "finding": "style-src-attr 'unsafe-hashes' 'sha256-I/4Jcdrg5KNFrU0X4p2nNmjeGh9aI+9ac0cUllI5SwY=' 'sha256-vYd+FsML43MBXhP+pXOhW9h0Cdq43hkCe4Im/yyvhss='; object-src 'none'; img-src 'self' data: https://www.service-public.fr/resources/v-5cf79a7acf/web/css/img/png/; default-src 'self'; style-src 'self' https://unpkg.com/easymde/dist/easymde.min.css; connect-src 'self' https://stats.beta.gouv.fr/matomo.php https://stats.beta.gouv.fr/piwik.php https://api.sarbacane.com/v1/forms/contacts/upsert https://api-adresse.data.gouv.fr/search/; frame-src https://www.youtube.com/embed/hATrqHG4zYQ https://www.youtube-nocookie.com/embed/hATrqHG4zYQ http://www.youtube.com/embed/hATrqHG4zYQ http://www.youtube-nocookie.com/embed/hATrqHG4zYQ https://www.youtube.com/embed/WTHj_kQXnzs https://www.youtube-nocookie.com/embed/WTHj_kQXnzs http://www.youtube.com/embed/WTHj_kQXnzs http://www.youtube-nocookie.com/embed/WTHj_kQXnzs https://www.youtube.com/embed/ihsm-36I-fE https://www.youtube-nocookie.com/embed/ihsm-36I-fE http://www.youtube.com/embed/ihsm-36I-fE http://www.youtube-nocookie.com/embed/ihsm-36I-fE https://www.youtube.com/embed/AJGo6bydQss https://www.youtube-nocookie.com/embed/AJGo6bydQss http://www.youtube.com/embed/AJGo6bydQss http://www.youtube-nocookie.com/embed/AJGo6bydQss; script-src 'self' https://unpkg.com/stimulus@3.2.2/dist/stimulus.umd.js https://unpkg.com/stimulus@3.2.2/dist/stimulus.js https://unpkg.com/easymde/dist/easymde.min.js https://forms.sbc29.com/form.js https://unpkg.com/tarteaucitronjs@1.15.0/tarteaucitron.js https://unpkg.com/tarteaucitronjs@1.15.0/lang/tarteaucitron.fr.js https://unpkg.com/tarteaucitronjs@1.15.0/tarteaucitron.services.js https://cdn.jsdelivr.net/npm/chart.js@3.7.1/dist/chart.min.js https://cdnjs.cloudflare.com/ajax/libs/chartjs-plugin-datalabels/2.0.0/chartjs-plugin-datalabels.min.js https://code.jquery.com/jquery-3.6.1.js https://code.jquery.com/ui/1.13.1/jquery-ui.js https://cdn.jsdelivr.net/npm/@tarekraafat/autocomplete.js@10.2.7/dist/autoComplete.min.js https://stats.beta.gouv.fr/matomo.js https://stats.beta.gouv.fr/piwik.js 'nonce-XNzpO1DGJbYCLSH62xfDCA=='" + "finding": "style-src-attr 'unsafe-hashes' 'sha256-I/4Jcdrg5KNFrU0X4p2nNmjeGh9aI+9ac0cUllI5SwY=' 'sha256-vYd+FsML43MBXhP+pXOhW9h0Cdq43hkCe4Im/yyvhss='; object-src 'none'; img-src 'self' data: https://www.service-public.fr/resources/v-5cf79a7acf/web/css/img/png/; default-src 'self'; style-src 'self' https://unpkg.com/easymde/dist/easymde.min.css; connect-src 'self' https://stats.beta.gouv.fr/matomo.php https://stats.beta.gouv.fr/piwik.php https://api.sarbacane.com/v1/forms/contacts/upsert https://api-adresse.data.gouv.fr/search/; frame-src https://www.youtube.com/embed/hATrqHG4zYQ https://www.youtube-nocookie.com/embed/hATrqHG4zYQ http://www.youtube.com/embed/hATrqHG4zYQ http://www.youtube-nocookie.com/embed/hATrqHG4zYQ https://www.youtube.com/embed/WTHj_kQXnzs https://www.youtube-nocookie.com/embed/WTHj_kQXnzs http://www.youtube.com/embed/WTHj_kQXnzs http://www.youtube-nocookie.com/embed/WTHj_kQXnzs https://www.youtube.com/embed/ihsm-36I-fE https://www.youtube-nocookie.com/embed/ihsm-36I-fE http://www.youtube.com/embed/ihsm-36I-fE http://www.youtube-nocookie.com/embed/ihsm-36I-fE https://www.youtube.com/embed/AJGo6bydQss https://www.youtube-nocookie.com/embed/AJGo6bydQss http://www.youtube.com/embed/AJGo6bydQss http://www.youtube-nocookie.com/embed/AJGo6bydQss; script-src 'self' https://unpkg.com/stimulus@3.2.2/dist/stimulus.umd.js https://unpkg.com/stimulus@3.2.2/dist/stimulus.js https://unpkg.com/easymde/dist/easymde.min.js https://forms.sbc29.com/form.js https://unpkg.com/tarteaucitronjs@1.15.0/tarteaucitron.js https://unpkg.com/tarteaucitronjs@1.15.0/lang/tarteaucitron.fr.js https://unpkg.com/tarteaucitronjs@1.15.0/tarteaucitron.services.js https://cdn.jsdelivr.net/npm/chart.js@3.7.1/dist/chart.min.js https://cdnjs.cloudflare.com/ajax/libs/chartjs-plugin-datalabels/2.0.0/chartjs-plugin-datalabels.min.js https://code.jquery.com/jquery-3.6.1.js https://code.jquery.com/ui/1.13.1/jquery-ui.js https://cdn.jsdelivr.net/npm/@tarekraafat/autocomplete.js@10.2.7/dist/autoComplete.min.js https://stats.beta.gouv.fr/matomo.js https://stats.beta.gouv.fr/piwik.js 'nonce-wXIjY+HnBQ7p9jZ8DS7Q0w=='" }, { "id": "Referrer-Policy", - "ip": "aidantsconnect.beta.gouv.fr/80.247.12.255", + "ip": "aidantsconnect.beta.gouv.fr/185.21.194.105", "port": "443", "severity": "INFO", "finding": "strict-origin" }, { "id": "banner_reverseproxy", - "ip": "aidantsconnect.beta.gouv.fr/80.247.12.255", + "ip": "aidantsconnect.beta.gouv.fr/185.21.194.105", "port": "443", "severity": "INFO", "cwe": "CWE-200", @@ -45952,7 +41162,7 @@ }, { "id": "heartbleed", - "ip": "aidantsconnect.beta.gouv.fr/80.247.12.255", + "ip": "aidantsconnect.beta.gouv.fr/185.21.194.105", "port": "443", "severity": "OK", "cve": "CVE-2014-0160", @@ -45961,7 +41171,7 @@ }, { "id": "CCS", - "ip": "aidantsconnect.beta.gouv.fr/80.247.12.255", + "ip": "aidantsconnect.beta.gouv.fr/185.21.194.105", "port": "443", "severity": "OK", "cve": "CVE-2014-0224", @@ -45970,7 +41180,7 @@ }, { "id": "ticketbleed", - "ip": "aidantsconnect.beta.gouv.fr/80.247.12.255", + "ip": "aidantsconnect.beta.gouv.fr/185.21.194.105", "port": "443", "severity": "OK", "cve": "CVE-2016-9244", @@ -45979,7 +41189,7 @@ }, { "id": "ROBOT", - "ip": "aidantsconnect.beta.gouv.fr/80.247.12.255", + "ip": "aidantsconnect.beta.gouv.fr/185.21.194.105", "port": "443", "severity": "OK", "cve": "CVE-2017-17382 CVE-2017-17427 CVE-2017-17428 CVE-2017-13098 CVE-2017-1000385 CVE-2017-13099 CVE-2016-6883 CVE-2012-5081 CVE-2017-6168", @@ -45988,7 +41198,7 @@ }, { "id": "secure_renego", - "ip": "aidantsconnect.beta.gouv.fr/80.247.12.255", + "ip": "aidantsconnect.beta.gouv.fr/185.21.194.105", "port": "443", "severity": "OK", "cwe": "CWE-310", @@ -45996,7 +41206,7 @@ }, { "id": "secure_client_renego", - "ip": "aidantsconnect.beta.gouv.fr/80.247.12.255", + "ip": "aidantsconnect.beta.gouv.fr/185.21.194.105", "port": "443", "severity": "OK", "cve": "CVE-2011-1473", @@ -46005,7 +41215,7 @@ }, { "id": "CRIME_TLS", - "ip": "aidantsconnect.beta.gouv.fr/80.247.12.255", + "ip": "aidantsconnect.beta.gouv.fr/185.21.194.105", "port": "443", "severity": "OK", "cve": "CVE-2012-4929", @@ -46014,7 +41224,7 @@ }, { "id": "BREACH", - "ip": "aidantsconnect.beta.gouv.fr/80.247.12.255", + "ip": "aidantsconnect.beta.gouv.fr/185.21.194.105", "port": "443", "severity": "MEDIUM", "cve": "CVE-2013-3587", @@ -46023,7 +41233,7 @@ }, { "id": "POODLE_SSL", - "ip": "aidantsconnect.beta.gouv.fr/80.247.12.255", + "ip": "aidantsconnect.beta.gouv.fr/185.21.194.105", "port": "443", "severity": "OK", "cve": "CVE-2014-3566", @@ -46032,14 +41242,14 @@ }, { "id": "fallback_SCSV", - "ip": "aidantsconnect.beta.gouv.fr/80.247.12.255", + "ip": "aidantsconnect.beta.gouv.fr/185.21.194.105", "port": "443", "severity": "OK", "finding": "no protocol below TLS 1.2 offered" }, { "id": "SWEET32", - "ip": "aidantsconnect.beta.gouv.fr/80.247.12.255", + "ip": "aidantsconnect.beta.gouv.fr/185.21.194.105", "port": "443", "severity": "OK", "cve": "CVE-2016-2183 CVE-2016-6329", @@ -46048,7 +41258,7 @@ }, { "id": "FREAK", - "ip": "aidantsconnect.beta.gouv.fr/80.247.12.255", + "ip": "aidantsconnect.beta.gouv.fr/185.21.194.105", "port": "443", "severity": "OK", "cve": "CVE-2015-0204", @@ -46057,7 +41267,7 @@ }, { "id": "DROWN", - "ip": "aidantsconnect.beta.gouv.fr/80.247.12.255", + "ip": "aidantsconnect.beta.gouv.fr/185.21.194.105", "port": "443", "severity": "OK", "cve": "CVE-2016-0800 CVE-2016-0703", @@ -46066,7 +41276,7 @@ }, { "id": "DROWN_hint", - "ip": "aidantsconnect.beta.gouv.fr/80.247.12.255", + "ip": "aidantsconnect.beta.gouv.fr/185.21.194.105", "port": "443", "severity": "INFO", "cve": "CVE-2016-0800 CVE-2016-0703", @@ -46075,7 +41285,7 @@ }, { "id": "LOGJAM", - "ip": "aidantsconnect.beta.gouv.fr/80.247.12.255", + "ip": "aidantsconnect.beta.gouv.fr/185.21.194.105", "port": "443", "severity": "OK", "cve": "CVE-2015-4000", @@ -46084,7 +41294,7 @@ }, { "id": "LOGJAM-common_primes", - "ip": "aidantsconnect.beta.gouv.fr/80.247.12.255", + "ip": "aidantsconnect.beta.gouv.fr/185.21.194.105", "port": "443", "severity": "OK", "cve": "CVE-2015-4000", @@ -46093,7 +41303,7 @@ }, { "id": "BEAST", - "ip": "aidantsconnect.beta.gouv.fr/80.247.12.255", + "ip": "aidantsconnect.beta.gouv.fr/185.21.194.105", "port": "443", "severity": "OK", "cve": "CVE-2011-3389", @@ -46102,7 +41312,7 @@ }, { "id": "LUCKY13", - "ip": "aidantsconnect.beta.gouv.fr/80.247.12.255", + "ip": "aidantsconnect.beta.gouv.fr/185.21.194.105", "port": "443", "severity": "OK", "cve": "CVE-2013-0169", @@ -46111,7 +41321,7 @@ }, { "id": "winshock", - "ip": "aidantsconnect.beta.gouv.fr/80.247.12.255", + "ip": "aidantsconnect.beta.gouv.fr/185.21.194.105", "port": "443", "severity": "OK", "cve": "CVE-2014-6321", @@ -46120,7 +41330,7 @@ }, { "id": "RC4", - "ip": "aidantsconnect.beta.gouv.fr/80.247.12.255", + "ip": "aidantsconnect.beta.gouv.fr/185.21.194.105", "port": "443", "severity": "OK", "cve": "CVE-2013-2566 CVE-2015-2808", @@ -46129,322 +41339,322 @@ }, { "id": "clientsimulation-android_60", - "ip": "aidantsconnect.beta.gouv.fr/80.247.12.255", + "ip": "aidantsconnect.beta.gouv.fr/185.21.194.105", "port": "443", "severity": "INFO", "finding": "TLSv1.2 