Skip to content

Commit

Permalink
Deploying to gh-pages from @ 715ba09 🚀
Browse files Browse the repository at this point in the history
  • Loading branch information
github-actions[bot] committed Apr 7, 2024
1 parent e18026d commit 5eb136f
Show file tree
Hide file tree
Showing 36 changed files with 58 additions and 121 deletions.
2 changes: 1 addition & 1 deletion 404.html

Large diffs are not rendered by default.

2 changes: 1 addition & 1 deletion 404/index.html

Large diffs are not rendered by default.

Large diffs are not rendered by default.

Large diffs are not rendered by default.

Large diffs are not rendered by default.

Large diffs are not rendered by default.

Large diffs are not rendered by default.

This file was deleted.

This file was deleted.

This file was deleted.

This file was deleted.

This file was deleted.

Large diffs are not rendered by default.

2 changes: 1 addition & 1 deletion about/index.html

Large diffs are not rendered by default.

2 changes: 1 addition & 1 deletion category/undefined/index.html

Large diffs are not rendered by default.

2 changes: 1 addition & 1 deletion index.html

Large diffs are not rendered by default.

4 changes: 2 additions & 2 deletions intro/index.html

Large diffs are not rendered by default.

Large diffs are not rendered by default.

Original file line number Diff line number Diff line change
Expand Up @@ -21,16 +21,16 @@
###########################################################</span>

Using &quot;OpenSSL 1.0.2-bad (1.0.2k-dev)&quot; [~183 ciphers]
on fv-az658-818:/home/testssl/bin/openssl.Linux.x86_64
on fv-az802-151:/home/testssl/bin/openssl.Linux.x86_64
(built: &quot;Sep 1 14:03:44 2022&quot;, platform: &quot;linux-x86_64&quot;)


<span style="font-weight:bold;">Testing all IPv4 addresses (port 443): </span>109.232.233.130 148.253.75.120 109.232.236.90 5.104.101.30
<span style="font-weight:bold;">Testing all IPv4 addresses (port 443): </span>148.253.75.120 5.104.101.30 109.232.233.130 109.232.236.90
-----------------------------------------------------
<span style="color:white;background-color:black;"> Start 2024-03-31 01:24:02 --&gt;&gt; 109.232.233.130:443 (dotations.incubateur.anct.gouv.fr) &lt;&lt;--</span>
<span style="color:white;background-color:black;"> Start 2024-04-07 01:24:18 --&gt;&gt; 148.253.75.120:443 (dotations.incubateur.anct.gouv.fr) &lt;&lt;--</span>

Further IP addresses: 109.232.236.90 5.104.101.30 148.253.75.120
rDNS (109.232.233.130): ows-109-232-233-130.eu-west-2.compute.outscale.com.
Further IP addresses: 5.104.101.30 109.232.236.90 109.232.233.130
rDNS (148.253.75.120): ows-148-253-75-120.eu-west-2.compute.outscale.com.
Service detected: HTTP


Expand Down Expand Up @@ -109,7 +109,7 @@
<span style="font-weight:bold;"> Trust (hostname) </span><span style="color:#008817;">Ok via SAN and CN</span> (SNI mandatory)
<span style="font-weight:bold;"> Chain of trust</span> <span style="color:#008817;">Ok </span><span style="color:#cd00cd;"></span>
<span style="font-weight:bold;"> EV cert</span> (experimental) no
<span style="font-weight:bold;"> Certificate Validity (UTC) </span><span style="color:#008817;">68 &gt;= 30 days</span> (2024-03-09 15:46 --&gt; 2024-06-07 15:46)
<span style="font-weight:bold;"> Certificate Validity (UTC) </span><span style="color:#008817;">61 &gt;= 30 days</span> (2024-03-09 15:46 --&gt; 2024-06-07 15:46)
<span style="font-weight:bold;"> ETS/&quot;eTLS&quot;</span>, visibility info not present
<span style="font-weight:bold;"> Certificate Revocation List </span>--
<span style="font-weight:bold;"> OCSP URI </span>http://r3.o.lencr.org
Expand Down Expand Up @@ -213,13 +213,13 @@
<span style="font-weight:bold;"> Overall Grade </span><span style="color:#008817;font-weight:bold;">A</span>
<span style="font-weight:bold;"> Grade cap reasons </span>Grade capped to A. HSTS is not offered

