Certificate Overview
Valid Host Names | Matched | ultimateseo.org sni.cloudflaressl.com *.ultimateseo.org | |
---|---|---|---|
Expires | in 4 months | Valid after Mar 21, 2020 | |
Trust | Trusted | The certificate was issued by CloudFlare Inc ECC CA-2 |
Security
Encryption Ciphers | Weak | Weak encryption ciphers are supported. These are deprecated, and their removal will offer increased security. | |
---|---|---|---|
Public Key Size | 256 bits | Key sizes 1024 bits or larger are considered secure. Be aware that unnecessarily large key sizes will slow down the connection establishment. | |
Secure Renegotiation | Yes | ||
Protocols | TLSv1, TLSv1.1, TLSv1.2, TLSv1.3 | Server supports TLSv1 and / or TLSv1.1. These are deprecated protocols and should be phased out where possible. |
Performance
HTTP Keepalive | Yes | ||
---|---|---|---|
SSL Handshake Size | 2947 bytes | A smaller SSL handshake means a faster connection. Reducing the number & size of certificates in your chain, and reducing the size of the public key will reduce this. |
Encryption Ciphers
Cipher | Strength | Algo | Key | KeyEx | Handshake | ||
---|---|---|---|---|---|---|---|
TLS_AES_256_GCM_SHA384 | TLSv1.3 | High | AESGCM | 256-bit | any | 29ms | 2827 bytes |
TLS_CHACHA20_POLY1305_SHA256 | TLSv1.3 | High | CHACHA20/POLY1305 | 256-bit | any | 27ms | 2795 bytes |
TLS_AES_128_GCM_SHA256 | TLSv1.3 | High | AESGCM | 128-bit | any | 28ms | 2796 bytes |
ECDHE-ECDSA-AES256-GCM-SHA384 | TLSv1.2 | High | AESGCM | 256-bit | ECDH | 33ms | 2934 bytes |
ECDHE-RSA-AES256-GCM-SHA384 | TLSv1.2 | High | AESGCM | 256-bit | ECDH | 34ms | 3718 bytes |
ECDHE-ECDSA-CHACHA20-POLY1305 | TLSv1.2 | High | CHACHA20/POLY1305 | 256-bit | ECDH | 32ms | 2918 bytes |
ECDHE-RSA-CHACHA20-POLY1305 | TLSv1.2 | High | CHACHA20/POLY1305 | 256-bit | ECDH | 29ms | 3702 bytes |
ECDHE-ECDSA-AES128-GCM-SHA256 | TLSv1.2 | High | AESGCM | 128-bit | ECDH | 23ms | 2933 bytes |
ECDHE-RSA-AES128-GCM-SHA256 | TLSv1.2 | High | AESGCM | 128-bit | ECDH | 38ms | 3718 bytes |
ECDHE-ECDSA-AES256-SHA384 | TLSv1.2 | High | AES | 256-bit | ECDH | 31ms | 3046 bytes |
ECDHE-RSA-AES256-SHA384 | TLSv1.2 | High | AES | 256-bit | ECDH | 32ms | 3830 bytes |
ECDHE-ECDSA-AES128-SHA256 | TLSv1.2 | High | AES | 128-bit | ECDH | 24ms | 3014 bytes |
ECDHE-RSA-AES128-SHA256 | TLSv1.2 | High | AES | 128-bit | ECDH | 32ms | 3798 bytes |
ECDHE-RSA-AES256-SHA | TLSv1 | High | AES | 256-bit | ECDH | 30ms | 3680 bytes |
ECDHE-RSA-AES128-SHA | TLSv1 | High | AES | 128-bit | ECDH | 37ms | 3680 bytes |
AES256-GCM-SHA384 | TLSv1.2 | High | AESGCM | 256-bit | RSA | 33ms | 3592 bytes |
AES128-GCM-SHA256 | TLSv1.2 | High | AESGCM | 128-bit | RSA | 34ms | 3592 bytes |
AES256-SHA256 | TLSv1.2 | High | AES | 256-bit | RSA | 22ms | 3672 bytes |
AES128-SHA256 | TLSv1.2 | High | AES | 128-bit | RSA | 31ms | 3672 bytes |
DES-CBC3-SHA | SSLv3 | Low | 3DES | 168-bit | RSA | 12ms | 3528 bytes |