ECDHE-RSA-AES128-GCM-SHA256" }, { "id": "clientsimulation-android_70", - "ip": "aidantsconnect.beta.gouv.fr/80.247.12.255", + "ip": "aidantsconnect.beta.gouv.fr/185.21.194.105", "port": "443", "severity": "INFO", "finding": "TLSv1.2 ECDHE-RSA-AES256-GCM-SHA384" }, { "id": "clientsimulation-android_81", - "ip": "aidantsconnect.beta.gouv.fr/80.247.12.255", + "ip": "aidantsconnect.beta.gouv.fr/185.21.194.105", "port": "443", "severity": "INFO", "finding": "TLSv1.2 ECDHE-RSA-AES256-GCM-SHA384" }, { "id": "clientsimulation-android_90", - "ip": "aidantsconnect.beta.gouv.fr/80.247.12.255", + "ip": "aidantsconnect.beta.gouv.fr/185.21.194.105", "port": "443", "severity": "INFO", "finding": "TLSv1.3 TLS_AES_256_GCM_SHA384" }, { "id": "clientsimulation-android_X", - "ip": "aidantsconnect.beta.gouv.fr/80.247.12.255", + "ip": "aidantsconnect.beta.gouv.fr/185.21.194.105", "port": "443", "severity": "INFO", "finding": "TLSv1.3 TLS_AES_256_GCM_SHA384" }, { "id": "clientsimulation-android_11", - "ip": "aidantsconnect.beta.gouv.fr/80.247.12.255", + "ip": "aidantsconnect.beta.gouv.fr/185.21.194.105", "port": "443", "severity": "INFO", "finding": "TLSv1.3 TLS_AES_256_GCM_SHA384" }, { "id": "clientsimulation-android_12", - "ip": "aidantsconnect.beta.gouv.fr/80.247.12.255", + "ip": "aidantsconnect.beta.gouv.fr/185.21.194.105", "port": "443", "severity": "INFO", "finding": "TLSv1.3 TLS_AES_256_GCM_SHA384" }, { "id": "clientsimulation-chrome_79_win10", - "ip": "aidantsconnect.beta.gouv.fr/80.247.12.255", + "ip": "aidantsconnect.beta.gouv.fr/185.21.194.105", "port": "443", "severity": "INFO", "finding": "TLSv1.3 TLS_AES_256_GCM_SHA384" }, { "id": "clientsimulation-chrome_101_win10", - "ip": "aidantsconnect.beta.gouv.fr/80.247.12.255", + "ip": "aidantsconnect.beta.gouv.fr/185.21.194.105", "port": "443", "severity": "INFO", "finding": "TLSv1.3 TLS_AES_256_GCM_SHA384" }, { "id": "clientsimulation-firefox_66_win81", - "ip": "aidantsconnect.beta.gouv.fr/80.247.12.255", + "ip": "aidantsconnect.beta.gouv.fr/185.21.194.105", "port": "443", "severity": "INFO", "finding": "TLSv1.3 TLS_AES_256_GCM_SHA384" }, { "id": "clientsimulation-firefox_100_win10", - "ip": "aidantsconnect.beta.gouv.fr/80.247.12.255", + "ip": "aidantsconnect.beta.gouv.fr/185.21.194.105", "port": "443", "severity": "INFO", "finding": "TLSv1.3 TLS_AES_256_GCM_SHA384" }, { "id": "clientsimulation-ie_6_xp", - "ip": "aidantsconnect.beta.gouv.fr/80.247.12.255", + "ip": "aidantsconnect.beta.gouv.fr/185.21.194.105", "port": "443", "severity": "INFO", "finding": "No connection" }, { "id": "clientsimulation-ie_8_win7", - "ip": "aidantsconnect.beta.gouv.fr/80.247.12.255", + "ip": "aidantsconnect.beta.gouv.fr/185.21.194.105", "port": "443", "severity": "INFO", "finding": "No connection" }, { "id": "clientsimulation-ie_8_xp", - "ip": "aidantsconnect.beta.gouv.fr/80.247.12.255", + "ip": "aidantsconnect.beta.gouv.fr/185.21.194.105", "port": "443", "severity": "INFO", "finding": "No connection" }, { "id": "clientsimulation-ie_11_win7", - "ip": "aidantsconnect.beta.gouv.fr/80.247.12.255", + "ip": "aidantsconnect.beta.gouv.fr/185.21.194.105", "port": "443", "severity": "INFO", "finding": "TLSv1.2 DHE-RSA-AES256-GCM-SHA384" }, { "id": "clientsimulation-ie_11_win81", - "ip": "aidantsconnect.beta.gouv.fr/80.247.12.255", + "ip": "aidantsconnect.beta.gouv.fr/185.21.194.105", "port": "443", "severity": "INFO", "finding": "TLSv1.2 DHE-RSA-AES256-GCM-SHA384" }, { "id": "clientsimulation-ie_11_winphone81", - "ip": "aidantsconnect.beta.gouv.fr/80.247.12.255", + "ip": "aidantsconnect.beta.gouv.fr/185.21.194.105", "port": "443", "severity": "INFO", "finding": "No connection" }, { "id": "clientsimulation-ie_11_win10", - "ip": "aidantsconnect.beta.gouv.fr/80.247.12.255", + "ip": "aidantsconnect.beta.gouv.fr/185.21.194.105", "port": "443", "severity": "INFO", "finding": "TLSv1.2 ECDHE-RSA-AES256-GCM-SHA384" }, { "id": "clientsimulation-edge_15_win10", - "ip": "aidantsconnect.beta.gouv.fr/80.247.12.255", + "ip": "aidantsconnect.beta.gouv.fr/185.21.194.105", "port": "443", "severity": "INFO", "finding": "TLSv1.2 ECDHE-RSA-AES256-GCM-SHA384" }, { "id": "clientsimulation-edge_101_win10_21h2", - "ip": "aidantsconnect.beta.gouv.fr/80.247.12.255", + "ip": "aidantsconnect.beta.gouv.fr/185.21.194.105", "port": "443", "severity": "INFO", "finding": "TLSv1.3 TLS_AES_256_GCM_SHA384" }, { "id": "clientsimulation-safari_121_ios_122", - "ip": "aidantsconnect.beta.gouv.fr/80.247.12.255", + "ip": "aidantsconnect.beta.gouv.fr/185.21.194.105", "port": "443", "severity": "INFO", "finding": "TLSv1.3 