<span style="color:white;background-color:black;"> Done 2024-03-31 01:25:44 [ 104s] --&gt;&gt; 109.232.233.130:443 (dotations.incubateur.anct.gouv.fr) &lt;&lt;--</span>
<span style="color:white;background-color:black;"> Done 2024-04-07 01:25:54 [ 98s] --&gt;&gt; 148.253.75.120:443 (dotations.incubateur.anct.gouv.fr) &lt;&lt;--</span>

-----------------------------------------------------
<span style="color:white;background-color:black;"> Start 2024-03-31 01:25:44 --&gt;&gt; 148.253.75.120:443 (dotations.incubateur.anct.gouv.fr) &lt;&lt;--</span>
<span style="color:white;background-color:black;"> Start 2024-04-07 01:25:54 --&gt;&gt; 5.104.101.30:443 (dotations.incubateur.anct.gouv.fr) &lt;&lt;--</span>

Further IP addresses: 109.232.236.90 5.104.101.30 109.232.233.130
rDNS (148.253.75.120): ows-148-253-75-120.eu-west-2.compute.outscale.com.
Further IP addresses: 148.253.75.120 109.232.236.90 109.232.233.130
rDNS (5.104.101.30): ows-5-104-101-30.eu-west-2.compute.outscale.com.
Service detected: HTTP


Expand Down Expand Up @@ -298,7 +298,7 @@
<span style="font-weight:bold;"> Trust (hostname) </span><span style="color:#008817;">Ok via SAN and CN</span> (SNI mandatory)
<span style="font-weight:bold;"> Chain of trust</span> <span style="color:#008817;">Ok </span><span style="color:#cd00cd;"></span>
<span style="font-weight:bold;"> EV cert</span> (experimental) no
<span style="font-weight:bold;"> Certificate Validity (UTC) </span><span style="color:#008817;">68 &gt;= 30 days</span> (2024-03-09 15:46 --&gt; 2024-06-07 15:46)
<span style="font-weight:bold;"> Certificate Validity (UTC) </span><span style="color:#008817;">61 &gt;= 30 days</span> (2024-03-09 15:46 --&gt; 2024-06-07 15:46)
<span style="font-weight:bold;"> ETS/&quot;eTLS&quot;</span>, visibility info not present
<span style="font-weight:bold;"> Certificate Revocation List </span>--
<span style="font-weight:bold;"> OCSP URI </span>http://r3.o.lencr.org
Expand Down Expand Up @@ -402,13 +402,13 @@
<span style="font-weight:bold;"> Overall Grade </span><span style="color:#008817;font-weight:bold;">A</span>
<span style="font-weight:bold;"> Grade cap reasons </span>Grade capped to A. HSTS is not offered

<span style="color:white;background-color:black;"> Done 2024-03-31 01:27:21 [ 201s] --&gt;&gt; 148.253.75.120:443 (dotations.incubateur.anct.gouv.fr) &lt;&lt;--</span>
<span style="color:white;background-color:black;"> Done 2024-04-07 01:27:28 [ 192s] --&gt;&gt; 5.104.101.30:443 (dotations.incubateur.anct.gouv.fr) &lt;&lt;--</span>

-----------------------------------------------------
<span style="color:white;background-color:black;"> Start 2024-03-31 01:27:21 --&gt;&gt; 109.232.236.90:443 (dotations.incubateur.anct.gouv.fr) &lt;&lt;--</span>
<span style="color:white;background-color:black;"> Start 2024-04-07 01:27:29 --&gt;&gt; 109.232.233.130:443 (dotations.incubateur.anct.gouv.fr) &lt;&lt;--</span>

Further IP addresses: 5.104.101.30 148.253.75.120 109.232.233.130
rDNS (109.232.236.90): ows-109-232-236-90.eu-west-2.compute.outscale.com.
Further IP addresses: 148.253.75.120 5.104.101.30 109.232.236.90
rDNS (109.232.233.130): ows-109-232-233-130.eu-west-2.compute.outscale.com.
Service detected: HTTP