TLS_AES_256_GCM_SHA384" }, { "id": "clientsimulation-safari_130_osx_10146", - "ip": "aidantsconnect.beta.gouv.fr/80.247.12.255", + "ip": "aidantsconnect.beta.gouv.fr/185.21.194.105", "port": "443", "severity": "INFO", "finding": "TLSv1.3 TLS_AES_256_GCM_SHA384" }, { "id": "clientsimulation-safari_154_osx_1231", - "ip": "aidantsconnect.beta.gouv.fr/80.247.12.255", + "ip": "aidantsconnect.beta.gouv.fr/185.21.194.105", "port": "443", "severity": "INFO", "finding": "TLSv1.3 TLS_AES_256_GCM_SHA384" }, { "id": "clientsimulation-java_7u25", - "ip": "aidantsconnect.beta.gouv.fr/80.247.12.255", + "ip": "aidantsconnect.beta.gouv.fr/185.21.194.105", "port": "443", "severity": "INFO", "finding": "No connection" }, { "id": "clientsimulation-java_8u161", - "ip": "aidantsconnect.beta.gouv.fr/80.247.12.255", + "ip": "aidantsconnect.beta.gouv.fr/185.21.194.105", "port": "443", "severity": "INFO", "finding": "TLSv1.2 ECDHE-RSA-AES256-GCM-SHA384" }, { "id": "clientsimulation-java1102", - "ip": "aidantsconnect.beta.gouv.fr/80.247.12.255", + "ip": "aidantsconnect.beta.gouv.fr/185.21.194.105", "port": "443", "severity": "INFO", "finding": "TLSv1.3 TLS_AES_256_GCM_SHA384" }, { "id": "clientsimulation-java1703", - "ip": "aidantsconnect.beta.gouv.fr/80.247.12.255", + "ip": "aidantsconnect.beta.gouv.fr/185.21.194.105", "port": "443", "severity": "INFO", "finding": "TLSv1.3 TLS_AES_256_GCM_SHA384" }, { "id": "clientsimulation-go_1178", - "ip": "aidantsconnect.beta.gouv.fr/80.247.12.255", + "ip": "aidantsconnect.beta.gouv.fr/185.21.194.105", "port": "443", "severity": "INFO", "finding": "TLSv1.3 TLS_AES_256_GCM_SHA384" }, { "id": "clientsimulation-libressl_283", - "ip": "aidantsconnect.beta.gouv.fr/80.247.12.255", + "ip": "aidantsconnect.beta.gouv.fr/185.21.194.105", "port": "443", "severity": "INFO", "finding": "TLSv1.2 ECDHE-RSA-AES256-GCM-SHA384" }, { "id": "clientsimulation-openssl_102e", - "ip": "aidantsconnect.beta.gouv.fr/80.247.12.255", + "ip": "aidantsconnect.beta.gouv.fr/185.21.194.105", "port": "443", "severity": "INFO", "finding": "TLSv1.2 ECDHE-RSA-AES256-GCM-SHA384" }, { "id": "clientsimulation-openssl_110l", - "ip": "aidantsconnect.beta.gouv.fr/80.247.12.255", + "ip": "aidantsconnect.beta.gouv.fr/185.21.194.105", "port": "443", "severity": "INFO", "finding": "TLSv1.2 ECDHE-RSA-AES256-GCM-SHA384" }, { "id": "clientsimulation-openssl_111d", - "ip": "aidantsconnect.beta.gouv.fr/80.247.12.255", + "ip": "aidantsconnect.beta.gouv.fr/185.21.194.105", "port": "443", "severity": "INFO", "finding": "TLSv1.3 TLS_AES_256_GCM_SHA384" }, { "id": "clientsimulation-openssl_303", - "ip": "aidantsconnect.beta.gouv.fr/80.247.12.255", + "ip": "aidantsconnect.beta.gouv.fr/185.21.194.105", "port": "443", "severity": "INFO", "finding": "TLSv1.3 TLS_AES_256_GCM_SHA384" }, { "id": "clientsimulation-apple_mail_16_0", - "ip": "aidantsconnect.beta.gouv.fr/80.247.12.255", + "ip": "aidantsconnect.beta.gouv.fr/185.21.194.105", "port": "443", "severity": "INFO", "finding": "TLSv1.2 ECDHE-RSA-AES256-GCM-SHA384" }, { "id": "clientsimulation-thunderbird_91_9", - "ip": "aidantsconnect.beta.gouv.fr/80.247.12.255", + "ip": "aidantsconnect.beta.gouv.fr/185.21.194.105", "port": "443", "severity": "INFO", "finding": "TLSv1.3 TLS_AES_256_GCM_SHA384" }, { "id": "rating_spec", - "ip": "aidantsconnect.beta.gouv.fr/80.247.12.255", + "ip": "aidantsconnect.beta.gouv.fr/185.21.194.105", "port": "443", "severity": "INFO", "finding": "SSL Labs's 'SSL Server Rating Guide' (version 2009q from 2020-01-30)" }, { "id": "rating_doc", - "ip": "aidantsconnect.beta.gouv.fr/80.247.12.255", + "ip": "aidantsconnect.beta.gouv.fr/185.21.194.105", "port": "443", "severity": "INFO", "finding": "https://github.com/ssllabs/research/wiki/SSL-Server-Rating-Guide" }, { "id": "protocol_support_score", - "ip": "aidantsconnect.beta.gouv.fr/80.247.12.255", + "ip": "aidantsconnect.beta.gouv.fr/185.21.194.105", "port": "443", "severity": "INFO", "finding": "100" }, { "id": "protocol_support_score_weighted", - "ip": "aidantsconnect.beta.gouv.fr/80.247.12.255", + "ip": "aidantsconnect.beta.gouv.fr/185.21.194.105", "port": "443", "severity": "INFO", "finding": "30" }, { "id": "key_exchange_score", - "ip": "aidantsconnect.beta.gouv.fr/80.247.12.255", + "ip": "aidantsconnect.beta.gouv.fr/185.21.194.105", "port": "443", "severity": "INFO", "finding": "90" }, { "id": "key_exchange_score_weighted", - "ip": "aidantsconnect.beta.gouv.fr/80.247.12.255", + "ip": "aidantsconnect.beta.gouv.fr/185.21.194.105", "port": "443", "severity": "INFO", "finding": "27" }, { "id": "cipher_strength_score", - "ip": "aidantsconnect.beta.gouv.fr/80.247.12.255", + "ip": "aidantsconnect.beta.gouv.fr/185.21.194.105", "port": "443", "severity": "INFO", "finding": "60" }, { "id": "cipher_strength_score_weighted", - "ip": "aidantsconnect.beta.gouv.fr/80.247.12.255", + "ip": "aidantsconnect.beta.gouv.fr/185.21.194.105", "port": "443", "severity": "INFO", "finding": "24" }, { "id": "final_score", - "ip": "aidantsconnect.beta.gouv.fr/80.247.12.255", + "ip": "aidantsconnect.beta.gouv.fr/185.21.194.105", "port": "443", "severity": "INFO", "finding": "81" }, { "id": "overall_grade", - "ip": "aidantsconnect.beta.gouv.fr/80.247.12.255", + "ip": "aidantsconnect.beta.gouv.fr/185.21.194.105", "port": "443", "severity": "OK", "finding": "A" }, { "id": "grade_cap_reason_1", - "ip": "aidantsconnect.beta.gouv.fr/80.247.12.255", + "ip": "aidantsconnect.beta.gouv.fr/185.21.194.105", "port": "443", "severity": "INFO", "finding": "Grade capped to A. HSTS max-age is too short" @@ -46796,7 +42006,7 @@ "ip": "aidantsconnect.beta.gouv.fr/148.253.96.193", "port": "443", "severity": "OK", - "finding": "40 >= 30 days" + "finding": "33 >= 30 days" }, { "id": "cert_notBefore", @@ -46950,14 +42160,14 @@ "ip": "aidantsconnect.beta.gouv.fr/148.253.96.193", "port": "443", "severity": "INFO", - "finding": "-1 seconds from localtime" + "finding": "0 seconds from localtime" }, { "id": "HTTP_headerTime", "ip": "aidantsconnect.beta.gouv.fr/148.253.96.193", "port": "443", "severity": "INFO", - "finding": "1732413809" + "finding": "1733019100" }, { "id": "HSTS_time", @@ -47027,7 +42237,7 @@ "ip": "aidantsconnect.beta.gouv.fr/148.253.96.193", "port": "443", "severity": "OK", - "finding": "style-src-attr 'unsafe-hashes' 'sha256-I/4Jcdrg5KNFrU0X4p2nNmjeGh9aI+9ac0cUllI5SwY=' 'sha256-vYd+FsML43MBXhP+pXOhW9h0Cdq43hkCe4Im/yyvhss='; object-src 'none'; img-src 'self' data: https://www.service-public.fr/resources/v-5cf79a7acf/web/css/img/png/; default-src 'self'; style-src 'self' https://unpkg.com/easymde/dist/easymde.min.css; connect-src 'self' https://stats.beta.gouv.fr/matomo.php https://stats.beta.gouv.fr/piwik.php https://api.sarbacane.com/v1/forms/contacts/upsert https://api-adresse.data.gouv.fr/search/; frame-src https://www.youtube.com/embed/hATrqHG4zYQ https://www.youtube-nocookie.com/embed/hATrqHG4zYQ http://www.youtube.com/embed/hATrqHG4zYQ http://www.youtube-nocookie.com/embed/hATrqHG4zYQ https://www.youtube.com/embed/WTHj_kQXnzs https://www.youtube-nocookie.com/embed/WTHj_kQXnzs http://www.youtube.com/embed/WTHj_kQXnzs http://www.youtube-nocookie.com/embed/WTHj_kQXnzs https://www.youtube.com/embed/ihsm-36I-fE https://www.youtube-nocookie.com/embed/ihsm-36I-fE http://www.youtube.com/embed/ihsm-36I-fE http://www.youtube-nocookie.com/embed/ihsm-36I-fE https://www.youtube.com/embed/AJGo6bydQss https://www.youtube-nocookie.com/embed/AJGo6bydQss http://www.youtube.com/embed/AJGo6bydQss http://www.youtube-nocookie.com/embed/AJGo6bydQss; script-src 'self' https://unpkg.com/stimulus@3.2.2/dist/stimulus.umd.js https://unpkg.com/stimulus@3.2.2/dist/stimulus.js https://unpkg.com/easymde/dist/easymde.min.js https://forms.sbc29.com/form.js https://unpkg.com/tarteaucitronjs@1.15.0/tarteaucitron.js https://unpkg.com/tarteaucitronjs@1.15.0/lang/tarteaucitron.fr.js https://unpkg.com/tarteaucitronjs@1.15.0/tarteaucitron.services.js https://cdn.jsdelivr.net/npm/chart.js@3.7.1/dist/chart.min.js https://cdnjs.cloudflare.com/ajax/libs/chartjs-plugin-datalabels/2.0.0/chartjs-plugin-datalabels.min.js https://code.jquery.com/jquery-3.6.1.js https://code.jquery.com/ui/1.13.1/jquery-ui.js https://cdn.jsdelivr.net/npm/@tarekraafat/autocomplete.js@10.2.7/dist/autoComplete.min.js https://stats.beta.gouv.fr/matomo.js https://stats.beta.gouv.fr/piwik.js 'nonce-ZtBiU/N5UmRdWCkYW3MI0A=='" + "finding": "style-src-attr 'unsafe-hashes' 'sha256-I/4Jcdrg5KNFrU0X4p2nNmjeGh9aI+9ac0cUllI5SwY=' 'sha256-vYd+FsML43MBXhP+pXOhW9h0Cdq43hkCe4Im/yyvhss='; object-src 'none'; img-src 'self' data: https://www.service-public.fr/resources/v-5cf79a7acf/web/css/img/png/; default-src 'self'; style-src 'self' https://unpkg.com/easymde/dist/easymde.min.css; connect-src 'self' https://stats.beta.gouv.fr/matomo.php https://stats.beta.gouv.fr/piwik.php https://api.sarbacane.com/v1/forms/contacts/upsert https://api-adresse.data.gouv.fr/search/; frame-src https://www.youtube.com/embed/hATrqHG4zYQ https://www.youtube-nocookie.com/embed/hATrqHG4zYQ http://www.youtube.com/embed/hATrqHG4zYQ http://www.youtube-nocookie.com/embed/hATrqHG4zYQ https://www.youtube.com/embed/WTHj_kQXnzs https://www.youtube-nocookie.com/embed/WTHj_kQXnzs http://www.youtube.com/embed/WTHj_kQXnzs http://www.youtube-nocookie.com/embed/WTHj_kQXnzs https://www.youtube.com/embed/ihsm-36I-fE https://www.youtube-nocookie.com/embed/ihsm-36I-fE http://www.youtube.com/embed/ihsm-36I-fE http://www.youtube-nocookie.com/embed/ihsm-36I-fE https://www.youtube.com/embed/AJGo6bydQss https://www.youtube-nocookie.com/embed/AJGo6bydQss http://www.youtube.com/embed/AJGo6bydQss http://www.youtube-nocookie.com/embed/AJGo6bydQss; script-src 'self' https://unpkg.com/stimulus@3.2.2/dist/stimulus.umd.js https://unpkg.com/stimulus@3.2.2/dist/stimulus.js https://unpkg.com/easymde/dist/easymde.min.js https://forms.sbc29.com/form.js https://unpkg.com/tarteaucitronjs@1.15.0/tarteaucitron.js https://unpkg.com/tarteaucitronjs@1.15.0/lang/tarteaucitron.fr.js https://unpkg.com/tarteaucitronjs@1.15.0/tarteaucitron.services.js https://cdn.jsdelivr.net/npm/chart.js@3.7.1/dist/chart.min.js https://cdnjs.cloudflare.com/ajax/libs/chartjs-plugin-datalabels/2.0.0/chartjs-plugin-datalabels.min.js https://code.jquery.com/jquery-3.6.1.js https://code.jquery.com/ui/1.13.1/jquery-ui.js https://cdn.jsdelivr.net/npm/@tarekraafat/autocomplete.js@10.2.7/dist/autoComplete.min.js https://stats.beta.gouv.fr/matomo.js https://stats.beta.gouv.fr/piwik.js 'nonce-CPQez61RRiovlMtP/6HuMQ=='" }, { "id": "Referrer-Policy", @@ -47548,7 +42758,7 @@ "ip": "aidantsconnect.beta.gouv.fr/148.253.96.193", "port": "443", "severity": "INFO", - "finding": "221" + "finding": "110" } ], "thirdparties": { @@ -47620,7 +42830,7 @@ "value": "1", "domain": "aidantsconnect.beta.gouv.fr", "path": "/", - "expires": 1732415408, + "expires": 1733020812, "size": 16, "httpOnly": false, "secure": false, @@ -47632,10 +42842,10 @@ }, { "name": "_pk_id.98.2d29", - "value": "c48104be2a388b97.1732413609.", + "value": "c416dae93b765b39.1733019012.", "domain": "aidantsconnect.beta.gouv.fr", "path": "/", - "expires": 1766368809, + "expires": 1766974212, "size": 42, "httpOnly": false, "secure": false, @@ -47648,21 +42858,21 @@ ], "headers": { "content-encoding": "gzip", - "content-security-policy": "style-src-attr 'unsafe-hashes' 'sha256-I/4Jcdrg5KNFrU0X4p2nNmjeGh9aI+9ac0cUllI5SwY=' 'sha256-vYd+FsML43MBXhP+pXOhW9h0Cdq43hkCe4Im/yyvhss='; object-src 'none'; img-src 'self' data: https://www.service-public.fr/resources/v-5cf79a7acf/web/css/img/png/; default-src 'self'; style-src 'self' https://unpkg.com/easymde/dist/easymde.min.css; connect-src 'self' https://stats.beta.gouv.fr/matomo.php https://stats.beta.gouv.fr/piwik.php https://api.sarbacane.com/v1/forms/contacts/upsert https://api-adresse.data.gouv.fr/search/; frame-src https://www.youtube.com/embed/hATrqHG4zYQ https://www.youtube-nocookie.com/embed/hATrqHG4zYQ http://www.youtube.com/embed/hATrqHG4zYQ http://www.youtube-nocookie.com/embed/hATrqHG4zYQ https://www.youtube.com/embed/WTHj_kQXnzs https://www.youtube-nocookie.com/embed/WTHj_kQXnzs http://www.youtube.com/embed/WTHj_kQXnzs http://www.youtube-nocookie.com/embed/WTHj_kQXnzs https://www.youtube.com/embed/ihsm-36I-fE https://www.youtube-nocookie.com/embed/ihsm-36I-fE http://www.youtube.com/embed/ihsm-36I-fE http://www.youtube-nocookie.com/embed/ihsm-36I-fE https://www.youtube.com/embed/AJGo6bydQss https://www.youtube-nocookie.com/embed/AJGo6bydQss http://www.youtube.com/embed/AJGo6bydQss http://www.youtube-nocookie.com/embed/AJGo6bydQss; script-src 'self' https://unpkg.com/stimulus@3.2.2/dist/stimulus.umd.js https://unpkg.com/stimulus@3.2.2/dist/stimulus.js https://unpkg.com/easymde/dist/easymde.min.js https://forms.sbc29.com/form.js https://unpkg.com/tarteaucitronjs@1.15.0/tarteaucitron.js https://unpkg.com/tarteaucitronjs@1.15.0/lang/tarteaucitron.fr.js https://unpkg.com/tarteaucitronjs@1.15.0/tarteaucitron.services.js https://cdn.jsdelivr.net/npm/chart.js@3.7.1/dist/chart.min.js https://cdnjs.cloudflare.com/ajax/libs/chartjs-plugin-datalabels/2.0.0/chartjs-plugin-datalabels.min.js https://code.jquery.com/jquery-3.6.1.js https://code.jquery.com/ui/1.13.1/jquery-ui.js https://cdn.jsdelivr.net/npm/@tarekraafat/autocomplete.js@10.2.7/dist/autoComplete.min.js https://stats.beta.gouv.fr/matomo.js https://stats.beta.gouv.fr/piwik.js 'nonce-SahxT975g+Sd0LDIoPvaaQ=='", + "content-security-policy": "style-src-attr 'unsafe-hashes' 'sha256-I/4Jcdrg5KNFrU0X4p2nNmjeGh9aI+9ac0cUllI5SwY=' 'sha256-vYd+FsML43MBXhP+pXOhW9h0Cdq43hkCe4Im/yyvhss='; object-src 'none'; img-src 'self' data: https://www.service-public.fr/resources/v-5cf79a7acf/web/css/img/png/; default-src 'self'; style-src 'self' https://unpkg.com/easymde/dist/easymde.min.css; connect-src 