Expand Down Expand Up @@ -487,7 +487,7 @@
<span style="font-weight:bold;"> Trust (hostname) </span><span style="color:#008817;">Ok via SAN and CN</span> (SNI mandatory)
<span style="font-weight:bold;"> Chain of trust</span> <span style="color:#008817;">Ok </span><span style="color:#cd00cd;"></span>
<span style="font-weight:bold;"> EV cert</span> (experimental) no
<span style="font-weight:bold;"> Certificate Validity (UTC) </span><span style="color:#008817;">68 &gt;= 30 days</span> (2024-03-09 15:46 --&gt; 2024-06-07 15:46)
<span style="font-weight:bold;"> Certificate Validity (UTC) </span><span style="color:#008817;">61 &gt;= 30 days</span> (2024-03-09 15:46 --&gt; 2024-06-07 15:46)
<span style="font-weight:bold;"> ETS/&quot;eTLS&quot;</span>, visibility info not present
<span style="font-weight:bold;"> Certificate Revocation List </span>--
<span style="font-weight:bold;"> OCSP URI </span>http://r3.o.lencr.org
Expand Down Expand Up @@ -591,13 +591,13 @@
<span style="font-weight:bold;"> Overall Grade </span><span style="color:#008817;font-weight:bold;">A</span>
<span style="font-weight:bold;"> Grade cap reasons </span>Grade capped to A. HSTS is not offered

<span style="color:white;background-color:black;"> Done 2024-03-31 01:28:58 [ 298s] --&gt;&gt; 109.232.236.90:443 (dotations.incubateur.anct.gouv.fr) &lt;&lt;--</span>
<span style="color:white;background-color:black;"> Done 2024-04-07 01:29:02 [ 286s] --&gt;&gt; 109.232.233.130:443 (dotations.incubateur.anct.gouv.fr) &lt;&lt;--</span>

-----------------------------------------------------
<span style="color:white;background-color:black;"> Start 2024-03-31 01:28:58 --&gt;&gt; 5.104.101.30:443 (dotations.incubateur.anct.gouv.fr) &lt;&lt;--</span>
<span style="color:white;background-color:black;"> Start 2024-04-07 01:29:02 --&gt;&gt; 109.232.236.90:443 (dotations.incubateur.anct.gouv.fr) &lt;&lt;--</span>

Further IP addresses: 109.232.236.90 148.253.75.120 109.232.233.130
rDNS (5.104.101.30): ows-5-104-101-30.eu-west-2.compute.outscale.com.
Further IP addresses: 148.253.75.120 5.104.101.30 109.232.233.130
rDNS (109.232.236.90): ows-109-232-236-90.eu-west-2.compute.outscale.com.
Service detected: HTTP


Expand Down Expand Up @@ -660,7 +660,7 @@
&quot;extended master secret/#23&quot;
<span style="font-weight:bold;"> Session Ticket RFC 5077 hint </span>300 seconds, session tickets keys seems to be rotated &lt; daily
<span style="font-weight:bold;"> SSL Session ID support </span>yes
<span style="font-weight:bold;"> Session Resumption </span>Tickets no, ID: no
<span style="font-weight:bold;"> Session Resumption </span>Tickets no, ID: yes
<span style="font-weight:bold;"> TLS clock skew</span> Random values, no fingerprinting possible
<span style="font-weight:bold;"> Certificate Compression </span>none
<span style="font-weight:bold;"> Client Authentication </span>none
Expand All @@ -676,7 +676,7 @@
<span style="font-weight:bold;"> Trust (hostname) </span><span style="color:#008817;">Ok via SAN and CN</span> (SNI mandatory)
<span style="font-weight:bold;"> Chain of trust</span> <span style="color:#008817;">Ok </span><span style="color:#cd00cd;"></span>
<span style="font-weight:bold;"> EV cert</span> (experimental) no
<span style="font-weight:bold;"> Certificate Validity (UTC) </span><span style="color:#008817;">68 &gt;= 30 days</span> (2024-03-09 15:46 --&gt; 2024-06-07 15:46)
<span style="font-weight:bold;"> Certificate Validity (UTC) </span><span style="color:#008817;">61 &gt;= 30 days</span> (2024-03-09 15:46 --&gt; 2024-06-07 15:46)
<span style="font-weight:bold;"> ETS/&quot;eTLS&quot;</span>, visibility info not present
<span style="font-weight:bold;"> Certificate Revocation List </span>--
<span style="font-weight:bold;"> OCSP URI </span>http://r3.o.lencr.org
Expand Down Expand Up @@ -780,10 +780,10 @@
<span style="font-weight:bold;"> Overall Grade </span><span style="color:#008817;font-weight:bold;">A</span>
<span style="font-weight:bold;"> Grade cap reasons </span>Grade capped to A. HSTS is not offered