'self' https://stats.beta.gouv.fr/matomo.php https://stats.beta.gouv.fr/piwik.php https://api.sarbacane.com/v1/forms/contacts/upsert https://api-adresse.data.gouv.fr/search/; frame-src https://www.youtube.com/embed/hATrqHG4zYQ https://www.youtube-nocookie.com/embed/hATrqHG4zYQ http://www.youtube.com/embed/hATrqHG4zYQ http://www.youtube-nocookie.com/embed/hATrqHG4zYQ https://www.youtube.com/embed/WTHj_kQXnzs https://www.youtube-nocookie.com/embed/WTHj_kQXnzs http://www.youtube.com/embed/WTHj_kQXnzs http://www.youtube-nocookie.com/embed/WTHj_kQXnzs https://www.youtube.com/embed/ihsm-36I-fE https://www.youtube-nocookie.com/embed/ihsm-36I-fE http://www.youtube.com/embed/ihsm-36I-fE http://www.youtube-nocookie.com/embed/ihsm-36I-fE https://www.youtube.com/embed/AJGo6bydQss https://www.youtube-nocookie.com/embed/AJGo6bydQss http://www.youtube.com/embed/AJGo6bydQss http://www.youtube-nocookie.com/embed/AJGo6bydQss; script-src 'self' https://unpkg.com/stimulus@3.2.2/dist/stimulus.umd.js https://unpkg.com/stimulus@3.2.2/dist/stimulus.js https://unpkg.com/easymde/dist/easymde.min.js https://forms.sbc29.com/form.js https://unpkg.com/tarteaucitronjs@1.15.0/tarteaucitron.js https://unpkg.com/tarteaucitronjs@1.15.0/lang/tarteaucitron.fr.js https://unpkg.com/tarteaucitronjs@1.15.0/tarteaucitron.services.js https://cdn.jsdelivr.net/npm/chart.js@3.7.1/dist/chart.min.js https://cdnjs.cloudflare.com/ajax/libs/chartjs-plugin-datalabels/2.0.0/chartjs-plugin-datalabels.min.js https://code.jquery.com/jquery-3.6.1.js https://code.jquery.com/ui/1.13.1/jquery-ui.js https://cdn.jsdelivr.net/npm/@tarekraafat/autocomplete.js@10.2.7/dist/autoComplete.min.js https://stats.beta.gouv.fr/matomo.js https://stats.beta.gouv.fr/piwik.js 'nonce-OYXihHKAyuyNEM7IGWGLdg=='", "content-type": "text/html; charset=utf-8", "cross-origin-opener-policy": "same-origin", - "date": "Sun, 24 Nov 2024 02:00:08 GMT", + "date": "Sun, 01 Dec 2024 02:10:11 GMT", "referrer-policy": "strict-origin", "strict-transport-security": "max-age=60", "vary": "Cookie", "x-content-type-options": "nosniff", "x-frame-options": "DENY", - "x-request-id": "5e0ed03e-abd7-4558-b414-fe29869cdfdb" + "x-request-id": "f11f60b9-83cd-41d3-b5e8-7530e35b4b13" }, "endpoints": [ { "hostname": "aidantsconnect.beta.gouv.fr", - "ip": "80.247.13.145", + "ip": "148.253.96.193", "geoip": { "continent": { "code": "EU", @@ -47718,7 +42928,7 @@ }, { "hostname": "unpkg.com", - "ip": "104.17.248.203", + "ip": "104.17.249.203", "geoip": { "registered_country": { "geoname_id": 6252001, @@ -47738,8 +42948,19 @@ }, { "hostname": "forms.sbc29.com", - "ip": "185.75.141.218", + "ip": "217.74.111.254", "geoip": { + "city": { + "geoname_id": 2985034, + "names": { + "de": "Puteaux", + "en": "Puteaux", + "fr": "Puteaux", + "ja": "ピュトー", + "ru": "Пюто", + "zh-CN": "皮托" + } + }, "continent": { "code": "EU", "geoname_id": 6255148, @@ -47770,11 +42991,14 @@ } }, "location": { - "accuracy_radius": 500, - "latitude": 48.8582, - "longitude": 2.3387, + "accuracy_radius": 200, + "latitude": 48.88, + "longitude": 2.2454, "time_zone": "Europe/Paris" }, + "postal": { + "code": "92800" + }, "registered_country": { "geoname_id": 3017382, "is_in_european_union": true, @@ -47789,7 +43013,37 @@ "ru": "Франция", "zh-CN": "法国" } - } + }, + "subdivisions": [ + { + "geoname_id": 3012874, + "iso_code": "IDF", + "names": { + "de": "Île-de-France", + "en": "Île-de-France", + "es": "Isla de Francia", + "fr": "Île-de-France", + "ja": "イル・ド・フランス", + "pt-BR": "Ilha de França", + "ru": "Иль-де-Франс", + "zh-CN": "法兰西岛" + } + }, + { + "geoname_id": 3013657, + "iso_code": "92", + "names": { + "de": "Hauts-de-Seine", + "en": "Hauts-de-Seine", + "es": "Altos de Sena", + "fr": "Hauts-de-Seine", + "ja": "オー=ド=セーヌ県", + "pt-BR": "Altos do Sena", + "ru": "О-де-Сен", + "zh-CN": "上塞纳省" + } + } + ] } } ] @@ -47938,7 +43192,7 @@ { "requestedUrl": "https://aidantsconnect.beta.gouv.fr/", "finalUrl": "https://aidantsconnect.beta.gouv.fr/", - "fetchTime": "2024-11-24T01:59:43.133Z", + "fetchTime": "2024-12-01T02:09:46.707Z", "runWarnings": [], "categories": { "performance": { @@ -47949,7 +43203,7 @@ "snapshot" ], "id": "performance", - "score": 0.86 + "score": 0.84 }, "accessibility": { "title": "Accessibility", @@ -48001,53 +43255,53 @@ "description": "Collects all available metrics.", "score": null, "scoreDisplayMode": "informative", - "numericValue": 2276, + "numericValue": 2197, "numericUnit": "millisecond", "details": { "type": "debugdata", "items": [ { - "firstContentfulPaint": 2276, - "firstMeaningfulPaint": 2276, - "largestContentfulPaint": 