<span style="color:white;background-color:black;"> Done 2024-03-31 01:30:34 [ 394s] --&gt;&gt; 5.104.101.30:443 (dotations.incubateur.anct.gouv.fr) &lt;&lt;--</span>
<span style="color:white;background-color:black;"> Done 2024-04-07 01:30:38 [ 382s] --&gt;&gt; 109.232.236.90:443 (dotations.incubateur.anct.gouv.fr) &lt;&lt;--</span>

-----------------------------------------------------
<span style="font-weight:bold;">Done testing now all IP addresses (on port 443): </span>109.232.233.130 148.253.75.120 109.232.236.90 5.104.101.30
<span style="font-weight:bold;">Done testing now all IP addresses (on port 443): </span>148.253.75.120 5.104.101.30 109.232.233.130 109.232.236.90

</pre>
</body>
Expand Down
Original file line number Diff line number Diff line change
Expand Up @@ -127,7 +127,7 @@ <h2>
</h2>

<h3>
Generated on Sun, 31 Mar 2024 01:23:29
Generated on Sun, 7 Apr 2024 01:23:47
</h3>

<h3>
Expand Down Expand Up @@ -235,7 +235,7 @@ <h3>Alerts</h3>
<tr>
<td><a href="#10035">Strict-Transport-Security Header Not Set</a></td>
<td align="center" class="risk-1">Low</td>
<td align="center">12</td>
<td align="center">11</td>
</tr>
<tr>
<td><a href="#10096">Timestamp Disclosure - Unix</a></td>
Expand All @@ -245,7 +245,7 @@ <h3>Alerts</h3>
<tr>
<td><a href="#10021">X-Content-Type-Options Header Missing</a></td>
<td align="center" class="risk-1">Low</td>
<td align="center">12</td>
<td align="center">11</td>
</tr>
<tr>
<td><a href="#10094">Base64 Disclosure</a></td>
Expand Down Expand Up @@ -993,7 +993,7 @@ <h3>Alert Detail</h3>
<tr>
<td width="20%"
class="indent1">URL</td>
<td width="80%"><a href="https://dotations.incubateur.anct.gouv.fr/_next/static/chunks/279-2c6274557fc77b7f.js">https://dotations.incubateur.anct.gouv.fr/_next/static/chunks/279-2c6274557fc77b7f.js</a></td>
<td width="80%"><a href="https://dotations.incubateur.anct.gouv.fr/_next/static/chunks/877-1ab3a5b39294bffc.js">https://dotations.incubateur.anct.gouv.fr/_next/static/chunks/877-1ab3a5b39294bffc.js</a></td>
</tr>
<tr>
<td width="20%"
Expand Down Expand Up @@ -1024,7 +1024,7 @@ <h3>Alert Detail</h3>
<tr>
<td width="20%"
class="indent1">URL</td>
<td width="80%"><a href="https://dotations.incubateur.anct.gouv.fr/_next/static/chunks/705-80ad2a316309eaa1.js">https://dotations.incubateur.anct.gouv.fr/_next/static/chunks/705-80ad2a316309eaa1.js</a></td>
<td width="80%"><a href="https://dotations.incubateur.anct.gouv.fr/_next/static/chunks/main-fbe9c9f0314b4cf5.js">https://dotations.incubateur.anct.gouv.fr/_next/static/chunks/main-fbe9c9f0314b4cf5.js</a></td>
</tr>
<tr>
<td width="20%"
Expand Down Expand Up @@ -1055,7 +1055,7 @@ <h3>Alert Detail</h3>
<tr>
<td width="20%"
class="indent1">URL</td>
<td width="80%"><a href="https://dotations.incubateur.anct.gouv.fr/_next/static/chunks/877-1ab3a5b39294bffc.js">https://dotations.incubateur.anct.gouv.fr/_next/static/chunks/877-1ab3a5b39294bffc.js</a></td>
<td width="80%"><a href="https://dotations.incubateur.anct.gouv.fr/_next/static/chunks/pages/%5Bcode%5D-1838da2184562e70.js">https://dotations.incubateur.anct.gouv.fr/_next/static/chunks/pages/%5Bcode%5D-1838da2184562e70.js</a></td>
</tr>
<tr>
<td width="20%"
Expand Down Expand Up @@ -1483,37 +1483,6 @@ <h3>Alert Detail</h3>
<td width="80%"></td>
</tr>