3631, - "interactive": 2276, - "speedIndex": 3717, + "firstContentfulPaint": 2197, + "firstMeaningfulPaint": 2197, + "largestContentfulPaint": 4004, + "interactive": 2197, + "speedIndex": 3537, "totalBlockingTime": 0, "maxPotentialFID": 16, - "cumulativeLayoutShift": 0.012508821275499134, - "cumulativeLayoutShiftMainFrame": 0.012508821275499134, - "totalCumulativeLayoutShift": 0.012508821275499134, + "cumulativeLayoutShift": 0.026036377376980252, + "cumulativeLayoutShiftMainFrame": 0.026036377376980252, + "totalCumulativeLayoutShift": 0.026036377376980252, "observedTimeOrigin": 0, - "observedTimeOriginTs": 536550509, + "observedTimeOriginTs": 642888066, "observedNavigationStart": 0, - "observedNavigationStartTs": 536550509, - "observedFirstPaint": 1165, - "observedFirstPaintTs": 537715853, - "observedFirstContentfulPaint": 1165, - "observedFirstContentfulPaintTs": 537715853, - "observedFirstContentfulPaintAllFrames": 1165, - "observedFirstContentfulPaintAllFramesTs": 537715853, - "observedFirstMeaningfulPaint": 1165, - "observedFirstMeaningfulPaintTs": 537715853, - "observedLargestContentfulPaint": 1201, - "observedLargestContentfulPaintTs": 537751746, - "observedLargestContentfulPaintAllFrames": 1201, - "observedLargestContentfulPaintAllFramesTs": 537751746, - "observedTraceEnd": 4417, - "observedTraceEndTs": 540967508, - "observedLoad": 2022, - "observedLoadTs": 538572455, - "observedDomContentLoaded": 2019, - "observedDomContentLoadedTs": 538569126, - "observedCumulativeLayoutShift": 0.012508821275499134, - "observedCumulativeLayoutShiftMainFrame": 0.012508821275499134, - "observedTotalCumulativeLayoutShift": 0.012508821275499134, - "observedFirstVisualChange": 1177, - "observedFirstVisualChangeTs": 537727509, - "observedLastVisualChange": 2094, - "observedLastVisualChangeTs": 538644509, - "observedSpeedIndex": 1777, - "observedSpeedIndexTs": 538327633 + "observedNavigationStartTs": 642888066, + "observedFirstPaint": 1271, + "observedFirstPaintTs": 644159543, + "observedFirstContentfulPaint": 1271, + "observedFirstContentfulPaintTs": 644159543, + "observedFirstContentfulPaintAllFrames": 1271, + "observedFirstContentfulPaintAllFramesTs": 644159543, + "observedFirstMeaningfulPaint": 1271, + "observedFirstMeaningfulPaintTs": 644159543, + "observedLargestContentfulPaint": 1314, + "observedLargestContentfulPaintTs": 644201703, + "observedLargestContentfulPaintAllFrames": 1314, + "observedLargestContentfulPaintAllFramesTs": 644201703, + "observedTraceEnd": 4205, + "observedTraceEndTs": 647092733, + "observedLoad": 1808, + "observedLoadTs": 644696221, + "observedDomContentLoaded": 1275, + "observedDomContentLoadedTs": 644163515, + "observedCumulativeLayoutShift": 0.026036377376980252, + "observedCumulativeLayoutShiftMainFrame": 0.026036377376980252, + "observedTotalCumulativeLayoutShift": 0.026036377376980252, + "observedFirstVisualChange": 1269, + "observedFirstVisualChangeTs": 644157066, + "observedLastVisualChange": 1902, + "observedLastVisualChangeTs": 644790066, + "observedSpeedIndex": 1685, + "observedSpeedIndexTs": 644573049 }, { "lcpInvalidated": false @@ -48069,19 +43323,19 @@ "numScripts": 14, "numStylesheets": 7, "numFonts": 4, - "numTasks": 37, + "numTasks": 36, "numTasksOver10ms": 0, "numTasksOver25ms": 0, "numTasksOver50ms": 0, "numTasksOver100ms": 0, "numTasksOver500ms": 0, - "rtt": 5.321, - "throughput": 10048339.600414066, - "maxRtt": 86.627, - "maxServerLatency": 168.41799999999998, - "totalByteWeight": 665665, - "totalTaskTime": 3.9839999999999987, - "mainDocumentTransferSize": 9105 + "rtt": 5.420999999999999, + "throughput": 9299205.01444956, + "maxRtt": 86.13199999999998, + "maxServerLatency": 89.36100000000002, + "totalByteWeight": 699044, + "totalTaskTime": 8.046999999999999, + "mainDocumentTransferSize": 9114 } ] } @@ -48108,22 +43362,22 @@ "width": 1920, "height": 1080, "url": "https://aidantsconnect.beta.gouv.fr", - "size": 818.263, + "size": 851.777, "nodes": 380, "requests": 46, "grade": "C", - "score": 70, - "ges": 1.6, - "water": 2.4, + "score": 69, + "ges": 1.62, + "water": 2.43, "ecoindex_version": "5.4.2", - "date": "2024-11-24 01:55:10.755042", + "date": "2024-12-01 02:03:52.026339", "page_type": null } ], "sonarcloud": null, "dsfr": null, "summary": { - "404": 65, + "404": "A+", "uptime": 100, "uptimeGrade": "A", "nmapGrade": "A", @@ -48136,7 +43390,7 @@ "cookiesCount": 2, "trackersGrade": "C", "trackersCount": 8, - "lighthouse_performance": 0.86, + "lighthouse_performance": 0.84, "lighthouse_performanceGrade": "A", "lighthouse_accessibility": 0.97, "lighthouse_accessibilityGrade": "A",