<tr>
<td width="20%"
class="indent1">URL</td>
<td width="80%"><a href="https://dotations.incubateur.anct.gouv.fr/_next/static/92pUW3ciNEwHL8u4BsTYT/_ssgManifest.js">https://dotations.incubateur.anct.gouv.fr/_next/static/92pUW3ciNEwHL8u4BsTYT/_ssgManifest.js</a></td>
</tr>
<tr>
<td width="20%"
class="indent2">Method</td>
<td width="80%">GET</td>
</tr>
<tr>
<td width="20%"
class="indent2">Parameter</td>
<td width="80%"></td>
</tr>
<tr>
<td width="20%"
class="indent2">Attack</td>
<td width="80%"></td>
</tr>
<tr>
<td width="20%"
class="indent2">Evidence</td>
<td width="80%"></td>
</tr>
<tr>
<td width="20%"
class="indent2">Other Info</td>
<td width="80%"></td>
</tr>

<tr>
<td width="20%"
class="indent1">URL</td>
Expand Down Expand Up @@ -1795,7 +1764,7 @@ <h3>Alert Detail</h3>

<tr>
<td width="20%">Instances</td>
<td width="80%">12</td>
<td width="80%">11</td>
</tr>
<tr>
<td width="20%">Solution</td>
Expand Down Expand Up @@ -2657,38 +2626,6 @@ <h3>Alert Detail</h3>
At &quot;High&quot; threshold this scan rule will not alert on client or server error responses.</td>
</tr>

<tr>
<td width="20%"
class="indent1">URL</td>
<td width="80%"><a href="https://dotations.incubateur.anct.gouv.fr/_next/static/92pUW3ciNEwHL8u4BsTYT/_ssgManifest.js">https://dotations.incubateur.anct.gouv.fr/_next/static/92pUW3ciNEwHL8u4BsTYT/_ssgManifest.js</a></td>
</tr>
<tr>
<td width="20%"
class="indent2">Method</td>
<td width="80%">GET</td>
</tr>
<tr>
<td width="20%"
class="indent2">Parameter</td>
<td width="80%">x-content-type-options</td>
</tr>
<tr>
<td width="20%"
class="indent2">Attack</td>
<td width="80%"></td>
</tr>
<tr>
<td width="20%"
class="indent2">Evidence</td>
<td width="80%"></td>
</tr>
<tr>
<td width="20%"
class="indent2">Other Info</td>
<td width="80%">This issue still applies to error type pages (401, 403, 500, etc.) as those pages are often still affected by injection issues, in which case there is still concern for browsers sniffing pages away from their actual content type.
At &quot;High&quot; threshold this scan rule will not alert on client or server error responses.</td>
</tr>

<tr>
<td width="20%"
class="indent1">URL</td>
Expand Down Expand Up @@ -2979,7 +2916,7 @@ <h3>Alert Detail</h3>

<tr>
<td width="20%">Instances</td>
<td width="80%">12</td>
<td width="80%">11</td>
</tr>
<tr>
<td width="20%">Solution</td>
Expand Down Expand Up @@ -4640,7 +4577,7 @@ <h3>Alert Detail</h3>
<tr>
<td width="20%"
class="indent1">URL</td>
<td width="80%"><a href="https://dotations.incubateur.anct.gouv.fr/_next/static/92pUW3ciNEwHL8u4BsTYT/_ssgManifest.js">https://dotations.incubateur.anct.gouv.fr/_next/static/92pUW3ciNEwHL8u4BsTYT/_ssgManifest.js</a></td>
<td width="80%"><a href="https://dotations.incubateur.anct.gouv.fr/_next/static/92pUW3ciNEwHL8u4BsTYT/_buildManifest.js">https://dotations.incubateur.anct.gouv.fr/_next/static/92pUW3ciNEwHL8u4BsTYT/_buildManifest.js</a></td>
</tr>
<tr>
<td width="20%"
Expand Down
Loading

0 comments on commit 5eb136f

Please sign in to comment.